René's URL Explorer Experiment


Title: Bump loofah from 2.2.3 to 2.19.1 in /section_1/MyApp by dependabot[bot] · Pull Request #49 · hyperstack-org/Implementation_tutorial · GitHub

Open Graph Title: Bump loofah from 2.2.3 to 2.19.1 in /section_1/MyApp by dependabot[bot] · Pull Request #49 · hyperstack-org/Implementation_tutorial

X Title: Bump loofah from 2.2.3 to 2.19.1 in /section_1/MyApp by dependabot[bot] · Pull Request #49 · hyperstack-org/Implementation_tutorial

Description: Bumps loofah from 2.2.3 to 2.19.1. Release notes Sourced from loofah's releases. 2.19.1 / 2022-12-13 Security Address CVE-2022-23514, inefficient regular expression complexity. See GHSA-486f-hjj9-9vhh for more information. Address CVE-2022-23515, improper neutralization of data URIs. See GHSA-228g-948r-83gx for more information. Address CVE-2022-23516, uncontrolled recursion. See GHSA-3x8r-x6xp-q4vm for more information. 2.19.0 / 2022-09-14 Features Allow SVG 1.0 color keyword names in CSS attributes. These colors are part of the CSS Color Module Level 3 recommendation released 2022-01-18. [#243] 2.18.0 / 2022-05-11 Features Allow CSS property aspect-ratio. [#236] (Thanks, @​louim!) 2.17.0 / 2022-04-28 Features Allow ARIA attributes. [#232, #233] (Thanks, @​nick-desteffen!) 2.16.0 / 2022-04-01 Features Allow MathML elements menclose and ms, and MathML attributes dir, href, lquote, mathsize, notation, and rquote. [#231] (Thanks, @​nick-desteffen!) 2.15.0 / 2022-03-14 Features Expand set of allowed protocols to include sms:. [#228] (Thanks, @​brendon!) 2.14.0 / 2022-02-11 Features The #to_text method on Loofah::HTML::{Document,DocumentFragment} replaces
line break elements with a newline. [#225] ... (truncated) Changelog Sourced from loofah's changelog. 2.19.1 / 2022-12-13 Security Address CVE-2022-23514, inefficient regular expression complexity. See GHSA-486f-hjj9-9vhh for more information. Address CVE-2022-23515, improper neutralization of data URIs. See GHSA-228g-948r-83gx for more information. Address CVE-2022-23516, uncontrolled recursion. See GHSA-3x8r-x6xp-q4vm for more information. 2.19.0 / 2022-09-14 Features Allow SVG 1.0 color keyword names in CSS attributes. These colors are part of the CSS Color Module Level 3 recommendation released 2022-01-18. [#243] 2.18.0 / 2022-05-11 Features Allow CSS property aspect-ratio. [#236] (Thanks, @​louim!) 2.17.0 / 2022-04-28 Features Allow ARIA attributes. [#232, #233] (Thanks, @​nick-desteffen!) 2.16.0 / 2022-04-01 Features Allow MathML elements menclose and ms, and MathML attributes dir, href, lquote, mathsize, notation, and rquote. [#231] (Thanks, @​nick-desteffen!) 2.15.0 / 2022-03-14 Features Expand set of allowed protocols to include sms:. [#228] (Thanks, @​brendon!) 2.14.0 / 2022-02-11 Features The #to_text method on Loofah::HTML::{Document,DocumentFragment} replaces
line break elements with a newline. [#225] ... (truncated) Commits 3f88063 version bump to v2.19.1 9a8dadb docs: preserve the context and decision record 86f7f63 fix: replace recursive approach to cdata with escaping solution 415677f fix: do not allow "image/svg+xml" in data URIs 84ca20c refactor: extract scrub_uri_attribute for downstream use 47a835a ci: pin psych to v4 until v5 builds properly on CI a6e0a1a fix: replace slow regex attribute check with crass parser ea853aa Merge pull request #247 from flavorjones/flavorjones-downstream-test-rhs e1f2a4b ci: test downstream rails-html-sanitizer 79d65a0 Merge pull request #245 from flavorjones/flavorjones-fix-ruby-2.5-ci Additional commits viewable in compare view Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase. Dependabot commands and options You can trigger Dependabot actions by commenting on this PR: @dependabot rebase will rebase this PR @dependabot recreate will recreate this PR, overwriting any edits that have been made to it @dependabot merge will merge this PR after your CI passes on it @dependabot squash and merge will squash and merge this PR after your CI passes on it @dependabot cancel merge will cancel a previously requested merge and block automerging @dependabot reopen will reopen this PR if it is closed @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) @dependabot use these labels will set the current labels as the default for future PRs for this repo and language @dependabot use these reviewers will set the current reviewers as the default for future PRs for this repo and language @dependabot use these assignees will set the current assignees as the default for future PRs for this repo and language @dependabot use this milestone will set the current milestone as the default for future PRs for this repo and language You can disable automated security fix PRs for this repo from the Security Alerts page.

Open Graph Description: Bumps loofah from 2.2.3 to 2.19.1. Release notes Sourced from loofah's releases. 2.19.1 / 2022-12-13 Security Address CVE-2022-23514, inefficient regular expression complexity. See GHSA-486f...

X Description: Bumps loofah from 2.2.3 to 2.19.1. Release notes Sourced from loofah's releases. 2.19.1 / 2022-12-13 Security Address CVE-2022-23514, inefficient regular expression complexity. See GHSA-...

Opengraph URL: https://github.com/hyperstack-org/Implementation_tutorial/pull/49

X: @github

direct link

Domain: github.com

route-pattern/:user_id/:repository/pull/:id/files(.:format)
route-controllerpull_requests
route-actionfiles
fetch-noncev2:c8f4e407-3543-d8d3-4a75-06ca5281959f
current-catalog-service-hashae870bc5e265a340912cde392f23dad3671a0a881730ffdadd82f2f57d81641b
request-idCD88:2D9848:28EC6F:343AB3:69927FC6
html-safe-noncec762205697552ed8e23bc5ef864eb0b3ed5ee158675063848df2e29e34790abc
visitor-payloadeyJyZWZlcnJlciI6IiIsInJlcXVlc3RfaWQiOiJDRDg4OjJEOTg0ODoyOEVDNkY6MzQzQUIzOjY5OTI3RkM2IiwidmlzaXRvcl9pZCI6Ijc5ODI3NzU5NjIxNTE1ODM2ODYiLCJyZWdpb25fZWRnZSI6ImlhZCIsInJlZ2lvbl9yZW5kZXIiOiJpYWQifQ==
visitor-hmacd20dbfdd679a27ab08031b3b264d484eb3ecc4848df8247481feaa7b2b1b93b3
hovercard-subject-tagpull_request:1164175399
github-keyboard-shortcutsrepository,pull-request-list,pull-request-conversation,pull-request-files-changed,copilot
google-site-verificationApib7-x98H0j5cPqHWwSMm6dNU4GmODRoqxLiDzdx9I
octolytics-urlhttps://collector.github.com/github/collect
analytics-location///pull_requests/show/files
fb:app_id1401488693436528
apple-itunes-appapp-id=1477376905, app-argument=https://github.com/hyperstack-org/Implementation_tutorial/pull/49/files
twitter:imagehttps://avatars.githubusercontent.com/in/29110?s=400&v=4
twitter:cardsummary_large_image
og:imagehttps://avatars.githubusercontent.com/in/29110?s=400&v=4
og:image:altBumps loofah from 2.2.3 to 2.19.1. Release notes Sourced from loofah's releases. 2.19.1 / 2022-12-13 Security Address CVE-2022-23514, inefficient regular expression complexity. See GHSA-486f...
og:site_nameGitHub
og:typeobject
hostnamegithub.com
expected-hostnamegithub.com
None42c603b9d642c4a9065a51770f75e5e27132fef0e858607f5c9cb7e422831a7b
turbo-cache-controlno-preview
diff-viewunified
go-importgithub.com/hyperstack-org/Implementation_tutorial git https://github.com/hyperstack-org/Implementation_tutorial.git
octolytics-dimension-user_id34562730
octolytics-dimension-user_loginhyperstack-org
octolytics-dimension-repository_id182263338
octolytics-dimension-repository_nwohyperstack-org/Implementation_tutorial
octolytics-dimension-repository_publictrue
octolytics-dimension-repository_is_forkfalse
octolytics-dimension-repository_network_root_id182263338
octolytics-dimension-repository_network_root_nwohyperstack-org/Implementation_tutorial
turbo-body-classeslogged-out env-production page-responsive
disable-turbotrue
browser-stats-urlhttps://api.github.com/_private/browser/stats
browser-errors-urlhttps://api.github.com/_private/browser/errors
release848bc6032dcc93a9a7301dcc3f379a72ba13b96e
ui-targetfull
theme-color#1e2327
color-schemelight dark

Links:

Skip to contenthttps://github.com/hyperstack-org/Implementation_tutorial/pull/49/files#start-of-content
https://github.com/
Sign in https://github.com/login?return_to=https%3A%2F%2Fgithub.com%2Fhyperstack-org%2FImplementation_tutorial%2Fpull%2F49%2Ffiles
GitHub CopilotWrite better code with AIhttps://github.com/features/copilot
GitHub SparkBuild and deploy intelligent appshttps://github.com/features/spark
GitHub ModelsManage and compare promptshttps://github.com/features/models
MCP RegistryNewIntegrate external toolshttps://github.com/mcp
ActionsAutomate any workflowhttps://github.com/features/actions
CodespacesInstant dev environmentshttps://github.com/features/codespaces
IssuesPlan and track workhttps://github.com/features/issues
Code ReviewManage code changeshttps://github.com/features/code-review
GitHub Advanced SecurityFind and fix vulnerabilitieshttps://github.com/security/advanced-security
Code securitySecure your code as you buildhttps://github.com/security/advanced-security/code-security
Secret protectionStop leaks before they starthttps://github.com/security/advanced-security/secret-protection
Why GitHubhttps://github.com/why-github
Documentationhttps://docs.github.com
Bloghttps://github.blog
Changeloghttps://github.blog/changelog
Marketplacehttps://github.com/marketplace
View all featureshttps://github.com/features
Enterpriseshttps://github.com/enterprise
Small and medium teamshttps://github.com/team
Startupshttps://github.com/enterprise/startups
Nonprofitshttps://github.com/solutions/industry/nonprofits
App Modernizationhttps://github.com/solutions/use-case/app-modernization
DevSecOpshttps://github.com/solutions/use-case/devsecops
DevOpshttps://github.com/solutions/use-case/devops
CI/CDhttps://github.com/solutions/use-case/ci-cd
View all use caseshttps://github.com/solutions/use-case
Healthcarehttps://github.com/solutions/industry/healthcare
Financial serviceshttps://github.com/solutions/industry/financial-services
Manufacturinghttps://github.com/solutions/industry/manufacturing
Governmenthttps://github.com/solutions/industry/government
View all industrieshttps://github.com/solutions/industry
View all solutionshttps://github.com/solutions
AIhttps://github.com/resources/articles?topic=ai
Software Developmenthttps://github.com/resources/articles?topic=software-development
DevOpshttps://github.com/resources/articles?topic=devops
Securityhttps://github.com/resources/articles?topic=security
View all topicshttps://github.com/resources/articles
Customer storieshttps://github.com/customer-stories
Events & webinarshttps://github.com/resources/events
Ebooks & reportshttps://github.com/resources/whitepapers
Business insightshttps://github.com/solutions/executive-insights
GitHub Skillshttps://skills.github.com
Documentationhttps://docs.github.com
Customer supporthttps://support.github.com
Community forumhttps://github.com/orgs/community/discussions
Trust centerhttps://github.com/trust-center
Partnershttps://github.com/partners
GitHub SponsorsFund open source developershttps://github.com/sponsors
Security Labhttps://securitylab.github.com
Maintainer Communityhttps://maintainers.github.com
Acceleratorhttps://github.com/accelerator
Archive Programhttps://archiveprogram.github.com
Topicshttps://github.com/topics
Trendinghttps://github.com/trending
Collectionshttps://github.com/collections
Enterprise platformAI-powered developer platformhttps://github.com/enterprise
GitHub Advanced SecurityEnterprise-grade security featureshttps://github.com/security/advanced-security
Copilot for BusinessEnterprise-grade AI featureshttps://github.com/features/copilot/copilot-business
Premium SupportEnterprise-grade 24/7 supporthttps://github.com/premium-support
Pricinghttps://github.com/pricing
Search syntax tipshttps://docs.github.com/search-github/github-code-search/understanding-github-code-search-syntax
documentationhttps://docs.github.com/search-github/github-code-search/understanding-github-code-search-syntax
Sign in https://github.com/login?return_to=https%3A%2F%2Fgithub.com%2Fhyperstack-org%2FImplementation_tutorial%2Fpull%2F49%2Ffiles
Sign up https://github.com/signup?ref_cta=Sign+up&ref_loc=header+logged+out&ref_page=%2F%3Cuser-name%3E%2F%3Crepo-name%3E%2Fpull_requests%2Fshow%2Ffiles&source=header-repo&source_repo=hyperstack-org%2FImplementation_tutorial
Reloadhttps://github.com/hyperstack-org/Implementation_tutorial/pull/49/files
Reloadhttps://github.com/hyperstack-org/Implementation_tutorial/pull/49/files
Reloadhttps://github.com/hyperstack-org/Implementation_tutorial/pull/49/files
hyperstack-org https://github.com/hyperstack-org
Implementation_tutorialhttps://github.com/hyperstack-org/Implementation_tutorial
Notifications https://github.com/login?return_to=%2Fhyperstack-org%2FImplementation_tutorial
Fork 0 https://github.com/login?return_to=%2Fhyperstack-org%2FImplementation_tutorial
Star 2 https://github.com/login?return_to=%2Fhyperstack-org%2FImplementation_tutorial
Code https://github.com/hyperstack-org/Implementation_tutorial
Issues 0 https://github.com/hyperstack-org/Implementation_tutorial/issues
Pull requests 34 https://github.com/hyperstack-org/Implementation_tutorial/pulls
Actions https://github.com/hyperstack-org/Implementation_tutorial/actions
Projects 0 https://github.com/hyperstack-org/Implementation_tutorial/projects
Security 0 https://github.com/hyperstack-org/Implementation_tutorial/security
Insights https://github.com/hyperstack-org/Implementation_tutorial/pulse
Code https://github.com/hyperstack-org/Implementation_tutorial
Issues https://github.com/hyperstack-org/Implementation_tutorial/issues
Pull requests https://github.com/hyperstack-org/Implementation_tutorial/pulls
Actions https://github.com/hyperstack-org/Implementation_tutorial/actions
Projects https://github.com/hyperstack-org/Implementation_tutorial/projects
Security https://github.com/hyperstack-org/Implementation_tutorial/security
Insights https://github.com/hyperstack-org/Implementation_tutorial/pulse
Sign up for GitHub https://github.com/signup?return_to=%2Fhyperstack-org%2FImplementation_tutorial%2Fissues%2Fnew%2Fchoose
terms of servicehttps://docs.github.com/terms
privacy statementhttps://docs.github.com/privacy
Sign inhttps://github.com/login?return_to=%2Fhyperstack-org%2FImplementation_tutorial%2Fissues%2Fnew%2Fchoose
dependabothttps://github.com/apps/dependabot
masterhttps://github.com/hyperstack-org/Implementation_tutorial/tree/master
dependabot/bundler/section_1/MyApp/loofah-2.19.1https://github.com/hyperstack-org/Implementation_tutorial/tree/dependabot/bundler/section_1/MyApp/loofah-2.19.1
Conversation 0 https://github.com/hyperstack-org/Implementation_tutorial/pull/49
Commits 1 https://github.com/hyperstack-org/Implementation_tutorial/pull/49/commits
Checks 0 https://github.com/hyperstack-org/Implementation_tutorial/pull/49/checks
Files changed https://github.com/hyperstack-org/Implementation_tutorial/pull/49/files
Please reload this pagehttps://github.com/hyperstack-org/Implementation_tutorial/pull/49/files
Bump loofah from 2.2.3 to 2.19.1 in /section_1/MyApp https://github.com/hyperstack-org/Implementation_tutorial/pull/49/files#top
Show all changes 1 commit https://github.com/hyperstack-org/Implementation_tutorial/pull/49/files
befa314 Bump loofah from 2.2.3 to 2.19.1 in /section_1/MyApp dependabot[bot] Dec 14, 2022 https://github.com/hyperstack-org/Implementation_tutorial/pull/49/commits/befa314a60eb6336f304759af089739ff60c35c9
Clear filters https://github.com/hyperstack-org/Implementation_tutorial/pull/49/files
Please reload this pagehttps://github.com/hyperstack-org/Implementation_tutorial/pull/49/files
Please reload this pagehttps://github.com/hyperstack-org/Implementation_tutorial/pull/49/files
section_1/MyApp/Gemfile.lockhttps://github.com/hyperstack-org/Implementation_tutorial/pull/49/files#diff-e37667c4fd38b1be1efc90676bec60aba8602f5fe8df0c6d3815539e73a5775c
View file https://github.com/hyperstack-org/Implementation_tutorial/blob/befa314a60eb6336f304759af089739ff60c35c9/section_1/MyApp/Gemfile.lock
Open in desktop https://desktop.github.com
https://github.co/hiddenchars
https://github.com/hyperstack-org/Implementation_tutorial/pull/49/{{ revealButtonHref }}
https://github.com/hyperstack-org/Implementation_tutorial/pull/49/files#diff-e37667c4fd38b1be1efc90676bec60aba8602f5fe8df0c6d3815539e73a5775c
https://github.com/hyperstack-org/Implementation_tutorial/pull/49/files#diff-e37667c4fd38b1be1efc90676bec60aba8602f5fe8df0c6d3815539e73a5775c
https://github.com/hyperstack-org/Implementation_tutorial/pull/49/files#diff-e37667c4fd38b1be1efc90676bec60aba8602f5fe8df0c6d3815539e73a5775c
https://github.com/hyperstack-org/Implementation_tutorial/pull/49/files#diff-e37667c4fd38b1be1efc90676bec60aba8602f5fe8df0c6d3815539e73a5775c
https://github.com/hyperstack-org/Implementation_tutorial/pull/49/files#diff-e37667c4fd38b1be1efc90676bec60aba8602f5fe8df0c6d3815539e73a5775c
https://github.com/hyperstack-org/Implementation_tutorial/pull/49/files#diff-e37667c4fd38b1be1efc90676bec60aba8602f5fe8df0c6d3815539e73a5775c
https://github.com/hyperstack-org/Implementation_tutorial/pull/49/files#diff-e37667c4fd38b1be1efc90676bec60aba8602f5fe8df0c6d3815539e73a5775c
https://github.com/hyperstack-org/Implementation_tutorial/pull/49/files#diff-e37667c4fd38b1be1efc90676bec60aba8602f5fe8df0c6d3815539e73a5775c
https://github.com
Termshttps://docs.github.com/site-policy/github-terms/github-terms-of-service
Privacyhttps://docs.github.com/site-policy/privacy-policies/github-privacy-statement
Securityhttps://github.com/security
Statushttps://www.githubstatus.com/
Communityhttps://github.community/
Docshttps://docs.github.com/
Contacthttps://support.github.com?tags=dotcom-footer

Viewport: width=device-width


URLs of crawlers that visited me.