Skip to content

Conversation

@djdiptayan1
Copy link
Member

snyk-top-banner

Snyk has created this PR to upgrade next from 14.2.5 to 14.2.32.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 27 versions ahead of your current version.

  • The recommended version was released a month ago.

Issues fixed by the recommended upgrade:

Issue Score Exploit Maturity
high severity Server-side Request Forgery (SSRF)
SNYK-JS-NEXT-12299318
636 Proof of Concept
high severity Acceptance of Extraneous Untrusted Data With Trusted Data
SNYK-JS-NEXT-8025427
636 Proof of Concept
high severity Uncontrolled Recursion
SNYK-JS-NEXT-8186172
636 No Known Exploit
high severity Missing Authorization
SNYK-JS-NEXT-8520073
636 No Known Exploit
medium severity Race Condition
SNYK-JS-NEXT-10176058
636 Proof of Concept
medium severity Use of Cache Containing Sensitive Information
SNYK-JS-NEXT-12301496
636 No Known Exploit
medium severity Allocation of Resources Without Limits or Throttling
SNYK-JS-NEXT-8602067
636 No Known Exploit
low severity Missing Origin Validation in WebSockets
SNYK-JS-NEXT-10259370
636 No Known Exploit
low severity Missing Source Correlation of Multiple Independent Data
SNYK-JS-NEXT-12265451
636 No Known Exploit
critical severity Improper Authorization
SNYK-JS-NEXT-9508709
636 Mature

Important

  • Check the changes in this PR to ensure they won't cause issues with your project.
  • This PR was automatically created by Snyk using the credentials of a real user.
  • Max score is 1000. Note that the real score may have changed since the PR was raised.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

Snyk has created this PR to upgrade next from 14.2.5 to 14.2.32.

See this package in yarn:
next

See this project in Snyk:
https://app.snyk.io/org/githubcommunitysrm/project/679d0e2a-77ad-406f-9939-5216eb22d779?utm_source=github&utm_medium=referral&page=upgrade-pr
@vercel
Copy link
Contributor

vercel bot commented Sep 30, 2025

The latest updates on your projects. Learn more about Vercel for GitHub.

Project Deployment Preview Comments Updated (UTC)
githubsrmv2 Ready Ready Preview Comment Sep 30, 2025 7:14am

@coderabbitai
Copy link

coderabbitai bot commented Sep 30, 2025

Important

Review skipped

Ignore keyword(s) in the title.

Please check the settings in the CodeRabbit UI or the .coderabbit.yaml file in this repository. To trigger a single review, invoke the @coderabbitai review command.

You can disable this status message by setting the reviews.review_status to false in the CodeRabbit configuration file.

✨ Finishing touches
🧪 Generate unit tests
  • Create PR with unit tests
  • Post copyable unit tests in a comment
  • Commit unit tests in branch snyk-upgrade-fedf19d0aebc402f31633495946beb9d

Comment @coderabbitai help to get the list of available commands and usage tips.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants