From 36f99306fb9e75bb0f158e257ace3eb3048ae6f9 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Sat, 26 Apr 2025 01:24:26 +0000 Subject: [PATCH] chore(deps): bump dompurify from 2.5.4 to 3.2.4 Bumps [dompurify](https://github.com/cure53/DOMPurify) from 2.5.4 to 3.2.4. - [Release notes](https://github.com/cure53/DOMPurify/releases) - [Commits](https://github.com/cure53/DOMPurify/compare/2.5.4...3.2.4) --- updated-dependencies: - dependency-name: dompurify dependency-type: direct:production ... Signed-off-by: dependabot[bot] --- package-lock.json | 19 +++++++++++++++---- package.json | 2 +- 2 files changed, 16 insertions(+), 5 deletions(-) diff --git a/package-lock.json b/package-lock.json index 6c2c2ee01..350effcf8 100644 --- a/package-lock.json +++ b/package-lock.json @@ -13,7 +13,7 @@ "coveo.analytics": "^0.7.0", "d3": "^5.16.0", "d3-scale": "^2.2.2", - "dompurify": "^2.4.0", + "dompurify": "^3.2.4", "es6-promise": "^4.0.5", "exponential-backoff": "^2.2.0", "jstimezonedetect": "^1.0.6", @@ -826,6 +826,13 @@ "@types/node": "*" } }, + "node_modules/@types/trusted-types": { + "version": "2.0.7", + "resolved": "https://registry.npmjs.org/@types/trusted-types/-/trusted-types-2.0.7.tgz", + "integrity": "sha512-ScaPdn1dQczgbl0QFTeTOmVHFULt394XJgOQNoyVhZ6r2vLnMLJfBPd53SB52T/3G36VI1/g2MZaX0cwDuXsfw==", + "license": "MIT", + "optional": true + }, "node_modules/@types/underscore": { "version": "1.8.3", "resolved": "https://registry.npmjs.org/@types/underscore/-/underscore-1.8.3.tgz", @@ -4149,9 +4156,13 @@ } }, "node_modules/dompurify": { - "version": "2.5.4", - "resolved": "https://registry.npmjs.org/dompurify/-/dompurify-2.5.4.tgz", - "integrity": "sha512-l5NNozANzaLPPe0XaAwvg3uZcHtDBnziX/HjsY1UcDj1MxTK8Dd0Kv096jyPK5HRzs/XM5IMj20dW8Fk+HnbUA==" + "version": "3.2.4", + "resolved": "https://registry.npmjs.org/dompurify/-/dompurify-3.2.4.tgz", + "integrity": "sha512-ysFSFEDVduQpyhzAob/kkuJjf5zWkZD8/A9ywSp1byueyuCfHamrCBa14/Oc2iiB0e51B+NpxSl5gmzn+Ms/mg==", + "license": "(MPL-2.0 OR Apache-2.0)", + "optionalDependencies": { + "@types/trusted-types": "^2.0.7" + } }, "node_modules/domutils": { "version": "1.5.1", diff --git a/package.json b/package.json index 5cbc7b657..487d4aae1 100644 --- a/package.json +++ b/package.json @@ -157,7 +157,7 @@ "coveo.analytics": "^0.7.0", "d3": "^5.16.0", "d3-scale": "^2.2.2", - "dompurify": "^2.4.0", + "dompurify": "^3.2.4", "es6-promise": "^4.0.5", "exponential-backoff": "^2.2.0", "jstimezonedetect": "^1.0.6",