Skip to content

Conversation

@nerdy-tech-com-gitub
Copy link
Owner

snyk-top-banner

Snyk has created this PR to upgrade @docusaurus/module-type-aliases from 3.5.2 to 3.9.1.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 210 versions ahead of your current version.

  • The recommended version was released a month ago.

Issues fixed by the recommended upgrade:

Issue Score Exploit Maturity
high severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-SEMVER-3247795
67 Proof of Concept
high severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-SEMVER-3247795
67 Proof of Concept
high severity Denial of Service (DoS)
SNYK-JS-WS-7266574
67 Proof of Concept
high severity Denial of Service (DoS)
SNYK-JS-WS-7266574
67 Proof of Concept
high severity Prototype Pollution
SNYK-JS-ASYNC-2441827
67 Proof of Concept
high severity Asymmetric Resource Consumption (Amplification)
SNYK-JS-BODYPARSER-7926860
67 No Known Exploit
high severity Excessive Platform Resource Consumption within a Loop
SNYK-JS-BRACES-6838727
67 Proof of Concept
high severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-CROSSSPAWN-8303230
67 Proof of Concept
high severity Denial of Service (DoS)
SNYK-JS-HTTPPROXYMIDDLEWARE-8229906
67 Proof of Concept
high severity Infinite loop
SNYK-JS-IMAGESIZE-9634164
67 Proof of Concept
high severity Code Injection
SNYK-JS-LODASH-1040724
67 Proof of Concept
high severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-MARKED-1070800
67 No Known Exploit
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-PATHTOREGEXP-8482416
67 Proof of Concept
medium severity Improper Input Validation
SNYK-JS-POSTCSS-5926692
67 No Known Exploit
medium severity Validation Bypass
SNYK-JS-SANITIZEHTML-1070780
67 Proof of Concept
medium severity Access Restriction Bypass
SNYK-JS-SANITIZEHTML-1070786
67 No Known Exploit
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-SANITIZEHTML-2957526
67 No Known Exploit
medium severity Cross-site Scripting (XSS)
SNYK-JS-SANITIZEHTML-585892
67 Proof of Concept
medium severity Information Exposure
SNYK-JS-SANITIZEHTML-6256334
67 Proof of Concept
medium severity Cross-site Scripting (XSS)
SNYK-JS-WEBPACK-7840298
67 Proof of Concept
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-BABELHELPERS-9397697
67 Proof of Concept
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-BABELRUNTIME-10044504
67 Proof of Concept
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-BABELRUNTIMECOREJS3-9397696
67 Proof of Concept
medium severity Cross-site Scripting (XSS)
SNYK-JS-COOKIE-8163060
67 No Known Exploit
medium severity Prototype Pollution
SNYK-JS-ESTREEUTILVALUETOESTREE-9734388
67 Proof of Concept
medium severity Cross-site Scripting
SNYK-JS-EXPRESS-7926867
67 No Known Exploit
medium severity Always-Incorrect Control Flow Implementation
SNYK-JS-HTTPPROXYMIDDLEWARE-9691387
67 No Known Exploit
medium severity Improper Check for Unusual or Exceptional Conditions
SNYK-JS-HTTPPROXYMIDDLEWARE-9691389
67 No Known Exploit
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-LODASH-1018905
67 Proof of Concept
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-MARKED-2342073
67 Proof of Concept
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-MARKED-2342082
67 Proof of Concept
medium severity Inefficient Regular Expression Complexity
SNYK-JS-MICROMATCH-6838728
67 No Known Exploit
medium severity Improper Input Validation
SNYK-JS-NANOID-8492085
67 No Known Exploit
medium severity Improper Handling of Unexpected Data Type
SNYK-JS-ONHEADERS-10773729
67 No Known Exploit
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-PATHTOREGEXP-7925106
67 Proof of Concept
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-PATHTOREGEXP-7925106
67 Proof of Concept
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-PATHTOREGEXP-7925106
67 Proof of Concept
low severity Arbitrary Code Injection
SNYK-JS-PRISMJS-9055448
67 Proof of Concept
low severity Cross-site Scripting
SNYK-JS-SEND-7926862
67 No Known Exploit
low severity Cross-site Scripting
SNYK-JS-SERVESTATIC-7926865
67 No Known Exploit
low severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-BRACEEXPANSION-9789073
67 Proof of Concept
low severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-BRACEEXPANSION-9789073
67 Proof of Concept
critical severity Predictable Value Range from Previous Values
SNYK-JS-FORMDATA-10841150
67 Proof of Concept
low severity Insecure Randomness
SNYK-JS-FORMIDABLE-9788127
67 Proof of Concept
Release notes
Package name: @docusaurus/module-type-aliases
  • 3.9.1 - 2025-09-26

    3.9.1 (2025-09-26)

    🐛 Bug Fix

    • docusaurus
      • #11434 fix(core): fix Docusaurus outDir for sites using baseUrl (@ slorber)

    Committers: 1

  • 3.9.1-canary-6425 - 2025-10-17
  • 3.9.1-canary-6424 - 2025-10-17
  • 3.9.1-canary-6423 - 2025-10-16
  • 3.9.1-canary-6418 - 2025-10-13
  • 3.9.1-canary-6416 - 2025-10-10
  • 3.9.1-canary-6415 - 2025-10-09
  • 3.9.1-canary-6412 - 2025-10-09
  • 3.9.1-canary-6411 - 2025-10-09
  • 3.9.1-canary-6409 - 2025-09-26
  • 3.9.1-canary-6408 - 2025-09-26
  • 3.9.1-canary-6407 - 2025-09-26
  • 3.9.0 - 2025-09-25

    3.9.0 (2025-09-25)

    🚀 New Feature

    • docusaurus-theme-search-algolia
      • #11421 feat(theme-search-algolia): use DocSearch v4.1, optimize integration (@ slorber)
    • docusaurus-plugin-content-blog, docusaurus-theme-classic
      • #11425 feat(blog): Add support for email social icon + resize default social icon a bit (@ slorber)
    • docusaurus-theme-classic, docusaurus-theme-common
      • #11426 feat(theme): Add theme-tabs-container stable className (@ slorber)
    • docusaurus-theme-classic, docusaurus-theme-search-algolia, docusaurus-theme-translations
    • docusaurus-faster, docusaurus
      • #11415 feat(faster): upgrade Rspack to 1.5, use lazyBarrel experiment, remove deprecated option (@ slorber)
      • #11294 feat(faster): Upgrade to Rspack 1.4 (@ slorber)
    • docusaurus-utils
      • #11397 feat(mdx): resolve @ site/* markdown links, fix resolution priority bugs (@ slorber)
    • docusaurus-theme-mermaid
    • docusaurus-plugin-pwa, docusaurus-theme-classic, docusaurus-theme-common, docusaurus-types, docusaurus-utils, docusaurus
      • #11316 feat(core): Add i18n.localeConfigs[locale].{url,baseUrl} config options, fix multi-domain deployments (@ slorber)
    • docusaurus-plugin-content-blog, docusaurus-plugin-content-docs, docusaurus-plugin-content-pages, docusaurus-types, docusaurus-utils, docusaurus
      • #11304 feat(core): add i18n.localeConfigs.translate + skip translation process if i18n/<locale> dir doesn't exist (@ slorber)
    • docusaurus-plugin-content-docs
      • #11228 feat(docs): sidebar item key attribute - fix docs translations key conflicts (@ slorber)
    • create-docusaurus
      • #11293 feat(create-docusaurus): use respectPrefersColorScheme in init template (@ slorber)
    • docusaurus-mdx-loader, docusaurus-types, docusaurus
      • #11282 feat(core): add siteConfig.markdown.emoji config option to disable remark-emoji (@ slorber)
    • create-docusaurus, docusaurus-mdx-loader, docusaurus-plugin-content-blog, docusaurus-plugin-content-docs, docusaurus-types, docusaurus
      • #11283 feat(core): Add siteConfig.markdown.hooks, deprecate siteConfig.onBrokenMarkdownLinks (@ slorber)

    🐛 Bug Fix

    • docusaurus-theme-classic, docusaurus
      • #11422 fix(theme): fix copy of indented code blocks, replace copy-text-to-clipboard by clipboard API (@ slorber)
    • docusaurus-theme-classic
      • #11407 fix(theme): remove hardcoded fill from Bluesky and LinkedIn icons (@ Simek)
      • #11389 fix(theme): render sidebar category index with unlisted children as a simple doc/link item (@ slorber)
      • #11360 fix(theme): Add translate no to heading anchors and blog authors (@ slorber)
      • #11356 fix(theme): Doc sidebar links/categories with long labels should display properly (@ slorber)
      • #11338 fix(theme-classic): fix collapsed sidebar category expansion when navigating to another link within that category (@ qqq614)
      • #11289 fix(theme): Fix footnote ref scrolling behind the navbar when footnote back reference clicked (@ slorber)
    • docusaurus
      • #11410 fix(deps): upgrade webpack-dev-server to v5, fix security warning (@ slorber)
      • #11347 fix(core): Fix docusaurus start on macOS when exec throws a synchronous error (@ slorber)
      • #11271 fix(dev-server): use correct dev server HTML lang attribute (@ enumura1)
    • docusaurus-theme-common
      • #11405 fix(theme): fix useColorMode() visual glitches due to provider unmounts/remounts (@ slorber)
      • #11280 fix(theme-common): Export FooterColumnItem type (@ stubinubin)
    • docusaurus-bundler, docusaurus-faster
      • #11383 fix(ssg): HTML minifier should preserve <head> for og:image crawlers (@ slorber)
    • docusaurus-theme-classic, docusaurus-theme-translations
      • #11331 fix(theme): Add aria-label to IconExternalLink with value '(opens in new tab)' (@ WestonThayer)
    • docusaurus-plugin-content-docs
      • #11281 fix(docs): Fix empty sidebar item category className lost when post-processed to a doc (@ slorber)
      • #11251 fix(docs): prevent docs ids conflicts within a version (@ slorber)
    • docusaurus-theme-classic, docusaurus-theme-common
      • #11263 fix(theme): make useHistorySelector() hydration-safe + use it read search/hash in theme (@ slorber)

    📝 Documentation

    🤖 Dependencies

    🔧 Maintenance

    • create-docusaurus, docusaurus-babel, docusaurus-bundler, docusaurus-cssnano-preset, docusaurus-faster, docusaurus-logger, docusaurus-mdx-loader, docusaurus-plugin-client-redirects, docusaurus-plugin-content-blog, docusaurus-plugin-content-docs, docusaurus-plugin-content-pages, docusaurus-plugin-css-cascade-layers, docusaurus-plugin-debug, docusaurus-plugin-google-analytics, docusaurus-plugin-google-gtag, docusaurus-plugin-google-tag-manager, docusaurus-plugin-ideal-image, docusaurus-plugin-pwa, docusaurus-plugin-rsdoctor, docusaurus-plugin-sitemap, docusaurus-plugin-svgr, docusaurus-plugin-vercel-analytics, docusaurus-preset-classic, docusaurus-remark-plugin-npm2yarn, docusaurus-theme-classic, docusaurus-theme-common, docusaurus-theme-live-codeblock, docusaurus-theme-mermaid, docusaurus-theme-search-algolia, docusaurus-theme-translations, docusaurus-utils-common, docusaurus-utils-validation, docusaurus-utils, docusaurus, eslint-plugin, lqip-loader
      • #11408 chore: drop support for Node 18, that reached End-of-Life (@ slorber)
    • docusaurus-theme-classic
    • docusaurus-plugin-content-docs
    • docusaurus-bundler
      • #11290 chore: upgrade website to Rspack 1.4 + fix Rspack internal performance tracing (@ slorber)
    • Other
      • #11287 chore(website): split changelog per version + adjust changelog plugin implementation (@ slorber)

    🌐 Translations

    • docusaurus-theme-translations
      • #11315 fix(theme-translations): Add missing Portuguese (pt-BR) theme translations and improve some of it. (@ marcelocell)
      • #11305 fix(translations): Add missing Ukrainian translations (@ maluke)

    Committers: 18

  • 3.9.0-canary-6406 - 2025-09-26
  • 3.9.0-canary-6403 - 2025-09-25
  • 3.8.1 - 2025-06-06

    🐛 Bug Fix

    • docusaurus-theme-classic
      • #11242 fix(theme): fix unability to navigate to category's page when browsing its children items (@ slorber)
    • docusaurus-plugin-css-cascade-layers
      • #11241 fix(css-cascade-layers): fix windows css cascade layers bug (@ slorber)
    • docusaurus
      • #11222 fix(bundler): fix docusaurus start using concatenateModules: true (@ slorber)
      • #11217 fix: include Arc to supported Chromium Browsers (@ wellwelwel)
      • #11205 fix(core): fix docusaurus start error for macOS users with no Chromium-based browser (@ slorber)
    • docusaurus-types

    🏃‍♀️ Performance

    • docusaurus-plugin-content-blog, docusaurus-plugin-sitemap, docusaurus-theme-classic, docusaurus-types, docusaurus-utils, docusaurus
      • #11211 perf: avoid duplicated git log calls in loadContent() and postBuild() for untracked Git files (@ slorber)

    🔧 Maintenance

    • docusaurus-faster
    • docusaurus-plugin-content-docs
      • #11230 refactor(docs): extract loadVersion() without changing the behavior (@ slorber)
    • Other

    Committers: 7

  • 3.8.1-canary-6402 - 2025-09-25
  • 3.8.1-canary-6401 - 2025-09-23
  • 3.8.1-canary-6400 - 2025-09-23
  • 3.8.1-canary-6399 - 2025-09-23
  • 3.8.1-canary-6397 - 2025-09-19
  • 3.8.1-canary-6396 - 2025-09-19
  • 3.8.1-canary-6395 - 2025-09-12
  • 3.8.1-canary-6394 - 2025-09-12
  • 3.8.1-canary-6393 - 2025-09-12
  • 3.8.1-canary-6392 - 2025-09-12
  • 3.8.1-canary-6389 - 2025-09-09
  • 3.8.1-canary-6388 - 2025-09-04
  • 3.8.1-canary-6386 - 2025-08-29
  • 3.8.1-canary-6384 - 2025-08-25
  • 3.8.1-canary-6383 - 2025-08-24
  • 3.8.1-canary-6379 - 2025-08-15
  • 3.8.1-canary-6378 - 2025-08-04
  • 3.8.1-canary-6376 - 2025-07-31
  • 3.8.1-canary-6375 - 2025-07-28
  • 3.8.1-canary-6374 - 2025-07-28
  • 3.8.1-canary-6373 - 2025-07-24
  • 3.8.1-canary-6372 - 2025-07-24
  • 3.8.1-canary-6367 - 2025-07-15
  • 3.8.1-canary-6366 - 2025-07-10
  • 3.8.1-canary-6365 - 2025-07-07
  • 3.8.1-canary-6364 - 2025-07-07
  • 3.8.1-canary-6362 - 2025-07-04
  • 3.8.1-canary-6361 - 2025-07-04
  • 3.8.1-canary-6360 - 2025-07-03
  • 3.8.1-canary-6359 - 2025-06-26
  • 3.8.1-canary-6358 - 2025-06-26
  • 3.8.1-canary-6356 - 2025-06-25
  • 3.8.1-canary-6355 - 2025-06-25
  • 3.8.1-canary-6353 - 2025-06-24
  • 3.8.1-canary-6352 - 2025-06-24
  • 3.8.1-canary-6350 - 2025-06-19
  • 3.8.1-canary-6349 - 2025-06-19
  • 3.8.1-canary-6348 - 2025-06-17
  • 3.8.1-canary-6345 - 2025-06-13
  • 3.8.1-canary-6343 - 2025-06-06
  • 3.8.1-canary-6342 - 2025-06-06
  • 3.8.0 - 2025-05-27

    3.8.0 (2025-05-26)

    🚀 New Feature

    • docusaurus-plugin-css-cascade-layers, docusaurus-preset-classic, docusaurus-theme-classic, docusaurus-types, docusaurus
      • #11142 feat(theme): new CSS cascade layers plugin + built-in v4.useCssCascadeLayers future flag (@ slorber)
    • docusaurus
    • docusaurus-module-type-aliases, docusaurus-plugin-content-blog, docusaurus-theme-classic, docusaurus-theme-common, docusaurus-theme-search-algolia, docusaurus
      • #11090 feat(theme): make it possible to provide your own page title formatter (@ slorber)
    • docusaurus-plugin-content-pages
      • #11088 feat(pages): Support frontMatter.slug like docs and blog plugins (@ slorber)
    • docusaurus-faster, docusaurus
    • docusaurus-theme-classic, docusaurus-theme-common, docusaurus-theme-translations
      • #10987 feat(theme): Allow resetting colorMode to System/OS value (@ slorber)
    • docusaurus-remark-plugin-npm2yarn
    • docusaurus-theme-classic, docusaurus-theme-common
    • docusaurus-faster, docusaurus-plugin-content-docs, docusaurus-types, docusaurus
      • #10931 feat(core): Docusaurus Faster - Rspack Persistent Cache (@ slorber)
    • docusaurus-theme-classic
      • #10852 feat(theme): add versions attribute to docsVersionDropdown navbar item (@ hrumhurum)
    • docusaurus-types, docusaurus
    • docusaurus-plugin-sitemap, docusaurus-types, docusaurus
      • #10850 feat(core): new postBuild({routesBuildMetadata}) API, deprecate head attribute + v4 future flag (@ slorber)

    🐛 Bug Fix

    • docusaurus-plugin-content-blog
    • docusaurus-plugin-content-blog
    • docusaurus-plugin-content-docs
      • #11179 fix(mdx-loader): remove opt-in for mdx dependency file (@ slorber)
      • #10875 fix(docs): versioning CLI should copy localized translation file current.json to version-<v>.json (@ jkboxomine)
    • create-docusaurus
      • #11157 fix(create-docusaurus): Improve init template README, fix headings and remove $ in bash code blocks (@ arienshibani)
    • docusaurus-theme-common
      • #11153 fix(theme): restore former code block theme-common internal APIs (@ slorber)
      • #11046 fix(theme): Fix code block magic comments with CRLF line breaks bug (@ coder-xiaomo)
      • #10989 fix(theme): mobile drawer history blocker should be rendered conditionally (workaround) (@ slorber)
      • #10954 fix(theme): fix useColorMode().colorMode leading to React hydration mismatches (@ slorber)
    • docusaurus-theme-classic
    • docusaurus-theme-classic, docusaurus-theme-translations
      • #11053 fix(theme): navbar mobile sidebar should allow clicking dropdown parent link (@ slorber)
    • docusaurus-utils
    • docusaurus-theme-translations
    • docusaurus-plugin-ideal-image
      • #11026 fix(ideal-image): fix waypoint initial scroll bug (@ slorber)
      • #11014 fix(ideal-image): Internalize react-waypoint dependency, fix React 19 compatibility (@ slorber)
      • #10910 fix(ideal-image): Add issuer to ideal-image Webpack loader (@ slorber)
    • docusaurus-mdx-loader
      • #11004 fix(mdx-loader): refactor and fix heading to toc html value serialization (@ slorber)
    • docusaurus-module-type-aliases
    • docusaurus-theme-classic, docusaurus-theme-common, docusaurus-theme-translations
      • #10987 feat(theme): Allow resetting colorMode to System/OS value (@ slorber)
    • create-docusaurus, docusaurus-utils
      • #10958 fix(create-docusaurus): fix CLI and remove shelljs escapeShellArg util (@ slorber)
    • docusaurus-mdx-loader, docusaurus-plugin-content-docs
      • #10934 fix(docs): fix mdx loader cache invalidation bug on versions changes (@ slorber)
    • docusaurus-plugin-content-blog, docusaurus-plugin-content-docs, docusaurus-plugin-content-pages
    • docusaurus-plugin-content-blog, docusaurus-plugin-content-docs, docusaurus-theme-classic, docusaurus-theme-common
      • #10888 fix(seo): docs breadcrumb structured data should use JSON-LD and filter unliked categories (@ johnnyreilly)
    • docusaurus-theme-classic, docusaurus-theme-common
      • #10886 fix(theme): collapse doc sidebar category on label click if active (@ slorber)
    • docusaurus
      • #10915 fix(core): use os.availableParallelism() for SSG worker threads count (@ slorber)
    • docusaurus-plugin-content-docs, docusaurus-theme-classic
      • #10847 fix(theme): Fix <DocCardList> usage on docs at root of a sidebar (@ slorber)
    • docusaurus-plugin-svgr, docusaurus-types, docusaurus-utils, docusaurus
    • docusaurus-logger

    🏃‍♀️ Performance

    • docusaurus-utils, docusaurus
      • #11178 perf(core): disable Rspack parallelCodeSplitting temporarily (@ slorber)
    • docusaurus
      • #11177 perf(core): fix bad value for mergeDuplicateChunks (typo) (@ slorber)
      • #11170 perf(core): add default for DOCUSAURUS_SSG_WORKER_THREAD_RECYCLER_MAX_MEMORY (@ slorber)

Snyk has created this PR to upgrade @docusaurus/module-type-aliases from 3.5.2 to 3.9.1.

See this package in npm:
@docusaurus/module-type-aliases

See this project in Snyk:
https://app.snyk.io/org/nerds-github/project/f20b6e81-35bc-4e59-977c-5cc760a62345?utm_source=github&utm_medium=referral&page=upgrade-pr
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants