Skip to content

v6.3.1

Choose a tag to compare

@ndycode ndycode released this 06 Jun 07:09
· 365 commits to main since this release
0cc1912

What's Changed

Security

  • Bump hono 4.12.18 → 4.12.23 (#168) to clear four moderate advisories (GHSA-f577-qrjj-4474, GHSA-3hrh-pfw6-9m5x, GHSA-xrhx-7g5j-rcj5, GHSA-2gcr-mfcq-wcc3), all fixed upstream in 4.12.21. hono is a transitive dependency of @openauthjs/openauth (peer ^4.0.0), pinned via overrides.
    • npm audit --omit=dev: 0 vulnerabilities (was 2 moderate).
    • No source change — hono is used only inside @openauthjs/openauth's OAuth flow.

Full test suite: 2487 passing. Build / typecheck / lint clean.