[Snyk] Upgrade codemirror from 5.55.0 to 5.58.2 #5
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Snyk has created this PR to upgrade codemirror from 5.55.0 to 5.58.2.
ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
The recommended version fixes:
SNYK-JS-CODEMIRROR-1016937
Why? Proof of Concept exploit, Has a fix available, CVSS 5.3
(*) Note that the real score may have changed since the PR was raised.
Release notes
Package name: codemirror
No content.
Version 5.58.1
Bug fixes
placeholder addon: Remove arrow function that ended up in the code.
Version 5.58.0
Bug fixes
Make backspace delete by code point, not glyph.
Suppress flickering focus outline when clicking on scrollbars in Chrome.
Fix a bug that prevented attributes added via
markText
from showing up unless the span also had some other styling.Suppress cut and paste context menu entries in readonly editors in Chrome.
placeholder addon: Update placeholder visibility during composition.
New features
Make it less cumbersome to style new lint message types.
vim bindings: Support black hole register,
gn
andgN
Version 5.57.0
Bug fixes
Fix issue that broke binding the macOS Command key.
comment addon: Keep selection in front of inserted markers when adding a block comment.
css mode: Recognize more properties and value names.
annotatescrollbar addon: Don't hide matches in collapsed content.
New features
vim bindings: Support tag text objects in xml and html modes.
Version 5.56.0
Bug fixes
Line-wise pasting was fixed on Chrome Windows.
wast mode: Follow standard changes.
soy mode: Support import expressions, template type, and loop indices.
sql-hint addon: Improve handling of double quotes.
New features
show-hint addon: New option
scrollMargin
to control how many options are visible beyond the selected one.hardwrap addon: New option
forceBreak
to disable breaking of words that are longer than a line.Version 5.55.0
Bug fixes
The editor no longer overrides the rendering of zero-width joiners (allowing combined emoji to be shown).
vim bindings: Fix an issue where the
vim-mode-change
event was fired twice.javascript mode: Only allow
-->
-style comments at the start of a line.julia mode: Improve indentation.
pascal mode: Recognize curly bracket comments.
runmode addon: Further sync up the implementation of the standalone and node variants with the regular library.
New features
loadmode addon: Allow overriding the way the addon constructs filenames and loads modules.
Commit messages
Package name: codemirror
Compare
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.
For more information:

🧐 View latest project report
👩💻 Set who automatically gets assigned
🛠 Adjust upgrade PR settings
🔕 Ignore this dependency or unsubscribe from future upgrade PRs