Bump rails-html-sanitizer from 1.0.3 to 1.3.0 in /def
Bumps rails-html-sanitizer from 1.0.3 to 1.3.0.
Release notes
Sourced from rails-html-sanitizer's releases.
v1.3.0
Address deprecations in Loofah 2.3.0.
Josh Goodall
v1.2.0
Remove needless
white_list_sanitizerdeprecation.By deprecating this, we were forcing Rails 5.2 to be updated or spew deprecations that users could do nothing about.
That's pointless and I'm sorry for adding that!
Now there's no deprecation warning and Rails 5.2 works out of the box, while Rails 6 can use the updated naming.
Kasper Timm Hansen
v1.1.0
Add
safe_list_sanitizerand deprecatewhite_list_sanitizerto be removed in 1.2.0. rails/rails-html-sanitizer#87Juanito Fatas
Remove
hreffrom LinkScrubber'stagsas it's not an element. rails/rails-html-sanitizer#92Juanito Fatas
Explain that we don't need to bump Loofah here if there's CVEs. https://github.com/rails/rails-html-sanitizer/commit/d4d823c617fdd0064956047f7fbf23fff305a69b
Kasper Timm Hansen
v1.0.4
- Fix CVE-2018-3741.
Changelog
Sourced from rails-html-sanitizer's changelog.
1.3.0
Address deprecations in Loofah 2.3.0.
Josh Goodall
1.2.0
Remove needless
white_list_sanitizerdeprecation.By deprecating this, we were forcing Rails 5.2 to be updated or spew deprecations that users could do nothing about.
That's pointless and I'm sorry for adding that!
Now there's no deprecation warning and Rails 5.2 works out of the box, while Rails 6 can use the updated naming.
Kasper Timm Hansen
1.1.0
Add
safe_list_sanitizerand deprecatewhite_list_sanitizerto be removed in 1.2.0. rails/rails-html-sanitizer#87Juanito Fatas
Remove
hreffrom LinkScrubber'stagsas it's not an element. rails/rails-html-sanitizer#92Juanito Fatas
Explain that we don't need to bump Loofah here if there's CVEs. https://github.com/rails/rails-html-sanitizer/commit/d4d823c617fdd0064956047f7fbf23fff305a69b
Kasper Timm Hansen
1.0.1
- Added support for Rails 4.2.0.beta2 and above
1.0.0
- First release.
Commits
-
51dc564v1.3.0 -
65b9f88Merge pull request #102 from orien/gem-metadata -
845da04Add project metadata to the gemspec -
43a87f5Match Loofah's API changes. -
b8ea80dPrepare 1.2.0 -
5581871Remove needless white list sanitizer deprecations -
1a02a14Merge pull request #96 from olleolleolle/patch-1 -
31cf584CI: Drop unused sudo: false Travis directive -
0b64e50Merge pull request #95 from rwojnarowski/patch-1 -
21da038Deprecated warning text, missing space - Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
-
@dependabot rebasewill rebase this PR -
@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it -
@dependabot mergewill merge this PR after your CI passes on it -
@dependabot squash and mergewill squash and merge this PR after your CI passes on it -
@dependabot cancel mergewill cancel a previously requested merge and block automerging -
@dependabot reopenwill reopen this PR if it is closed -
@dependabot ignore this [patch|minor|major] versionwill close this PR and stop Dependabot creating any more for this minor/major version (unless you reopen the PR or upgrade to it yourself) -
@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) -
@dependabot use these labelswill set the current labels as the default for future PRs for this repo and language -
@dependabot use these reviewerswill set the current reviewers as the default for future PRs for this repo and language -
@dependabot use these assigneeswill set the current assignees as the default for future PRs for this repo and language -
@dependabot use this milestonewill set the current milestone as the default for future PRs for this repo and language
You can disable automated security fix PRs for this repo from the Security Alerts page.