Skip to content

Conversation

@nerdy-tech-com-gitub
Copy link
Owner

snyk-top-banner

Snyk has created this PR to upgrade @supabase/ssr from 0.4.0 to 0.7.0.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 31 versions ahead of your current version.

  • The recommended version was released 2 months ago.

Issues fixed by the recommended upgrade:

Issue Score Exploit Maturity
high severity Excessive Platform Resource Consumption within a Loop
SNYK-JS-BRACES-6838727
57 Proof of Concept
high severity Incorrect Authorization
SNYK-JS-VITE-9512410
57 Mature
high severity Incorrect Authorization
SNYK-JS-VITE-9653016
57 Proof of Concept
medium severity Improper Input Validation
SNYK-JS-NANOID-8492085
57 No Known Exploit
medium severity Cross-site Scripting (XSS)
SNYK-JS-ROLLUP-8073097
57 Proof of Concept
medium severity Directory Traversal
SNYK-JS-SUPABASEAUTHJS-10255365
57 No Known Exploit
medium severity Cross-site Scripting (XSS)
SNYK-JS-SVELTEJSKIT-9690586
57 Proof of Concept
medium severity Directory Traversal
SNYK-JS-VITE-13644406
57 Proof of Concept
medium severity Information Exposure
SNYK-JS-VITE-8023174
57 Proof of Concept
medium severity Origin Validation Error
SNYK-JS-VITE-8648411
57 Proof of Concept
low severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-BRACEEXPANSION-9789073
57 Proof of Concept
critical severity Prototype Pollution
SNYK-JS-DEVALUE-12205530
57 Proof of Concept
medium severity Access Control Bypass
SNYK-JS-VITE-9576207
57 Proof of Concept
medium severity Information Exposure
SNYK-JS-VITE-9685035
57 Proof of Concept
medium severity Directory Traversal
SNYK-JS-VITE-9919777
57 Proof of Concept
low severity Directory Traversal
SNYK-JS-SIRV-12558119
57 Proof of Concept
low severity Cross-site Scripting (XSS)
SNYK-JS-SVELTEJSKIT-8400875
57 No Known Exploit
low severity Cross-site Scripting (XSS)
SNYK-JS-SVELTEJSKIT-8400876
57 No Known Exploit
low severity Relative Path Traversal
SNYK-JS-VITE-12558116
57 Proof of Concept
low severity Cross-site Scripting (XSS)
SNYK-JS-VITE-8022916
57 Proof of Concept
Release notes
Package name: @supabase/ssr
  • 0.7.0 - 2025-08-22

    0.7.0 (2025-08-22)

    Features

    Bug Fixes

    • remove usage of internal type params (#123) (8f3e89e)
  • 0.7.0-rc.3 - 2025-08-22

    This is a release candidate. See release-please PR #114 for context.

  • 0.7.0-rc.2 - 2025-06-27

    This is a release candidate. See release-please PR #114 for context.

  • 0.7.0-rc.1 - 2025-05-13

    This is a release candidate. See release-please PR #114 for context.

  • 0.6.1 - 2025-03-16

    0.6.1 (2025-03-16)

    Bug Fixes

    • force release (#98) (66710e8)
    • revert: "feat: improve cookie chunk handling via base64url+length encoding (#90)" (#100) (2ea8e23)
  • 0.6.1-rc.3 - 2025-03-16

    This is a release candidate. See release-please PR #99 for context.

  • 0.6.1-rc.2 - 2025-03-16

    This is a release candidate. See release-please PR #99 for context.

  • 0.6.0 - 2025-03-16

    0.6.0 (2025-02-27)

    Features

    • improve cookie chunk handling via base64url+length encoding (#90) (6deb687)
    • upgrade cookie dependency and cleanup imports (#77) (9524528)

    Bug Fixes

    • add create*Client string in x-client-info (#85) (f271acc)
  • 0.6.0-rc.5 - 2025-02-27

    This is a release candidate. See release-please PR #80 for context.

  • 0.6.0-rc.3 - 2025-01-29

    This is a release candidate. See release-please PR #80 for context.

  • 0.6.0-rc.2 - 2024-12-19
  • 0.6.0-rc.1 - 2024-11-11
  • 0.5.2 - 2024-11-11
  • 0.5.2-rc.7 - 2024-11-05
  • 0.5.2-rc.5 - 2024-10-28
  • 0.5.2-rc.4 - 2024-10-28
  • 0.5.2-rc.3 - 2024-10-10
  • 0.5.2-rc.2 - 2024-09-10
  • 0.5.2-rc.1 - 2024-08-30
  • 0.5.1 - 2024-08-28
  • 0.5.1-rc.2 - 2024-08-28
  • 0.5.1-rc.1 - 2024-08-27
  • 0.5.0 - 2024-08-19
  • 0.5.0-rc.8 - 2024-08-19
  • 0.5.0-rc.7 - 2024-08-19
  • 0.5.0-rc.5 - 2024-07-30
  • 0.5.0-rc.4 - 2024-07-04
  • 0.4.1 - 2024-07-05
  • 0.4.1-rc.3 - 2024-07-03
  • 0.4.1-rc.2 - 2024-07-03
  • 0.4.1-rc.1 - 2024-07-03
  • 0.4.0 - 2024-06-24
from @supabase/ssr GitHub release notes

Important

  • Check the changes in this PR to ensure they won't cause issues with your project.
  • This PR was automatically created by Snyk using the credentials of a real user.
  • Max score is 1000. Note that the real score may have changed since the PR was raised.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

Snyk has created this PR to upgrade @supabase/ssr from 0.4.0 to 0.7.0. See this package in npm: @supabase/ssr See this project in Snyk: https://app.snyk.io/org/nerds-github/project/eb57da18-5f27-4221-96f1-d3163d28fd0e?utm_source=github&utm_medium=referral&page=upgrade-pr
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

3 participants