Skip to content

[Snyk] Security upgrade next from 16.0.7 to 16.0.10#5

Merged
miccy merged 2 commits intodevfrom
snyk-fix-b658d13147eb97b3e73c0a339ef562f8
Dec 23, 2025
Merged

[Snyk] Security upgrade next from 16.0.7 to 16.0.10#5
miccy merged 2 commits intodevfrom
snyk-fix-b658d13147eb97b3e73c0a339ef562f8

Conversation

@miccy
Copy link
Collaborator

@miccy miccy commented Dec 14, 2025

snyk-top-banner

Snyk has created this PR to fix 1 vulnerabilities in the pnpm dependencies of this project.

Snyk changed the following file(s):

  • apps/web/package.json
⚠️ Warning
Failed to update the pnpm-lock.yaml, please update manually before merging.

Vulnerabilities that will be fixed with an upgrade:

Issue Score
high severity Deserialization of Untrusted Data
SNYK-JS-NEXT-14400636
  262  

Important

  • Check the changes in this PR to ensure they won't cause issues with your project.
  • Max score is 1000. Note that the real score may have changed since the PR was raised.
  • This PR was automatically created by Snyk using the credentials of a real user.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information:
🧐 View latest project report
📜 Customise PR templates
🛠 Adjust project settings
📚 Read about Snyk's upgrade logic


Learn how to fix vulnerabilities with free interactive lessons:

🦉 Deserialization of Untrusted Data

@coderabbitai
Copy link

coderabbitai bot commented Dec 14, 2025

Important

Review skipped

Ignore keyword(s) in the title.

Please check the settings in the CodeRabbit UI or the .coderabbit.yaml file in this repository. To trigger a single review, invoke the @coderabbitai review command.

You can disable this status message by setting the reviews.review_status to false in the CodeRabbit configuration file.

✨ Finishing touches
🧪 Generate unit tests (beta)
  • Create PR with unit tests
  • Post copyable unit tests in a comment
  • Commit unit tests in branch snyk-fix-b658d13147eb97b3e73c0a339ef562f8

Comment @coderabbitai help to get the list of available commands and usage tips.

@miccy miccy changed the base branch from main to dev December 20, 2025 15:05
@miccy miccy self-assigned this Dec 20, 2025
@miccy miccy added the dependencies Pull requests that update a dependency file label Dec 20, 2025
@miccy miccy marked this pull request as draft December 20, 2025 15:06
@miccy miccy marked this pull request as ready for review December 23, 2025 13:28
@miccy miccy merged commit bac5663 into dev Dec 23, 2025
5 of 8 checks passed
@miccy miccy deleted the snyk-fix-b658d13147eb97b3e73c0a339ef562f8 branch December 23, 2025 13:28
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants