Skip to content

Conversation

@Nealm03
Copy link
Owner

@Nealm03 Nealm03 commented Feb 24, 2021

Snyk has created this PR to upgrade mongoose from 5.7.5 to 5.11.15.

merge advice
ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 87 versions ahead of your current version.
  • The recommended version was released 21 days ago, on 2021-02-03.

The recommended version fixes:

Severity Issue PriorityScore (*) Exploit Maturity
Prototype Pollution
SNYK-JS-MQUERY-1050858
579/1000
Why? Has a fix available, CVSS 7.3
No Known Exploit

(*) Note that the real score may have changed since the PR was raised.

Release notes
Package name: mongoose
  • 5.11.15 - 2021-02-03

    chore: release 5.11.15

  • 5.11.14 - 2021-01-28

    chore: release 5.11.14

  • 5.11.13 - 2021-01-20

    chore: release 5.11.13

  • 5.11.12 - 2021-01-14

    chore: release 5.11.12

  • 5.11.11 - 2021-01-08

    chore: release 5.11.11

  • 5.11.10 - 2021-01-04

    chore: release 5.11.10

  • 5.11.9 - 2020-12-28

    chore: release 5.11.9

  • 5.11.8 - 2020-12-14
  • 5.11.7 - 2020-12-10
  • 5.11.6 - 2020-12-09
  • 5.11.5 - 2020-12-07
  • 5.11.4 - 2020-12-04
  • 5.11.3 - 2020-12-03
  • 5.11.2 - 2020-12-02
  • 5.11.1 - 2020-12-01
  • 5.11.0 - 2020-11-30
  • 5.10.19 - 2020-11-30
  • 5.10.18 - 2020-11-29
  • 5.10.17 - 2020-11-27
  • 5.10.16 - 2020-11-25
  • 5.10.15 - 2020-11-16
  • 5.10.14 - 2020-11-12
  • 5.10.13 - 2020-11-06
  • 5.10.12 - 2020-11-04
  • 5.10.11 - 2020-10-26
  • 5.10.10 - 2020-10-23
  • 5.10.9 - 2020-10-09
  • 5.10.8 - 2020-10-05
  • 5.10.7 - 2020-09-24
  • 5.10.6 - 2020-09-18
  • 5.10.5 - 2020-09-11
  • 5.10.4 - 2020-09-09
  • 5.10.3 - 2020-09-03
  • 5.10.2 - 2020-08-28
  • 5.10.1 - 2020-08-26
  • 5.10.0 - 2020-08-14
  • 5.9.29 - 2020-08-13
  • 5.9.28 - 2020-08-07
  • 5.9.27 - 2020-07-31
  • 5.9.26 - 2020-07-27
  • 5.9.25 - 2020-07-17
  • 5.9.24 - 2020-07-13
  • 5.9.23 - 2020-07-10
  • 5.9.22 - 2020-07-06
  • 5.9.21 - 2020-07-01
  • 5.9.20 - 2020-06-22
  • 5.9.19 - 2020-06-15
  • 5.9.18 - 2020-06-05
  • 5.9.17 - 2020-06-02
  • 5.9.16 - 2020-05-25
  • 5.9.15 - 2020-05-18
  • 5.9.14 - 2020-05-13
  • 5.9.13 - 2020-05-08
  • 5.9.12 - 2020-05-04
  • 5.9.11 - 2020-04-30
  • 5.9.10 - 2020-04-20
  • 5.9.9 - 2020-04-13
  • 5.9.7 - 2020-03-30
  • 5.9.6 - 2020-03-23
  • 5.9.5 - 2020-03-16
  • 5.9.4 - 2020-03-09
  • 5.9.3 - 2020-03-02
  • 5.9.2 - 2020-02-21
  • 5.9.1 - 2020-02-14
  • 5.9.0 - 2020-02-13
  • 5.8.13 - 2020-02-13
  • 5.8.12 - 2020-02-12
  • 5.8.11 - 2020-01-31
  • 5.8.10 - 2020-01-27
  • 5.8.9 - 2020-01-17
  • 5.8.7 - 2020-01-10
  • 5.8.6 - 2020-01-08
  • 5.8.5 - 2020-01-06
  • 5.8.4 - 2020-01-02
  • 5.8.3 - 2019-12-23
  • 5.8.2 - 2019-12-20
  • 5.8.1 - 2019-12-12
  • 5.8.0 - 2019-12-09
  • 5.7.14 - 2019-12-06
  • 5.7.13 - 2019-11-29
  • 5.7.12 - 2019-11-19
  • 5.7.11 - 2019-11-14
  • 5.7.10 - 2019-11-11
  • 5.7.9 - 2019-11-08
  • 5.7.8 - 2019-11-05
  • 5.7.7 - 2019-10-24
  • 5.7.6 - 2019-10-21
  • 5.7.5 - 2019-10-14
from mongoose GitHub release notes
Commit messages
Package name: mongoose
  • aefd838 chore: release 5.11.15
  • 81fa1df style: fix lint re: #9891
  • d5db1fa Merge pull request #9891 from Automattic/gh9880
  • f87317a Merge pull request #9890 from Ugzuzg/fix/create-typings
  • b86f3a5 Merge pull request #9888 from Ugzuzg/fix/required-typings
  • 2b0e1be Merge pull request #9887 from dandv/patch-13
  • 0d88bb6 style: get rid of console.logs
  • 2665940 style: quick cleanup
  • a5fb467 fix(index.d.ts): reorder create typings to allow array desctructuring
  • edb58f0 Update document.test.js
  • 4c21e91 Update document.test.js
  • f9aa18a Update document.js
  • 567e8d1 Update document.test.js
  • 694ad10 linter fixes
  • 74130bc another attempt to get all the linter errors
  • 7560ae0 fixed spacing issues
  • c8fef00 fix: null value in nested document no longer causes typeerror
  • 053fcab changes not being reflected
  • ca16599 Merge pull request #9878 from jonamat/jonamat/types
  • e1e6c0c fix(index.d.ts): allow required function in array definition
  • 4d704ca Mention other debug options than console
  • 5c7d047 Merge pull request #9886 from Automattic/gh9884
  • 71e6b58 chore: update opencollective sponsors
  • 40b2b40 fix: replaced isSelected with $__isSelected

Compare


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs

@Nealm03 Nealm03 closed this Apr 22, 2021
@Nealm03 Nealm03 deleted the snyk-upgrade-c64e923c2413455c053b041e0b98b771 branch April 22, 2021 13:08
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants