Skip to content

fix(svelte): Bump svelte dev dependency to 3.59.2#19208

Merged
chargome merged 1 commit intodevelopfrom
cg/bump-svelte
Feb 6, 2026
Merged

fix(svelte): Bump svelte dev dependency to 3.59.2#19208
chargome merged 1 commit intodevelopfrom
cg/bump-svelte

Conversation

@chargome
Copy link
Member

@chargome chargome commented Feb 6, 2026

  • Bumps svelte devDependency in @sentry/svelte from 3.49.0 to 3.59.2 to resolve
    GHSA-gw32-9rmw-qwww (XSS via SSR <textarea bind:value>)

Closes #19209 (added automatically)

@github-actions
Copy link
Contributor

github-actions bot commented Feb 6, 2026

Codecov Results 📊


Generated by Codecov Action

@github-actions
Copy link
Contributor

github-actions bot commented Feb 6, 2026

node-overhead report 🧳

Note: This is a synthetic benchmark with a minimal express app and does not necessarily reflect the real-world performance impact in an application.
⚠️ Warning: Base artifact is not the latest one, because the latest workflow run is not done yet. This may lead to incorrect results. Try to re-run all tests to get up to date results.

Scenario Requests/s % of Baseline Prev. Requests/s Change %
GET Baseline 11,444 - 8,804 +30%
GET With Sentry 2,015 18% 1,655 +22%
GET With Sentry (error only) 7,615 67% 6,118 +24%
POST Baseline 1,295 - 1,174 +10%
POST With Sentry 657 51% 570 +15%
POST With Sentry (error only) 1,142 88% 1,054 +8%
MYSQL Baseline 3,590 - 3,324 +8%
MYSQL With Sentry 469 13% 433 +8%
MYSQL With Sentry (error only) 3,016 84% 2,626 +15%

View base workflow run

Copy link
Member

@Lms24 Lms24 left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

thanks!

@chargome chargome merged commit 471a683 into develop Feb 6, 2026
214 checks passed
@chargome chargome deleted the cg/bump-svelte branch February 6, 2026 14:13
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

fix(svelte): Bump svelte dev dependency to 3.59.2

2 participants