Skip to content

Conversation

@MikeMcC399
Copy link
Collaborator

Issue

Dependabot reports a critical vulnerability CVE-2025-29927 in examples/nextjs affecting next >= 15.0, < 15.2.3

Change

In examples/nextjs update:

Module from to
next next@15.1.5 next@15.2.3
postcss postcss@^8 postcss@8.5.3
tailwindcss tailwindcss@3.4.1 tailwindcss@3.4.17

and other transitive dependencies using npm update --save

@cypress-app-bot
Copy link

@MikeMcC399 MikeMcC399 self-assigned this Mar 22, 2025
@MikeMcC399 MikeMcC399 marked this pull request as ready for review March 22, 2025 09:00
update
postcss to 8.5.3
tailwindcss to 3.4.17
@jennifer-shehane jennifer-shehane merged commit 9550c5d into cypress-io:master Mar 24, 2025
74 checks passed
@MikeMcC399 MikeMcC399 deleted the update/nextjs branch March 24, 2025 14:13
@github-actions
Copy link

🎉 This PR is included in version 6.8.0 🎉

The release is available on:

Your semantic-release bot 📦🚀

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants