Skip to content

UILD-746: ld-folio-wrapper 1.3.4, ui-linked-data 1.0.6 fixing vulns#108

Open
julianladisch wants to merge 1 commit into
R1-2025from
UILD-746
Open

UILD-746: ld-folio-wrapper 1.3.4, ui-linked-data 1.0.6 fixing vulns#108
julianladisch wants to merge 1 commit into
R1-2025from
UILD-746

Conversation

@julianladisch
Copy link
Copy Markdown
Contributor

https://folio-org.atlassian.net/browse/UILD-746

Bump ld-folio-wrapper from 1.3.3 to 1.3.4.

This transitively bumps

  • linked-data from ^1.0.5 to ^1.0.6
  • react-router-dom from ^6.28.1 to ^6.30.3
  • @remix-run/router from 1.23.0 to 1.23.2
  • react-router from 6.30.0 to 6.30.3

This fixes security vulnerabilities:

https://folio-org.atlassian.net/browse/UILD-746

Bump ld-folio-wrapper from 1.3.3 to 1.3.4.

This transitively bumps
* linked-data from ^1.0.5 to ^1.0.6
* react-router-dom from ^6.28.1 to ^6.30.3
* @remix-run/router from 1.23.0 to 1.23.2
* react-router from 6.30.0 to 6.30.3

This fixes security vulnerabilities:
* CVE-2025-68470 - GHSA-9jcx-v3wj-wh4m - react-router-dom - open redirect
* CVE-2026-22029 - GHSA-2w69-qvjg-hvjx - @remix-run/router - Cross-site Scripting (XSS)
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants