From d8b08dfa655233dfa53d7ae21d87ca7cd4048c4b Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Fri, 18 Dec 2020 22:53:22 +0000 Subject: [PATCH] Bump dompurify from 0.8.9 to 2.0.17 Bumps [dompurify](https://github.com/cure53/DOMPurify) from 0.8.9 to 2.0.17. - [Release notes](https://github.com/cure53/DOMPurify/releases) - [Commits](https://github.com/cure53/DOMPurify/compare/0.8.9...2.0.17) Signed-off-by: dependabot[bot] --- package-lock.json | 6 +++--- package.json | 2 +- 2 files changed, 4 insertions(+), 4 deletions(-) diff --git a/package-lock.json b/package-lock.json index 966bef7..11928ca 100644 --- a/package-lock.json +++ b/package-lock.json @@ -711,9 +711,9 @@ } }, "dompurify": { - "version": "0.8.9", - "resolved": "https://registry.npmjs.org/dompurify/-/dompurify-0.8.9.tgz", - "integrity": "sha1-/OwCH5F7UfQqeK9x14dae6UU/WQ=" + "version": "2.0.17", + "resolved": "https://registry.npmjs.org/dompurify/-/dompurify-2.0.17.tgz", + "integrity": "sha512-nNwwJfW55r8akD8MSFz6k75bzyT2y6JEa1O3JrZFBf+Y5R9JXXU4OsRl0B9hKoPgHTw2b7ER5yJ5Md97MMUJPg==" }, "duplexer": { "version": "0.1.1", diff --git a/package.json b/package.json index 68ed2f1..366a443 100644 --- a/package.json +++ b/package.json @@ -18,7 +18,7 @@ "@types/parse-link-header": "^1.0.0", "@types/winston": "^2.3.7", "accepts": "^1.3.3", - "dompurify": "^0.8.4", + "dompurify": "^2.0.17", "highlight.js": "^9.15.6", "jsdom": "^9.9.1", "jsonld": "^0.4.11",