XLTS for AngularJS v1.5.14 Released
Dec 3, 2021
Jun 15, 2022
merrily-celebrating
Bug Fixes
- $sanitize:
- do not trigger CSP alert/report in Firefox and Chrome
- sanitize
xml:base
attributes- This fixes a Medium Severity XSS vulnerability.
- use appropriate inert document strategy for Firefox and Safari
- This fixes a Medium Severity XSS vulnerability.
- prevent clobbered elements from freezing the browser
- This fixes a Medium Severity Denial of Service vulnerability.
- Angular: avoid catastrophic backtracking in XHTML_TAG_REGEXP
- jqLite: define jqLite.htmlPrefilter inline
- angular.merge: do not merge proto property
- This fixes a High Severity vulnerability associated with CVE-2019-10768
Dec 3, 2021
Jun 15, 2022