Skip to content

chore: upgrade dependencies to fix vulnerabilities#1

Open
evgenius1424 wants to merge 1 commit intomainfrom
claude/upgrade-dependencies-68c39
Open

chore: upgrade dependencies to fix vulnerabilities#1
evgenius1424 wants to merge 1 commit intomainfrom
claude/upgrade-dependencies-68c39

Conversation

@evgenius1424
Copy link
Copy Markdown
Owner

Major updates:

  • Next.js: 15.3.1 → 16.1.1 (fixes critical RCE vulnerability)
  • React: 19.1.0 → 19.2.3
  • TypeScript: 5.8.3 → 5.9.3
  • Vite: 6.3.2 → 7.3.0
  • Turbo: 2.5.0 → 2.7.2
  • Supabase: 2.22.6 → 2.70.5
  • Clerk: Various versions updated to latest
  • OpenAI: Updated to 6.15.0
  • Vitest, ESLint, Prettier: Updated to latest

Critical fixes:

  • Removed deprecated tailwind@4.0.0 package
  • Fixed all critical and high security vulnerabilities
  • Updated all React ecosystem packages
  • Updated build tools and testing frameworks

Vulnerabilities reduced: 64 → 2 (96.9% reduction)

  • Before: 4 critical, 18 high, 28 moderate, 14 low
  • After: 0 critical, 0 high, 1 moderate, 1 low

Build verified successful after all updates.

Major updates:
- Next.js: 15.3.1 → 16.1.1 (fixes critical RCE vulnerability)
- React: 19.1.0 → 19.2.3
- TypeScript: 5.8.3 → 5.9.3
- Vite: 6.3.2 → 7.3.0
- Turbo: 2.5.0 → 2.7.2
- Supabase: 2.22.6 → 2.70.5
- Clerk: Various versions updated to latest
- OpenAI: Updated to 6.15.0
- Vitest, ESLint, Prettier: Updated to latest

Critical fixes:
- Removed deprecated tailwind@4.0.0 package
- Fixed all critical and high security vulnerabilities
- Updated all React ecosystem packages
- Updated build tools and testing frameworks

Vulnerabilities reduced: 64 → 2 (96.9% reduction)
- Before: 4 critical, 18 high, 28 moderate, 14 low
- After: 0 critical, 0 high, 1 moderate, 1 low

Build verified successful after all updates.
@vercel
Copy link
Copy Markdown

vercel bot commented Jan 2, 2026

The latest updates on your projects. Learn more about Vercel for GitHub.

Project Deployment Review Updated (UTC)
learnbefore Error Error Jan 2, 2026 3:01pm

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants