This release fixes issues for SREs watching stability and regressions.
✓ No known CVEs patched in this version
Topics
+14 more
Summary
AI summaryFixed Windows command resolution for non‑Node package managers.
Changes in this release
| Type | Severity | Summary | CVE |
|---|---|---|---|
| Feature | Low |
Adds npm provenance attestations to published packages Adds npm provenance attestations to published packages Source: llm_adapter@2026-06-02 Confidence: high |
— |
| Dependency | Low |
Upgrades type-fest dependency to version 5.6.0 Upgrades type-fest dependency to version 5.6.0 Source: llm_adapter@2026-06-02 Confidence: high |
— |
| Bugfix | Medium |
Fixes Windows command resolution for non-Node package managers Fixes Windows command resolution for non-Node package managers Source: llm_adapter@2026-06-02 Confidence: high |
— |
| Bugfix | Medium |
Fixes parsing of string literal export names in CSF Fixes parsing of string literal export names in CSF Source: llm_adapter@2026-06-02 Confidence: high |
— |
Full changelog
10.4.2
- Bug: Fix Windows command resolution for non-Node package managers - #33534, thanks @copilot-swe-agent!
- Build: Upgrade type-fest to latest version 5.6.0 - #34791, thanks @tobiasdiez!
- CSF: Fix parsing of string literal export names - #34901, thanks @shilman!
- Publish: Add npm provenance attestations - #34936, thanks @copilot-swe-agent!
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Share this release
About storybook
Storybook is the industry standard workshop for building, documenting, and testing UI components in isolation
Beta — feedback welcome: [email protected]