| FazBrowse GitHub Viewer | Trending | | Home |
| Tools: [Download Repo ZIP] [Original HTTPS Page] |
Sorry, something went wrong.
|
Tick the box to add this pull request to the merge queue (same as @mergifyio queue).
|
Sorry, something went wrong.
|
Tick the box to add this pull request to the merge queue (same as @mergifyio queue).
|
Sorry, something went wrong.
|
Tick the box to add this pull request to the merge queue (same as @mergifyio queue).
|
Sorry, something went wrong.
|
Tick the box to add this pull request to the merge queue (same as @mergifyio queue).
|
Sorry, something went wrong.
|
Tick the box to add this pull request to the merge queue (same as @mergifyio queue).
|
Sorry, something went wrong.
|
Tick the box to add this pull request to the merge queue (same as @mergifyio queue).
|
Sorry, something went wrong.
|
Tick the box to add this pull request to the merge queue (same as @mergifyio queue).
|
Sorry, something went wrong.
| Back | FazBrowse Home | New Git URL |
This PR contains the following updates:
Warning
Some dependencies could not be looked up. Check the Dependency Dashboard for more information.
Cross-Site Scripting in react-dom
CVE-2018-6341 / GHSA-mvjj-gqq2-p4hw
More informationDetails
Affected versions of react-dom are vulnerable to Cross-Site Scripting (XSS). The package fails to validate attribute names in HTML tags which may lead to Cross-Site Scripting in specific scenarios. This may allow attackers to execute arbitrary JavaScript in the victim's browser. To be affected by this vulnerability, the application needs to:
Recommendation
If you are using react-dom 16.0.x, upgrade to 16.0.1 or later.
If you are using react-dom 16.1.x, upgrade to 16.1.2 or later.
If you are using react-dom 16.2.x, upgrade to 16.2.1 or later.
If you are using react-dom 16.3.x, upgrade to 16.3.3 or later.
If you are using react-dom 16.4.x, upgrade to 16.4.2 or later.
Severity
References
This data is provided by the GitHub Advisory Database (CC-BY 4.0).
Release Notes
react/react (react-dom)v19.2.8
Compare Source
v19.2.7
Compare Source
React Server Components
v19.2.6
Compare Source
React Server Components
v19.2.5
Compare Source
React Server Components
v19.2.4
Compare Source
React Server Components
v19.2.3
Compare Source
React Server Components
v19.2.2
Compare Source
React Server Components
v19.2.1
Compare Source
React Server Components
v19.2.0
Compare Source
Below is a list of all new features, APIs, and bug fixes.
Read the React 19.2 release post for more information.
New React Features
New React DOM Features
Notable changes
All Changes
React
React DOM
React Server Components
React Reconciler
v19.1.9
Compare Source
v19.1.8
Compare Source
React Server Components
v19.1.7
Compare Source
React Server Components
v19.1.6
Compare Source
React Server Components
v19.1.5
Compare Source
React Server Components
v19.1.4
Compare Source
React Server Components
v19.1.3
Compare Source
React Server Components
v19.1.2
Compare Source
React Server Components
v19.1.1
Compare Source
React
v19.1.0
Compare Source
Owner Stack
An Owner Stack is a string representing the components that are directly responsible for rendering a particular component. You can log Owner Stacks when debugging or use Owner Stacks to enhance error overlays or other development tools. Owner Stacks are only available in development builds. Component Stacks in production are unchanged.
#32538, #32529, #32538
React
React DOM
use-sync-external-store
React Server Components
v19.0.8
Compare Source
v19.0.7
Compare Source
React Server Components
v19.0.6
Compare Source
React Server Components
v19.0.5
Compare Source
React Server Components
v19.0.4
Compare Source
React Server Components
v19.0.3
Compare Source
React Server Components
v19.0.2
Compare Source
React Server Components
v19.0.1
Compare Source
React Server Components
v19.0.0
Compare Source
Below is a list of all new features, APIs, deprecations, and breaking changes. Read React 19 release post and React 19 upgrade guide for more information.
New Features
React
React DOM Client
React DOM Server
React Server Components
Deprecations
Breaking Changes
React 19 brings in a number of breaking changes, including the removals of long-deprecated APIs. We recommend first upgrading to 18.3.1, where we've added additional deprecation warnings. Check out the upgrade guide for more details and guidance on codemodding.
React
React DOM
Notable Changes
React
React DOM
TypeScript Changes
The most common changes can be codemodded with npx types-react-codemod@latest preset-19 ./path-to-your-react-ts-files.
For example,
All Changes
React
Configuration
📅 Schedule: (UTC)
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.
This PR was generated by Mend Renovate. View the repository job log.