Closed dependabot[bot] closed 1 year ago
Base: 45.85% // Head: 45.85% // No change to project coverage :thumbsup:
Coverage data is based on head (
9c5fc67
) compared to base (c386318
). Patch has no changes to coverable lines.
:umbrella: View full report at Codecov.
:loudspeaker: Do you have feedback about the report comment? Let us know in this issue.
@rultor please, try to merge
@rultor please, try to merge
@yegor256 OK, I'll try to merge now. You can check the progress of the merge here
@rultor please, try to merge
@yegor256 Done! FYI, the full log is here (took me 7min)
Job gh:yegor256/sixnines#121
is not assigned, can't get performer
There is an unrecoverable failure on my side. Please, submit it here:
PID: 4@88330330-4a83-4329-9222-8059928e6fb8, thread: PQ-C6MATTB7E
com.zerocracy.farm.strict.StrictProject[122] java.lang.IllegalArgumentException: File "blanks/dependabot[bot].xml" is not accessible in "PMO"
1.0-SNAPSHOT: CID: d1a4010a-c58f-43e6-a96b-c6ebd0bcd3a2, Type: "Close job"
Bumps loofah from 2.18.0 to 2.19.1.
Release notes
Sourced from loofah's releases.
Changelog
Sourced from loofah's changelog.
Commits
3f88063
version bump to v2.19.19a8dadb
docs: preserve the context and decision record86f7f63
fix: replace recursive approach to cdata with escaping solution415677f
fix: do not allow "image/svg+xml" in data URIs84ca20c
refactor: extract scrub_uri_attribute for downstream use47a835a
ci: pin psych to v4 until v5 builds properly on CIa6e0a1a
fix: replace slow regex attribute check with crass parserea853aa
Merge pull request #247 from flavorjones/flavorjones-downstream-test-rhse1f2a4b
ci: test downstream rails-html-sanitizer79d65a0
Merge pull request #245 from flavorjones/flavorjones-fix-ruby-2.5-ciDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) - `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language - `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language - `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language - `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language You can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/yegor256/sixnines/network/alerts).