Skip to content

[Snyk] Upgrade @radix-ui/react-label from 2.1.7 to 2.1.8#29

Open
djharga wants to merge 1 commit intomainfrom
snyk-upgrade-e1beeee888e6a3bc129f1f3619822803
Open

[Snyk] Upgrade @radix-ui/react-label from 2.1.7 to 2.1.8#29
djharga wants to merge 1 commit intomainfrom
snyk-upgrade-e1beeee888e6a3bc129f1f3619822803

Conversation

@djharga
Copy link
Owner

@djharga djharga commented Dec 2, 2025

User description

snyk-top-banner

Snyk has created this PR to upgrade @radix-ui/react-label from 2.1.7 to 2.1.8.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 13 versions ahead of your current version.

  • The recommended version was released a month ago.

Release notes
Package name: @radix-ui/react-label
  • 2.1.8 - 2025-11-04
  • 2.1.8-rc.1761760880074 - 2025-10-29
  • 2.1.8-rc.1761757765388 - 2025-10-29
  • 2.1.8-rc.1761752560860 - 2025-10-29
  • 2.1.8-rc.1761750294484 - 2025-10-29
  • 2.1.8-rc.1761750045307 - 2025-10-29
  • 2.1.8-rc.1761621280215 - 2025-10-28
  • 2.1.8-rc.1761620575619 - 2025-10-28
  • 2.1.8-rc.1761619701743 - 2025-10-28
  • 2.1.8-rc.1761615925003 - 2025-10-28
  • 2.1.8-rc.1761614930803 - 2025-10-28
  • 2.1.8-rc.1761614469962 - 2025-10-28
  • 2.1.8-rc.1761582029795 - 2025-10-27
  • 2.1.7 - 2025-05-20
from @radix-ui/react-label GitHub release notes

Important

  • Check the changes in this PR to ensure they won't cause issues with your project.
  • This PR was automatically created by Snyk using the credentials of a real user.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:


CodeAnt-AI Description

Keep UI label component dependency up to date for forms

What Changed

  • Updated the label component library used in forms and inputs to the latest patch version
  • Pulled in upstream fixes and security updates from the label library’s new release

Impact

✅ Fewer issues with form labels
✅ Up-to-date UI label dependency
✅ Lower risk from label-related vulnerabilities

💡 Usage Guide

Checking Your Pull Request

Every time you make a pull request, our system automatically looks through it. We check for security issues, mistakes in how you're setting up your infrastructure, and common code problems. We do this to make sure your changes are solid and won't cause any trouble later.

Talking to CodeAnt AI

Got a question or need a hand with something in your pull request? You can easily get in touch with CodeAnt AI right here. Just type the following in a comment on your pull request, and replace "Your question here" with whatever you want to ask:

@codeant-ai ask: Your question here

This lets you have a chat with CodeAnt AI about your pull request, making it easier to understand and improve your code.

Example

@codeant-ai ask: Can you suggest a safer alternative to storing this secret?

Preserve Org Learnings with CodeAnt

You can record team preferences so CodeAnt AI applies them in future reviews. Reply directly to the specific CodeAnt AI suggestion (in the same thread) and replace "Your feedback here" with your input:

@codeant-ai: Your feedback here

This helps CodeAnt AI learn and adapt to your team's coding style and standards.

Example

@codeant-ai: Do not flag unused imports.

Retrigger review

Ask CodeAnt AI to review the PR again, by typing:

@codeant-ai: review

Check Your Repository Health

To analyze the health of your code repository, visit our dashboard at https://app.codeant.ai. This tool helps you identify potential issues and areas for improvement in your codebase, ensuring your repository maintains high standards of code health.

Snyk has created this PR to upgrade @radix-ui/react-label from 2.1.7 to 2.1.8.

See this package in npm:
@radix-ui/react-label

See this project in Snyk:
https://app.snyk.io/org/djharga-JFLsqLps4feQ2FGQ93c2jp/project/ee97121f-83bc-44d7-9b16-56834a77bb23?utm_source=github&utm_medium=referral&page=upgrade-pr
@vercel
Copy link

vercel bot commented Dec 2, 2025

The latest updates on your projects. Learn more about Vercel for GitHub.

Project Deployment Preview Comments Updated (UTC)
khatwa-learning-platform Ready Ready Preview Comment Dec 2, 2025 9:42am

@codeant-ai
Copy link

codeant-ai bot commented Dec 2, 2025

CodeAnt AI is reviewing your PR.


Thanks for using CodeAnt! 🎉

We're free for open-source projects. if you're enjoying it, help us grow by sharing.

Share on X ·
Reddit ·
LinkedIn

@netlify
Copy link

netlify bot commented Dec 2, 2025

Deploy Preview for scintillating-centaur-5d4290 ready!

Name Link
🔨 Latest commit 8b7e28f
🔍 Latest deploy log https://app.netlify.com/projects/scintillating-centaur-5d4290/deploys/692eb413da22fd00080dc58a
😎 Deploy Preview https://deploy-preview-29--scintillating-centaur-5d4290.netlify.app
📱 Preview on mobile
Toggle QR Code...

QR Code

Use your smartphone camera to open QR code link.

To edit notification comments on pull requests, go to your Netlify project configuration.

@netlify
Copy link

netlify bot commented Dec 2, 2025

Deploy Preview for frolicking-starburst-1a92a1 ready!

Name Link
🔨 Latest commit 8b7e28f
🔍 Latest deploy log https://app.netlify.com/projects/frolicking-starburst-1a92a1/deploys/692eb413d4d1a000084e755b
😎 Deploy Preview https://deploy-preview-29--frolicking-starburst-1a92a1.netlify.app
📱 Preview on mobile
Toggle QR Code...

QR Code

Use your smartphone camera to open QR code link.

To edit notification comments on pull requests, go to your Netlify project configuration.

@netlify
Copy link

netlify bot commented Dec 2, 2025

Deploy Preview for khatw ready!

Name Link
🔨 Latest commit 8b7e28f
🔍 Latest deploy log https://app.netlify.com/projects/khatw/deploys/692eb41397ccfc0008467c8c
😎 Deploy Preview https://deploy-preview-29--khatw.netlify.app
📱 Preview on mobile
Toggle QR Code...

QR Code

Use your smartphone camera to open QR code link.

To edit notification comments on pull requests, go to your Netlify project configuration.

Copy link

@greptile-apps greptile-apps bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Your free trial has ended. If you'd like to continue receiving code reviews, you can add a payment method here.

@coderabbitai
Copy link

coderabbitai bot commented Dec 2, 2025

Important

Review skipped

Ignore keyword(s) in the title.

Please check the settings in the CodeRabbit UI or the .coderabbit.yaml file in this repository. To trigger a single review, invoke the @coderabbitai review command.

You can disable this status message by setting the reviews.review_status to false in the CodeRabbit configuration file.

✨ Finishing touches
🧪 Generate unit tests (beta)
  • Create PR with unit tests
  • Post copyable unit tests in a comment
  • Commit unit tests in branch snyk-upgrade-e1beeee888e6a3bc129f1f3619822803

Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out.

❤️ Share

Comment @coderabbitai help to get the list of available commands and usage tips.

@gemini-code-assist
Copy link
Contributor

Summary of Changes

Hello @djharga, I'm Gemini Code Assist1! I'm currently reviewing this pull request and will post my feedback shortly. In the meantime, here's a summary to help you and other reviewers quickly get up to speed!

This pull request performs a routine maintenance update by upgrading the @radix-ui/react-label component library to its latest patch version. This ensures the project benefits from the most recent stability improvements and bug fixes provided by the library maintainers, contributing to a more robust and secure application.

Highlights

  • Dependency Upgrade: Upgraded the @radix-ui/react-label package from version 2.1.7 to 2.1.8 to incorporate the latest fixes and improvements.
  • Transitive Dependency Update: The @radix-ui/react-primitive sub-dependency, utilized by @radix-ui/react-label, was also updated from 2.1.3 to 2.1.4 as part of this upgrade.
  • Automated Maintenance: This pull request was automatically generated by Snyk to keep project dependencies current, which helps in proactively addressing potential vulnerabilities and maintaining overall project health.
Using Gemini Code Assist

The full guide for Gemini Code Assist can be found on our documentation page, here are some quick tips.

Invoking Gemini

You can request assistance from Gemini at any point by creating a comment using either /gemini <command> or @gemini-code-assist <command>. Below is a summary of the supported commands on the current page.

Feature Command Description
Code Review /gemini review Performs a code review for the current pull request in its current state.
Pull Request Summary /gemini summary Provides a summary of the current pull request in its current state.
Comment @gemini-code-assist Responds in comments when explicitly tagged, both in pull request comments and review comments.
Help /gemini help Displays a list of available commands.

Customization

To customize Gemini Code Assist for GitHub experience, repository maintainers can create a configuration file and/or provide a custom code review style guide (such as PEP-8 for Python) by creating and adding files to a .gemini/ folder in the base of the repository. Detailed instructions can be found here.

Limitations & Feedback

Gemini Code Assist may make mistakes. Please leave feedback on any instances where its feedback is incorrect or counter productive. You can react with 👍 and 👎 on @gemini-code-assist comments. If you're interested in giving your feedback about your experience with Gemini Code Assist for Github and other Google products, sign up here.

You can also get AI-powered code generation, chat, as well as code reviews directly in the IDE at no cost with the Gemini Code Assist IDE Extension.

Footnotes

  1. Review the Privacy Notices, Generative AI Prohibited Use Policy, Terms of Service, and learn how to configure Gemini Code Assist in GitHub here. Gemini can make mistakes, so double check it and use code with caution.

@sonarqubecloud
Copy link

sonarqubecloud bot commented Dec 2, 2025

@gemini-code-assist
Copy link
Contributor

Summary of Changes

Hello @djharga, I'm Gemini Code Assist1! I'm currently reviewing this pull request and will post my feedback shortly. In the meantime, here's a summary to help you and other reviewers quickly get up to speed!

This pull request performs a routine, automated dependency upgrade for the @radix-ui/react-label package. Initiated by Snyk, the update moves the package from version 2.1.7 to 2.1.8, ensuring the project benefits from the latest improvements and security patches. This helps maintain the overall health and security posture of the application by keeping its component libraries up-to-date.

Highlights

  • Dependency Upgrade: Upgraded the @radix-ui/react-label package from version 2.1.7 to 2.1.8. This is an automated update initiated by Snyk to ensure the project uses the latest stable version.
  • Sub-dependency Update: As part of the @radix-ui/react-label upgrade, its internal dependency @radix-ui/react-primitive was also updated from 2.1.3 to 2.1.4.
Using Gemini Code Assist

The full guide for Gemini Code Assist can be found on our documentation page, here are some quick tips.

Invoking Gemini

You can request assistance from Gemini at any point by creating a comment using either /gemini <command> or @gemini-code-assist <command>. Below is a summary of the supported commands on the current page.

Feature Command Description
Code Review /gemini review Performs a code review for the current pull request in its current state.
Pull Request Summary /gemini summary Provides a summary of the current pull request in its current state.
Comment @gemini-code-assist Responds in comments when explicitly tagged, both in pull request comments and review comments.
Help /gemini help Displays a list of available commands.

Customization

To customize Gemini Code Assist for GitHub experience, repository maintainers can create a configuration file and/or provide a custom code review style guide (such as PEP-8 for Python) by creating and adding files to a .gemini/ folder in the base of the repository. Detailed instructions can be found here.

Limitations & Feedback

Gemini Code Assist may make mistakes. Please leave feedback on any instances where its feedback is incorrect or counter productive. You can react with 👍 and 👎 on @gemini-code-assist comments. If you're interested in giving your feedback about your experience with Gemini Code Assist for Github and other Google products, sign up here.

You can also get AI-powered code generation, chat, as well as code reviews directly in the IDE at no cost with the Gemini Code Assist IDE Extension.

Footnotes

  1. Review the Privacy Notices, Generative AI Prohibited Use Policy, Terms of Service, and learn how to configure Gemini Code Assist in GitHub here. Gemini can make mistakes, so double check it and use code with caution.

@deepsource-io
Copy link
Contributor

deepsource-io bot commented Dec 2, 2025

Here's the code health analysis summary for commits 3dbf750..8b7e28f. View details on DeepSource ↗.

Analysis Summary

AnalyzerStatusSummaryLink
DeepSource JavaScript LogoJavaScript✅ SuccessView Check ↗
DeepSource Ansible LogoAnsible✅ SuccessView Check ↗

💡 If you’re a repository administrator, you can configure the quality gates from the settings.

@codeant-ai codeant-ai bot added the size:M This PR changes 30-99 lines, ignoring generated files label Dec 2, 2025
@codeant-ai
Copy link

codeant-ai bot commented Dec 2, 2025

CodeAnt AI finished reviewing your PR.

@gemini-code-assist
Copy link
Contributor

Summary of Changes

Hello @djharga, I'm Gemini Code Assist1! I'm currently reviewing this pull request and will post my feedback shortly. In the meantime, here's a summary to help you and other reviewers quickly get up to speed!

This pull request focuses on routine dependency maintenance by upgrading the @radix-ui/react-label component to its latest patch version. This ensures that the project benefits from the most recent bug fixes and security enhancements, contributing to a more stable and secure user interface, particularly concerning form labels. The update is a minor version bump, indicating low risk.

Highlights

  • Dependency Upgrade: The @radix-ui/react-label package has been upgraded from version 2.1.7 to 2.1.8.
  • Automated Update: This pull request was automatically generated by Snyk to keep dependencies up-to-date and incorporate the latest fixes and security updates.
  • Transitive Dependency Update: As part of the @radix-ui/react-label upgrade, its internal dependency @radix-ui/react-primitive was also updated from 2.1.3 to 2.1.4.
Using Gemini Code Assist

The full guide for Gemini Code Assist can be found on our documentation page, here are some quick tips.

Invoking Gemini

You can request assistance from Gemini at any point by creating a comment using either /gemini <command> or @gemini-code-assist <command>. Below is a summary of the supported commands on the current page.

Feature Command Description
Code Review /gemini review Performs a code review for the current pull request in its current state.
Pull Request Summary /gemini summary Provides a summary of the current pull request in its current state.
Comment @gemini-code-assist Responds in comments when explicitly tagged, both in pull request comments and review comments.
Help /gemini help Displays a list of available commands.

Customization

To customize Gemini Code Assist for GitHub experience, repository maintainers can create a configuration file and/or provide a custom code review style guide (such as PEP-8 for Python) by creating and adding files to a .gemini/ folder in the base of the repository. Detailed instructions can be found here.

Limitations & Feedback

Gemini Code Assist may make mistakes. Please leave feedback on any instances where its feedback is incorrect or counter productive. You can react with 👍 and 👎 on @gemini-code-assist comments. If you're interested in giving your feedback about your experience with Gemini Code Assist for Github and other Google products, sign up here.

You can also get AI-powered code generation, chat, as well as code reviews directly in the IDE at no cost with the Gemini Code Assist IDE Extension.

Footnotes

  1. Review the Privacy Notices, Generative AI Prohibited Use Policy, Terms of Service, and learn how to configure Gemini Code Assist in GitHub here. Gemini can make mistakes, so double check it and use code with caution.

Copy link
Contributor

@gemini-code-assist gemini-code-assist bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Code Review

This pull request from Snyk upgrades the @radix-ui/react-label dependency from version 2.1.7 to 2.1.8. This is a patch update, which should be safe to merge as it is expected to be backward-compatible. The changes in package.json and package-lock.json are correct and reflect the version bump and its transitive dependencies. I have reviewed the changes and found no issues.

Copy link
Contributor

@gemini-code-assist gemini-code-assist bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Code Review

This pull request is an automated dependency upgrade from Snyk, updating @radix-ui/react-label from 2.1.7 to 2.1.8. As a patch release, this update should be backward-compatible and primarily contain bug fixes. The changes in package.json and package-lock.json are correct for this version bump. My review found no issues, and the update appears safe to merge.

Copy link
Contributor

@gemini-code-assist gemini-code-assist bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Code Review

This pull request, automatically generated by Snyk, upgrades the @radix-ui/react-label package from version 2.1.7 to 2.1.8. This is a patch-level update, which should include bug fixes and non-breaking changes. The modifications are correctly applied to package.json and package-lock.json. This is a good maintenance practice to keep dependencies current. The change looks safe to merge.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

size:M This PR changes 30-99 lines, ignoring generated files

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants