GHSA-cpqf-f22c-r95x: Vite Plugin React has a Denial of Service Vulnerability in React Server Components
@vitejs/plugin-rsc vendors react-server-dom-webpack, which contained a vulnerability in versions prior to 19.2.3. See details in React repository’s advisory https://github.com/facebook/react/security/advisories/GHSA-7gmr-mq3h-m5h9
References
Code Behaviors & Features
Detect and mitigate GHSA-cpqf-f22c-r95x with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →