Skip to content

chore(deps): bump the npm_and_yarn group across 1 directory with 10 updates - #1281

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/npm_and_yarn-82f5e6a313
Open

chore(deps): bump the npm_and_yarn group across 1 directory with 10 updates#1281
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/npm_and_yarn-82f5e6a313

chore(deps): bump the npm_and_yarn group across 1 directory with 10 u…

10b26f3
Select commit
Loading
Failed to load commit list.
GitHub Advanced Security / Trivy succeeded Sep 3, 2026 in 6s

2 new alerts including 2 medium severity security vulnerabilities

New alerts in code changed by this pull request

Security Alerts:

  • 2 medium

See annotations below for details.

View all branch alerts.

Annotations

Check warning on line 4998 in yarn.lock

See this annotation in the file changed.

Code scanning / Trivy

react-router: React Router: Information disclosure via client-side constructor execution Medium

Package: react-router
Installed Version: 6.30.5
Vulnerability CVE-2026-53666
Severity: MEDIUM
Fixed Version: 7.18.0
Link: CVE-2026-53666

Check warning on line 4998 in yarn.lock

See this annotation in the file changed.

Code scanning / Trivy

react-router: React Router: Open Redirect vulnerability via backslashes in navigation components Medium

Package: react-router
Installed Version: 6.30.5
Vulnerability CVE-2026-53669
Severity: MEDIUM
Fixed Version: 7.18.0
Link: CVE-2026-53669