markdown
markdown copied to clipboard
chore(deps): bump hast-util-sanitize from 4.0.0 to 5.0.1
Bumps hast-util-sanitize from 4.0.0 to 5.0.1.
Release notes
Sourced from hast-util-sanitize's releases.
5.0.1
Fix
- e9dba32 Remove
rel
,target
from attributes, which don’t work- 63c34b6 Fix to allow
*
attributes too if specific also specifiedFull Changelog: https://github.com/syntax-tree/hast-util-sanitize/compare/5.0.0...5.0.1
5.0.0
Change
- 5fe3cd3 Update
@types/hast
, utilities migrate: update too- d4b5598 Change to require Node.js 16 migrate: update too
- a139abd Change to use
exports
migrate: don’t use private APIs- ffee970 Update schema to reflect changes to GH migrate: everything’s safe, GH is safe, but make sure to check if you’re super worried
- 211cffa Fix to remove
name
ondoctype
migrate: update to somewhat recent utilities which you likely already do!Full Changelog: https://github.com/syntax-tree/hast-util-sanitize/compare/4.1.0...5.0.0
4.1.0
- 7ca7c4c Add support for regexes to allow property values by
@aprendendofelipe
in syntax-tree/hast-util-sanitize#26- b1e81c6 Add docs to types
- 4558e61 Add improved docs
Full Changelog: https://github.com/syntax-tree/hast-util-sanitize/compare/4.0.0...4.1.0
Commits
5473a15
5.0.1e9dba32
Removerel
,target
from attributes, which don’t work63c34b6
Fix to allow*
attributes too if specific also specified7fa09c8
Refactor some code84d6a21
Update dev-dependenciesfafff8a
Update dev-dependencies517828b
Add.gitattributes
23295ff
5.0.0d4b5598
Change to require Node.js 16a139abd
Change to useexports
- Additional commits viewable in compare view
You can trigger a rebase of this PR by commenting @dependabot rebase
.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
-
@dependabot rebase
will rebase this PR -
@dependabot recreate
will recreate this PR, overwriting any edits that have been made to it -
@dependabot merge
will merge this PR after your CI passes on it -
@dependabot squash and merge
will squash and merge this PR after your CI passes on it -
@dependabot cancel merge
will cancel a previously requested merge and block automerging -
@dependabot reopen
will reopen this PR if it is closed -
@dependabot close
will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually -
@dependabot show <dependency name> ignore conditions
will show all of the ignore conditions of the specified dependency -
@dependabot ignore <dependency name> major version
will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself) -
@dependabot ignore <dependency name> minor version
will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself) -
@dependabot ignore <dependency name>
will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself) -
@dependabot unignore <dependency name>
will remove all of the ignore conditions of the specified dependency -
@dependabot unignore <dependency name> <ignore condition>
will remove the ignore condition of the specified dependency and ignore conditions
Note Automatic rebases have been disabled on this pull request as it has been open for over 30 days.