chore(deps): update dependency dompurify to ^3.2.4 #246

Merged
Xefir merged 1 commits from renovate/dompurify-3.x into main 2025-01-31 08:22:26 +00:00
Collaborator

This PR contains the following updates:

Package Type Update Change
dompurify dependencies patch ^3.2.3 -> ^3.2.4

Release Notes

cure53/DOMPurify (dompurify)

v3.2.4: DOMPurify 3.2.4

Compare Source

  • Fixed a conditional and config dependent mXSS-style bypass reported by @​nsysean
  • Added a new feature to allow specific hook removal, thanks @​davecardwell
  • Added purify.js and purify.min.js to exports, thanks @​Aetherinox
  • Added better logic in case no window object is president, thanks @​yehuya
  • Updated some dependencies called out by dependabot
  • Updated license files etc to show the correct year

Configuration

📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR has been generated by Renovate Bot.

This PR contains the following updates: | Package | Type | Update | Change | |---|---|---|---| | [dompurify](https://github.com/cure53/DOMPurify) | dependencies | patch | [`^3.2.3` -> `^3.2.4`](https://renovatebot.com/diffs/npm/dompurify/3.2.3/3.2.4) | --- ### Release Notes <details> <summary>cure53/DOMPurify (dompurify)</summary> ### [`v3.2.4`](https://github.com/cure53/DOMPurify/releases/tag/3.2.4): DOMPurify 3.2.4 [Compare Source](https://github.com/cure53/DOMPurify/compare/3.2.3...3.2.4) - Fixed a conditional and config dependent mXSS-style [bypass](https://nsysean.github.io/posts/dompurify-323-bypass/) reported by [@&#8203;nsysean](https://github.com/nsysean) - Added a new feature to allow specific hook removal, thanks [@&#8203;davecardwell](https://github.com/davecardwell) - Added *purify.js* and *purify.min.js* to exports, thanks [@&#8203;Aetherinox](https://github.com/Aetherinox) - Added better logic in case no window object is president, thanks [@&#8203;yehuya](https://github.com/yehuya) - Updated some dependencies called out by dependabot - Updated license files etc to show the correct year </details> --- ### Configuration 📅 **Schedule**: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined). 🚦 **Automerge**: Disabled by config. Please merge this manually once you are satisfied. ♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox. 🔕 **Ignore**: Close this PR and you won't be reminded about this update again. --- - [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check this box --- This PR has been generated by [Renovate Bot](https://github.com/renovatebot/renovate). <!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiIzNy4xODEuNiIsInVwZGF0ZWRJblZlciI6IjM3LjE4MS42IiwidGFyZ2V0QnJhbmNoIjoibWFpbiJ9-->
Renovate added 1 commit 2025-01-31 00:08:08 +00:00
chore(deps): update dependency dompurify to ^3.2.4
All checks were successful
repod / xml (push) Successful in 33s
repod / php (push) Successful in 1m6s
repod / nodejs (push) Successful in 1m0s
repod / release (push) Has been skipped
61a0c7c1b9
Xefir merged commit 9a4fcc3427 into main 2025-01-31 08:22:26 +00:00
Xefir deleted branch renovate/dompurify-3.x 2025-01-31 08:22:26 +00:00
Sign in to join this conversation.
No Reviewers
No Label
No Milestone
No project
1 Participants
Notifications
Due Date
No due date set.
Dependencies

No dependencies set.

Reference: Xefir/repod#246
No description provided.