Repository navigation
[Snyk] Fix for 2 vulnerabilities - #68
HeyItsGilbert wants to merge 1 commit into
Conversation
The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-JS-GRAYMATTER-20532010 - https://snyk.io/vuln/SNYK-JS-SPRINTFJS-20532016
|
This is a minor version upgrade that is non-breaking for most users, but introduces potentially breaking changes for those who have opted into experimental features. The Docusaurus team follows Semantic Versioning, and v3.10.0 is officially documented as having no breaking changes for standard configurations. [2] Potential Breaking Changes (Opt-in):
Recommendation: Source: Docusaurus 3.10 Release Notes
|
❌ Deploy Preview for psake failed.
|
There was a problem hiding this comment.
Copilot review overview
🟡 Changes recommended
The lockfile remains vulnerable, and the Mermaid theme version is incompatible with the upgraded Docusaurus packages.
Review effort: Balanced
Findings: 1
Open (2)
What changed in this PR
Updates Docusaurus dependencies to address two reported transitive vulnerabilities.
Changes:
- Upgrades Docusaurus core and classic preset from 3.9.0 to 3.10.2.
| File | Description |
|---|---|
package.json |
Updates two Docusaurus dependency versions. |
💡 Add a code-review agent skill or configure MCP servers for context-aware, tailored reviews. Learn more in the docs.
| "@docusaurus/core": "3.10.2", | ||
| "@docusaurus/preset-classic": "3.10.2", |
| "@docusaurus/core": "3.10.2", | ||
| "@docusaurus/preset-classic": "3.10.2", | ||
| "@docusaurus/theme-mermaid": "3.9.0", |


Snyk has created this PR to fix 2 vulnerabilities in the npm dependencies of this project.
Snyk changed the following file(s):
package.jsonVulnerabilities that will be fixed with an upgrade:
SNYK-JS-GRAYMATTER-20532010
SNYK-JS-SPRINTFJS-20532016
Breaking Change Risk
Important
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report
📜 Customise PR templates
🛠 Adjust project settings
📚 Read about Snyk's upgrade logic
Learn how to fix vulnerabilities with free interactive lessons:
🦉 Arbitrary Code Injection