From ed4240a54cc3ee38bece6358e45a1a3ab72121f2 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Mon, 17 Feb 2025 09:05:03 +1100 Subject: [PATCH] Bump dompurify from 3.1.7 to 3.2.4 in /src/frontend (#9083) Bumps [dompurify](https://github.com/cure53/DOMPurify) from 3.1.7 to 3.2.4. - [Release notes](https://github.com/cure53/DOMPurify/releases) - [Commits](https://github.com/cure53/DOMPurify/compare/3.1.7...3.2.4) --- updated-dependencies: - dependency-name: dompurify dependency-type: direct:production ... Signed-off-by: dependabot[bot] Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> --- src/frontend/package.json | 2 +- src/frontend/yarn.lock | 12 +++++++----- 2 files changed, 8 insertions(+), 6 deletions(-) diff --git a/src/frontend/package.json b/src/frontend/package.json index eb3d4a295e..1e0cbf2993 100644 --- a/src/frontend/package.json +++ b/src/frontend/package.json @@ -49,7 +49,7 @@ "clsx": "^2.1.1", "codemirror": "6.0.1", "dayjs": "^1.11.13", - "dompurify": "^3.1.7", + "dompurify": "^3.2.4", "easymde": "^2.18.0", "embla-carousel-react": "^8.5.2", "fuse.js": "^7.0.0", diff --git a/src/frontend/yarn.lock b/src/frontend/yarn.lock index 5e4058d279..c333476736 100644 --- a/src/frontend/yarn.lock +++ b/src/frontend/yarn.lock @@ -2136,7 +2136,7 @@ dependencies: "@types/estree" "*" -"@types/trusted-types@*": +"@types/trusted-types@*", "@types/trusted-types@^2.0.7": version "2.0.7" resolved "https://registry.yarnpkg.com/@types/trusted-types/-/trusted-types-2.0.7.tgz#baccb07a970b91707df3a3e8ba6896c57ead2d11" integrity sha512-ScaPdn1dQczgbl0QFTeTOmVHFULt394XJgOQNoyVhZ6r2vLnMLJfBPd53SB52T/3G36VI1/g2MZaX0cwDuXsfw== @@ -2896,10 +2896,12 @@ dom-helpers@^5.0.1: "@babel/runtime" "^7.8.7" csstype "^3.0.2" -dompurify@^3.1.7: - version "3.1.7" - resolved "https://registry.yarnpkg.com/dompurify/-/dompurify-3.1.7.tgz#711a8c96479fb6ced93453732c160c3c72418a6a" - integrity sha512-VaTstWtsneJY8xzy7DekmYWEOZcmzIe3Qb3zPd4STve1OBTa+e+WmS1ITQec1fZYXI3HCsOZZiSMpG6oxoWMWQ== +dompurify@^3.2.4: + version "3.2.4" + resolved "https://registry.yarnpkg.com/dompurify/-/dompurify-3.2.4.tgz#af5a5a11407524431456cf18836c55d13441cd8e" + integrity sha512-ysFSFEDVduQpyhzAob/kkuJjf5zWkZD8/A9ywSp1byueyuCfHamrCBa14/Oc2iiB0e51B+NpxSl5gmzn+Ms/mg== + optionalDependencies: + "@types/trusted-types" "^2.0.7" easymde@^2.18.0: version "2.18.0"