Skip to content

fix: update vulnerable dependencies - #1193

Merged
charIeszhao merged 1 commit into
masterfrom
charles-fix-dependency-vulnerabilities
Sep 17, 2026
Merged

charIeszhao merged 1 commit into
masterfrom
charles-fix-dependency-vulnerabilities

Conversation

@charIeszhao

Copy link
Copy Markdown
Member

Summary

Update Next.js and targeted transitive dependency overrides to address security advisories. Upgrade Vitest and its coverage provider to 4.1.11 across all test packages, update the Nuxt test adapter, and adapt existing mocks to Vitest 4.

Keep React Router dependency versions unchanged. The remaining audit findings are two moderate React Router advisories and two high image-size advisories through the Capacitor sample's Vite/Less dependency path; image-size has no available patched version.

Testing

Tested locally

Checklist

  • .changeset
  • unit tests
  • integration tests
  • necessary TSDoc comments

@charIeszhao
charIeszhao merged commit 617968b into master Sep 17, 2026
21 checks passed
@charIeszhao
charIeszhao deleted the charles-fix-dependency-vulnerabilities branch September 17, 2026 09:06
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Development

Successfully merging this pull request may close these issues.

2 participants