Skip to content

[Snyk] Upgrade react from 19.2.8 to 19.3.0 - #779

Open
posit-snyk-bot wants to merge 6 commits into
mainfrom
snyk-upgrade-89e742ad9e09538f4f066a49e4890be8
Open

posit-snyk-bot wants to merge 6 commits into
mainfrom
snyk-upgrade-89e742ad9e09538f4f066a49e4890be8

Conversation

@posit-snyk-bot

Copy link
Copy Markdown
Contributor

snyk-top-banner

Snyk has created this PR to upgrade react from 19.2.8 to 19.3.0.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 204 versions ahead of your current version.

  • The recommended version was released 23 days ago.

Breaking Change Risk

Merge Risk: Low

Notice: This assessment is enhanced by AI.

Release notes
Package name: react

Snyk has created this PR to upgrade react from 19.2.8 to 19.3.0.

See this package in npm:
react

See this project in Snyk:
https://app.snyk.io/org/open-source-6kz/project/da61fe92-598c-4a61-a988-743fbb7e7a69?utm_source=github&utm_medium=referral&page=upgrade-pr
@posit-snyk-bot

Copy link
Copy Markdown
Contributor Author

Merge Risk: Low

This minor version upgrade from React 19.2.8 to 19.3.0 contains no breaking changes and is considered a safe upgrade. [4]

The release primarily stabilizes two features that were previously experimental: <ViewTransition> and Fragment Refs. [2, 3] It also introduces several new additive features and bug fixes.

Key New Features (Not Breaking):

  • <ViewTransition> is now stable: This component allows for easier animation of UI elements as they enter, exit, or change, using the browser's native View Transition API. [1, 2]
  • Fragment Refs are now stable: You can now attach a ref to a <Fragment> to manage focus or events for a group of sibling elements without needing a wrapper <div>. [1, 4]
  • use(browser()): A new hook to opt specific components out of server-side rendering, which is useful for components that rely on browser-only APIs. [2]
  • Improved Trusted Types Support: Enhances security by correctly handling Trusted Types objects, preventing them from being coerced into strings. [1, 3]

This upgrade consists of new features and bug fixes, and no migration effort is required. [4]

Notice 🤖: This content was augmented using artificial intelligence. AI-generated content may contain errors and should be reviewed for accuracy before use.

@posit-snyk-bot

posit-snyk-bot commented Oct 2, 2026 •

Copy link
Copy Markdown
Contributor Author

✅ Snyk checks have passed. No issues have been found so far.

Status Scan Engine Critical High Medium Low Total (0)
✅ Open Source Security 0 0 0 0 0 issues
✅ Licenses 0 0 0 0 0 issues

💻 Catch issues earlier using the plugins for VS Code, JetBrains IDEs, Visual Studio, and Eclipse.

This branch has not been deployed

No deployments
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants