NewYour coding agent can read the release notes before it upgrades.Set up the MCP server →
Packagist · #979 most downloaded on Packagist
Renders local and remote SVG icons in your Twig templates.
Last release 19 days ago
18 Sep 2026
Ships fairly regularly
a new release about every 5 weeks
Some releases are documented
notes for 17 of 32 stable releases
Nothing withdrawn
no release was ever pulled
2 years old
32 releases · first in 2024
Nothing published for this version
feature #3814 Add support for Twig 4.x ( @Kocal )
Changelog (v3.4.0...v3.5.0)
IconFinderInterface to create custom finders to lock icons (@pierredup)\Dom\XMLDocument API (@Kocal)IconFinderInterface to register custom icon finders, providing icon names to lock and warm up in addition to the ones found in Twig templatesDom\XMLDocument API, icons rendered from local files now correctly include the xmlns attribute.
It may break your pipeline if you assert on ux_icon() or <twig:ux:icon> output in your tests. Re-generate those assertions and clear your icon cache after upgrading.html_attr() logic, so ux_icon() and <twig:ux:icon> render attributes like any other component: the typed values of html_attr_type() and tailwind_classes are now accepted, null omits an attribute, aria-* booleans render "true"/"false", and a boolean true renders name="" (data-* renders "true").
It may change your markup if you assert on the <svg> tag's attributes: null, boolean and aria-* values no longer render the way they used to. Update those assertions after upgrading.aria-label, aria-labelledby or title attribute suppressing the automatic aria-hidden="true", which left the icon without any textual alternative.One column per month.
feature #3741 Add auto_lock to persist on-demand icons ( @Kocal )
Changelog (v3.3.0...v3.4.0)
auto_lock to persist on-demand icons (@Kocal)iconify.auto_lock option to persist "on demand" icons to the local icon directory as they are renderedChangelog ( v3.2.0...v3.3.0 ) no significant changes
Changelog (v3.2.0...v3.3.0)
security # cve-2026-55877 Sanitize Iconify SVG output and unify icon creation ( @Kocal )
Changelog (v3.1.0...v3.2.0)
Changelog ( v3.0.0...v3.1.0 ) no significant changes
Changelog (v3.0.0...v3.1.0)
feature #3453 Update minimum required Symfony version to 7.4 ( @Kocal )
Changelog (v2.34.0...v3.0.0)
security # cve-2026-55877 Sanitize Iconify SVG output and unify icon creation ( @Kocal )
Changelog (v2.36.0...v2.36.1)
Sanitize rendered SVG icons (Iconify bodies and local files) to prevent XSS. Removed from icon output:
<script>, <foreignObject>, <iframe>, <object>, <embed>, <handler><animate>, <set>, <animateTransform>, <animateMotion>) when they target an on*, href or xlink:href attributeon*, e.g. onload, onclick) on every elementhref / xlink:href values with a non-allowlisted scheme such as javascript:, vbscript:, data:text/html or data:image/svg+xml (allowed: http(s), mailto, tel, data:image/* raster, fragments and relative URLs)<style> elements are kept (so light/dark-mode theming keeps working), with their event-handler attributes stripped and </style> breakouts dropped.
Clear your icon cache after upgrading so already-cached icons are re-sanitized.
Changelog ( v2.35.0...v2.36.0 )
Changelog (v2.35.0...v2.36.0)
Changelog ( v2.34.0...v2.35.0 )
Changelog (v2.34.0...v2.35.0)
Changelog ( v2.33.0...v2.34.0 )
Changelog (v2.33.0...v2.34.0)
Changelog ( v2.32.0...v2.33.0 )
Changelog (v2.32.0...v2.33.0)
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
- Add Symfony 8 support
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Improve DX when symfony/http-client is not installed.
symfony/http-client is not installed.Add xmlns attribute to icons downloaded with Iconify, to correctly render icons browser as an external file, in SVG editors, and in files explorers or
xmlns attribute to icons downloaded with Iconify, to correctly render icons browser as an external file, in SVG editors, and in files explorers or text editors previews.
It may breaks your pipeline if you assert on ux_icon() or <twig:ux:icon> output in your tests, and forgot to lock your icons.
We recommend you to lock your icons before upgrading to UX Icons 2.24. We also suggest you to to force-lock your icons after upgrading to UX Icons 2.24, to add the attribute xmlns to your icons already downloaded from Iconify.Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Add aliases configuration option to define icon alternative names.
aliases configuration option to define icon alternative names.int and float attribute values in <twig:ux:icon />.icon_sets option.Add ignore_not_found option to silence error during rendering if the icon is not found.
ignore_not_found option to silence error during rendering if the
icon is not found.Nothing published for this version
Nothing published for this version
- Add component
Your coding agent can read these notes before it upgrades. Set up the MCP server →