pugjs/pug
### [`v3.0.2`](https://togithub.com/pugjs/pug/releases/pug@3.0.2)
[Compare Source](https://togithub.com/pugjs/pug/compare/pug@3.0.1...pug@3.0.2)
#### Bug Fixes
- Serialize Buffers to strings when storing sources for use with compileDebug: true ([#3269](https://togithub.com/pugjs/pug/issues/3269))
### [`v3.0.1`](https://togithub.com/pugjs/pug/releases/pug@3.0.1)
[Compare Source](https://togithub.com/pugjs/pug/compare/pug@3.0.0...pug@3.0.1)
#### Bug Fixes
- Sanitise the `pretty` option ([#3314](https://togithub.com/pugjs/pug/issues/3314))
If a malicious attacker could control the `pretty` option, it was possible for them to achieve remote code execution on the server rendering the template. All pug users should upgrade as soon as possible, see [#3312](https://togithub.com/pugjs/pug/issues/3312) for more details.
Configuration
📅 Schedule: "every weekday" (UTC).
🚦 Automerge: Disabled due to failing status checks.
♻️ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
[ ] If you want to rebase/retry this PR, check this box.
This PR contains the following updates:
3.0.0
->3.0.2
Release Notes
pugjs/pug
### [`v3.0.2`](https://togithub.com/pugjs/pug/releases/pug@3.0.2) [Compare Source](https://togithub.com/pugjs/pug/compare/pug@3.0.1...pug@3.0.2) #### Bug Fixes - Serialize Buffers to strings when storing sources for use with compileDebug: true ([#3269](https://togithub.com/pugjs/pug/issues/3269)) ### [`v3.0.1`](https://togithub.com/pugjs/pug/releases/pug@3.0.1) [Compare Source](https://togithub.com/pugjs/pug/compare/pug@3.0.0...pug@3.0.1) #### Bug Fixes - Sanitise the `pretty` option ([#3314](https://togithub.com/pugjs/pug/issues/3314)) If a malicious attacker could control the `pretty` option, it was possible for them to achieve remote code execution on the server rendering the template. All pug users should upgrade as soon as possible, see [#3312](https://togithub.com/pugjs/pug/issues/3312) for more details.Configuration
📅 Schedule: "every weekday" (UTC).
🚦 Automerge: Disabled due to failing status checks.
♻️ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR has been generated by WhiteSource Renovate. View repository job log here.