Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[stable20] Bump dompurify to 2.2.2 #24153

Merged
merged 2 commits into from
Nov 16, 2020
Merged

[stable20] Bump dompurify to 2.2.2 #24153

merged 2 commits into from
Nov 16, 2020

Conversation

juliusknorr
Copy link
Member

Somehow they are not marked as security updates therefore dependabot is not bumping on stable branches:

https://github.com/cure53/DOMPurify/releases

Signed-off-by: Julius Härtl <jus@bitgrid.net>
Signed-off-by: Julius Härtl <jus@bitgrid.net>
@juliusknorr juliusknorr added bug 3. to review Waiting for reviews labels Nov 16, 2020
@juliusknorr juliusknorr added this to the Nextcloud 20.0.2 milestone Nov 16, 2020
@juliusknorr juliusknorr changed the title Bump dompurify to 2.2.2 [stable20] Bump dompurify to 2.2.2 Nov 16, 2020
@juliusknorr juliusknorr mentioned this pull request Nov 16, 2020
1 task
@skjnldsv skjnldsv merged commit f4d92d2 into stable20 Nov 16, 2020
@skjnldsv skjnldsv deleted the dependencies/dompurify branch November 16, 2020 12:12
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
3. to review Waiting for reviews bug
Projects
None yet
Development

Successfully merging this pull request may close these issues.

4 participants