# react-native-community-cli: what changed from 19 to 20 - Product: react-native-community-cli (https://whatsnew.fyi/product/react-native-community-cli) - Vendor: React Native Community - Range: changelog entries numbered after v19.1.0 up to and including v20.2.0, stable releases only - Entries below: 6 releases (newest first) - Resolved: 19 is v19.1.0 and 20 is v20.2.0, the newest stable release of each major we track - Carrying security changes: 2 · CVEs mentioned: 2 · Mentioning breaking changes: 0 · Removing or deprecating something: 0 - Page: https://whatsnew.fyi/product/react-native-community-cli/compare/19...20 What's New is an index, not a publisher: every entry below links to the vendor's own release notes, which are the authoritative source. Entries are labelled where they are hand-curated sample data, pre-releases, or drawn from a secondary source such as a developer blog. Reuse: the summaries, labels and curation here are © What's New. Quote freely with attribution and a link back; wholesale republication of the corpus is not permitted — terms: https://whatsnew.fyi/terms. The vendors' own release notes remain their publishers'. ## What changed (29 changes, grouped by kind) ### Added #### v20.2.0 (2026-06-25) - Support DeviceHub for Xcode 27+ #### v20.0.1 (2025-10-02) - Support RCT_USE_RN_DEP and RCT_USE_PREBUILT_RNCORE flags ### Changed #### v20.1.0 (2026-01-07) - Return to less intrusive way of starting server in a new window on macOS - Remove hardcoded index when selecting the correct build target - Build sourceMappingURL constructs with relative paths - Migrate from chalk to picocolors #### v20.0.1 (2025-10-02) - Use pod installed by bundler if possible ### Fixed #### v20.2.0 (2026-06-25) - Restore open-url browser links while respecting CVE-2025-11953 - Don't hardcode default cmakeListsPath for pure C++ modules on Android - Respect --device on run-android when multiple devices are connected - Always launch fallback simulator - Fail when exact template version does not exist - Never default to a connected device on plain run-ios - Fix getBuildSettings picking up wrong target on iOS - Propagate resolved port to build when default port is unavailable - Mock node:zlib in tests - Fix variantPath for multiflavored Android paths #### v20.1.0 (2026-01-07) - Support Android Studio path that JetBrains Toolbox installs to on Windows - Fix plistPath when using a prebuilt binary (appPath) - Fix destination in buildProject - Detect bun.lock - Fix yarn + skip-install combo causing template copy failure #### v20.0.2 (2025-10-02) - Invalid character in header on Windows - Assume a provided UDID is valid on macCatalyst #### v20.0.0 (2025-10-02) - Output codegen'd code in the ios folder - Add stricter URL validation to openURLMiddleware - Fix error message typos in pods.ts ### Security #### v20.2.0 (2026-06-25) - Bump fast-xml-parser to 5.3.6 due to CVE-2026-26278 #### v20.1.1 (2026-01-28) - Prevent remote code execution in openURLMiddleware via URL sanitization ## Release notes ### v20.2.0 - Date: 2026-06-25 - Version: v20.2.0 - Original notes: https://github.com/react-native-community/cli/releases/tag/v20.2.0 - Permalink: https://whatsnew.fyi/product/react-native-community-cli/releases/v20.2.0 - **fixed** — Restore open-url browser links while respecting CVE-2025-11953 - **fixed** — Don't hardcode default cmakeListsPath for pure C++ modules on Android - **fixed** — Respect --device on run-android when multiple devices are connected - **fixed** — Always launch fallback simulator - **fixed** — Fail when exact template version does not exist - **added** — Support DeviceHub for Xcode 27+ - **fixed** — Never default to a connected device on plain run-ios - **fixed** — Fix getBuildSettings picking up wrong target on iOS - **fixed** — Propagate resolved port to build when default port is unavailable - **security** — Bump fast-xml-parser to 5.3.6 due to CVE-2026-26278 - **fixed** — Mock node:zlib in tests - **fixed** — Fix variantPath for multiflavored Android paths ##### Changes - fix: restore open-url browser links while respecting CVE-2025-11953 @thymikee (#2814) - fix(android): don't hardcode default `cmakeListsPath` for pure c++ modules @satya164 (#2799) - fix(android): respect --device on run-android when multiple devices connected @janicduplessis (#2796) - build(deps): bump fast-xml-parser from 5.3.6 to 5.5.7 @dependabot (#2781) - fix: always launches fallback simulator @dannyhw (#2778) - fix: ci e2e test snapshot drift @dannyhw (#2779) - [Android] Fix variantPath for multiflavored paths @Reeywhaar (#2762) - fix: fail when exact template version does not exist @fabriziocucci (#2764) - build(deps): bump fast-xml-parser from 4.4.1 to 5.3.4 @dependabot (#2760) ##### 🚀 Features - feat: Support DeviceHub for Xcode 27+ @huntie (#2806) ##### 🐛 Bug Fixes - fix(ios): never default to a connected device on plain run-ios @azizbecha (#2795) - fix(iOS): getBuildSettings picking up wrong target @divyanshu-patil (#2801) - fix: propagate resolved port to build when default port is unavailable @janicduplessis (#2783) - 🔒️ Bump fast-xml-parser to 5.3.6 due to CVE-2026-26278 @Jamim (#2770) - fix(tests): mock node:zlib @azizbecha (#2761) - fix: update snapshot of e2e tests @thymikee (#2759) ##### 🧰 Maintenance - Revise README, symlink to main package @huntie (#2807) - docs: update compatibility table to include up to RN 0.85 @alanleedev (#2777) **Full Changelog**: https://github.com/react-native-community/cli/compare/v20.1.1...v20.2.0 ### v20.1.1 - Date: 2026-01-28 - Version: v20.1.1 - Original notes: https://github.com/react-native-community/cli/releases/tag/v20.1.1 - Permalink: https://whatsnew.fyi/product/react-native-community-cli/releases/v20.1.1 - **security** — Prevent remote code execution in openURLMiddleware via URL sanitization ##### What's Changed * fix: prevent RCE in openURLMiddleware via URL sanitization by @Copilot and @huntie in https://github.com/react-native-community/cli/pull/2758 ##### New Contributors * @Copilot made their first contribution in https://github.com/react-native-community/cli/pull/2758 **Full Changelog**: https://github.com/react-native-community/cli/compare/v20.1.0...v20.1.1 ### v20.1.0 - Date: 2026-01-07 - Version: v20.1.0 - Original notes: https://github.com/react-native-community/cli/releases/tag/v20.1.0 - Permalink: https://whatsnew.fyi/product/react-native-community-cli/releases/v20.1.0 - **fixed** — Support Android Studio path that JetBrains Toolbox installs to on Windows - **changed** — Return to less intrusive way of starting server in a new window on macOS - **fixed** — Fix plistPath when using a prebuilt binary (appPath) - **changed** — Remove hardcoded index when selecting the correct build target - **fixed** — Fix destination in buildProject - **changed** — Build sourceMappingURL constructs with relative paths - **fixed** — Detect bun.lock - **changed** — Migrate from chalk to picocolors - **fixed** — Fix yarn + skip-install combo causing template copy failure ##### What's Changed * [fix] Support Android Studio path that JetBrains Toolbox installs to on Windows by @matthargett in https://github.com/react-native-community/cli/pull/2682 * chore(cli): Update macOS / windows docs links by @Saadnajmi in https://github.com/react-native-community/cli/pull/2714 * Return to less intrusive way of starting server in a new window on macOS by @swrobel in https://github.com/react-native-community/cli/pull/2715 * Fix plistPath when using a prebuilt binary (appPath) by @jenskuhrjorgensen in https://github.com/react-native-community/cli/pull/2705 * Feature: Remove hardcoded index when selecting the correct build target by @jenskuhrjorgensen in https://github.com/react-native-community/cli/pull/2707 * Fix destination in `buildProject` by @jenskuhrjorgensen in https://github.com/react-native-community/cli/pull/2706 * chore: simplify glob patterns by @benmccann in https://github.com/react-native-community/cli/pull/2711 * Update commands.md by @riteshshukla04 in https://github.com/react-native-community/cli/pull/2723 * Adds `@` to the docs by @riteshshukla04 in https://github.com/react-native-community/cli/pull/2724 * Build sourceMappingURL constructs with relative paths by @MegaManSec in https://github.com/react-native-community/cli/pull/2737 * fix: detect bun.lock by @patrickkabwe in https://github.com/react-native-community/cli/pull/2726 * docs: Update init.md, add missed '@' by @Jongkeun in https://github.com/react-native-community/cli/pull/2745 * chore: migrate from `chalk` to `picocolors` by @Rexogamer in https://github.com/react-native-community/cli/pull/2631 * fix(init): Fix yarn + skip-install combo causing template copy failure by @azizbecha in https://github.com/react-native-community/cli/pull/2748 * Remove `@szymonrybczak` from CODEOWNERS & active contributors by @szymonrybczak in https://github.com/react-native-community/cli/pull/2751 ##### New Contributors * @matthargett made their first contribution in https://github.com/react-native-community/cli/pull/2682 * @Saadnajmi made their first contribution in https://github.com/react-native-community/cli/pull/2714 * @swrobel made their first contribution in https://github.com/react-native-community/cli/pull/2715 * @jenskuhrjorgensen made their first contribution in https://github.com/react-native-community/cli/pull/2705 * @benmccann made their first contribution in https://github.com/react-native-community/cli/pull/2711 * @riteshshukla04 made their first contribution in https://github.com/react-native-community/cli/pull/2723 * @MegaManSec made their first contribution in https://github.com/react-native-community/cli/pull/2737 * @patrickkabwe made their first contribution in https://github.com/react-native-community/cli/pull/2726 * @Jongkeun made their first contribution in https://github.com/react-native-community/cli/pull/2745 * @Rexogamer made their first contribution in https://github.com/react-native-community/cli/pull/2631 * @azizbecha made their first contribution in https://github.com/react-native-community/cli/pull/2748 **Full Changelog**: https://github.com/react-native-community/cli/compare/v20.0.2...v20.1.0 ### v20.0.2 - Date: 2025-10-02 - Version: v20.0.2 - Original notes: https://github.com/react-native-community/cli/releases/tag/v20.0.2 - Permalink: https://whatsnew.fyi/product/react-native-community-cli/releases/v20.0.2 - **fixed** — Invalid character in header on Windows - **fixed** — Assume a provided UDID is valid on macCatalyst ##### What's Changed * chore: upgrade Node.js to 20 by @thymikee in https://github.com/react-native-community/cli/pull/2701 * Update init.md by @I-am-Pritam-20 in https://github.com/react-native-community/cli/pull/2700 * fix: invalid character in header on Windows by @szymonrybczak in https://github.com/react-native-community/cli/pull/2491 * fix(macCatalyst): assume a provided UDID is valid by @mikehardy in https://github.com/react-native-community/cli/pull/2642 * Add react-native 0.82 to README.md by @vzaidman in https://github.com/react-native-community/cli/pull/2710 ##### New Contributors * @I-am-Pritam-20 made their first contribution in https://github.com/react-native-community/cli/pull/2700 * @vzaidman made their first contribution in https://github.com/react-native-community/cli/pull/2710 **Full Changelog**: https://github.com/react-native-community/cli/compare/v20.0.1...v20.0.2 ### v20.0.1 - Date: 2025-10-02 - Version: v20.0.1 - Original notes: https://github.com/react-native-community/cli/releases/tag/v20.0.1 - Permalink: https://whatsnew.fyi/product/react-native-community-cli/releases/v20.0.1 - **added** — Support RCT_USE_RN_DEP and RCT_USE_PREBUILT_RNCORE flags - **changed** — Use pod installed by bundler if possible ##### What's Changed * chore: support RCT_USE_RN_DEP and RCT_USE_PREBUILT_RNCORE flags by @thymikee in https://github.com/react-native-community/cli/pull/2695 * use pod installed by bundler if possible by @buschco in https://github.com/react-native-community/cli/pull/2669 ##### New Contributors * @buschco made their first contribution in https://github.com/react-native-community/cli/pull/2669 **Full Changelog**: https://github.com/react-native-community/cli/compare/v20.0.0...v20.0.1 ### v20.0.0 - Date: 2025-10-02 - Version: v20.0.0 - Original notes: https://github.com/react-native-community/cli/releases/tag/v20.0.0 - Permalink: https://whatsnew.fyi/product/react-native-community-cli/releases/v20.0.0 - **fixed** — Output codegen'd code in the ios folder - **fixed** — Add stricter URL validation to openURLMiddleware - **fixed** — Fix error message typos in pods.ts ##### What's Changed * fix: output codegen'd code in the ios folder by @cipolleschi in https://github.com/react-native-community/cli/pull/2694 * build(server-api): upgrade pretty-format to 29.7.0 by @mateoguzmana in https://github.com/react-native-community/cli/pull/2656 * chore: fix error message typos in pods.ts by @vonovak in https://github.com/react-native-community/cli/pull/2698 * fix: Add stricter URL validation to openURLMiddleware by @huntie in https://github.com/react-native-community/cli/pull/2697 ##### New Contributors * @mateoguzmana made their first contribution in https://github.com/react-native-community/cli/pull/2656 **Full Changelog**: https://github.com/react-native-community/cli/compare/v19.1.0...v20.0.0