Skip to content

fix(deps): update Next.js to 16.2.11#3232

Closed
giodl73-repo wants to merge 1 commit into
openclaw:mainfrom
giodl73-repo:fix/next-16-2-11-audit
Closed

fix(deps): update Next.js to 16.2.11#3232
giodl73-repo wants to merge 1 commit into
openclaw:mainfrom
giodl73-repo:fix/next-16-2-11-audit

Conversation

@giodl73-repo

Copy link
Copy Markdown

Summary

  • update the existing Next.js override from 16.2.6 to 16.2.11
  • refresh the Bun lockfile entries for Next.js and its platform packages
  • clear the new Next.js advisories currently blocking the shared PR gate

Verification

  • bun audit — no vulnerabilities found
  • git diff --check

Context

The ClawHub main lockfile currently resolves Next.js 16.2.6, which is within the vulnerable range reported by bun audit. Because pr-gates runs that audit, unrelated PRs currently fail their aggregate checks. This keeps the remediation isolated from those feature PRs.

@vercel

vercel Bot commented Jul 23, 2026

Copy link
Copy Markdown
Contributor

@giodl73-repo is attempting to deploy a commit to the OpenClaw Foundation Team on Vercel.

A member of the Team first needs to authorize it.

@clawsweeper

clawsweeper Bot commented Jul 23, 2026

Copy link
Copy Markdown
Contributor

ClawSweeper status: review started.

I am starting a fresh review of this pull request: fix(deps): update Next.js to 16.2.11 This is item 1/1 in the current shard. Shard 21/24.

This placeholder means the worker is alive and reading the current context. I will edit this same comment with the actual review when the claws are done clicking.

Crustacean status: shell secured, claws on keyboard, evidence pebbles being sorted.

@giodl73-repo

Copy link
Copy Markdown
Author

Superseded by #3234, which landed the same Next.js 16.2.11 override and lockfile patch on main. git cherry origin/main d7d4a61 reports this commit as already applied, so this is no longer a dependency of the feed stack.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant