From f7c8a21a5c67ba2f92e96bb708d34d2bfb7cb861 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Fri, 25 Oct 2024 13:41:56 +0000 Subject: [PATCH] chore(deps): bump dompurify from 0.8.9 to 2.5.4 Bumps [dompurify](https://github.com/cure53/DOMPurify) from 0.8.9 to 2.5.4. - [Release notes](https://github.com/cure53/DOMPurify/releases) - [Commits](https://github.com/cure53/DOMPurify/compare/0.8.9...2.5.4) --- updated-dependencies: - dependency-name: dompurify dependency-type: direct:production ... Signed-off-by: dependabot[bot] --- package.json | 2 +- yarn.lock | 6 +++--- 2 files changed, 4 insertions(+), 4 deletions(-) diff --git a/package.json b/package.json index be7fd7d99..f4a48322d 100644 --- a/package.json +++ b/package.json @@ -49,7 +49,7 @@ "d3-scale": "^1.0.4", "d3-shape": "^1.0.4", "diff-match-patch": "^1.0.0", - "dompurify": "^0.8.5", + "dompurify": "^2.5.4", "font-awesome": "^4.7.0", "formsy-react": "^0.19.2", "jasmine": "^2.6.0", diff --git a/yarn.lock b/yarn.lock index 7051a6ac4..c02b4f936 100644 --- a/yarn.lock +++ b/yarn.lock @@ -2217,9 +2217,9 @@ domhandler@^2.3.0: dependencies: domelementtype "1" -dompurify@^0.8.5: - version "0.8.9" - resolved "https://registry.yarnpkg.com/dompurify/-/dompurify-0.8.9.tgz#fcec021f917b51f42a78af71d7875a7ba514fd64" +dompurify@^2.5.4: + version "2.5.4" + resolved "https://registry.yarnpkg.com/dompurify/-/dompurify-2.5.4.tgz#347e91070963b22db31c7c8d0ce9a0a2c3c08746" domutils@1.1: version "1.1.6"