[Security] Bump loofah from 2.2.2 to 2.2.3 #8
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Bumps loofah from 2.2.2 to 2.2.3. This update includes security fixes.
Vulnerabilities fixed
Sourced from The Ruby Advisory Database.
Release notes
Sourced from loofah's releases.
Changelog
Sourced from loofah's changelog.
Commits
cb3dbfa
version bump to v2.2.3 and update CHANGELOG71e4b54
remove the svg animate attributefrom
from the allowlist3556e2b
add formatting to CHANGELOGac7c50d
updated mailing list to a new Google Groupde6b0f3
extract msword html data into an asset fileWould still love you to use Dependabot on this repo - it's free and will make your life better, I promise! You'd also be helping us help the community, because it would let us feed back any bugs your test suite surfaces to maintainers.