ga-wdi-boston / rails-api

Introduction to MVC concepts and their implementation in Rails.
Other
6 stars 159 forks source link

Bump rails-html-sanitizer from 1.0.3 to 1.3.0 #57

Closed dependabot[bot] closed 4 years ago

dependabot[bot] commented 4 years ago

Bumps rails-html-sanitizer from 1.0.3 to 1.3.0.

Release notes

Sourced from rails-html-sanitizer's releases.

v1.3.0

  • Address deprecations in Loofah 2.3.0.

    Josh Goodall

v1.2.0

  • Remove needless white_list_sanitizer deprecation.

    By deprecating this, we were forcing Rails 5.2 to be updated or spew deprecations that users could do nothing about.

    That's pointless and I'm sorry for adding that!

    Now there's no deprecation warning and Rails 5.2 works out of the box, while Rails 6 can use the updated naming.

    Kasper Timm Hansen

v1.1.0

v1.0.4

  • Fix CVE-2018-3741.
Changelog

Sourced from rails-html-sanitizer's changelog.

1.3.0

  • Address deprecations in Loofah 2.3.0.

    Josh Goodall

1.2.0

  • Remove needless white_list_sanitizer deprecation.

    By deprecating this, we were forcing Rails 5.2 to be updated or spew deprecations that users could do nothing about.

    That's pointless and I'm sorry for adding that!

    Now there's no deprecation warning and Rails 5.2 works out of the box, while Rails 6 can use the updated naming.

    Kasper Timm Hansen

1.1.0

1.0.1

  • Added support for Rails 4.2.0.beta2 and above

1.0.0

  • First release.
Commits
  • 51dc564 v1.3.0
  • 65b9f88 Merge pull request #102 from orien/gem-metadata
  • 845da04 Add project metadata to the gemspec
  • 43a87f5 Match Loofah's API changes.
  • b8ea80d Prepare 1.2.0
  • 5581871 Remove needless white list sanitizer deprecations
  • 1a02a14 Merge pull request #96 from olleolleolle/patch-1
  • 31cf584 CI: Drop unused sudo: false Travis directive
  • 0b64e50 Merge pull request #95 from rwojnarowski/patch-1
  • 21da038 Deprecated warning text, missing space
  • Additional commits viewable in compare view


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) - `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language - `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language - `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language - `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language You can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/ga-wdi-boston/rails-api/network/alerts).