fonttools/fonttools (fonttools)
### [`v4.43.0`](https://togithub.com/fonttools/fonttools/releases/tag/4.43.0)
[Compare Source](https://togithub.com/fonttools/fonttools/compare/4.42.1...4.43.0)
- \[subset] Set up lxml `XMLParser(resolve_entities=False)` when parsing OT-SVG documents to prevent XML External Entity (XXE) attacks ([`9f61271`](https://togithub.com/fonttools/fonttools/commit/9f61271dc)): https://codeql.github.com/codeql-query-help/python/py-xxe/
- \[varLib.iup] Added workaround for a Cython bug in `iup_delta_optimize` that was leading to IUP tolerance being incorrectly initialised, resulting in sub-optimal deltas ([`6012643`](https://togithub.com/fonttools/fonttools/commit/60126435d), [cython/cython#5732](https://togithub.com/cython/cython/issues/5732)).
- \[varLib] Added new command-line entry point `fonttools varLib.avar` to add an `avar` table to an existing VF from axes mappings in a .designspace file ([`0a3360e`](https://togithub.com/fonttools/fonttools/commit/0a3360e52)).
- \[instancer] Fixed bug whereby no longer used variation regions were not correctly pruned after VarData optimization ([#3268](https://togithub.com/fonttools/fonttools/issues/3268)).
- Added support for Python 3.12 ([#3283](https://togithub.com/fonttools/fonttools/issues/3283)).
Configuration
📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).
🚦 Automerge: Enabled.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
[ ] If you want to rebase/retry this PR, check this box
This PR has been generated by Mend Renovate. View repository job log here.
This PR contains the following updates:
==4.42.1
->==4.43.0
Release Notes
fonttools/fonttools (fonttools)
### [`v4.43.0`](https://togithub.com/fonttools/fonttools/releases/tag/4.43.0) [Compare Source](https://togithub.com/fonttools/fonttools/compare/4.42.1...4.43.0) - \[subset] Set up lxml `XMLParser(resolve_entities=False)` when parsing OT-SVG documents to prevent XML External Entity (XXE) attacks ([`9f61271`](https://togithub.com/fonttools/fonttools/commit/9f61271dc)): https://codeql.github.com/codeql-query-help/python/py-xxe/ - \[varLib.iup] Added workaround for a Cython bug in `iup_delta_optimize` that was leading to IUP tolerance being incorrectly initialised, resulting in sub-optimal deltas ([`6012643`](https://togithub.com/fonttools/fonttools/commit/60126435d), [cython/cython#5732](https://togithub.com/cython/cython/issues/5732)). - \[varLib] Added new command-line entry point `fonttools varLib.avar` to add an `avar` table to an existing VF from axes mappings in a .designspace file ([`0a3360e`](https://togithub.com/fonttools/fonttools/commit/0a3360e52)). - \[instancer] Fixed bug whereby no longer used variation regions were not correctly pruned after VarData optimization ([#3268](https://togithub.com/fonttools/fonttools/issues/3268)). - Added support for Python 3.12 ([#3283](https://togithub.com/fonttools/fonttools/issues/3283)).Configuration
📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).
🚦 Automerge: Enabled.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR has been generated by Mend Renovate. View repository job log here.