stanleyowen / otlio

An open source project of Todo which is easy to use and easy to organize!
https://otlio.netlify.app
MIT License
23 stars 4 forks source link

[Snyk] Upgrade dompurify from 2.3.3 to 2.3.7 #364

Closed snyk-bot closed 2 years ago

snyk-bot commented 2 years ago

Snyk has created this PR to upgrade dompurify from 2.3.3 to 2.3.7.

merge advice :information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


Release notes
Package name: dompurify
  • 2.3.7 - 2022-05-11
  • 2.3.6 - 2022-02-16
    • Added an option to allow HTML5 doctypes, thanks @ tosmolka
    • Bumped several dependencies, thanks @ is2ei
    • Updated documentation to cover recently added flags, thanks @ is2ei
  • 2.3.5 - 2022-01-26
    • Performed several chores and cleanups, thanks @ is2ei
    • Fixed a bug when working with Trusted Types, thanks @ tosmolka
    • Fixed a bug with weird behavior on insecure nodes in IN_PLACE mode, thanks @ tosmolka
    • Added more SVG attributes to allow-list, thanks @ rzhade3
  • 2.3.4 - 2021-12-07
    • Added support for Custom Elements, thanks @ franktopel
    • Added new config settings to control Custom Element sanitizing, thanks @ franktopel
    • Added faster clobber checks, thanks @ GrantGryczan
    • Allow-listed SVG feImage elements, thanks @ ydaniv
    • Updated test suite
    • Update supported Node versions
    • Updated README
  • 2.3.3 - 2021-09-20
    • Fixed a bug in the handing of PARSER_MEDIA_TYPE spotted by @ securitum-mb
    • Adjusted the tests for MSIE to make sure the results are as expected now
from dompurify GitHub release notes
Commit messages
Package name: dompurify
  • 6fa9e5c chore: Preparing 2.3.7. release
  • ec99173 fix: Added an experimental fix for a WebKit engine bug, thanks @ sybrew
  • 5dda014 Merge pull request #679 from is2ei/fix-typo
  • 3d9dd14 Merge pull request #680 from tiny-ben-tran/performance-improvement
  • f4c5f80 Capitalised const variable name
  • 73f2168 Moved commonSvgAndHTMLElements out so _checkValidNamespace doesn't re-created in every call
  • 23ff095 Minor performance improvements
  • 85ffd13 chore: fix typo in README
  • e5931be Merge pull request #678 from is2ei/fix-typo
  • 8a38fe4 chore: fix typo
  • 0965e99 docs: Added new conributors to README
  • 9421f05 Merge pull request #676 from is2ei/update-pull-request-template
  • bf07c50 chore: update pull request template
  • 81ae4bd Merge pull request #674 from is2ei/update-bugbounty-link
  • 2f1a97d chore: update the link to bug bounty page
  • 6e28ca8 Merge pull request #669 from is2ei/bump-karma
  • 6cc790d chore: bump karma
  • a7cea06 Merge pull request #668 from cure53/dependabot/npm_and_yarn/minimist-1.2.6
  • 8d92904 build(deps-dev): bump minimist from 1.2.5 to 1.2.6
  • b256113 Merge pull request #667 from is2ei/bump-rollup
  • ff41e9d chore: bump rollup
  • 34261b1 Merge pull request #666 from is2ei/fix-link-to-amd
  • df44011 chore: fix link to AMD
  • e9f4962 Merge pull request #665 from is2ei/fix-link-to-trusted-api
Compare

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

πŸ›  Adjust upgrade PR settings

πŸ”• Ignore this dependency or unsubscribe from future upgrade PRs

netlify[bot] commented 2 years ago

Deploy Preview for otlio ready!

Name Link
Latest commit c410807626324f9fadd64fdbbc839fb8f1445b3f
Latest deploy log https://app.netlify.com/sites/otlio/deploys/6297ddd8313096000815c5b8
Deploy Preview https://deploy-preview-364--otlio.netlify.app/
Preview on mobile
Toggle QR Code...

QR Code

Use your smartphone camera to open QR code link.

To edit notification comments on pull requests, go to your Netlify site settings.