•  
      request #13009 Update DOMPurify to 1.0.10 due to security issues
    Infos
    #13009
    Thomas Gerbet (tgerbet)
    2019-02-20 14:10
    2019-02-20 08:43
    13111
    Details
    Update DOMPurify to 1.0.10 due to security issues
    DOMPurify 1.0.10 has been released with some security fixes. The usage of the library in the Tuleap codebase are currently not impacted by the security issues.

    Tuleap uses DOMPurify 1.0.9 and 1.0.8, the 1.0.9 also comes with nice improvements like a squashed memory leak and support for trusted types.


    Release note:
    https://github.com/cure53/DOMPurify/releases/tag/1.0.10
    https://github.com/cure53/DOMPurify/releases/tag/1.0.9
    Empty
    Other
    All
    Empty
    Empty
    Stage
    Empty
    Closed
    2019-02-20
    Attachments
    Empty
    References

    List of items referenced by or referencing this item.

    Artifact Tracker v5

    Follow-ups