chore(deps): bump jodit from 4.2.24 to 4.13.16 in /plugins/jodit-html-editor - #4758
Conversation
|
|
View your CI Pipeline Execution ↗ for commit a7793f8
💡 Verify your cache is correct by running tasks in a sandbox. Read docs ↗ ☁️ Nx Cloud last updated this comment at |
There was a problem hiding this comment.
Cursor Bugbot has reviewed your changes using default effort and found 1 potential issue.
❌ Bugbot Autofix is OFF. To automatically fix reported issues with cloud agents, enable autofix in the Cursor dashboard.
Reviewed by Cursor Bugbot for commit bd1d221. Configure here.
| "integrity": "sha512-GMtBILt+UcaHFmLY5nx8hEtWu/ZHzb2Ozs1sYIN7Iyy07XCA102Y8L2ViHgTn9N1s7+Bq5KNAqB4NlAg8JDlxw==", | ||
| "funding": { | ||
| "type": "commercial", | ||
| "url": "https://xdsoft.net/jodit/pro/" |
There was a problem hiding this comment.
Video iframes broken after upgrade
High Severity
Bumping jodit to 4.13.10 pulls in 4.11.2 cleanHTML defaults that deny iframe/object/embed and sandbox remaining iframes. The editor config in plugin.tsx does not override these, so video embeds this plugin advertises get stripped or disabled, including on existing content load.
Additional Locations (1)
Reviewed by Cursor Bugbot for commit bd1d221. Configure here.
Bumps [jodit](https://github.com/xdan/jodit) from 4.2.24 to 4.13.16. - [Release notes](https://github.com/xdan/jodit/releases) - [Changelog](https://github.com/xdan/jodit/blob/main/CHANGELOG.md) - [Commits](xdan/jodit@4.2.24...4.13.16) --- updated-dependencies: - dependency-name: jodit dependency-version: 4.13.10 dependency-type: indirect ... Signed-off-by: dependabot[bot] <support@github.com>
bd1d221 to
a7793f8
Compare


Bumps jodit from 4.2.24 to 4.13.16.
Release notes
Sourced from jodit's releases.
... (truncated)
Changelog
Sourced from jodit's changelog.
... (truncated)
Commits
620f645New version 4.13.16 Read more https://github.com/xdan/jodit/blob/main/CHANGEL...b1c0851fix(enter): follow the caret when Enter is pressed at the bottom of a scrolla...caeaac7chore: update statoscope reference statsb413032test(security): pin CVE-2023-42399 payload — javascript: iframe src is stripp...17e8f8aNew version 4.13.15 Read more https://github.com/xdan/jodit/blob/main/CHANGEL...d1a3b8ffeat(uploader): showTabInFileSelector option — hide the Upload tab in the ins...bd62e90chore: update statoscope reference statsf817939test(delete): regression — deleting a selected image must not throwe3822fbchore: update statoscope reference statsf2fa179Merge release 4.13.14 into main (statoscope bot raced the release push)Maintainer changes
This version was pushed to npm by GitHub Actions, a new releaser for jodit since your current version.