Skip to content

build(deps): bump dompurify from 3.4.1 to 3.4.2#5215

Open
dependabot[bot] wants to merge 1 commit into
developmentfrom
dependabot/npm_and_yarn/dompurify-3.4.2
Open

build(deps): bump dompurify from 3.4.1 to 3.4.2#5215
dependabot[bot] wants to merge 1 commit into
developmentfrom
dependabot/npm_and_yarn/dompurify-3.4.2

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot Bot commented on behalf of github May 1, 2026

Bumps dompurify from 3.4.1 to 3.4.2.

Release notes

Sourced from dompurify's releases.

DOMPurify 3.4.2

  • Fixed an issue with URI validation on attributes allowed via ADD_ATTR callback, thanks @​nelstrom
  • Fixed an issue with source maps referring to non-existing files, thanks @​cmdcolin
  • Updated existing workflows, fuzzer, release signing, etc., added more tests
  • Bumped several dependencies where possible
Commits

@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels May 1, 2026
@netlify
Copy link
Copy Markdown

netlify Bot commented May 1, 2026

Deploy Preview for highestgoodnetwork-dev ready!

Name Link
🔨 Latest commit a0a7b40
🔍 Latest deploy log https://app.netlify.com/projects/highestgoodnetwork-dev/deploys/69fe4bf78f0b41000801807c
😎 Deploy Preview https://deploy-preview-5215--highestgoodnetwork-dev.netlify.app
📱 Preview on mobile
Toggle QR Code...

QR Code

Use your smartphone camera to open QR code link.
🤖 Make changes Run an agent on this branch

To edit notification comments on pull requests, go to your Netlify project configuration.

@dependabot dependabot Bot changed the title chore(deps): bump dompurify from 2.5.9 to 3.4.2 chore(deps): bump dompurify from 3.4.1 to 3.4.2 May 1, 2026
@dependabot dependabot Bot force-pushed the dependabot/npm_and_yarn/dompurify-3.4.2 branch 2 times, most recently from b69bd1c to 841b8fe Compare May 2, 2026 20:13
Bumps [dompurify](https://github.com/cure53/DOMPurify) from 3.4.1 to 3.4.2.
- [Release notes](https://github.com/cure53/DOMPurify/releases)
- [Commits](cure53/DOMPurify@3.4.1...3.4.2)

---
updated-dependencies:
- dependency-name: dompurify
  dependency-version: 3.4.2
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot changed the title chore(deps): bump dompurify from 3.4.1 to 3.4.2 build(deps): bump dompurify from 3.4.1 to 3.4.2 May 8, 2026
@dependabot dependabot Bot force-pushed the dependabot/npm_and_yarn/dompurify-3.4.2 branch from 841b8fe to a0a7b40 Compare May 8, 2026 20:47
@sonarqubecloud
Copy link
Copy Markdown

sonarqubecloud Bot commented May 8, 2026

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants