<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Nokogiri on Project Wintermute</title><link>https://wintermutecore.com/tags/nokogiri/</link><description>Recent content in Nokogiri on Project Wintermute</description><generator>Hugo</generator><language>en-us</language><lastBuildDate>Thu, 18 Jun 2026 15:24:25 +0000</lastBuildDate><atom:link href="https://wintermutecore.com/tags/nokogiri/index.xml" rel="self" type="application/rss+xml"/><item><title>Nokogiri v1.19.4 - XML Parser Security Fixes</title><link>https://wintermutecore.com/posts/nokogiri-v1-19-4-security-release/</link><pubDate>Thu, 18 Jun 2026 15:24:25 +0000</pubDate><guid>https://wintermutecore.com/posts/nokogiri-v1-19-4-security-release/</guid><description>&lt;p&gt;Nokogiri v1.19.4 was published on June 18, 2026, as a security release for the Ruby XML and HTML parser used in many web processing, CMS import, and ETL paths. The most operator visible change is on JRuby: &lt;code&gt;XML::Schema&lt;/code&gt; now enforces &lt;code&gt;NONET&lt;/code&gt; with default options, closing a gap where schema parsing could still fetch network resources. It is not marked as a prerelease.&lt;/p&gt;</description></item></channel></rss>