supermemory/apps
Aniruddha Adak 403338ab43 fix(deps): bump next to ^16.3.3 in web, patches GHSA-p293-qw3h-jr36
GHSA-p293-qw3h-jr36 (CVE-2026-75604, critical): unauthenticated RCE on Windows-hosted Next.js servers. apps/web was on ^16.0.11 (affected: >=16.0 <16.3.3). bun.lock regenerated (resolves next 16.3.4). Follows up #1655, which covered chatapp, sdk-playground and memory-graph-playground but missed web.
2026-09-14 22:41:28 +05:30
..
docs chore(web): reduce the app to a redirect shell, drop the browser extension (#1651) 2026-09-07 19:56:46 +00:00
mcp fix(mcp): let getDocument read any accessible document (#1641) 2026-09-02 21:49:57 +00:00
memory-graph-playground fix(deps): bump next to 16.3.3 in chatapp, sdk-playground, and memory-graph-playground (#1655) 2026-09-09 23:01:32 -07:00
raycast-extension fix(mcp): bound tool inputs and scope get_document to the active space (#1593) 2026-08-24 21:36:04 +00:00
sdk-playground fix(deps): bump next to 16.3.3 in chatapp, sdk-playground, and memory-graph-playground (#1655) 2026-09-09 23:01:32 -07:00
web fix(deps): bump next to ^16.3.3 in web, patches GHSA-p293-qw3h-jr36 2026-09-14 22:41:28 +05:30