Bumps nunjucks from 3.1.3 to 3.2.4.
Release notes
Sourced from nunjucks's releases.
v3.2.4
What's Changed
Full Changelog: mozilla/nunjucks@v3.2.3...v3.2.4
v3.2.3
- Add support for nested attributes on
sort filter; respect throwOnUndefined if sort attribute is undefined.
- Add
base arg to int filter.
- Move
chokidar to peerDependencies and mark it optional in peerDependenciesMeta.
- Fix prototype pollution issue for template variables. Merge of #1330; fixes #1331. Thanks ChenKS12138!
v3.2.2
- Add
select and reject filters. Merge of #1278 and #1279; fixes #282. Thanks ogonkov!
- Fix precompile binary script
TypeError: name.replace is not a function. Fixes #1295.
- Add support for nested attributes on
groupby filter; respect throwOnUndefined option, if the groupby attribute is undefined. Merge of #1276; fixes #1198. Thanks ogonkov!
- Fix bug that prevented errors in included templates from being raised when rendering templates synchronously. Fixes #1272.
- The
indent filter no longer appends an additional newline. Fixes #1231.
v3.2.1
- Replace yargs with commander to reduce number of dependencies. Merge of #1253. Thanks AlynxZhou.
- Update optional dependency chokidar from
^2.0.0 to ^3.3.0. Merge of #1254. Thanks eklingen.
- Prevent optional dependency Chokidar from loading when not watching. Merge of #1250. Thanks eklingen.
v3.2.0
v3.1.7
-
Fix bug where exceptions were silently swallowed with synchronous render. Fixes #678, #1116, #1127, and #1164
-
Removes deprecated postinstall-build package in favor of npm prepare. Merge of #1172. Fixes #1167.
- Note: this means that npm@5 or later is required to install nunjucks directly from github.
v3.1.6
No changes from 3.1.5; fixed packaging issue in npm
v3.1.5
- Fix engine dependency version for Node versions > 11.1.0; Fixes #1168.
v3.1.4
- Fix engine version for Node v11.1.0
- Fix "Unexpected token" error for U+2028 unicode newline. Fixes #126 and #736
Changelog
Sourced from nunjucks's changelog.
3.2.4 (Apr 13 2023)
- HTML encode backslashes when expressions are passed through the escape
filter (including when this is done automatically with autoescape). Merge
of #1437.
3.2.3 (Feb 15 2021)
- Add support for nested attributes on
sort filter;
respect throwOnUndefined if sort attribute is undefined.
- Add
base arg to
int filter.
- Move
chokidar to peerDependencies and mark it optional in peerDependenciesMeta.
- Fix prototype pollution issue for template variables. Merge of
#1330; fixes
#1331. Thanks
ChenKS12138!
3.2.2 (Jul 20 2020)
- Add
select and
reject filters.
Merge of #1278 and
#1279; fixes
#282. Thanks
ogonkov!
- Fix precompile binary script
TypeError: name.replace is not a function.
Fixes #1295.
- Add support for nested attributes on
groupby filter;
respect throwOnUndefined option, if the groupby attribute is undefined.
Merge of #1276; fixes
#1198. Thanks
ogonkov!
- Fix bug that prevented errors in included templates from being raised when
rendering templates synchronously. Fixes
#1272.
- The
indent filter no longer appends an additional newline. Fixes
#1231.
3.2.1 (Mar 17 2020)
- Replace yargs with commander to reduce number of dependencies. Merge of
#1253. Thanks
AlynxZhou.
- Update optional dependency chokidar from
^2.0.0 to ^3.3.0. Merge of
... (truncated)
Commits
86a77f4 Release v3.2.4
ec16d21 fix: html encode backslashes if used with escape filter or autoescape (#1437)
fd50090 Release v3.2.3
d34fdbf Temporarily comment out codecov action
cefad41 Replace README.md travis badge with github actions
7601ff4 Fixup github actions workflow file
de9dc67 Add GitHub Workflow for tests. fixes #1333
aa9e5b9 Fix prototype pollution security issue. fixes #1331
f51afa3 Move chokidar to peerDependencies and make it optional via peerDependenciesMe...
f91f1c3 Fix groupby example formatting
- Additional commits viewable in compare view
Dependabot compatibility score
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebase will rebase this PR
@dependabot recreate will recreate this PR, overwriting any edits that have been made to it
@dependabot merge will merge this PR after your CI passes on it
@dependabot squash and merge will squash and merge this PR after your CI passes on it
@dependabot cancel merge will cancel a previously requested merge and block automerging
@dependabot reopen will reopen this PR if it is closed
@dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
@dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
@dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
@dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
You can disable automated security fix PRs for this repo from the Security Alerts page.
Bumps nunjucks from 3.1.3 to 3.2.4.
Release notes
Sourced from nunjucks's releases.
Changelog
Sourced from nunjucks's changelog.
... (truncated)
Commits
86a77f4Release v3.2.4ec16d21fix: html encode backslashes if used with escape filter or autoescape (#1437)fd50090Release v3.2.3d34fdbfTemporarily comment out codecov actioncefad41Replace README.md travis badge with github actions7601ff4Fixup github actions workflow filede9dc67Add GitHub Workflow for tests. fixes #1333aa9e5b9Fix prototype pollution security issue. fixes #1331f51afa3Move chokidar to peerDependencies and make it optional via peerDependenciesMe...f91f1c3Fixgroupbyexample formattingDependabot compatibility score
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)You can disable automated security fix PRs for this repo from the Security Alerts page.