Skip to content

Bump ammonia from 4.0.0 to 4.1.2#258

Merged
gpwclark merged 1 commit into
dependabot/cargo/doc/mdbook-slosh-eval/bytes-1.11.1from
dependabot/cargo/ammonia-4.1.2
Feb 28, 2026
Merged

Bump ammonia from 4.0.0 to 4.1.2#258
gpwclark merged 1 commit into
dependabot/cargo/doc/mdbook-slosh-eval/bytes-1.11.1from
dependabot/cargo/ammonia-4.1.2

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot Bot commented on behalf of github Feb 28, 2026

Bumps ammonia from 4.0.0 to 4.1.2.

Release notes

Sourced from ammonia's releases.

4.1.2

  • fix: unexpected namespace switches after cleanup can cause mXSS (reported by zzm0902@shu.edu.cn)

4.1.1

4.1.0

  • chore: bump MSRV to 1.80.0
  • chore: switch to std's LazyLock instead of once_cell's Lazy
  • feature: improve panic message when clean_content_tags conflicts with other options
  • feature: add support for sanitizing the style attribute

4.0.1

  • fix: unexpected namespace switches after cleanup can cause mXSS (reported by zzm0902@shu.edu.cn, backport 4.1.2)
Changelog

Sourced from ammonia's changelog.

4.1.2

  • fix: unexpected namespace switches after cleanup can cause mXSS (reported by zzm0902@shu.edu.cn)

4.1.1

4.1.0

  • chore: bump MSRV to 1.80.0
  • chore: switch to std's LazyLock instead of once_cell's Lazy
  • feature: improve panic message when clean_content_tags conflicts with other options
  • feature: add support for sanitizing the style attribute

4.0.1

  • fix: unexpected namespace switches after cleanup can cause mXSS (backport 4.1.2)
Commits
  • de02971 Release 4.1.2 with security fix
  • 7e9754b Merge pull request #218 from atouchet/trav
  • f1e732c Delete .travis.yml
  • 5d54a86 Merge pull request #216 from atouchet/urls
  • 52a7d97 Update Readme
  • a14a5eb Merge pull request #214 from rust-ammonia/release-4.1.1
  • 262d0d3 Release 4.1.1
  • 84e7284 Merge pull request #213 from rust-ammonia/dependabot/cargo/html5ever-0.35
  • f5ad1ec Add bool flag to mark scripting as disabled
  • 00aac0f Update html5ever requirement from 0.31 to 0.35
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
    You can disable automated security fix PRs for this repo from the Security Alerts page.

Bumps [ammonia](https://github.com/rust-ammonia/ammonia) from 4.0.0 to 4.1.2.
- [Release notes](https://github.com/rust-ammonia/ammonia/releases)
- [Changelog](https://github.com/rust-ammonia/ammonia/blob/master/CHANGELOG.md)
- [Commits](rust-ammonia/ammonia@v4.0.0...v4.1.2)

---
updated-dependencies:
- dependency-name: ammonia
  dependency-version: 4.1.2
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file rust Pull requests that update rust code labels Feb 28, 2026
@gpwclark gpwclark self-assigned this Feb 28, 2026
@gpwclark gpwclark changed the base branch from main to dependabot/cargo/doc/mdbook-slosh-eval/bytes-1.11.1 February 28, 2026 13:20
@gpwclark gpwclark merged commit 6de7b1a into dependabot/cargo/doc/mdbook-slosh-eval/bytes-1.11.1 Feb 28, 2026
8 of 10 checks passed
@gpwclark gpwclark deleted the dependabot/cargo/ammonia-4.1.2 branch February 28, 2026 13:20
@github-actions
Copy link
Copy Markdown

🐰 Bencher Report

Branchdependabot/cargo/ammonia-4.1.2
Testbedubuntu-latest
Click to view all benchmark results
BenchmarkLatencyBenchmark Result
microseconds (µs)
(Result Δ%)
Lower Boundary
microseconds (µs)
(Limit %)
Upper Boundary
microseconds (µs)
(Limit %)
continuation_vec_search_one_hundred📈 view plot
🚷 view threshold
7,823.80 µs
(+6.10%)Baseline: 7,374.22 µs
5,961.39 µs
(76.20%)
8,787.05 µs
(89.04%)
continuation_vec_search_one_thousand📈 view plot
🚷 view threshold
8,176.60 µs
(+5.72%)Baseline: 7,734.45 µs
6,370.14 µs
(77.91%)
9,098.76 µs
(89.87%)
continuation_vec_search_ten_thousand📈 view plot
🚷 view threshold
11,462.00 µs
(+3.74%)Baseline: 11,048.55 µs
9,793.35 µs
(85.44%)
12,303.74 µs
(93.16%)
float_one_hundred📈 view plot
🚷 view threshold
8,657.80 µs
(-2.52%)Baseline: 8,881.28 µs
7,647.60 µs
(88.33%)
10,114.95 µs
(85.59%)
float_one_thousand📈 view plot
🚷 view threshold
29,268.00 µs
(+1.91%)Baseline: 28,718.64 µs
24,932.83 µs
(85.19%)
32,504.44 µs
(90.04%)
float_ten_thousand📈 view plot
🚷 view threshold
234,500.00 µs
(+3.54%)Baseline: 226,492.27 µs
195,352.21 µs
(83.31%)
257,632.33 µs
(91.02%)
optimized_float_fifty_thousand📈 view plot
🚷 view threshold
518,080.00 µs
(+1.84%)Baseline: 508,695.00 µs
468,746.65 µs
(90.48%)
548,643.35 µs
(94.43%)
optimized_float_one_hundred📈 view plot
🚷 view threshold
1,041.50 µs
(+2.15%)Baseline: 1,019.61 µs
953.61 µs
(91.56%)
1,085.61 µs
(95.94%)
optimized_float_one_thousand📈 view plot
🚷 view threshold
10,313.00 µs
(+2.20%)Baseline: 10,090.65 µs
9,462.00 µs
(91.75%)
10,719.29 µs
(96.21%)
optimized_float_ten_thousand📈 view plot
🚷 view threshold
103,250.00 µs
(+2.04%)Baseline: 101,187.36 µs
94,478.48 µs
(91.50%)
107,896.24 µs
(95.69%)
recursive_vec_search_one_hundred📈 view plot
🚷 view threshold
7,831.00 µs
(+6.16%)Baseline: 7,376.88 µs
5,990.26 µs
(76.49%)
8,763.50 µs
(89.36%)
recursive_vec_search_one_thousand📈 view plot
🚷 view threshold
8,120.80 µs
(+5.83%)Baseline: 7,673.70 µs
6,316.62 µs
(77.78%)
9,030.79 µs
(89.92%)
recursive_vec_search_ten_thousand📈 view plot
🚷 view threshold
10,877.00 µs
(+3.25%)Baseline: 10,534.85 µs
9,310.40 µs
(85.60%)
11,759.30 µs
(92.50%)
🐰 View full continuous benchmarking report in Bencher

@github-actions
Copy link
Copy Markdown

🐰 Bencher Report

Branchdependabot/cargo/ammonia-4.1.2
Testbedubuntu-latest

⚠️ WARNING: No Threshold found!

Without a Threshold, no Alerts will ever be generated.

Click here to create a new Threshold
For more information, see the Threshold documentation.
To only post results if a Threshold exists, set the --ci-only-thresholds flag.

Click to view all benchmark results
BenchmarkEstimated Cyclesestimated cycles x 1e6Instructionsinstructions x 1e6L1 Hitshits x 1e6L2 HitshitsRAM HitshitsTotal read+writereads/writes x 1e6
iai::float::float_one_hundred📈 view plot
⚠️ NO THRESHOLD
128.42 x 1e6📈 view plot
⚠️ NO THRESHOLD
92.68 x 1e6📈 view plot
⚠️ NO THRESHOLD
127.25 x 1e6📈 view plot
⚠️ NO THRESHOLD
131,362.00📈 view plot
⚠️ NO THRESHOLD
14,888.00📈 view plot
⚠️ NO THRESHOLD
127.39 x 1e6
iai::float::float_one_thousand📈 view plot
⚠️ NO THRESHOLD
421.43 x 1e6📈 view plot
⚠️ NO THRESHOLD
309.67 x 1e6📈 view plot
⚠️ NO THRESHOLD
420.25 x 1e6📈 view plot
⚠️ NO THRESHOLD
131,416.00📈 view plot
⚠️ NO THRESHOLD
14,881.00📈 view plot
⚠️ NO THRESHOLD
420.40 x 1e6
iai::float::float_ten_thousand📈 view plot
⚠️ NO THRESHOLD
3,351.38 x 1e6📈 view plot
⚠️ NO THRESHOLD
2,479.40 x 1e6📈 view plot
⚠️ NO THRESHOLD
3,350.20 x 1e6📈 view plot
⚠️ NO THRESHOLD
131,453.00📈 view plot
⚠️ NO THRESHOLD
14,908.00📈 view plot
⚠️ NO THRESHOLD
3,350.35 x 1e6
iai::float::optimized_float_fifty_thousand📈 view plot
⚠️ NO THRESHOLD
8,768.64 x 1e6📈 view plot
⚠️ NO THRESHOLD
6,834.42 x 1e6📈 view plot
⚠️ NO THRESHOLD
8,768.62 x 1e6📈 view plot
⚠️ NO THRESHOLD
66.00📈 view plot
⚠️ NO THRESHOLD
532.00📈 view plot
⚠️ NO THRESHOLD
8,768.62 x 1e6
iai::float::optimized_float_one_hundred📈 view plot
⚠️ NO THRESHOLD
17.58 x 1e6📈 view plot
⚠️ NO THRESHOLD
13.69 x 1e6📈 view plot
⚠️ NO THRESHOLD
17.56 x 1e6📈 view plot
⚠️ NO THRESHOLD
65.00📈 view plot
⚠️ NO THRESHOLD
531.00📈 view plot
⚠️ NO THRESHOLD
17.56 x 1e6
iai::float::optimized_float_one_thousand📈 view plot
⚠️ NO THRESHOLD
175.41 x 1e6📈 view plot
⚠️ NO THRESHOLD
136.70 x 1e6📈 view plot
⚠️ NO THRESHOLD
175.40 x 1e6📈 view plot
⚠️ NO THRESHOLD
64.00📈 view plot
⚠️ NO THRESHOLD
532.00📈 view plot
⚠️ NO THRESHOLD
175.40 x 1e6
iai::float::optimized_float_ten_thousand📈 view plot
⚠️ NO THRESHOLD
1,753.76 x 1e6📈 view plot
⚠️ NO THRESHOLD
1,366.90 x 1e6📈 view plot
⚠️ NO THRESHOLD
1,753.74 x 1e6📈 view plot
⚠️ NO THRESHOLD
64.00📈 view plot
⚠️ NO THRESHOLD
532.00📈 view plot
⚠️ NO THRESHOLD
1,753.74 x 1e6
iai::recursion_and_continuations::continuation_vec_search_one_hundred📈 view plot
⚠️ NO THRESHOLD
116.73 x 1e6📈 view plot
⚠️ NO THRESHOLD
83.44 x 1e6📈 view plot
⚠️ NO THRESHOLD
115.33 x 1e6📈 view plot
⚠️ NO THRESHOLD
156,190.00📈 view plot
⚠️ NO THRESHOLD
17,690.00📈 view plot
⚠️ NO THRESHOLD
115.50 x 1e6
iai::recursion_and_continuations::continuation_vec_search_one_thousand📈 view plot
⚠️ NO THRESHOLD
122.17 x 1e6📈 view plot
⚠️ NO THRESHOLD
86.89 x 1e6📈 view plot
⚠️ NO THRESHOLD
120.58 x 1e6📈 view plot
⚠️ NO THRESHOLD
161,276.00📈 view plot
⚠️ NO THRESHOLD
22,294.00📈 view plot
⚠️ NO THRESHOLD
120.77 x 1e6
iai::recursion_and_continuations::continuation_vec_search_ten_thousand📈 view plot
⚠️ NO THRESHOLD
172.11 x 1e6📈 view plot
⚠️ NO THRESHOLD
120.12 x 1e6📈 view plot
⚠️ NO THRESHOLD
169.43 x 1e6📈 view plot
⚠️ NO THRESHOLD
188,913.00📈 view plot
⚠️ NO THRESHOLD
49,707.00📈 view plot
⚠️ NO THRESHOLD
169.67 x 1e6
iai::recursion_and_continuations::recursive_vec_search_one_hundred📈 view plot
⚠️ NO THRESHOLD
116.64 x 1e6📈 view plot
⚠️ NO THRESHOLD
83.39 x 1e6📈 view plot
⚠️ NO THRESHOLD
115.24 x 1e6📈 view plot
⚠️ NO THRESHOLD
156,153.00📈 view plot
⚠️ NO THRESHOLD
17,642.00📈 view plot
⚠️ NO THRESHOLD
115.42 x 1e6
iai::recursion_and_continuations::recursive_vec_search_one_thousand📈 view plot
⚠️ NO THRESHOLD
116.63 x 1e6📈 view plot
⚠️ NO THRESHOLD
83.38 x 1e6📈 view plot
⚠️ NO THRESHOLD
115.23 x 1e6📈 view plot
⚠️ NO THRESHOLD
155,634.00📈 view plot
⚠️ NO THRESHOLD
17,631.00📈 view plot
⚠️ NO THRESHOLD
115.41 x 1e6
iai::recursion_and_continuations::recursive_vec_search_ten_thousand📈 view plot
⚠️ NO THRESHOLD
163.99 x 1e6📈 view plot
⚠️ NO THRESHOLD
114.34 x 1e6📈 view plot
⚠️ NO THRESHOLD
161.30 x 1e6📈 view plot
⚠️ NO THRESHOLD
189,309.00📈 view plot
⚠️ NO THRESHOLD
49,656.00📈 view plot
⚠️ NO THRESHOLD
161.54 x 1e6
🐰 View full continuous benchmarking report in Bencher

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file rust Pull requests that update rust code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant