Skip to content

[release-1.9] chore(deps): bump to dompurify to >3.4.8#5146

Draft
albarbaro wants to merge 2 commits into
redhat-developer:release-1.9from
albarbaro:dompurify/release-1.9
Draft

[release-1.9] chore(deps): bump to dompurify to >3.4.8#5146
albarbaro wants to merge 2 commits into
redhat-developer:release-1.9from
albarbaro:dompurify/release-1.9

Conversation

@albarbaro

Copy link
Copy Markdown
Member

Description

Addresses CVE-2026-49978 CVE-2026-41240

Bump dompurify and add resolution for monaco-editor v0.56.0 (which includes the dompurify bump we were waiting for).

Which issue(s) does this PR fix

PR acceptance criteria

Please make sure that the following steps are complete:

  • GitHub Actions are completed and successful
  • Unit Tests are updated and passing
  • E2E Tests are updated and passing
  • Documentation is updated if necessary (requirement for new features)
  • Add a screenshot if the change is UX/UI related

How to test changes / Special notes to the reviewer

@openshift-ci
openshift-ci Bot requested review from alizard0 and dzemanov July 24, 2026 09:51
@github-actions

Copy link
Copy Markdown
Contributor

The container image build workflow finished with status: failure.

@alizard0 alizard0 left a comment

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

lgtm

@github-actions

Copy link
Copy Markdown
Contributor

The container image build workflow finished with status: failure.

@albarbaro
albarbaro marked this pull request as draft July 24, 2026 11:07
@github-actions

Copy link
Copy Markdown
Contributor

The container image build workflow finished with status: failure.

@openshift-ci openshift-ci Bot removed the lgtm label Jul 24, 2026
@openshift-ci

openshift-ci Bot commented Jul 24, 2026

Copy link
Copy Markdown

New changes are detected. LGTM label has been removed.

@sonarqubecloud

Copy link
Copy Markdown

@github-actions

Copy link
Copy Markdown
Contributor

Image was built and published successfully. It is available at:

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants