Skip to content

Update svg2ttf for xmldom vulnerability #9

Description

@neotsn

Hello everyone,

Over on xmldom the maintainers have had a hard time getting their package updated to address a security vulnerability, and have had to change where they publish on npm (not published as @xmldom/xmldom, see xmldom/xmldom#271).

This in turn triggered an update to svg2ttf that was just published as v6.0.3 (see fontello/svg2ttf#118).

Can we get this update added to this repository to address the security vulnerability and remove this now deprecated xmldom package?

Thanks for everything you do here.

Edit: wording.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions