NewYour coding agent can read the release notes before it upgrades.Set up the MCP server →
npm · #3251 most downloaded on npm
- Can be combined with the build plug-in to share basic dependencies according to policies to reduce the number of module downloads and improve the loading speed of modules. - Only consume part of the export of the remote module and will not fully downloa
Last release 8 days ago
26 Sep 2026
Ships fairly regularly
a new release about every 1 weeks
Nearly every release is documented
notes for 60 of the last 60 stable releases
416 versions withdrawn
withdrawn after publishing
2 years old
560 releases · first in 2024
fix(bridge-react): deduplicate lazy component loading by @2heal1 in #5092
adm-zip to 0.6.1 by @deiga in #5103Full Changelog: v2.9.1...v2.9.2
For extension-capable embedded browsers. Extract the ZIP, load the directory containing manifest.json, and refresh the page.
Extension version: 2.9.2. Source commit: b78935690208c1a75ecb23969a514597543c20c1.
SHA-256: 436e021c800533808c5dd57b3587b3eacf6b67454fbb6ad9d96f9633b98d1bcc
One column per month.
ResourceLoadContext in the remote handler so the published
remote/index.d.ts declares it. Consumers that type-check dependencies with
skipLibCheck: false no longer get TS2304.
feat(devtools): add WebMCP, browser builds and release downloads by @2heal1 in #5106
Full Changelog: v2.9.0...v2.9.1
For extension-capable embedded browsers. Extract the ZIP, load the directory, and refresh the page.
Extension version: 2.9.1. Source commit: 586ed7f9a1a42f55389b471af1bd05b810688761.
SHA-256: 67019c371c5397be7a0ab9be5fccf727ea5ed82ab2067a12c158f7c4ee5b3443
globalLoading so a later independent request can start a fresh load.
feat(rstest): add federation integration plugin by @ScriptedAlchemy in #4920
Full Changelog: v2.8.2...v2.9.0
satisfy helper, and keep provider, candidate, and selection diagnostics in the observability plugin while ignoring legacy share-scope metadata.beforePreloadRemote and skip JS or CSS URLs that are already loading or loaded using a bounded, configurable URL cache.<!-- Release notes generated using configuration in .github/release.yml at release-v2.8.2 -->
<!-- Release notes generated using configuration in .github/release.yml at release-v2.8.2 -->
Full Changelog: https://github.com/module-federation/core/compare/v2.8.1...v2.8.2
Full Changelog: v2.8.1...v2.8.2
<!-- Release notes generated using configuration in .github/release.yml at release-v2.8.1 -->
<!-- Release notes generated using configuration in .github/release.yml at release-v2.8.1 -->
Full Changelog: https://github.com/module-federation/core/compare/v2.8.0...v2.8.1
Full Changelog: v2.8.0...v2.8.1
modulepreload links instead of
executable module scripts before container initialization. Loader plugins now
observe these implicit ESM preloads through createLink.<!-- Release notes generated using configuration in .github/release.yml at release-v2.8.0 -->
<!-- Release notes generated using configuration in .github/release.yml at release-v2.8.0 -->
Full Changelog: https://github.com/module-federation/core/compare/v2.7.0...v2.8.0
Full Changelog: v2.7.0...v2.8.0
fix(treeshake-server): bump undici to 7.28.0 for CVE-2026-12151 by @ScriptedAlchemy in https://github.com/module-federation/core/pull/4863
<!-- Release notes generated using configuration in .github/release.yml at release-v2.7.0 -->
lodash.get dependency by @gu-stav in https://github.com/module-federation/core/pull/4705find-pkg by @gu-stav in https://github.com/module-federation/core/pull/4707ansi-colors dependency by @gu-stav in https://github.com/module-federation/core/pull/4704resolve with exsolve by @gu-stav in https://github.com/module-federation/core/pull/4775Full Changelog: https://github.com/module-federation/core/compare/v2.6.0...v2.7.0
lodash.get dependency by @gu-stav in #4705find-pkg by @gu-stav in #4707ansi-colors dependency by @gu-stav in #4704resolve with exsolve by @gu-stav in #4775Full Changelog: v2.6.0...v2.7.0
<!-- Release notes generated using configuration in .github/release.yml at release-v2.6.0 -->
<!-- Release notes generated using configuration in .github/release.yml at release-v2.6.0 -->
Full Changelog: https://github.com/module-federation/core/compare/v2.5.1...v2.6.0
Full Changelog: v2.5.1...v2.6.0
fix(dts-plugin): update ws for CVE-2026-45736 by @ScriptedAlchemy in https://github.com/module-federation/core/pull/4760
<!-- Release notes generated using configuration in .github/release.yml at release-v2.5.1 -->
Full Changelog: https://github.com/module-federation/core/compare/v2.5.0...v2.5.1
Full Changelog: v2.5.0...v2.5.1
<!-- Release notes generated using configuration in .github/release.yml at pre-release/2.5 -->
<!-- Release notes generated using configuration in .github/release.yml at pre-release/2.5 -->
feat(observability): add observability plugin for full module loading lifecycle tracing by @hanric.zhang in https://github.com/module-federation/core/pull/4721 feat(devtools): support observability integration in MF DevTools by @hanric.zhang in https://github.com/module-federation/core/pull/4745
Full Changelog: https://github.com/module-federation/core/compare/v2.4.0...v2.5.0
feat(observability): add observability plugin for full module loading lifecycle tracing by @hanric.zhang in #4721
feat(devtools): support observability integration in MF DevTools by @hanric.zhang in #4745
Full Changelog: v2.4.0...v2.5.0
onMFRemoteLoaded callback injection for matched remotes, opt-in start console traces for loadRemote and loadShare, a local collector mode for AI-assisted browser debugging, a Node-specific export for file reports, a build-specific export for build summaries and build error reports, remote and shared lifecycle hooks, console trace hints, safe browser/Node report outputs, configurable error stack capture with explicit console raw-stack opt-ins, shared/eager loading evidence gated to stable runtime 2.5.0+ for Chrome-extension compatibility, final loading outcome summaries for Module Federation loading reports including resolved shared dependencies, deterministic fact reports for runtime and build failures, no-op return handling for observer hooks, detailed remote match/init/expose/factory phase events with phase durations, compact phase summaries, cache/fallback markers, loaded-before evidence from existing federation instances when a remote load fails, length-limited business component metadata, clipped moduleInfo evidence with preserved deployment locator fields for snapshot-dependent failures, normalized runtime error summaries with error codes, owner hints, retryability, and safe context, dedicated runtime error codes for invalid manifests, missing exposes, and remote container init failures, plus MF skill guidance for reading and fixing observability reports.<!-- Release notes generated using configuration in .github/release.yml at release-v2.4.0 -->
<!-- Release notes generated using configuration in .github/release.yml at release-v2.4.0 -->
Full Changelog: https://github.com/module-federation/core/compare/v2.3.3...v2.4.0
Full Changelog: v2.3.3...v2.4.0
<!-- Release notes generated using configuration in .github/release.yml at release-v2.3.3 -->
<!-- Release notes generated using configuration in .github/release.yml at release-v2.3.3 -->
Full Changelog: https://github.com/module-federation/core/compare/v2.3.2...v2.3.3
Full Changelog: v2.3.2...v2.3.3
<!-- Release notes generated using configuration in .github/release.yml at release-v2.3.2 -->
<!-- Release notes generated using configuration in .github/release.yml at release-v2.3.2 -->
Full Changelog: https://github.com/module-federation/core/compare/v2.3.1...v2.3.2
Full Changelog: v2.3.1...v2.3.2
<!-- Release notes generated using configuration in .github/release.yml at release-v2.3.1 -->
<!-- Release notes generated using configuration in .github/release.yml at release-v2.3.1 -->
Full Changelog: https://github.com/module-federation/core/compare/v2.3.0...v2.3.1
fix(dts-plugin): replace log4js with native fs stream to resolve flatted vulnerability by @2heal1 in https://github.com/module-federation/core/pull/45…
<!-- Release notes generated using configuration in .github/release.yml at release-v2.3.0 -->
generateTypes.afterGenerateTypes callback to `PluginDtsOptions by @2heal1 in https://github.com/module-federation/core/pull/4591Full Changelog: https://github.com/module-federation/core/compare/v2.2.3...v2.3.0
<!-- Release notes generated using configuration in .github/release.yml at release-v2.2.3 -->
<!-- Release notes generated using configuration in .github/release.yml at release-v2.2.3 -->
Full Changelog: https://github.com/module-federation/core/compare/v2.2.2...v2.2.3
<!-- Release notes generated using configuration in .github/release.yml at release-v2.2.2 -->
<!-- Release notes generated using configuration in .github/release.yml at release-v2.2.2 -->
Full Changelog: https://github.com/module-federation/core/compare/v2.2.1...v2.2.2
<!-- Release notes generated using configuration in .github/release.yml at release-v2.2.1 -->
<!-- Release notes generated using configuration in .github/release.yml at release-v2.2.1 -->
Full Changelog: https://github.com/module-federation/core/compare/v2.2.0...v2.2.1
<!-- Release notes generated using configuration in .github/release.yml at release-v2.2.0 -->
<!-- Release notes generated using configuration in .github/release.yml at release-v2.2.0 -->
Full Changelog: https://github.com/module-federation/core/compare/v2.1.0...v2.2.0
isBrowserEnvValue as a tree-shakable ENV_TARGET-aware constant while
preserving the isBrowserEnv() function. Internal runtime and bridge callers
use the constant to enable bundler dead-code elimination without breaking the
public API.fix(deps): override ajv@8.18.0 (CVE-2025-69873) by @Nsttt in https://github.com/module-federation/core/pull/4438
<!-- Release notes generated using configuration in .github/release.yml at release-v2.1.0 -->
Full Changelog: https://github.com/module-federation/core/compare/v2.0.1...v2.1.0
@module-federation/sdk/bundler entrypoint so they can be built and consumed independently from the SDK main index bundle.<!-- Release notes generated using configuration in .github/release.yml at 28a2db40f27c363763e7e8d75bb3d3a38b7e3e15 -->
<!-- Release notes generated using configuration in .github/release.yml at 28a2db40f27c363763e7e8d75bb3d3a38b7e3e15 -->
Full Changelog: https://github.com/module-federation/core/compare/v0.24.1...v2.0.1
28a2db4: Fix a race where concurrent Module.init() calls could run remote container initialization more than once.
Module.init() now deduplicates in-flight initialization with a shared promise so beforeInitContainer/initContainer logic executes once per module while preserving stable initialized state after completion.
Also adds regression coverage for concurrent initialization behavior.
3808d17: fix(runtime-core): correct treeShaking condition and format error message
@module-federation/error-codes@2.0.0
<!-- Release notes generated using configuration in .github/release.yml at release-v0.24.1 -->
<!-- Release notes generated using configuration in .github/release.yml at release-v0.24.1 -->
Full Changelog: https://github.com/module-federation/core/compare/v0.24.0...v0.24.1
<!-- Release notes generated using configuration in .github/release.yml at release-v0.24.0 -->
<!-- Release notes generated using configuration in .github/release.yml at release-v0.24.0 -->
Full Changelog: https://github.com/module-federation/core/compare/v0.23.0...v0.24.0
<!-- Release notes generated using configuration in .github/release.yml at 2843ab270da53c4c79fcef4e0e9aee8aa1c4104a -->
<!-- Release notes generated using configuration in .github/release.yml at 2843ab270da53c4c79fcef4e0e9aee8aa1c4104a -->
Full Changelog: https://github.com/module-federation/core/compare/v0.22.1...v0.23.0
<!-- Release notes generated using configuration in .github/release.yml at release-v0.22.1 -->
<!-- Release notes generated using configuration in .github/release.yml at release-v0.22.1 -->
Full Changelog: https://github.com/module-federation/core/compare/v0.22.0...v0.22.1
fix(modernjs): update @modern-js dependencies to 2.69.3 to address CVE-2025-55182 by @Nsttt in https://github.com/module-federation/core/pull/4266
<!-- Release notes generated using configuration in .github/release.yml at release-v0.22.0 -->
stroybook/internal/node-logger as logger by @fi3ework in https://github.com/module-federation/core/pull/4235Full Changelog: https://github.com/module-federation/core/compare/v0.21.6...v0.22.0
<!-- Release notes generated using configuration in .github/release.yml at release-v0.21.6 -->
<!-- Release notes generated using configuration in .github/release.yml at release-v0.21.6 -->
Full Changelog: https://github.com/module-federation/core/compare/v0.21.5...v0.21.6
<!-- Release notes generated using configuration in .github/release.yml at release-v0.21.5 -->
<!-- Release notes generated using configuration in .github/release.yml at release-v0.21.5 -->
TS1170 error on Typescript > 5.7.0 by @davidfestal in https://github.com/module-federation/core/pull/4208Full Changelog: https://github.com/module-federation/core/compare/v0.21.4...v0.21.5
<!-- Release notes generated using configuration in .github/release.yml at release-v0.21.4 -->
<!-- Release notes generated using configuration in .github/release.yml at release-v0.21.4 -->
BridgeWrapper component to prevent unnecessary component recreation. by @danpeen in https://github.com/module-federation/core/pull/4202Full Changelog: https://github.com/module-federation/core/compare/v0.21.3...v0.21.4
<!-- Release notes generated using configuration in .github/release.yml at release-v0.21.3 -->
<!-- Release notes generated using configuration in .github/release.yml at release-v0.21.3 -->
Full Changelog: https://github.com/module-federation/core/compare/v0.21.2...v0.21.3
<!-- Release notes generated using configuration in .github/release.yml at release-v0.21.2 -->
<!-- Release notes generated using configuration in .github/release.yml at release-v0.21.2 -->
@module-federation/bridge-react in modernjs by @danpeen in https://github.com/module-federation/core/pull/4168Full Changelog: https://github.com/module-federation/core/compare/v0.21.1...v0.21.2
<!-- Release notes generated using configuration in .github/release.yml at release-v0.22.0 -->
<!-- Release notes generated using configuration in .github/release.yml at release-v0.22.0 -->
Full Changelog: https://github.com/module-federation/core/compare/v0.21.0...v0.21.1
<!-- Release notes generated using configuration in .github/release.yml at release-v0.21.0 -->
<!-- Release notes generated using configuration in .github/release.yml at release-v0.21.0 -->
Full Changelog: https://github.com/module-federation/core/compare/0.20.0...v0.21.0
<!-- Release notes generated using configuration in .github/release.yml at release-v0.20.0 -->
<!-- Release notes generated using configuration in .github/release.yml at release-v0.20.0 -->
buildMeta and buildInfo on ConsumeSharedPlugin using fallbacks by @ScriptedAlchemy in https://github.com/module-federation/core/pull/4063exposes.requires type in manifest.json should be array instead of object by @danpeen in https://github.com/module-federation/core/pull/4094Full Changelog: https://github.com/module-federation/core/compare/0.19.1...0.20.0
<!-- Release notes generated using configuration in .github/release.yml at release-v0.19.1 -->
<!-- Release notes generated using configuration in .github/release.yml at release-v0.19.1 -->
addQuery option in retry-plugin query parameters will accumulating across retries by @danpeen in https://github.com/module-federation/core/pull/4055Full Changelog: https://github.com/module-federation/core/compare/v0.18.4...0.19.1
@module-federation/error-codes@0.19.0
[ ] Bug fix (non-breaking change which fixes an issue)
<!--- Provide a general summary of your changes in the Title above --> <!--- Describe your changes in detail --> Metro Initial Release
<!--- This project only accepts pull requests related to open issues --> <!--- If suggesting a new feature or change, please discuss it in an issue first --> <!--- If fixing a bug, there should be an issue describing it with steps to reproduce --> <!--- Please link to the issue here: -->
<!--- What types of changes does your code introduce? Put an x in all the boxes that apply: -->
<!--- Go over all the following points, and put an x in all the boxes that apply. -->
<!--- If you're unsure about any of these, don't hesitate to ask. We're here to help! -->
feat: support env vars to add cors when use serve command by @zllkjc in https://github.com/module-federation/core/pull/4005
Full Changelog: https://github.com/module-federation/core/compare/v0.18.2...v0.18.3
chore: bump axios to resolve vulnerabilities in form-data dependency by @DanielChutkowskiJMMJ in https://github.com/module-federation/core/pull/4000
<!-- Release notes generated using configuration in .github/release.yml at v0.18.2 -->
Full Changelog: https://github.com/module-federation/core/compare/v0.18.1...v0.18.2
<!-- Release notes generated using configuration in .github/release.yml at v0.18.1 -->
<!-- Release notes generated using configuration in .github/release.yml at v0.18.1 -->
fix: Auto call setGlobalFederationInstance when execute createInstance by @Nsttt in https://github.com/module-federation/core/pull/3975
Full Changelog: https://github.com/module-federation/core/compare/v0.18.0...v0.18.1
fix(dts-plugin): update koa to 2.16.2 to fix CVE-2025-8129 by @ScriptedAlchemy in https://github.com/module-federation/core/pull/3963
<!-- Release notes generated using configuration in .github/release.yml at v0.18.0 -->
family option by @ogonkov in https://github.com/module-federation/core/pull/3977Full Changelog: https://github.com/module-federation/core/compare/v0.17.1...v0.18.0
<!-- Release notes generated using configuration in .github/release.yml at v0.17.1 -->
<!-- Release notes generated using configuration in .github/release.yml at v0.17.1 -->
Full Changelog: https://github.com/module-federation/core/compare/v0.17.0...v0.17.1
2428be0: Enable modern TypeScript plugin for rollup packages
Add useLegacyTypescriptPlugin: false to all rollup-based packages to use the official @rollup/plugin-typescript instead of the deprecated rollup-plugin-typescript2. This resolves TypeScript compilation errors during build and modernizes the build toolchain.
a7cf276: chore: upgrade NX to 21.2.3, Storybook to 9.0.9, and TypeScript to 5.8.3
cc44d97: fix: prevent duplicate error prefix in Module Federation Runtime errors
This change fixes an issue where the [ Federation Runtime ] prefix was being added multiple times to error messages when errors were re-thrown or already contained the prefix. The fix includes:
4d6585b: fix(runtime-core): add useIn while using unloading registered shared
Updated dependencies [2428be0]
Updated dependencies [a7cf276]
fix: bump modern.js to v2.68.0 to fix esbuild vulnerability by @Julien-Marcou in https://github.com/module-federation/core/pull/3880
<!-- Release notes generated using configuration in .github/release.yml at v0.17.0 -->
Full Changelog: https://github.com/module-federation/core/compare/v0.16.0...v0.17.0
<!-- Release notes generated using configuration in .github/release.yml at v0.16.0 -->
<!-- Release notes generated using configuration in .github/release.yml at v0.16.0 -->
Full Changelog: https://github.com/module-federation/core/compare/v0.15.0...v0.16.0
<!-- Release notes generated using configuration in .github/release.yml at v0.15.0 -->
<!-- Release notes generated using configuration in .github/release.yml at v0.15.0 -->
Full Changelog: https://github.com/module-federation/core/compare/v0.14.3...v0.15.0
<!-- Release notes generated using configuration in .github/release.yml at v0.14.2 -->
<!-- Release notes generated using configuration in .github/release.yml at v0.14.2 -->
Full Changelog: https://github.com/module-federation/core/compare/v0.14.1...v0.14.2
<!-- Release notes generated using configuration in .github/release.yml at v0.14.2 -->
<!-- Release notes generated using configuration in .github/release.yml at v0.14.2 -->
Full Changelog: https://github.com/module-federation/core/compare/v0.14.1...v0.14.2
<!-- Release notes generated using configuration in .github/release.yml at v0.14.1 -->
<!-- Release notes generated using configuration in .github/release.yml at v0.14.1 -->
Full Changelog: https://github.com/module-federation/core/compare/v0.14.0...v0.14.1
<!-- Release notes generated using configuration in .github/release.yml at v0.14.0 -->
<!-- Release notes generated using configuration in .github/release.yml at v0.14.0 -->
.js for non-manifest entries by @jbroma in https://github.com/module-federation/core/pull/3775Full Changelog: https://github.com/module-federation/core/compare/v0.13.1...v0.14.0
handleRemoteEntryLoaded function.ENV_TARGET.<!-- Release notes generated using configuration in .github/release.yml at v0.13.1 -->
<!-- Release notes generated using configuration in .github/release.yml at v0.13.1 -->
checkSingleton by @jbroma in https://github.com/module-federation/core/pull/3487Full Changelog: https://github.com/module-federation/core/compare/v0.13.0...v0.13.1
<!-- Release notes generated using configuration in .github/release.yml at v0.13.0 -->
<!-- Release notes generated using configuration in .github/release.yml at v0.13.0 -->
readConfig by @ScriptedAlchemy in https://github.com/module-federation/core/pull/3708Full Changelog: https://github.com/module-federation/core/compare/v0.12.0...v0.13.0
<!-- Release notes generated using configuration in .github/release.yml at v0.12.0 -->
<!-- Release notes generated using configuration in .github/release.yml at v0.12.0 -->
Full Changelog: https://github.com/module-federation/core/compare/v0.11.4...v0.12.0
<!-- Release notes generated using configuration in .github/release.yml at v0.11.4 -->
<!-- Release notes generated using configuration in .github/release.yml at v0.11.4 -->
Full Changelog: https://github.com/module-federation/core/compare/0.11.3...v0.11.4
<!-- Release notes generated using configuration in .github/release.yml at 0.11.3 -->
<!-- Release notes generated using configuration in .github/release.yml at 0.11.3 -->
Full Changelog: https://github.com/module-federation/core/compare/v0.11.2...0.11.3
<!-- Release notes generated using configuration in .github/release.yml at v0.11.2 -->
<!-- Release notes generated using configuration in .github/release.yml at v0.11.2 -->
Full Changelog: https://github.com/module-federation/core/compare/v0.11.1...v0.11.2
remoteEntry in snapshot outside browser env<!-- Release notes generated using configuration in .github/release.yml at v0.11.1 -->
<!-- Release notes generated using configuration in .github/release.yml at v0.11.1 -->
Full Changelog: https://github.com/module-federation/core/compare/v0.11.0...v0.11.1
<!-- Release notes generated using configuration in .github/release.yml at v0.11.0 -->
<!-- Release notes generated using configuration in .github/release.yml at v0.11.0 -->
cwd to create Module Federation tsconfig by @nachoaldamav in https://github.com/module-federation/core/pull/3381Full Changelog: https://github.com/module-federation/core/compare/v0.10.0...v0.11.0
<!-- Release notes generated using configuration in .github/release.yml at v0.10.0 -->
<!-- Release notes generated using configuration in .github/release.yml at v0.10.0 -->
source.include by @chenjiahan in https://github.com/module-federation/core/pull/3565Full Changelog: https://github.com/module-federation/core/compare/v0.9.1...v0.10.0
<!-- Release notes generated using configuration in .github/release.yml at v0.9.1 -->
<!-- Release notes generated using configuration in .github/release.yml at v0.9.1 -->
exposes by @shixianqin in https://github.com/module-federation/core/pull/3515Full Changelog: https://github.com/module-federation/core/compare/v0.9.0...v0.9.1
Your coding agent can read these notes before it upgrades. Set up the MCP server →