[Snyk] Upgrade react-router-dom from 6.23.1 to 6.30.1 #331

Closed
opened 2026-04-05 16:19:23 +02:00 by MrUnknownDE · 0 comments
Owner

Originally created by @simlarsen on 10/26/2025

snyk-top-banner

Snyk has created this PR to upgrade react-router-dom from 6.23.1 to 6.30.1.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 31 versions ahead of your current version.

  • The recommended version was released 5 months ago.

Issue Score Exploit Maturity
low severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-BRACEEXPANSION-9789073
190 Proof of Concept
low severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-BRACEEXPANSION-9789073
190 Proof of Concept
Release notes
Package name: react-router-dom
  • 6.30.1 - 2025-05-20

    Change tag name

  • 6.30.0 - 2025-02-27
  • 6.30.0-pre-v6.0 - 2025-02-25
  • 6.29.0 - 2025-01-30
  • 6.29.0-pre-v6.2 - 2025-01-29
  • 6.28.3-pre-v6.1 - 2025-01-28
  • 6.28.3-pre-v6.0 - 2025-01-28
  • 6.28.2 - 2025-01-16
  • 6.28.2-pre.0 - 2025-01-14
  • 6.28.1 - 2024-12-20
  • 6.28.1-pre.0 - 2024-12-18
  • 6.28.0 - 2024-11-06
  • 6.28.0-pre.0 - 2024-10-29
  • 6.27.0 - 2024-10-11
  • 6.27.0-pre.1 - 2024-10-10
  • 6.27.0-pre.0 - 2024-10-09
  • 6.26.2 - 2024-09-09
  • 6.26.2-pre.0 - 2024-09-04
  • 6.26.1 - 2024-08-15
  • 6.26.1-pre.0 - 2024-08-14
  • 6.26.0 - 2024-08-01
  • 6.26.0-pre.1 - 2024-07-31
  • 6.26.0-pre.0 - 2024-07-30
  • 6.25.1 - 2024-07-17
  • 6.25.1-pre.0 - 2024-07-17
  • 6.25.0 - 2024-07-16
  • 6.25.0-pre.0 - 2024-07-12
  • 6.24.1 - 2024-07-03
  • 6.24.1-pre.0 - 2024-07-01
  • 6.24.0 - 2024-06-24
  • 6.24.0-pre.0 - 2024-06-14
  • 6.23.1 - 2024-05-10
from react-router-dom GitHub release notes

Important

  • Check the changes in this PR to ensure they won't cause issues with your project.
  • This PR was automatically created by Snyk using the credentials of a real user.
  • Max score is 1000. Note that the real score may have changed since the PR was raised.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

*Originally created by @simlarsen on 10/26/2025* ![snyk-top-banner](https://res.cloudinary.com/snyk/image/upload/r-d/scm-platform/snyk-pull-requests/pr-banner-default.svg) <h3>Snyk has created this PR to upgrade react-router-dom from 6.23.1 to 6.30.1.</h3> :information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project. <hr/> - The recommended version is **31 versions** ahead of your current version. - The recommended version was released **5 months ago**. #### Issues fixed by the recommended upgrade: | | Issue | Score | Exploit Maturity | :-------------------------:|:-------------------------|:-------------------------|:------------------------- ![low severity](https://res.cloudinary.com/snyk/image/upload/r-d/scm-platform/snyk-pull-requests//severity-low.svg 'low severity') | Regular Expression Denial of Service (ReDoS)<br/>[SNYK-JS-BRACEEXPANSION-9789073](https://snyk.io/vuln/SNYK-JS-BRACEEXPANSION-9789073) | **190** | Proof of Concept ![low severity](https://res.cloudinary.com/snyk/image/upload/r-d/scm-platform/snyk-pull-requests//severity-low.svg 'low severity') | Regular Expression Denial of Service (ReDoS)<br/>[SNYK-JS-BRACEEXPANSION-9789073](https://snyk.io/vuln/SNYK-JS-BRACEEXPANSION-9789073) | **190** | Proof of Concept <details> <summary><b>Release notes</b></summary> <br/> <details> <summary>Package name: <b>react-router-dom</b></summary> <ul> <li> <b>6.30.1</b> - <a href="https://redirect.github.com/remix-run/react-router/releases/tag/react-router-native%406.30.1">2025-05-20</a></br><p>Change tag name</p> </li> <li> <b>6.30.0</b> - 2025-02-27 </li> <li> <b>6.30.0-pre-v6.0</b> - 2025-02-25 </li> <li> <b>6.29.0</b> - 2025-01-30 </li> <li> <b>6.29.0-pre-v6.2</b> - 2025-01-29 </li> <li> <b>6.28.3-pre-v6.1</b> - 2025-01-28 </li> <li> <b>6.28.3-pre-v6.0</b> - 2025-01-28 </li> <li> <b>6.28.2</b> - 2025-01-16 </li> <li> <b>6.28.2-pre.0</b> - 2025-01-14 </li> <li> <b>6.28.1</b> - 2024-12-20 </li> <li> <b>6.28.1-pre.0</b> - 2024-12-18 </li> <li> <b>6.28.0</b> - 2024-11-06 </li> <li> <b>6.28.0-pre.0</b> - 2024-10-29 </li> <li> <b>6.27.0</b> - 2024-10-11 </li> <li> <b>6.27.0-pre.1</b> - 2024-10-10 </li> <li> <b>6.27.0-pre.0</b> - 2024-10-09 </li> <li> <b>6.26.2</b> - 2024-09-09 </li> <li> <b>6.26.2-pre.0</b> - 2024-09-04 </li> <li> <b>6.26.1</b> - 2024-08-15 </li> <li> <b>6.26.1-pre.0</b> - 2024-08-14 </li> <li> <b>6.26.0</b> - 2024-08-01 </li> <li> <b>6.26.0-pre.1</b> - 2024-07-31 </li> <li> <b>6.26.0-pre.0</b> - 2024-07-30 </li> <li> <b>6.25.1</b> - 2024-07-17 </li> <li> <b>6.25.1-pre.0</b> - 2024-07-17 </li> <li> <b>6.25.0</b> - 2024-07-16 </li> <li> <b>6.25.0-pre.0</b> - 2024-07-12 </li> <li> <b>6.24.1</b> - 2024-07-03 </li> <li> <b>6.24.1-pre.0</b> - 2024-07-01 </li> <li> <b>6.24.0</b> - 2024-06-24 </li> <li> <b>6.24.0-pre.0</b> - 2024-06-14 </li> <li> <b>6.23.1</b> - 2024-05-10 </li> </ul> from <a href="https://redirect.github.com/remix-run/react-router/releases">react-router-dom GitHub release notes</a> </details> </details> --- > [!IMPORTANT] > > - Check the changes in this PR to ensure they won't cause issues with your project. > - This PR was automatically created by Snyk using the credentials of a real user. > - Max score is 1000. Note that the real score may have changed since the PR was raised. --- **Note:** _You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs._ **For more information:** <img src="https://api.segment.io/v1/pixel/track?data=eyJ3cml0ZUtleSI6InJyWmxZcEdHY2RyTHZsb0lYd0dUcVg4WkFRTnNCOUEwIiwiYW5vbnltb3VzSWQiOiI5MWU2OTU0ZC1mM2U2LTRkYWQtYWYzZS1kMDUwYmM4N2QyNTUiLCJldmVudCI6IlBSIHZpZXdlZCIsInByb3BlcnRpZXMiOnsicHJJZCI6IjkxZTY5NTRkLWYzZTYtNGRhZC1hZjNlLWQwNTBiYzg3ZDI1NSJ9fQ==" width="0" height="0"/> > - 🧐 [View latest project report](https://app.snyk.io/org/oneuptime-RsC2nshvQ2Vnr35jHvMnMP/project/8ca4ee75-8bc5-43a1-a3bc-244ceebf1437?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr) > - 📜 [Customise PR templates](https://docs.snyk.io/scan-using-snyk/pull-requests/snyk-fix-pull-or-merge-requests/customize-pr-templates?utm_source=&utm_content=fix-pr-template) > - 🛠 [Adjust upgrade PR settings](https://app.snyk.io/org/oneuptime-RsC2nshvQ2Vnr35jHvMnMP/project/8ca4ee75-8bc5-43a1-a3bc-244ceebf1437/settings/integration?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr) > - 🔕 [Ignore this dependency or unsubscribe from future upgrade PRs](https://app.snyk.io/org/oneuptime-RsC2nshvQ2Vnr35jHvMnMP/project/8ca4ee75-8bc5-43a1-a3bc-244ceebf1437/settings/integration?pkg&#x3D;react-router-dom&amp;utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr#auto-dep-upgrades) [//]: # 'snyk:metadata:{"breakingChangeRiskLevel":null,"FF_showPullRequestBreakingChanges":null,"FF_showPullRequestBreakingChangesWebSearch":null,"customTemplate":{"variablesUsed":[],"fieldsUsed":[]},"dependencies":[{"name":"react-router-dom","from":"6.23.1","to":"6.30.1"}],"env":"prod","hasFixes":true,"isBreakingChange":false,"isMajorUpgrade":false,"issuesToFix":["SNYK-JS-BRACEEXPANSION-9789073","SNYK-JS-BRACEEXPANSION-9789073"],"prId":"91e6954d-f3e6-4dad-af3e-d050bc87d255","prPublicId":"91e6954d-f3e6-4dad-af3e-d050bc87d255","packageManager":"npm","priorityScoreList":[190],"projectPublicId":"8ca4ee75-8bc5-43a1-a3bc-244ceebf1437","projectUrl":"https://app.snyk.io/org/oneuptime-RsC2nshvQ2Vnr35jHvMnMP/project/8ca4ee75-8bc5-43a1-a3bc-244ceebf1437?utm_source=github&utm_medium=referral&page=upgrade-pr","prType":"upgrade","templateFieldSources":{"branchName":"default","commitMessage":"default","description":"default","title":"default"},"templateVariants":["priorityScore"],"type":"auto","upgrade":["SNYK-JS-BRACEEXPANSION-9789073","SNYK-JS-BRACEEXPANSION-9789073"],"upgradeInfo":{"versionsDiff":31,"publishedDate":"2025-05-20T20:25:46.162Z"},"vulns":["SNYK-JS-BRACEEXPANSION-9789073","SNYK-JS-BRACEEXPANSION-9789073"]}'
Sign in to join this conversation.
No Label
1 Participants
Notifications
Due Date
No due date set.
Dependencies

No dependencies set.

Reference: github/oneuptime#331