- Fixed several typos and removed clutter from our documentation, thanks @Rotzbua
- Added
matrix:
as an allowed URI scheme, thanks @kleinesfilmroellchen - Added better config hardening against prototype pollution, thanks @EffectRenan
- Added better handling of attribute removal, thanks @michalnieruchalski-tiugo
- Added better configuration for aggressive mXSS scrubbing behavior, thanks @BryanValverdeU
- Removed the script that caused the fake entry CVE-2025-48050