Skip to content

Bump vite from 5.4.21 to 6.4.2

477443f
Select commit
Loading
Failed to load commit list.
Open

Bump vite from 5.4.21 to 6.4.2 #2091

Bump vite from 5.4.21 to 6.4.2
477443f
Select commit
Loading
Failed to load commit list.
GitHub Advanced Security / Trivy succeeded Apr 9, 2026 in 3s

1 new alert including 1 medium severity security vulnerability

New alerts in code changed by this pull request

Security Alerts:

  • 1 medium

See annotations below for details.

View all branch alerts.

Annotations

Check warning on line 17378 in package-lock.json

See this annotation in the file changed.

Code scanning / Trivy

vite: Vite: Information disclosure via path traversal in dev server's .map request handling Medium

Package: vite
Installed Version: 5.4.21
Vulnerability CVE-2026-39365
Severity: MEDIUM
Fixed Version: 8.0.5, 7.3.2, 6.4.2
Link: CVE-2026-39365