Skip to content

FOLIO-4474: R1-2025-okapi: dompurify ^3.2.7 fixing CVE-2025-15599 XSS#3581

Merged
julianladisch merged 1 commit intoR1-2025-okapifrom
R1-2025-okapi-FOLIO-4474
Apr 10, 2026
Merged

FOLIO-4474: R1-2025-okapi: dompurify ^3.2.7 fixing CVE-2025-15599 XSS#3581
julianladisch merged 1 commit intoR1-2025-okapifrom
R1-2025-okapi-FOLIO-4474

Conversation

@julianladisch
Copy link
Copy Markdown
Contributor

https://folio-org.atlassian.net/browse/FOLIO-4474

Bumping dompurify to ^3.2.7 fixes

@zburke
Copy link
Copy Markdown
Member

zburke commented Apr 10, 2026

Why did this build run yarn install while PR #3585 ran yarn install --ignore-scripts?

@dcrossleyau
Copy link
Copy Markdown
Contributor

Perhaps because this PR was initiated three weeks ago (before the introduction to the Jenkins pipeline of that yarn option), whilst the other PR is new.

@julianladisch julianladisch merged commit 13fcbaf into R1-2025-okapi Apr 10, 2026
3 checks passed
@julianladisch julianladisch deleted the R1-2025-okapi-FOLIO-4474 branch April 10, 2026 07:31
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants