mganss / HtmlSanitizer

Cleans HTML to avoid XSS attacks
MIT License
1.52k stars 198 forks source link

Bump AngleSharp from 0.17.1 to 1.0.4 #452

Closed dependabot[bot] closed 9 months ago

dependabot[bot] commented 1 year ago

Bumps AngleSharp from 0.17.1 to 1.0.4.

Release notes

Sourced from AngleSharp's releases.

1.0.4

Released on Saturday, June 24 2023

What's Changed

  • Fixed issue with gzip encoding under certain conditions (#1122)
  • Fixed issue with li scope leading to stack overflow (#1123)
  • Added more pseudo selectors from Selector L4 spec (#1121)

Full Changelog: https://github.com/AngleSharp/AngleSharp/compare/1.0.3...v1.0.4

1.0.4-alpha-289

Released on Friday, June 23 2023

  • Added more pseudo selectors from Selector L4 spec (#1121)

1.0.3

Released on Thursday, June 8 2023

What's Changed

  • Fixed wrong escaping of CSS selector pseudo class functions (#1069)

Full Changelog: https://github.com/AngleSharp/AngleSharp/compare/v1.0.2...v1.0.3

1.0.2

Released on Tuesday, June 4 2023

What's Changed

Full Changelog: https://github.com/AngleSharp/AngleSharp/compare/v1.0.1...v1.0.2

1.0.2-alpha-282

Released on Tuesday, June 4 2023

1.0.2-alpha-277

Released on Tuesday, Feburary 21 2023

1.0.2-alpha-276

Released on Tuesday, Feburary 21 2023

... (truncated)

Commits


Dependabot compatibility score

You can trigger a rebase of this PR by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Note Automatic rebases have been disabled on this pull request as it has been open for over 30 days.

codecov[bot] commented 1 year ago

Codecov Report

Patch and project coverage have no change.

Comparison is base (4d207eb) 94.73% compared to head (4d205cd) 94.73%.

Additional details and impacted files ```diff @@ Coverage Diff @@ ## master #452 +/- ## ======================================= Coverage 94.73% 94.73% ======================================= Files 6 6 Lines 855 855 Branches 84 84 ======================================= Hits 810 810 Misses 34 34 Partials 11 11 ```

:umbrella: View full report in Codecov by Sentry.
:loudspeaker: Do you have feedback about the report comment? Let us know in this issue.

gonzaleziasmim commented 11 months ago

Hello, @mganss! Sorry to bother you about this but, is there any chance of this update being merged and released soon? It would be very helpful to have this update since ends the conflicts with other libs that have AngleSharp dependency.

mganss commented 11 months ago

@gonzaleziasmim HtmlSanitizer depends on AngleSharp.Css which is at 0.17.0 and in turn depends on AngleSharp 0.17.x. As soon as a new version of AngleSharp.Css is released, I'll update the dependency. /cc @florianrappl

dependabot[bot] commented 9 months ago

Superseded by #472.