◐ Shell
reader mode source ↗
Skip to content

chore(deps): bump react-router-6 to 6.30.4#21566

Open
chargome wants to merge 1 commit into
developfrom
fix/dependabot-alert-1800
Open

chore(deps): bump react-router-6 to 6.30.4#21566
chargome wants to merge 1 commit into
developfrom
fix/dependabot-alert-1800

Conversation

@chargome

Copy link
Copy Markdown
Member

Summary

Bumps the react-router-6 test alias in packages/react from npm:react-router@6.30.3 to npm:react-router@6.30.4 — a patch bump that stays within the v6 line used to test React Router 6 compatibility.

Resolves Dependabot alert #1800GHSA-2j2x-hqr9-3h42 / CVE-2026-40181 (medium, open redirect via protocol-relative URL reinterpretation).

🤖 Generated with Claude Code

Bumps the react-router-6 test alias from 6.30.3 to 6.30.4 (patch, stays in v6).

Resolves GHSA-2j2x-hqr9-3h42 / CVE-2026-40181 (medium).
Dependabot alert: https://github.com/getsentry/sentry-javascript/security/dependabot/1800

Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>
@chargome chargome requested a review from a team as a code owner June 16, 2026 09:22
@chargome chargome requested review from nicohrubec and s1gr1d and removed request for a team June 16, 2026 09:22
@chargome chargome self-assigned this Jun 16, 2026
@chargome chargome changed the title fix(deps): bump react-router-6 to 6.30.4 Jun 16, 2026
@chargome chargome requested a review from andreiborza June 16, 2026 09:50
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant