From f97aa05ba65c458c2b5cd98eb6f18f171de0f45b Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Wed, 4 Mar 2026 22:08:46 +0000 Subject: [PATCH] Bump dompurify and @types/dompurify in /dotcom-rendering Bumps [dompurify](https://github.com/cure53/DOMPurify) and [@types/dompurify](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/dompurify). These dependencies needed to be updated together. Updates `dompurify` from 3.2.4 to 3.3.1 - [Release notes](https://github.com/cure53/DOMPurify/releases) - [Commits](https://github.com/cure53/DOMPurify/compare/3.2.4...3.3.1) Updates `@types/dompurify` from 3.0.2 to 3.2.0 - [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases) - [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/dompurify) --- updated-dependencies: - dependency-name: dompurify dependency-version: 3.3.1 dependency-type: direct:production - dependency-name: "@types/dompurify" dependency-version: 3.2.0 dependency-type: direct:production ... Signed-off-by: dependabot[bot] --- dotcom-rendering/package.json | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/dotcom-rendering/package.json b/dotcom-rendering/package.json index 513c7fb3897..b2f25389b76 100644 --- a/dotcom-rendering/package.json +++ b/dotcom-rendering/package.json @@ -63,7 +63,7 @@ "@types/clean-css": "4.2.11", "@types/compression": "1.7.5", "@types/connect": "3.4.38", - "@types/dompurify": "3.0.2", + "@types/dompurify": "3.2.0", "@types/express": "5.0.6", "@types/he": "1.2.0", "@types/html-minifier-terser": "7.0.2", @@ -101,7 +101,7 @@ "constructs": "10.5.1", "cpy": "11.0.0", "css-loader": "7.1.2", - "dompurify": "3.2.4", + "dompurify": "3.3.1", "dynamic-import-polyfill": "0.1.1", "eslint": "8.57.1", "eslint-plugin-custom-elements": "0.0.8",