2.3.3
Security
- Update the
enshrined/svg-sanitizepackage from0.19.0to0.22.0to fix an issue with case-insensitive attributes slipping through the sanitiser and address PHP 8.4 deprecation warnings (props @darylldoyle, @sudar, @georgestephanis, @dkotter, @realazizk via #268, #272). - Bump
form-datafrom 4.0.0 to 4.0.4 (props @dependabot, @faisal-alvi via #270). - Bump
tmpfrom 0.2.3 to 0.2.5 and@inquirer/editorfrom 4.2.9 to 4.2.16 (props @dependabot, @dkotter via #271).
Developer
- Configure dependabot to automatically create PR for
enshrined/svg-sanitize(props @sudar, @georgestephanis, @dkotter, @jeffpaul via #269).
New Contributors
- @georgestephanis made their first contribution in #268
- @sudar made their first contribution in #268
- @realazizk made their first contribution in #272
Full Changelog: 2.3.2...2.3.3
View closed items in the milestone.