Maintenance and Security
A critical maintenance update was released to address several security advisories in React Router 7. This update ensures the template remains secure and up-to-date with the latest patches.
Addressed Vulnerabilities
The following CVEs in React Router 7 were addressed:
- XSS via Meta component: Resolved issues when generating
script:ld+jsontags. - Unexpected external redirects: Fixed vulnerabilities via untrusted paths.
- CSRF in Action Processing: Enhanced protection for server action request processing.
- XSS via Open Redirects: Improved validation to prevent open redirect vulnerabilities.
Regular dependency maintenance is crucial for the security and stability of the platform.