Skip to content

chore(docs): bump Next.js security patch#75

Open
prd-carapulse[bot] wants to merge 1 commit intomorpho-mainfrom
hermes/nextjs-cve-erpc-docs
Open

chore(docs): bump Next.js security patch#75
prd-carapulse[bot] wants to merge 1 commit intomorpho-mainfrom
hermes/nextjs-cve-erpc-docs

Conversation

@prd-carapulse
Copy link
Copy Markdown

@prd-carapulse prd-carapulse Bot commented May 8, 2026

Summary

  • Bumps docs Next.js to 15.5.18.
  • Refreshes docs/pnpm-lock.yaml.

Validation

  • cd docs && npx --yes pnpm@10.28.2 install --lockfile-only --ignore-scripts --ignore-workspace
  • git diff --check

Context

React/Next.js security sweep follow-up requested from Slack thread.

Summary:
- Bumps docs Next.js to 15.5.18.
- Refreshes docs/pnpm-lock.yaml.

Validation:
- `cd docs && npx --yes pnpm@10.28.2 install --lockfile-only --ignore-scripts --ignore-workspace`
- `git diff --check`
@wiz-c998a0ef2b
Copy link
Copy Markdown

wiz-c998a0ef2b Bot commented May 8, 2026

Wiz Scan Summary

Scanner Findings
Vulnerability Finding Vulnerabilities 2 High 4 Medium
Data Finding Sensitive Data -
Secret Finding Secrets -
IaC Misconfiguration IaC Misconfigurations -
SAST Finding SAST Findings -
Software Management Finding Software Management Findings -
Total 2 High 4 Medium

View scan details in Wiz

To detect these findings earlier in the dev lifecycle, try using Wiz Code VS Code Extension.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants