chore(deps): bump frontend and docs deps, clear npm audit findings

Bump vite, oxlint/oxfmt, msw, jsdom and plugin-react in the frontend, and
fumadocs, lucide-react, oxlint/oxfmt, postcss and pnpm in docs.

npm audit reported seroval <=1.6.2 (critical) via solid-js, which the
react-query devtools pull in pinned to ~1.5.4, and sprintf-js (no patched
release) via remarkable's argparse@1. `npm audit fix --force` "fixed" both
by downgrading swagger-ui-react to 3.23.3, which brings in far worse
advisories. Instead override seroval/seroval-plugins to ^1.6.8 and give
remarkable argparse@2; remarkable only requires argparse from its unused
CLI entry, so the bundled library is unaffected.

pnpm appends an exact-version minimumReleaseAgeExclude entry on every
update of a too-fresh release and never prunes them. Drop the stale ones;
keep only fumadocs 16.16.2 and oxlint/oxfmt, still inside the 1-day cutoff.
This commit is contained in:
MHSanaei
2026-10-06 12:09:38 +02:00
parent 66ef5bbc05
commit d57dcf824b
5 changed files with 738 additions and 691 deletions
+8 -8
View File
@@ -18,12 +18,12 @@
"test:watch": "vitest"
},
"dependencies": {
"fumadocs-core": "^16.15.18",
"fumadocs-core": "^16.16.2",
"fumadocs-docgen": "^3.1.1",
"fumadocs-mdx": "^15.4.6",
"fumadocs-openapi": "^12.1.1",
"fumadocs-ui": "^16.15.18",
"lucide-react": "^1.50.0",
"fumadocs-openapi": "^12.3.0",
"fumadocs-ui": "^16.16.2",
"lucide-react": "^1.52.0",
"mermaid": "^12.1.0",
"next": "16.3.8",
"next-themes": "^0.4.6",
@@ -40,12 +40,12 @@
"@types/node": "^26.6.4",
"@types/react": "^19.3.0",
"@types/react-dom": "^19.3.0",
"oxfmt": "0.71.0",
"oxlint": "1.86.0",
"postcss": "^8.5.28",
"oxfmt": "0.72.0",
"oxlint": "1.87.0",
"postcss": "^8.5.29",
"tailwindcss": "^4.3.3",
"typescript": "7.0.2",
"vitest": "^5.0.3"
},
"packageManager": "pnpm@12.8.1"
"packageManager": "pnpm@12.9.1"
}