Path to this page:
Subject: CVS commit: pkgsrc/textproc/py-html-sanitizer
From: Adam Ciarcinski
Date: 2024-05-27 16:41:38
Message id: 20240527144138.AA010FA2C@cvs.NetBSD.org
Log Message:
py-html-sanitizer: updated to 2.4.4
Next version
- **Vulnerability:** Fixed an issue where normalizing unicode too late in the
process would keep disallowed tags when using specially crafted HTML. Fixed
in 2.4.2.
- Fixed missing whitespace while merging adjacent tags.
2.4 (2024-04-01)
- Fixed an edge case where ``br`` tag attributes weren't removed if the br tag
appears first.
- Updated the ``lxml`` dependency to 5.2 and added the now-required
``lxml[html_clean]`` extra.
Files: