TAMULib / weaver-components

Custom Web Components for the Weaver UI
MIT License
0 stars 1 forks source link

[Snyk] Upgrade @angular/localize from 12.2.16 to 12.2.17 #522

Closed snyk-bot closed 12 months ago

snyk-bot commented 1 year ago

Snyk has created this PR to upgrade @angular/localize from 12.2.16 to 12.2.17.

:information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


Release notes
Package name: @angular/localize
  • 12.2.17 - 2022-11-22

    12.2.17 (2022-11-22)

    Breaking Changes

    core

    • Existing iframe usages may have security-sensitive attributes applied as an attribute or property binding in a template or via host bindings in a directive. Such usages would require an update to ensure compliance with the new stricter rules around iframe bindings.

    core

    Commit Description
    fix - b871db57da hardening attribute and property binding rules for <iframe> elements

    Special Thanks

    Andrew Kushnir, Joey Perrott and Paul Gschwendtner

  • 12.2.16 - 2022-01-27
from @angular/localize GitHub release notes

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs