Skip to content

[Snyk] Security upgrade @c15t/react from 1.8.5 to 2.0.0#12141

Open
sestinj wants to merge 1 commit intomainfrom
snyk-fix-777e80094b74d15acb6e6b87bbe62855
Open

[Snyk] Security upgrade @c15t/react from 1.8.5 to 2.0.0#12141
sestinj wants to merge 1 commit intomainfrom
snyk-fix-777e80094b74d15acb6e6b87bbe62855

Conversation

@sestinj
Copy link
Copy Markdown
Contributor

@sestinj sestinj commented Apr 15, 2026

snyk-top-banner

Snyk has created this PR to fix 1 vulnerabilities in the npm dependencies of this project.

Snyk changed the following file(s):

  • docs/package.json
  • docs/package-lock.json

Vulnerabilities that will be fixed with an upgrade:

Issue Score
critical severity SQL Injection
SNYK-JS-DRIZZLEORM-16000009
  751  

Important

  • Check the changes in this PR to ensure they won't cause issues with your project.
  • Max score is 1000. Note that the real score may have changed since the PR was raised.
  • This PR was automatically created by Snyk using the credentials of a real user.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information:
🧐 View latest project report
📜 Customise PR templates
🛠 Adjust project settings
📚 Read about Snyk's upgrade logic


Learn how to fix vulnerabilities with free interactive lessons:

🦉 SQL Injection


Summary by cubic

Upgrade @c15t/react from 1.8.5 to 2.0.0 in the docs app to fix a critical transitive vulnerability. This is a major bump and may include breaking changes.

  • Dependencies

    • Set @c15t/react to ^2.0.0 in docs/package.json and updated package-lock.json.
    • Addresses Snyk SQL Injection issue SNYK-JS-DRIZZLEORM-16000009.
  • Migration

    • Reinstall and build the docs, then smoke-test pages using @c15t/react.
    • Update any usages if 2.0 APIs changed.

Written for commit 86dfc0e. Summary will update on new commits.

@sestinj sestinj requested a review from a team as a code owner April 15, 2026 08:38
@dosubot dosubot bot added the size:XS This PR changes 0-9 lines, ignoring generated files. label Apr 15, 2026
@continue
Copy link
Copy Markdown
Contributor

continue bot commented Apr 15, 2026

Docs Review

No documentation updates needed for this PR.

Reason: This is a Snyk security upgrade of an internal dependency (@c15t/react 1.8.5 → 2.0.0) used for building the Mintlify docs site. This package is not user-facing and doesn't affect any documented features, configurations, or workflows that developers would need to know about.

@mintlify
Copy link
Copy Markdown

mintlify bot commented Apr 15, 2026

Preview deployment for your docs. Learn more about Mintlify Previews.

Project Status Preview Updated (UTC)
continue-docs 🟢 Ready View Preview Apr 15, 2026, 8:45 AM

💡 Tip: Enable Workflows to automatically generate PRs for you.

Copy link
Copy Markdown
Contributor

@cubic-dev-ai cubic-dev-ai bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

No issues found across 2 files

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

size:XS This PR changes 0-9 lines, ignoring generated files.

Projects

Status: Todo

Development

Successfully merging this pull request may close these issues.

2 participants