apps
apps copied to clipboard
chore(deps-dev): bump happy-dom from 20.0.0 to 20.0.10 in /apps/sap-commerce-cloud/frontend
Bumps happy-dom from 20.0.0 to 20.0.10.
Release notes
Sourced from happy-dom's releases.
v20.0.10
:construction_worker_man: Patch fixes
- Clears event listeners on all nodes when a Window is closed to prevent memory leaks - By
@TrevorBurnhamin task #1892v20.0.9
:construction_worker_man: Patch fixes
- Elements should only be upgraded to a custom element (web component) when the element is in the document - By
@capricorn86in task #1945
- This will also improve the memory footprint as the listeners prevented nodes from being garbage collected until the document was closed
v20.0.8
:construction_worker_man: Patch fixes
- Fixes issue where
previousSibling()andnextSibling()didn't work inHTMLSelectElementandHTMLFormElement- By@capricorn86in task #1939- Fixes issue where parsing an item without a permitted parent (e.g.
<tr>) should be valid inside a\<template>element - By@capricorn86in task #1939v20.0.7
:construction_worker_man: Patch fixes
- Fix incorrect handling of
>=operator in media query parser - By@lkritsimasin task #1869v20.0.6
:construction_worker_man: Patch fixes
- Changes implementation for
DOMTokenList.forEach(),Headers.forEach()andNodeList.forEach()to be spec compliant - By@ikeyanin task #1858v20.0.5
:construction_worker_man: Patch fixes
- The setter
TreeWalker.currentNodeshould validate if the value is aNode- By@capricorn86in task #1935v20.0.4
:construction_worker_man: Patch fixes
v20.0.3
:construction_worker_man: Patch fixes
- Moves URL resolution to after checking if module preloading is enabled to prevent URL errors to be thrown when unresolvable - By
@iam-medvedevin task #1851- Fixes issue where CSS variables aren't parsed correctly when inside CSS functions - By
@fimionin task #1837v20.0.2
:construction_worker_man: Patch fixes
- Adds frozen intrinsics flag to workers in
@happy-dom/server-renderer- By@capricorn86in task #1934v20.0.1
:construction_worker_man: Patch fixes
- Adds warning for environment with unfrozen intrinsics (builtins) when JavaScript evaluation is enabled- By
@capricorn86in task #1932
- A security advisory has been reported showing that the recommended preventive measure of running Node.js with
--disallow-code-generation-from-stringswasn't enough to protect against attackers escaping the VM context and accessing process-level functions. Big thanks to@cristianstaicufor reporting this!- The documentation for how to run Happy DOM with JavaScript evaluation enabled in a safer way has been updated. Read more about it in the Wiki
Commits
2cc0443fix: #1892 Clears event listeners on all Nodes when a window to prevent mem...70dde49fix: #1945 Elements should only be upgraded to a custom element when the el...6070199fix: #1939 Fixes issue where HTMLSelectElement previousSibling and nextSibl...7852969fix: #1869 Fix incorrect handling of>=operator in media query parser (#...aab20c3fix: #1858forEachshould acceptcallback'sthisvalue and pass `this...0eb4e65fix: #1935 The setter TreeWalker currentNode should validate if the value i...5da6c37fix: #1859 Only add buttons to FormData if they are the submitter (#1860)45d6948chore: #1856 Change IterableIterator return type to ArrayIterator (#1857)9e1bd67fix: #1851 Moves URL resolution to after checking if module preloading is e...620fb2ffix: #1837 Fixes issue where CSS var() isn't parsed correctly when inside C...- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) You can disable automated security fix PRs for this repo from the Security Alerts page.