Skip to content

deps: svgo 4.1.0 (CVE-2026-84369, CVE-2026-84370) - #179

Merged
ronaldtse merged 1 commit into
mainfrom
bump-svgo
Sep 9, 2026
Merged

ronaldtse merged 1 commit into
mainfrom
bump-svgo

Conversation

@ronaldtse

Copy link
Copy Markdown
Contributor

Both open Dependabot alerts on the site are svgo removeScripts sanitization bypasses, fixed in 4.1.0. Lockfile bumped to 4.1.0; build clean.

Both open Dependabot alerts on the site are svgo removeScripts sanitization bypasses, fixed in 4.1.0. Lockfile bumped; build clean.
@ronaldtse
ronaldtse merged commit d9cfa62 into main Sep 9, 2026
4 checks passed
@ronaldtse
ronaldtse deleted the bump-svgo branch September 9, 2026 11:35
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant