Skip to content

chore(deps): bump the tiptap-family group across 1 directory with 6 updates - #74

Merged
wpessential merged 1 commit into
mainfrom
dependabot/npm_and_yarn/tiptap-family-4a8bbf4301
Oct 7, 2026
Merged

wpessential merged 1 commit into
mainfrom
dependabot/npm_and_yarn/tiptap-family-4a8bbf4301

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 14, 2026 •

Copy link
Copy Markdown
Contributor

Bumps the tiptap-family group with 6 updates in the / directory:

Package From To
@tiptap/react 3.30.5 3.31.4
@tiptap/pm 3.30.5 3.31.4
@tiptap/starter-kit 3.30.5 3.31.4
@tiptap/extension-link 3.30.5 3.31.4
@tiptap/extension-placeholder 3.30.5 3.31.4
@tiptap/extension-underline 3.30.5 3.31.4

Updates @tiptap/react from 3.30.5 to 3.31.4

Release notes

Sourced from @​tiptap/react's releases.

v3.31.4

@​tiptap/extension-mathematics

Patch Changes

  • The mathematics extension no longer crashes the editor in older WebKit browsers and WKWebView.

@​tiptap/core

Patch Changes

  • Fix a TypeError thrown when the source editor is destroyed right after dragging content into another editor.
  • splitBlock no longer throws TransformError: Inserted content deeper than insertion position when the selection spans block boundaries (for example from the start of one paragraph into another block, or across an isolating node). The command now returns false when the split is not possible.
  • Prevent extra CSS declarations from being rendered from editor content.
  • Atom block directives (:::name {…} :::) indented by up to 3 spaces are now tokenized, matching CommonMark indentation rules for block constructs.
  • Numeric HTML entities (&[#39](https://github.com/ueberdosis/tiptap/tree/HEAD/packages/react/issues/39);, ') are now decoded when parsing markdown, instead of showing up as literal text in the editor.
  • The editor element keeps role="textbox" after setOptions() when editorProps.attributes is set. Before, a re-render in React replaced the default role with the user attributes. Attributes passed as a function now get the default role as well.
  • Undoing an input rule restores the Markdown characters that triggered it when using Collaboration.
  • Bind parseMarkdown and renderMarkdown to the configured extension so hooks can read this.options and this.name without an Editor.
  • Pressing Enter before the text of a checked task item now leaves the new empty item unchecked and the item with the text checked. Attributes declared with keepOnSplit: false now reset on the new item, not on the one that keeps the text.
  • Stop joinItemForward and joinItemBackward from joining across isolating nodes.
  • Node views without a contentDOM no longer ignore selection mutations, so ProseMirror moves the caret back to a valid position when the browser places it inside the node view.

@​tiptap/markdown

Patch Changes

  • Fix Markdown serialization of inline code containing backticks
  • Bind parseMarkdown and renderMarkdown to the configured extension so hooks can read this.options and this.name without an Editor.

@​tiptap/extension-code

Patch Changes

  • Fix Markdown serialization of inline code containing backticks

@​tiptap/extension-table

Patch Changes

  • Table cells exported to Markdown now escape literal pipe characters, so the cell content survives when the output is read back.
  • Multi-block table cells no longer leak a U+001F control character into Markdown.
  • Right-clicking a cell inside a multi-cell table selection no longer collapses that selection.
  • Prevent extra CSS declarations from being rendered from editor content.
  • Table cells and headers no longer render the default colspan="1" and rowspan="1" attributes. Cells that actually span still render them, matching how prosemirror-tables serializes spans.

@​tiptap/extension-list

Patch Changes

... (truncated)

Changelog

Sourced from @​tiptap/react's changelog.

3.31.4

Patch Changes

  • 807658a: Fix Enter and Shift-Enter inside React node views on iOS and Android.
  • 8dc5100: React and Vue now use matching menu extension versions when installed from a specific release.
  • Updated dependencies [e1fb343]
  • Updated dependencies [8cb08c5]
  • Updated dependencies [4d56526]
  • Updated dependencies [7c089f2]
  • Updated dependencies [6f14bee]
  • Updated dependencies [45e1e85]
  • Updated dependencies [6c660cd]
  • Updated dependencies [182cba2]
  • Updated dependencies [1f60d5b]
  • Updated dependencies [7f9a867]
  • Updated dependencies [c92b926]
    • @​tiptap/core@​3.31.4
    • @​tiptap/pm@​3.31.4

3.31.3

Patch Changes

  • 99af46d: Fix a TypeScript error (TS2694) in the shipped type declarations when skipLibCheck is turned off.
    • @​tiptap/core@​3.31.3
    • @​tiptap/pm@​3.31.3

3.31.2

Patch Changes

  • Updated dependencies [c56b4c9]
    • @​tiptap/pm@​3.31.2
    • @​tiptap/core@​3.31.2

3.31.1

Patch Changes

  • Updated dependencies [cd32a2f]
    • @​tiptap/core@​3.31.1
    • @​tiptap/pm@​3.31.1

3.31.0

Minor Changes

  • 4372d81: Align selected with ProseMirror node selections by default, expose text selections through selectionInside, and keep selectedOnTextSelection compatible.

... (truncated)

Commits
  • d9af9c6 chore(release): release new stable release (#8347)
  • 8dc5100 fix: pin optional bubble/floating-menu deps with workspace:*
  • 807658a fix(react): backport mobile Enter handling to v3
  • de4369d Refactor/core tests migration (#8313)
  • 35d2110 chore(release): release new stable release (#8311)
  • 99af46d fix(react): stop importing Editor through the package barrel (#8308)
  • f38fec0 chore(release): release new stable release (#8304)
  • bd35333 chore(release): release new stable release (#8297)
  • 0280f4a chore(release): release new stable release (#8292)
  • 4372d81 Refactor React node view selection tracking (#8289) (#8291)
  • Additional commits viewable in compare view

Updates @tiptap/pm from 3.30.5 to 3.31.4

Release notes

Sourced from @​tiptap/pm's releases.

v3.31.4

@​tiptap/extension-mathematics

Patch Changes

  • The mathematics extension no longer crashes the editor in older WebKit browsers and WKWebView.

@​tiptap/core

Patch Changes

  • Fix a TypeError thrown when the source editor is destroyed right after dragging content into another editor.
  • splitBlock no longer throws TransformError: Inserted content deeper than insertion position when the selection spans block boundaries (for example from the start of one paragraph into another block, or across an isolating node). The command now returns false when the split is not possible.
  • Prevent extra CSS declarations from being rendered from editor content.
  • Atom block directives (:::name {…} :::) indented by up to 3 spaces are now tokenized, matching CommonMark indentation rules for block constructs.
  • Numeric HTML entities (&[#39](https://github.com/ueberdosis/tiptap/tree/HEAD/packages/pm/issues/39);, ') are now decoded when parsing markdown, instead of showing up as literal text in the editor.
  • The editor element keeps role="textbox" after setOptions() when editorProps.attributes is set. Before, a re-render in React replaced the default role with the user attributes. Attributes passed as a function now get the default role as well.
  • Undoing an input rule restores the Markdown characters that triggered it when using Collaboration.
  • Bind parseMarkdown and renderMarkdown to the configured extension so hooks can read this.options and this.name without an Editor.
  • Pressing Enter before the text of a checked task item now leaves the new empty item unchecked and the item with the text checked. Attributes declared with keepOnSplit: false now reset on the new item, not on the one that keeps the text.
  • Stop joinItemForward and joinItemBackward from joining across isolating nodes.
  • Node views without a contentDOM no longer ignore selection mutations, so ProseMirror moves the caret back to a valid position when the browser places it inside the node view.

@​tiptap/markdown

Patch Changes

  • Fix Markdown serialization of inline code containing backticks
  • Bind parseMarkdown and renderMarkdown to the configured extension so hooks can read this.options and this.name without an Editor.

@​tiptap/extension-code

Patch Changes

  • Fix Markdown serialization of inline code containing backticks

@​tiptap/extension-table

Patch Changes

  • Table cells exported to Markdown now escape literal pipe characters, so the cell content survives when the output is read back.
  • Multi-block table cells no longer leak a U+001F control character into Markdown.
  • Right-clicking a cell inside a multi-cell table selection no longer collapses that selection.
  • Prevent extra CSS declarations from being rendered from editor content.
  • Table cells and headers no longer render the default colspan="1" and rowspan="1" attributes. Cells that actually span still render them, matching how prosemirror-tables serializes spans.

@​tiptap/extension-list

Patch Changes

... (truncated)

Changelog

Sourced from @​tiptap/pm's changelog.

3.31.4

3.31.3

3.31.2

Patch Changes

  • c56b4c9: Bump prosemirror-view to ^1.42.3, which fixes an XSS vulnerability where pasting crafted HTML could run arbitrary JavaScript (GHSA-c8x8-7fp4-3x9w).

3.31.1

3.31.0

3.30.6

Commits

Updates @tiptap/starter-kit from 3.30.5 to 3.31.4

Release notes

Sourced from @​tiptap/starter-kit's releases.

v3.31.4

@​tiptap/extension-mathematics

Patch Changes

  • The mathematics extension no longer crashes the editor in older WebKit browsers and WKWebView.

@​tiptap/core

Patch Changes

  • Fix a TypeError thrown when the source editor is destroyed right after dragging content into another editor.
  • splitBlock no longer throws TransformError: Inserted content deeper than insertion position when the selection spans block boundaries (for example from the start of one paragraph into another block, or across an isolating node). The command now returns false when the split is not possible.
  • Prevent extra CSS declarations from being rendered from editor content.
  • Atom block directives (:::name {…} :::) indented by up to 3 spaces are now tokenized, matching CommonMark indentation rules for block constructs.
  • Numeric HTML entities (&[#39](https://github.com/ueberdosis/tiptap/tree/HEAD/packages/starter-kit/issues/39);, ') are now decoded when parsing markdown, instead of showing up as literal text in the editor.
  • The editor element keeps role="textbox" after setOptions() when editorProps.attributes is set. Before, a re-render in React replaced the default role with the user attributes. Attributes passed as a function now get the default role as well.
  • Undoing an input rule restores the Markdown characters that triggered it when using Collaboration.
  • Bind parseMarkdown and renderMarkdown to the configured extension so hooks can read this.options and this.name without an Editor.
  • Pressing Enter before the text of a checked task item now leaves the new empty item unchecked and the item with the text checked. Attributes declared with keepOnSplit: false now reset on the new item, not on the one that keeps the text.
  • Stop joinItemForward and joinItemBackward from joining across isolating nodes.
  • Node views without a contentDOM no longer ignore selection mutations, so ProseMirror moves the caret back to a valid position when the browser places it inside the node view.

@​tiptap/markdown

Patch Changes

  • Fix Markdown serialization of inline code containing backticks
  • Bind parseMarkdown and renderMarkdown to the configured extension so hooks can read this.options and this.name without an Editor.

@​tiptap/extension-code

Patch Changes

  • Fix Markdown serialization of inline code containing backticks

@​tiptap/extension-table

Patch Changes

  • Table cells exported to Markdown now escape literal pipe characters, so the cell content survives when the output is read back.
  • Multi-block table cells no longer leak a U+001F control character into Markdown.
  • Right-clicking a cell inside a multi-cell table selection no longer collapses that selection.
  • Prevent extra CSS declarations from being rendered from editor content.
  • Table cells and headers no longer render the default colspan="1" and rowspan="1" attributes. Cells that actually span still render them, matching how prosemirror-tables serializes spans.

@​tiptap/extension-list

Patch Changes

... (truncated)

Changelog

Sourced from @​tiptap/starter-kit's changelog.

3.31.4

Patch Changes

  • Updated dependencies [e1fb343]
  • Updated dependencies [8cb08c5]
  • Updated dependencies [dc46235]
  • Updated dependencies [7647021]
  • Updated dependencies [4d56526]
  • Updated dependencies [bf3f94d]
  • Updated dependencies [7c089f2]
  • Updated dependencies [6f14bee]
  • Updated dependencies [45e1e85]
  • Updated dependencies [6c660cd]
  • Updated dependencies [182cba2]
  • Updated dependencies [1f60d5b]
  • Updated dependencies [7f9a867]
  • Updated dependencies [c92b926]
    • @​tiptap/core@​3.31.4
    • @​tiptap/extension-code@​3.31.4
    • @​tiptap/extension-list@​3.31.4
    • @​tiptap/extension-link@​3.31.4
    • @​tiptap/extension-blockquote@​3.31.4
    • @​tiptap/extension-bold@​3.31.4
    • @​tiptap/extension-code-block@​3.31.4
    • @​tiptap/extension-document@​3.31.4
    • @​tiptap/extension-hard-break@​3.31.4
    • @​tiptap/extension-heading@​3.31.4
    • @​tiptap/extension-horizontal-rule@​3.31.4
    • @​tiptap/extension-italic@​3.31.4
    • @​tiptap/extension-paragraph@​3.31.4
    • @​tiptap/extension-strike@​3.31.4
    • @​tiptap/extension-text@​3.31.4
    • @​tiptap/extension-underline@​3.31.4
    • @​tiptap/extensions@​3.31.4
    • @​tiptap/extension-list-item@​3.31.4
    • @​tiptap/extension-list-keymap@​3.31.4
    • @​tiptap/extension-bullet-list@​3.31.4
    • @​tiptap/extension-ordered-list@​3.31.4
    • @​tiptap/extension-dropcursor@​3.31.4
    • @​tiptap/extension-gapcursor@​3.31.4
    • @​tiptap/pm@​3.31.4

3.31.3

Patch Changes

  • @​tiptap/extension-dropcursor@​3.31.3
  • @​tiptap/extension-gapcursor@​3.31.3
  • @​tiptap/extension-list-item@​3.31.3

... (truncated)

Commits

Updates @tiptap/extension-link from 3.30.5 to 3.31.4

Release notes

Sourced from @​tiptap/extension-link's releases.

v3.31.4

@​tiptap/extension-mathematics

Patch Changes

  • The mathematics extension no longer crashes the editor in older WebKit browsers and WKWebView.

@​tiptap/core

Patch Changes

  • Fix a TypeError thrown when the source editor is destroyed right after dragging content into another editor.
  • splitBlock no longer throws TransformError: Inserted content deeper than insertion position when the selection spans block boundaries (for example from the start of one paragraph into another block, or across an isolating node). The command now returns false when the split is not possible.
  • Prevent extra CSS declarations from being rendered from editor content.
  • Atom block directives (:::name {…} :::) indented by up to 3 spaces are now tokenized, matching CommonMark indentation rules for block constructs.
  • Numeric HTML entities (&[#39](https://github.com/ueberdosis/tiptap/tree/HEAD/packages/extension-link/issues/39);, ') are now decoded when parsing markdown, instead of showing up as literal text in the editor.
  • The editor element keeps role="textbox" after setOptions() when editorProps.attributes is set. Before, a re-render in React replaced the default role with the user attributes. Attributes passed as a function now get the default role as well.
  • Undoing an input rule restores the Markdown characters that triggered it when using Collaboration.
  • Bind parseMarkdown and renderMarkdown to the configured extension so hooks can read this.options and this.name without an Editor.
  • Pressing Enter before the text of a checked task item now leaves the new empty item unchecked and the item with the text checked. Attributes declared with keepOnSplit: false now reset on the new item, not on the one that keeps the text.
  • Stop joinItemForward and joinItemBackward from joining across isolating nodes.
  • Node views without a contentDOM no longer ignore selection mutations, so ProseMirror moves the caret back to a valid position when the browser places it inside the node view.

@​tiptap/markdown

Patch Changes

  • Fix Markdown serialization of inline code containing backticks
  • Bind parseMarkdown and renderMarkdown to the configured extension so hooks can read this.options and this.name without an Editor.

@​tiptap/extension-code

Patch Changes

  • Fix Markdown serialization of inline code containing backticks

@​tiptap/extension-table

Patch Changes

  • Table cells exported to Markdown now escape literal pipe characters, so the cell content survives when the output is read back.
  • Multi-block table cells no longer leak a U+001F control character into Markdown.
  • Right-clicking a cell inside a multi-cell table selection no longer collapses that selection.
  • Prevent extra CSS declarations from being rendered from editor content.
  • Table cells and headers no longer render the default colspan="1" and rowspan="1" attributes. Cells that actually span still render them, matching how prosemirror-tables serializes spans.

@​tiptap/extension-list

Patch Changes

... (truncated)

Changelog

Sourced from @​tiptap/extension-link's changelog.

3.31.4

Patch Changes

  • bf3f94d: Typing spaces after a link no longer extends the link, including multiple spaces inserted in one transaction. Formatting changes and undo/redo preserve existing linked whitespace.
  • Updated dependencies [e1fb343]
  • Updated dependencies [8cb08c5]
  • Updated dependencies [4d56526]
  • Updated dependencies [7c089f2]
  • Updated dependencies [6f14bee]
  • Updated dependencies [45e1e85]
  • Updated dependencies [6c660cd]
  • Updated dependencies [182cba2]
  • Updated dependencies [1f60d5b]
  • Updated dependencies [7f9a867]
  • Updated dependencies [c92b926]
    • @​tiptap/core@​3.31.4
    • @​tiptap/pm@​3.31.4

3.31.3

Patch Changes

  • @​tiptap/core@​3.31.3
  • @​tiptap/pm@​3.31.3

3.31.2

Patch Changes

  • Updated dependencies [c56b4c9]
    • @​tiptap/pm@​3.31.2
    • @​tiptap/core@​3.31.2

3.31.1

Patch Changes

  • Updated dependencies [cd32a2f]
    • @​tiptap/core@​3.31.1
    • @​tiptap/pm@​3.31.1

3.31.0

Patch Changes

  • @​tiptap/core@​3.31.0
  • @​tiptap/pm@​3.31.0

3.30.6

... (truncated)

Commits

Updates @tiptap/extension-placeholder from 3.30.5 to 3.31.4

Release notes

Sourced from @​tiptap/extension-placeholder's releases.

v3.31.4

@​tiptap/extension-mathematics

Patch Changes

  • The mathematics extension no longer crashes the editor in older WebKit browsers and WKWebView.

@​tiptap/core

Patch Changes

  • Fix a TypeError thrown when the source editor is destroyed right after dragging content into another editor.
  • splitBlock no longer throws TransformError: Inserted content deeper than insertion position when the selection spans block boundaries (for example from the start of one paragraph into another block, or across an isolating node). The command now returns false when the split is not possible.
  • Prevent extra CSS declarations from being rendered from editor content.
  • Atom block directives (:::name {…} :::) indented by up to 3 spaces are now tokenized, matching CommonMark indentation rules for block constructs.
  • Numeric HTML entities (&[#39](https://github.com/ueberdosis/tiptap/tree/HEAD/packages-deprecated/extension-placeholder/issues/39);, ') are now decoded when parsing markdown, instead of showing up as literal text in the editor.
  • The editor element keeps role="textbox" after setOptions() when editorProps.attributes is set. Before, a re-render in React replaced the default role with the user attributes. Attributes passed as a function now get the default role as well.
  • Undoing an input rule restores the Markdown characters that triggered it when using Collaboration.
  • Bind parseMarkdown and renderMarkdown to the configured extension so hooks can read this.options and this.name without an Editor.
  • Pressing Enter before the text of a checked task item now leaves the new empty item unchecked and the item with the text checked. Attributes declared with keepOnSplit: false now reset on the new item, not on the one that keeps the text.
  • Stop joinItemForward and joinItemBackward from joining across isolating nodes.
  • Node views without a contentDOM no longer ignore selection mutations, so ProseMirror moves the caret back to a valid position when the browser places it inside the node view.

@​tiptap/markdown

Patch Changes

  • Fix Markdown serialization of inline code containing backticks
  • Bind parseMarkdown and renderMarkdown to the configured extension so hooks can read this.options and this.name without an Editor.

@​tiptap/extension-code

Patch Changes

  • Fix Markdown serialization of inline code containing backticks

@​tiptap/extension-table

Patch Changes

  • Table cells exported to Markdown now escape literal pipe characters, so the cell content survives when the output is read back.
  • Multi-block table cells no longer leak a U+001F control character into Markdown.
  • Right-clicking a cell inside a multi-cell table selection no longer collapses that selection.
  • Prevent extra CSS declarations from being rendered from editor content.
  • Table cells and headers no longer render the default colspan="1" and rowspan="1" attributes. Cells that actually span still render them, matching how prosemirror-tables serializes spans.

@​tiptap/extension-list

Patch Changes

... (truncated)

Changelog

Sourced from @​tiptap/extension-placeholder's changelog.

3.31.4

Patch Changes

  • @​tiptap/extensions@​3.31.4

3.31.3

Patch Changes

  • @​tiptap/extensions@​3.31.3

3.31.2

Patch Changes

  • @​tiptap/extensions@​3.31.2

3.31.1

Patch Changes

  • @​tiptap/extensions@​3.31.1

3.31.0

Patch Changes

  • @​tiptap/extensions@​3.31.0

3.30.6

Patch Changes

  • @​tiptap/extensions@​3.30.6
Commits

Updates @tiptap/extension-underline from 3.30.5 to 3.31.4

Release notes

Sourced from @​tiptap/extension-underline's releases.

v3.31.4

@​tiptap/extension-mathematics

Patch Changes

  • The mathematics extension no longer crashes the editor in older WebKit browsers and WKWebView.

@​tiptap/core

Patch Changes

  • Fix a TypeError thrown when the source editor is destroyed right after dragging content into another editor.
  • splitBlock no longer throws TransformError: Inserted content deeper than insertion position when the selection spans block boundaries (for example from the start of one paragraph into another block, or across an isolating node). The command now returns false when the split is not possible.
  • Prevent extra CSS declarations from being rendered from editor content.
  • Atom block directives (:::name {…} :::) indented by up to 3 spaces are now tokenized, matching CommonMark indentation rules for block constructs.
  • Numeric HTML entities (&[#39](https://github.com/ueberdosis/tiptap/tree/HEAD/packages/extension-underline/issues/39);, ') are now decoded when parsing markdown, instead of showing up as literal text in the editor.
  • The editor element keeps role="textbox" after setOptions() when editorProps.attributes is set. Before, a re-render in React replaced the default role with the user attributes. Attributes passed as a function now get the default role as well.
  • Undoing an input rule restores the Markdown characters that triggered it when using Collaboration.
  • Bind parseMarkdown and renderMarkdown to the configured extension so hooks can read this.options and this.name without an Editor.
  • Pressing Enter before the text of a checked task item now leaves the new empty item unchecked and the item with the text checked. Attributes declared with keepOnSplit: false now reset on the new item, not on the one that keeps the text.
  • Stop joinItemForward and joinItemBackward from joining across isolating nodes.
  • Node views without a contentDOM no longer ignore selection mutations, so ProseMirror moves the caret back to a valid position when the browser places it inside the node view.

@​tiptap/markdown

Patch Changes

  • Fix Markdown serialization of inline code containing backticks
  • Bind parseMarkdown and renderMarkdown to the configured extension so hooks can read this.options and this.name without an Editor.

@​tiptap/extension-code

Patch Changes

  • Fix Markdown serialization of inline code containing backticks

@​tiptap/extension-table

Patch Changes

  • Table cells exported to Markdown now escape literal pipe characters, so the cell content survives when the output is read back.
  • Multi-block table cells no longer leak a U+001F control character into Markdown.
  • Right-clicking a cell inside a multi-cell table selection no longer collapses that selection.
  • Prevent extra CSS declarations from being rendered from editor content.
  • Table cells and headers no longer render the default colspan="1" and rowspan="1" attributes. Cells that actually span still render them, matching how prosemirror-tables serializes spans.

@​tiptap/extension-list

Patch Changes

... (truncated)

Changelog

Sourced from @​tiptap/extension-underline's changelog.

3.31.4

Patch Changes

  • Updated dependencies [e1fb343]
  • Updated dependencies [8cb08c5]
  • Updated dependencies [4d56526]
  • Updated dependencies [7c089f2]
  • Updated dependencies [6f14bee]
  • Updated dependencies [45e1e85]
  • Updated dependencies [6c660cd]
  • Updated dependencies [182cba2]
  • Updated dependencies [1f60d5b]
  • Updated dependencies [7f9a867]
  • Updated dependencies [c92b926]
    • @​tiptap/core@​3.31.4

3.31.3

Patch Changes

  • @​tiptap/core@​3.31.3

3.31.2

Patch Changes

  • @​tiptap/core@​3.31.2

3.31.1

Patch Changes

  • Updated dependencies [cd32a2f]
    • @​tiptap/core@​3.31.1

3.31.0

Patch Changes

  • @​tiptap/core@​3.31.0

3.30.6

Patch Changes

  • Updated dependencies [9f844ab]
    • @​tiptap/core@​3.30.6
Commits

@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Sep 14, 2026
@dependabot
dependabot Bot requested a review from wpessential as a code owner September 14, 2026 04:28
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Sep 14, 2026
@dependabot dependabot Bot changed the title chore(deps): bump the tiptap-family group with 6 updates chore(deps): bump the tiptap-family group across 1 directory with 6 updates Sep 21, 2026
@dependabot
dependabot Bot force-pushed the dependabot/npm_and_yarn/tiptap-family-4a8bbf4301 branch from 24b9c71 to 5bbb752 Compare September 21, 2026 11:36

Copy link
Copy Markdown
Contributor

No-Runner staging checkpoint after Runner Benchmark governance: this Dependabot scope was ported exactly onto maintenance/tiptap-3-31-3-current-main at f772b75facc358524717841a0fb976db2f1a1d69, based on current main@f2c350497573b710a3298f7526807de1f7bfe973. The staging commit has zero GitHub Actions runs. Its Git tree is exactly identical to this PR head (24d4ec15e4f9f7a9b468e45dfbb873dfaa0d422a) with the same parent, so this PR's existing green Code Quality/CI/Windows runs are useful development evidence but are not being relabeled as exact-head certification for the staging SHA. Dependency audit also confirms current main already locks prosemirror-view at patched 1.42.3; the Tiptap update is retained as normal dependency maintenance rather than an emergency security hotfix. Final certification remains deferred to the standard runner benchmark phase.

@dependabot
dependabot Bot force-pushed the dependabot/npm_and_yarn/tiptap-family-4a8bbf4301 branch 3 times, most recently from 95747f2 to a340a9a Compare September 28, 2026 04:27
@dependabot
dependabot Bot force-pushed the dependabot/npm_and_yarn/tiptap-family-4a8bbf4301 branch from a340a9a to a999df2 Compare October 7, 2026 22:31
…pdates

Bumps the tiptap-family group with 6 updates in the / directory:

| Package | From | To |
| --- | --- | --- |
| [@tiptap/react](https://github.com/ueberdosis/tiptap/tree/HEAD/packages/react) | `3.30.5` | `3.31.4` |
| [@tiptap/pm](https://github.com/ueberdosis/tiptap/tree/HEAD/packages/pm) | `3.30.5` | `3.31.4` |
| [@tiptap/starter-kit](https://github.com/ueberdosis/tiptap/tree/HEAD/packages/starter-kit) | `3.30.5` | `3.31.4` |
| [@tiptap/extension-link](https://github.com/ueberdosis/tiptap/tree/HEAD/packages/extension-link) | `3.30.5` | `3.31.4` |
| [@tiptap/extension-placeholder](https://github.com/ueberdosis/tiptap/tree/HEAD/packages-deprecated/extension-placeholder) | `3.30.5` | `3.31.4` |
| [@tiptap/extension-underline](https://github.com/ueberdosis/tiptap/tree/HEAD/packages/extension-underline) | `3.30.5` | `3.31.4` |



Updates `@tiptap/react` from 3.30.5 to 3.31.4
- [Release notes](https://github.com/ueberdosis/tiptap/releases)
- [Changelog](https://github.com/ueberdosis/tiptap/blob/v3.31.4/packages/react/CHANGELOG.md)
- [Commits](https://github.com/ueberdosis/tiptap/commits/v3.31.4/packages/react)

Updates `@tiptap/pm` from 3.30.5 to 3.31.4
- [Release notes](https://github.com/ueberdosis/tiptap/releases)
- [Changelog](https://github.com/ueberdosis/tiptap/blob/v3.31.4/packages/pm/CHANGELOG.md)
- [Commits](https://github.com/ueberdosis/tiptap/commits/v3.31.4/packages/pm)

Updates `@tiptap/starter-kit` from 3.30.5 to 3.31.4
- [Release notes](https://github.com/ueberdosis/tiptap/releases)
- [Changelog](https://github.com/ueberdosis/tiptap/blob/v3.31.4/packages/starter-kit/CHANGELOG.md)
- [Commits](https://github.com/ueberdosis/tiptap/commits/v3.31.4/packages/starter-kit)

Updates `@tiptap/extension-link` from 3.30.5 to 3.31.4
- [Release notes](https://github.com/ueberdosis/tiptap/releases)
- [Changelog](https://github.com/ueberdosis/tiptap/blob/v3.31.4/packages/extension-link/CHANGELOG.md)
- [Commits](https://github.com/ueberdosis/tiptap/commits/v3.31.4/packages/extension-link)

Updates `@tiptap/extension-placeholder` from 3.30.5 to 3.31.4
- [Release notes](https://github.com/ueberdosis/tiptap/releases)
- [Changelog](https://github.com/ueberdosis/tiptap/blob/v3.31.4/packages-deprecated/extension-placeholder/CHANGELOG.md)
- [Commits](https://github.com/ueberdosis/tiptap/commits/v3.31.4/packages-deprecated/extension-placeholder)

Updates `@tiptap/extension-underline` from 3.30.5 to 3.31.4
- [Release notes](https://github.com/ueberdosis/tiptap/releases)
- [Changelog](https://github.com/ueberdosis/tiptap/blob/v3.31.4/packages/extension-underline/CHANGELOG.md)
- [Commits](https://github.com/ueberdosis/tiptap/commits/v3.31.4/packages/extension-underline)

---
updated-dependencies:
- dependency-name: "@tiptap/extension-link"
  dependency-version: 3.31.3
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: tiptap-family
- dependency-name: "@tiptap/extension-placeholder"
  dependency-version: 3.31.3
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: tiptap-family
- dependency-name: "@tiptap/extension-underline"
  dependency-version: 3.31.3
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: tiptap-family
- dependency-name: "@tiptap/pm"
  dependency-version: 3.31.3
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: tiptap-family
- dependency-name: "@tiptap/react"
  dependency-version: 3.31.3
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: tiptap-family
- dependency-name: "@tiptap/starter-kit"
  dependency-version: 3.31.3
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: tiptap-family
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot
dependabot Bot force-pushed the dependabot/npm_and_yarn/tiptap-family-4a8bbf4301 branch from a999df2 to 77f6501 Compare October 7, 2026 23:06

@wpessential wpessential left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

AI review (owner-authorized; not an independent human review) for exact head 77f6501d30174d8ebd935e59c103411474d434c0.

Reviewed the dependency-only diff in package.json and package-lock.json: Tiptap React, PM, Starter Kit, Link, Placeholder, and Underline move from 3.30.5 to 3.31.4 with the family aligned. The lockfile also raises ProseMirror View to 1.42.3, which includes the upstream paste-XSS fix noted in the Tiptap release notes. No application source or configuration behavior is changed by this PR. No review threads are present. Exact-head WorkIntel CI, code quality, and Windows certification are green. No unresolved high-severity findings identified; eligible to merge.

@wpessential
wpessential merged commit 1047a7b into main Oct 7, 2026
6 checks passed
@dependabot
dependabot Bot deleted the dependabot/npm_and_yarn/tiptap-family-4a8bbf4301 branch October 7, 2026 23:19
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant