- Core Angular now sanitizes ICU message translations by only applying known HTML attributes, dropping unknown ones.
- Sensitive URI attributes in ICU messages are blocked to prevent potential injection attacks.
- This breaking change may affect templates that relied on custom attributes in translated ICU content.