Skip to content

[Snyk] Upgrade zustand from 5.0.11 to 5.0.12#3218

Merged
cotti merged 2 commits into
mainfrom
snyk-upgrade-896320263243220f2923eaba5f4c55f3
Apr 30, 2026
Merged

[Snyk] Upgrade zustand from 5.0.11 to 5.0.12#3218
cotti merged 2 commits into
mainfrom
snyk-upgrade-896320263243220f2923eaba5f4c55f3

Conversation

@nkammah
Copy link
Copy Markdown
Contributor

@nkammah nkammah commented Apr 30, 2026

snyk-top-banner

Snyk has created this PR to upgrade zustand from 5.0.11 to 5.0.12.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 1 version ahead of your current version.

  • The recommended version was released a month ago.

Issues fixed by the recommended upgrade:

Issue Score Exploit Maturity
critical severity Arbitrary Code Injection
SNYK-JS-PROTOBUFJS-16094665
868 Proof of Concept
critical severity Arbitrary Code Injection
SNYK-JS-PROTOBUFJS-16094665
868 Proof of Concept

Breaking Change Risk

Merge Risk: Low

Notice: This assessment is enhanced by AI.

Release notes
Package name: zustand from zustand GitHub release notes

Important

  • Check the changes in this PR to ensure they won't cause issues with your project.
  • This PR was automatically created by Snyk using the credentials of a real user.
  • Max score is 1000. Note that the real score may have changed since the PR was raised.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

Snyk has created this PR to upgrade zustand from 5.0.11 to 5.0.12.

See this package in npm:
zustand

See this project in Snyk:
https://app.snyk.io/org/docs-wmk/project/69782e43-c85b-4c27-afd1-ad863be7a38a?utm_source=github&utm_medium=referral&page=upgrade-pr
@nkammah
Copy link
Copy Markdown
Contributor Author

nkammah commented Apr 30, 2026

Merge Risk: Low

This is a patch version upgrade for zustand. The release contains two minor bug fixes and does not introduce any breaking changes.

Changes:

  • fix(persist): Uses the latest state in the post-rehydration callback.
  • fix(devtools): Corrects the Redux DevTools configuration type extension.

No developer action is required for this upgrade.

Source: GitHub Release Notes

Notice 🤖: This content was augmented using artificial intelligence. AI-generated content may contain errors and should be reviewed for accuracy before use.

@nkammah nkammah requested a review from a team as a code owner April 30, 2026 11:21
@nkammah nkammah requested a review from reakaleek April 30, 2026 11:21
@cotti cotti added the chore label Apr 30, 2026
@cotti cotti enabled auto-merge (squash) April 30, 2026 13:24
@cotti cotti merged commit 4b8f933 into main Apr 30, 2026
24 of 25 checks passed
@cotti cotti deleted the snyk-upgrade-896320263243220f2923eaba5f4c55f3 branch April 30, 2026 13:31
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants