[Snyk] Upgrade recharts from 2.3.2 to 2.15.4 #697
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Snyk has created this PR to upgrade recharts from 2.3.2 to 2.15.4.
ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
The recommended version is 49 versions ahead of your current version.
The recommended version was released 4 months ago.
Issues fixed by the recommended upgrade:
SNYK-JS-BRACEEXPANSION-9789073
Release notes
Package name: recharts
-
2.15.4 - 2025-06-20
- resolve @ babel/runtime ReDoS vulnerability (SNYK-JS-BABELRUNTIME-10044504) by @ moehaje in #5969
- recharts isn't vulnerable to this per-se, but it does show up in security tooling like snyk
- @ moehaje made their first contribution in #5969
-
2.15.3 - 2025-04-18
-
2.15.2 - 2025-04-03
- @ brodriguezmilla made their first contribution in #5657
- @ nizans made their first contribution in #5718
-
2.15.1 - 2025-01-28
-
2.15.0 - 2024-12-12
-
2.14.1 - 2024-12-03
-
2.14.0 - 2024-12-02
-
2.13.3 - 2024-11-01
-
2.13.2 - 2024-10-30
-
2.13.1 - 2024-10-29
-
2.13.0 - 2024-10-10
-
2.13.0-alpha.5 - 2024-09-05
-
2.13.0-alpha.4 - 2024-06-02
-
2.13.0-alpha.3 - 2024-05-28
-
2.13.0-alpha.2 - 2024-05-26
-
2.13.0-alpha.1 - 2024-05-24
-
2.13.0-alpha.0 - 2024-05-24
-
2.12.7 - 2024-05-08
-
2.12.6 - 2024-04-21
-
2.12.5 - 2024-04-12
-
2.12.4 - 2024-04-04
-
2.12.3 - 2024-03-15
-
2.12.2 - 2024-03-01
-
2.12.1 - 2024-02-20
-
2.12.0 - 2024-02-09
-
2.11.0 - 2024-01-27
-
2.10.4 - 2024-01-09
-
2.10.3 - 2023-12-01
-
2.10.2 - 2023-11-29
-
2.10.1 - 2023-11-19
-
2.10.0 - 2023-11-19
-
2.9.3 - 2023-11-06
-
2.9.2 - 2023-11-01
-
2.9.1 - 2023-10-30
-
2.9.0 - 2023-10-15
-
2.8.0 - 2023-08-25
-
2.7.3 - 2023-08-08
-
2.7.2 - 2023-06-22
-
2.7.1 - 2023-06-15
-
2.7.0 - 2023-06-15
-
2.7.0-alpha.0 - 2023-05-26
-
2.6.2 - 2023-05-10
-
2.6.1 - 2023-05-10
-
2.6.0 - 2023-05-08
-
2.5.0 - 2023-03-15
-
2.4.3 - 2023-02-16
-
2.4.2 - 2023-02-15
-
2.4.1 - 2023-02-10
-
2.4.0 - 2023-02-09
-
2.3.2 - 2023-01-12
from recharts GitHub release notesWhat's Changed
Last 2.x patch - releasing since the
@ babel/runtimevulnerability is showing up in some security scans. Hoping to release 3.0 on 6/22 🚀Fix
X/YAxis: fix issue where recharts class names did not get passed to custom tick components by @ MyungAe in #5840Bar: allowminPointSizefunction to receive null and undefined values by @ eino in #5947TypeScript: fix issue which caused build errors whenallowSyntheticDefaultImports: falseby @ tfaller in #5810Security
New Contributors
Full Changelog: v2.15.3...v2.15.4
Last patch release before 3.0 🚀
What's Changed
Fix
XAxis: fix padding calculation forpadding="gap"andpadding="no-gap"when XAxis is type number by @ jackfletch in #5759Full Changelog: v2.15.2...v2.15.3
What's Changed
Few bugfixes and bug fix backports for 2.x
Fix
Bar/Rectangle: add index back to Bar Rectangle key to prevent duplicate key issues by @ ckifer in #5561Dot: re-includepointsobject in dotProps by @ brodriguezmilla in #5657Tooltip: addSVGPropsto Tooltip payload type to account for svg properties such as opacity passed by the user by @ ally1002 in #5712Tooltip/Bar: fixactiveBarprop not working when tooltipshared={false}by @ nizans in #5718General: allowdata-*props to be spread on svg elements and not be filtered out by @ prtmwrkr in #5666New Contributors
Full Changelog: v2.15.1...v2.15.2
Important
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.
For more information: