Vue i18n v11.4.14
intlify/vue-i18n
Summary
The v11.4.14 release of Vue i18n includes important security fixes, such as neutralizing the srcdoc attribute in sanitized HTML and escaping list and named values. Additionally, there are several refactoring improvements aimed at simplifying message handling and enhancing code quality.
Full release notes
What's Changed
🔒 Security Fixes
- fix(shared): neutralize srcdoc attribute in sanitizeTranslatedHtml by @kazupon in https://github.com/intlify/vue-i18n/pull/2679
- fix(core-base): escape both list and named values with escapeParameter by @kazupon in https://github.com/intlify/vue-i18n/pull/2680
- fix: ignore locales named after Object.prototype properties by @kazupon in https://github.com/intlify/vue-i18n/pull/2681
👕 Refactoring
- refactor(core-base): extract the resolved message format check by @kazupon in https://github.com/intlify/vue-i18n/pull/2674
- refactor(vue-i18n-core): remove dead branches in getCoreContext() by @kazupon in https://github.com/intlify/vue-i18n/pull/2675
- refactor(vue-i18n-core): share the fallbackContext handling in the composer by @kazupon in https://github.com/intlify/vue-i18n/pull/2676
- refactor(vue-i18n-core): simplify flat JSON handling in setLocaleMessage / mergeLocaleMessage by @kazupon in https://github.com/intlify/vue-i18n/pull/2677
- refactor(core-base): give the compile cache a proper type by @kazupon in https://github.com/intlify/vue-i18n/pull/2678
Full Changelog: https://github.com/intlify/vue-i18n/compare/v11.4.13...v11.4.14
