-
-
Notifications
You must be signed in to change notification settings - Fork 829
Comparing changes
Open a pull request
base repository: cure53/DOMPurify
base: 3.0.2
head repository: cure53/DOMPurify
compare: 3.0.3
- 13 commits
- 17 files changed
- 4 contributors
Commits on Apr 25, 2023
-
Removes [yaml](https://github.com/eemeli/yaml). It's no longer used after updating ancestor dependency [xo](https://github.com/xojs/xo). These dependencies need to be updated together. Removes `yaml` Updates `xo` from 0.48.0 to 0.54.1 - [Release notes](https://github.com/xojs/xo/releases) - [Commits](xojs/xo@v0.48.0...v0.54.1) --- updated-dependencies: - dependency-name: yaml dependency-type: indirect - dependency-name: xo dependency-type: direct:development ... Signed-off-by: dependabot[bot] <support@github.com>
Configuration menu - View commit details
-
Copy full SHA for c123ca3 - Browse repository at this point
Copy the full SHA c123ca3View commit details
Commits on Apr 26, 2023
-
Merge pull request #794 from cure53/dependabot/npm_and_yarn/yaml-and-…
…xo--removed build(deps): bump yaml and xo
Configuration menu - View commit details
-
Copy full SHA for b49972b - Browse repository at this point
Copy the full SHA b49972bView commit details -
Configuration menu - View commit details
-
Copy full SHA for 60202c7 - Browse repository at this point
Copy the full SHA 60202c7View commit details -
Moved feDropShadow to the svg filter allowlist
The reason it was there was because "If I remember correctly there was some mXSS risk connected to those", however I searched and couldn't find one (and neither could cure53 #573 (comment)) and so I change it back.
Configuration menu - View commit details
-
Copy full SHA for d507666 - Browse repository at this point
Copy the full SHA d507666View commit details
Commits on Apr 27, 2023
-
Merge pull request #795 from SelfMadeSystem/patch-1
Moved feDropShadow to the svg filter allowlist
Configuration menu - View commit details
-
Copy full SHA for f3a5f0c - Browse repository at this point
Copy the full SHA f3a5f0cView commit details
Commits on May 1, 2023
-
Configuration menu - View commit details
-
Copy full SHA for 8dc24e4 - Browse repository at this point
Copy the full SHA 8dc24e4View commit details
Commits on May 2, 2023
-
Merge pull request #800 from dejang/configurable-trusted-types-policy
support TRUSTED_TYPES_POLICY configuration option
Configuration menu - View commit details
-
Copy full SHA for bb04683 - Browse repository at this point
Copy the full SHA bb04683View commit details
Commits on May 3, 2023
-
Configuration menu - View commit details
-
Copy full SHA for 2377fc5 - Browse repository at this point
Copy the full SHA 2377fc5View commit details
Commits on May 4, 2023
-
build(deps): bump engine.io and socket.io
Bumps [engine.io](https://github.com/socketio/engine.io) and [socket.io](https://github.com/socketio/socket.io). These dependencies needed to be updated together. Updates `engine.io` from 6.2.1 to 6.4.2 - [Release notes](https://github.com/socketio/engine.io/releases) - [Changelog](https://github.com/socketio/engine.io/blob/main/CHANGELOG.md) - [Commits](socketio/engine.io@6.2.1...6.4.2) Updates `socket.io` from 4.5.3 to 4.6.1 - [Release notes](https://github.com/socketio/socket.io/releases) - [Changelog](https://github.com/socketio/socket.io/blob/main/CHANGELOG.md) - [Commits](socketio/socket.io@4.5.3...4.6.1) --- updated-dependencies: - dependency-name: engine.io dependency-type: indirect - dependency-name: socket.io dependency-type: indirect ... Signed-off-by: dependabot[bot] <support@github.com>
Configuration menu - View commit details
-
Copy full SHA for 8a2ca66 - Browse repository at this point
Copy the full SHA 8a2ca66View commit details
Commits on May 5, 2023
-
Merge pull request #803 from cure53/dependabot/npm_and_yarn/engine.io…
…-and-socket.io-6.4.2 build(deps): bump engine.io and socket.io
Configuration menu - View commit details
-
Copy full SHA for e7895b4 - Browse repository at this point
Copy the full SHA e7895b4View commit details
Commits on May 6, 2023
-
Merge pull request #801 from dejang/refactor-policy-creation-order
create internal trustedTypes policy only if not specified via config object
Configuration menu - View commit details
-
Copy full SHA for ad1bdd4 - Browse repository at this point
Copy the full SHA ad1bdd4View commit details -
Configuration menu - View commit details
-
Copy full SHA for ca67d37 - Browse repository at this point
Copy the full SHA ca67d37View commit details -
Configuration menu - View commit details
-
Copy full SHA for c70f8c5 - Browse repository at this point
Copy the full SHA c70f8c5View commit details
This comparison is taking too long to generate.
Unfortunately it looks like we can’t render this comparison for you right now. It might be too big, or there might be something weird with your repository.
You can try running this command locally to see the comparison on your machine:
git diff 3.0.2...3.0.3