[Snyk] Upgrade: , , reflect-metadata, rxjs #10
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Snyk has created this PR to upgrade multiple dependencies.
👯 The following dependencies are linked and will therefore be updated together.ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
@nestjs/common
from 9.3.9 to 9.4.3 | 7 versions ahead of your current version | a year ago
on 2023-06-12
@nestjs/core
from 9.3.9 to 9.4.3 | 7 versions ahead of your current version | a year ago
on 2023-06-12
reflect-metadata
from 0.1.13 to 0.2.2 | 5 versions ahead of your current version | 6 months ago
on 2024-03-29
rxjs
from 7.5.4 to 7.8.1 | 7 versions ahead of your current version | a year ago
on 2023-04-26
Issues fixed by the recommended upgrade:
SNYK-JS-AXIOS-6032459
SNYK-JS-FOLLOWREDIRECTS-6141137
SNYK-JS-AXIOS-6124857
SNYK-JS-FOLLOWREDIRECTS-6444610
SNYK-JS-MINIMIST-2429795
Release notes
Package name: @nestjs/common
-
9.4.3 - 2023-06-12
-
9.4.2 - 2023-05-23
-
9.4.1 - 2023-05-16
-
9.4.0 - 2023-04-05
- #10628 feat(microservice): TCP microservice over TLS (@ nomaxg)
- #11188 fix(ws): mount multi
- #11325 fix(express): remove body-parser types and ship these types our own (@ tolgap)
- #11426 feat: allow extension of microservice event and message extras (@ effervescentia)
- Other
- #11394 chore(deps-dev): bump sinon from 15.0.2 to 15.0.3 (@ dependabot[bot])
- #11406 chore(deps-dev): bump @ types/node from 18.15.6 to 18.15.11 (@ dependabot[bot])
- #11418 chore(deps-dev): bump @ fastify/static from 6.9.0 to 6.10.0 (@ dependabot[bot])
- #11419 chore(deps): bump fast-json-stringify from 5.6.2 to 5.7.0 (@ dependabot[bot])
- #11422 chore(deps-dev): bump @ apollo/server from 4.5.0 to 4.6.0 (@ dependabot[bot])
- #11423 chore(deps-dev): bump amqp-connection-manager from 4.1.11 to 4.1.12 (@ dependabot[bot])
- #11424 chore(deps-dev): bump core-js from 3.29.1 to 3.30.0 (@ dependabot[bot])
- #11405 chore(deps-dev): bump ts-morph from 17.0.1 to 18.0.0 (@ dependabot[bot])
- #11403 fix(deps): update dependency @ nestjs/apollo to v11.0.4 (@ renovate[bot])
- #11402 chore(deps): update dependency @ types/cache-manager to v4.0.2 (@ renovate[bot])
- #11401 chore(deps): update dependency @ babel/core to v7.21.3 (@ renovate[bot])
- #11407 chore(deps-dev): bump concurrently from 7.6.0 to 8.0.1 (@ dependabot[bot])
- #11408 chore(deps-dev): bump @ commitlint/cli from 17.5.0 to 17.5.1 (@ dependabot[bot])
- #11347 fix(deps): update dependency sequelize-typescript to v2.1.5 (@ renovate[bot])
- #11344 fix(deps): update dependency @ nestjs/typeorm to v9.0.1 (@ renovate[bot])
- #11343 fix(deps): update dependency @ nestjs/serve-static to v3.0.1 (@ renovate[bot])
- #11342 fix(deps): update dependency @ nestjs/mongoose to v9.2.2 (@ renovate[bot])
- #11340 fix(deps): update dependency @ nestjs/bull to v0.6.3 (@ renovate[bot])
- #11351 chore(deps): update dependency @ types/amqplib to v0.10.1 (@ renovate[bot])
- #11323 chore(deps-dev): bump @ grpc/proto-loader from 0.7.5 to 0.7.6 (@ dependabot[bot])
- #11395 chore(deps-dev): bump prettier from 2.8.6 to 2.8.7 (@ dependabot[bot])
- #11336 chore(deps): update dependency nodemon to v2.0.22 (@ renovate[bot])
- #11339 chore(deps): update mysql docker tag to v8.0.32 (@ renovate[bot])
- #11348 fix(deps): update dependency typeorm to v0.3.12 (@ renovate[bot])
- #11349 chore(deps): update confluentinc/cp-kafka docker tag to v7.3.2 (@ renovate[bot])
- #11366 fix(deps): update dependency @ fastify/view to v7.4.1 (@ renovate[bot])
- #11376 fix(deps): update dependency socket.io to v4.6.1 (@ renovate[bot])
- #11381 chore(deps): update mongo docker tag to v6 (@ renovate[bot])
- #11384 fix(deps): update dependency mercurius to v12 (@ renovate[bot])
- #11385 fix(deps): update dependency mongodb to v5 (@ renovate[bot])
- #11387 fix(deps): update dependency mysql2 to v3 (@ renovate[bot])
- #11389 fix(deps): update dependency rimraf to v4.4.1 (@ renovate[bot])
- #11334 chore(deps): update dependency @ babel/core to v7.21.3 (@ renovate[bot])
- #11353 chore(deps): update dependency eslint-config-prettier to v8.8.0 (@ renovate[bot])
- #11356 chore(deps): update dependency redis to v4.6.5 (@ renovate[bot])
- #11363 chore(deps): update typescript-eslint monorepo to v5.56.0 (@ renovate[bot])
- #11338 chore(deps): update dependency webpack to v5.76.3 (@ renovate[bot])
- #11337 chore(deps): update dependency ts-jest to v28.0.8 (@ renovate[bot])
- #11364 fix(deps): update apollo graphql packages (@ renovate[bot])
- #11361 chore(deps): update dependency typescript to v4.9.5 (@ renovate[bot])
- #11377 fix(deps): update nest monorepo (@ renovate[bot])
- #11321 chore(deps-dev): bump nodemon from 2.0.21 to 2.0.22 (@ dependabot[bot])
- #11322 chore(deps-dev): bump @ commitlint/cli from 17.4.4 to 17.5.0 (@ dependabot[bot])
- #11328 chore(deps-dev): bump mongoose from 7.0.2 to 7.0.3 (@ dependabot[bot])
- #11329 chore(deps-dev): bump @ types/node from 18.15.5 to 18.15.6 (@ dependabot[bot])
- #11330 chore(deps-dev): bump @ grpc/grpc-js from 1.8.12 to 1.8.13 (@ dependabot[bot])
- #11417 chore(deps): bump uid from 2.0.1 to 2.0.2 (@ dependabot[bot])
- Ben Teichman (@ effervescentia)
- Cody Tseng (@ CodyTseng)
- Hyun-Jin Jeong (@ hyunjinjeong)
- Kamil Mysliwiec (@ kamilmysliwiec)
- Nathan Arseneau (@ nathanArseneau)
- Noah Golub (@ nomaxg)
- Tolga Paksoy (@ tolgap)
- Yiheng (@ ianzone)
-
9.3.12 - 2023-03-22
- #11129 fix(core): false-positive value provider not registered error when the value is
- #11281 perf(common): In case of an expensive log, allow to pass a function (@ hansl)
- Other
- #11307 chore(deps-dev): bump @ nestjs/apollo from 11.0.3 to 11.0.4 (@ dependabot[bot])
- #11315 chore(deps-dev): bump prettier from 2.8.5 to 2.8.6 (@ dependabot[bot])
- #11316 chore(deps-dev): bump cache-manager from 5.1.7 to 5.2.0 (@ dependabot[bot])
- #11306 chore(deps-dev): bump mongoose from 6.10.3 to 7.0.2 (@ dependabot[bot])
- #11308 chore(deps-dev): bump @ nestjs/graphql from 11.0.0 to 11.0.4 (@ dependabot[bot])
- #11310 chore(deps-dev): bump eslint-config-prettier from 8.7.0 to 8.8.0 (@ dependabot[bot])
- #11311 chore(deps-dev): bump @ types/node from 18.15.3 to 18.15.5 (@ dependabot[bot])
- #11312 chore(deps-dev): bump prettier from 2.8.4 to 2.8.5 (@ dependabot[bot])
- #11309 chore(deps): bump fastify from 4.14.1 to 4.15.0 (@ dependabot[bot])
- Hans Larsen (@ hansl)
- Micael Levi L. Cavalcante (@ micalevisk)
-
9.3.11 - 2023-03-21
-
9.3.10 - 2023-03-15
- #11131 fix(common): fix cache ttl not beeing respected (@ Flusinerd)
- #11170 Add test case for ParseArrayPipe that doesn't work as expected (@ thgh)
- #11280 fix(platform-express): wrong type def for
- #11186 fix(ws): filter only nil results (@ CodyTseng)
- #11104 feat(core): expose external-context-creator (@ eugenk)
- Other
- #11267 chore(deps-dev): bump @ apollo/server from 4.4.1 to 4.5.0 (@ dependabot[bot])
- #11266 chore(deps-dev): bump lint-staged from 13.1.2 to 13.2.0 (@ dependabot[bot])
- #11268 chore(deps-dev): bump nats from 2.13.0 to 2.13.1 (@ dependabot[bot])
- #11270 chore(deps-dev): bump sinon from 15.0.1 to 15.0.2 (@ dependabot[bot])
- #11271 chore(deps-dev): bump @ nestjs/apollo from 11.0.2 to 11.0.3 (@ dependabot[bot])
- #11274 chore(deps-dev): bump @ fastify/multipart from 7.4.2 to 7.5.0 (@ dependabot[bot])
- #11275 chore(deps-dev): bump core-js from 3.29.0 to 3.29.1 (@ dependabot[bot])
- #11276 chore(deps-dev): bump mongoose from 6.10.2 to 6.10.3 (@ dependabot[bot])
- #11283 chore(deps-dev): bump @ types/node from 18.15.0 to 18.15.3 (@ dependabot[bot])
- #11284 chore(deps-dev): bump webpack from 5.73.0 to 5.76.0 in /sample/08-webpack (@ dependabot[bot])
- #11251 chore(deps-dev): bump nats from 2.12.1 to 2.13.0 (@ dependabot[bot])
- #11257 chore(deps-dev): bump @ types/node from 18.14.6 to 18.15.0 (@ dependabot[bot])
- #11245 chore(deps): update babel monorepo (@ renovate[bot])
- #11243 chore(deps): update dependency @ types/bull to v3.15.9 (@ renovate[bot])
- #11246 chore(deps): update confluentinc/cp-zookeeper docker tag to v7.3.2 (@ renovate[bot])
- #11250 fix(deps): update dependency @ graphql-tools/utils to v9 (@ renovate[bot])
- #11204 chore(deps): bump @ nestjs/core from 9.0.1 to 9.0.5 in /sample/01-cats-app (@ dependabot[bot])
- #11203 chore(deps): bump @ nestjs/core from 9.0.1 to 9.0.5 in /sample/06-mongoose (@ dependabot[bot])
- #11205 chore(deps): bump @ nestjs/core from 9.0.1 to 9.0.5 in /sample/10-fastify (@ dependabot[bot])
- #11206 chore(deps): bump @ nestjs/core from 9.0.1 to 9.0.5 in /sample/30-event-emitter (@ dependabot[bot])
- #11207 chore(deps): bump @ nestjs/core from 9.0.1 to 9.0.5 in /sample/19-auth-jwt (@ dependabot[bot])
- #11208 chore(deps): bump @ nestjs/core from 9.0.1 to 9.0.5 in /sample/05-sql-typeorm (@ dependabot[bot])
- #11209 chore(deps): bump @ nestjs/core from 9.0.1 to 9.0.5 in /sample/15-mvc (@ dependabot[bot])
- #11210 chore(deps): bump @ nestjs/core from 9.0.1 to 9.0.5 in /sample/22-graphql-prisma (@ dependabot[bot])
- #11211 chore(deps): bump @ nestjs/core from 9.0.1 to 9.0.5 in /sample/02-gateways (@ dependabot[bot])
- #11214 chore(deps): bump @ nestjs/core from 9.0.1 to 9.0.5 in /sample/09-babel-example (@ dependabot[bot])
- #11212 chore(deps): bump @ nestjs/core from 9.0.1 to 9.0.5 in /sample/08-webpack (@ dependabot[bot])
- #11216 chore(deps): bump @ nestjs/core from 9.0.1 to 9.0.5 in /sample/17-mvc-fastify (@ dependabot[bot])
- #11230 chore(deps): bump @ nestjs/core from 9.0.1 to 9.0.5 in /sample/16-gateways-ws (@ dependabot[bot])
- #11213 chore(deps): bump @ nestjs/core from 9.0.1 to 9.0.5 in /sample/12-graphql-schema-first (@ dependabot[bot])
- #11215 chore(deps): bump @ nestjs/core from 9.0.1 to 9.0.5 in /sample/28-sse (@ dependabot[bot])
- #11217 chore(deps): bump @ nestjs/core from 9.0.1 to 9.0.5 in /sample/20-cache (@ dependabot[bot])
- #11218 chore(deps): bump @ nestjs/core from 9.0.1 to 9.0.5 in /sample/32-graphql-federation-schema-first/gateway (@ dependabot[bot])
- #11219 chore(deps): bump @ nestjs/core from 9.0.1 to 9.0.5 in /sample/24-serve-static (@ dependabot[bot])
- #11220 chore(deps): bump @ nestjs/core from 9.0.1 to 9.0.5 in /sample/31-graphql-federation-code-first/users-application (@ dependabot[bot])
- #11221 chore(deps): bump @ nestjs/core from 9.0.1 to 9.0.5 in /sample/32-graphql-federation-schema-first/posts-application (@ dependabot[bot])
- #11222 chore(deps): bump @ nestjs/core from 9.0.1 to 9.0.5 in /sample/31-graphql-federation-code-first/gateway (@ dependabot[bot])
- #11223 chore(deps): bump @ nestjs/core from 9.0.1 to 9.0.5 in /sample/18-context (@ dependabot[bot])
- #11224 chore(deps): bump @ nestjs/core from 9.0.1 to 9.0.5 in /sample/21-serializer (@ dependabot[bot])
- #11225 chore(deps): bump @ nestjs/core from 9.0.1 to 9.0.5 in /sample/14-mongoose-base (@ dependabot[bot])
- #11226 chore(deps): bump @ nestjs/core from 9.0.1 to 9.0.5 in /sample/11-swagger (@ dependabot[bot])
- #11227 chore(deps): bump @ nestjs/core from 9.0.1 to 9.0.5 in /sample/33-graphql-mercurius (@ dependabot[bot])
- #11228 chore(deps): bump @ nestjs/core from 9.0.1 to 9.0.5 in /sample/27-scheduling (@ dependabot[bot])
- #11229 chore(deps): bump @ nestjs/core from 9.0.1 to 9.0.5 in /sample/03-microservices (@ dependabot[bot])
- #11231 chore(deps): bump @ nestjs/core from 9.0.1 to 9.0.5 in /sample/26-queues (@ dependabot[bot])
- #11232 chore(deps): bump @ nestjs/core from 9.0.1 to 9.0.5 in /sample/29-file-upload (@ dependabot[bot])
- #11233 chore(deps): bump @ nestjs/core from 9.0.1 to 9.0.5 in /sample/13-mongo-typeorm (@ dependabot[bot])
- #11234 chore(deps): bump @ nestjs/core from 9.0.1 to 9.0.5 in /sample/32-graphql-federation-schema-first/users-application (@ dependabot[bot])
- #11235 chore(deps): bump @ nestjs/core from 9.0.1 to 9.0.5 in /sample/23-graphql-code-first (@ dependabot[bot])
- #11236 chore(deps): bump @ nestjs/core from 9.0.1 to 9.0.5 in /sample/04-grpc (@ dependabot[bot])
- #11237 chore(deps): bump @ nestjs/core from 9.0.1 to 9.0.5 in /sample/07-sequelize (@ dependabot[bot])
- #11238 chore(deps): bump @ nestjs/core from 9.0.1 to 9.0.5 in /sample/31-graphql-federation-code-first/posts-application (@ dependabot[bot])
- #11239 chore(deps): bump @ nestjs/core from 9.0.1 to 9.0.5 in /sample/25-dynamic-modules (@ dependabot[bot])
- #11201 chore(deps-dev): bump @ grpc/grpc-js from 1.8.11 to 1.8.12 (@ dependabot[bot])
- #11202 chore(deps-dev): bump mongoose from 6.10.1 to 6.10.2 (@ dependabot[bot])
- #11200 chore(deps-dev): bump graphql-tools from 8.3.18 to 8.3.19 (@ dependabot[bot])
- #11199 chore(deps-dev): bump eslint-config-prettier from 8.6.0 to 8.7.0 (@ dependabot[bot])
- #11198 chore(deps-dev): bump @ fastify/multipart from 7.4.1 to 7.4.2 (@ dependabot[bot])
- #11180 chore(deps-dev): bump apollo-server-core from 3.11.1 to 3.12.0 (@ dependabot[bot])
- #11181 chore(deps-dev): bump nodemon from 2.0.20 to 2.0.21 (@ dependabot[bot])
- #11182 chore(deps-dev): bump apollo-server-express from 3.11.1 to 3.12.0 (@ dependabot[bot])
- #11192 chore(deps-dev): bump mongoose from 6.10.0 to 6.10.1 (@ dependabot[bot])
- #11193 chore(deps-dev): bump @ types/node from 18.14.2 to 18.14.6 (@ dependabot[bot])
- #11194 chore(deps-dev): bump mysql2 from 3.1.2 to 3.2.0 (@ dependabot[bot])
- #11171 chore(deps-dev): bump kafkajs from 2.2.3 to 2.2.4 (@ dependabot[bot])
- #11161 chore(deps): bump sequelize from 6.28.2 to 6.29.0 in /sample/07-sequelize (@ dependabot[bot])
- #11164 chore(deps-dev): bump core-js from 3.28.0 to 3.29.0 (@ dependabot[bot])
- #11165 chore(deps-dev): bump amqp-connection-manager from 4.1.10 to 4.1.11 (@ dependabot[bot])
- #11166 chore(deps-dev): bump @ types/node from 18.14.1 to 18.14.2 (@ dependabot[bot])
- #11167 chore(deps-dev): bump redis from 4.6.4 to 4.6.5 (@ dependabot[bot])
- #11168 chore(deps-dev): bump @ grpc/grpc-js from 1.8.10 to 1.8.11 (@ dependabot[bot])
- #11158 chore(deps-dev): bump cache-manager from 5.1.6 to 5.1.7 (@ dependabot[bot])
- #11159 chore(deps): bump fast-json-stringify from 5.6.1 to 5.6.2 (@ dependabot[bot])
- #11157 chore(deps-dev): bump @ types/node from 18.14.0 to 18.14.1 (@ dependabot[bot])
- #11147 chore(deps-dev): bump nats from 2.12.0 to 2.12.1 (@ dependabot[bot])
- #11148 chore(deps-dev): bump @ grpc/grpc-js from 1.8.9 to 1.8.10 (@ dependabot[bot])
- #11151 chore(deps-dev): bump mongoose from 6.9.2 to 6.10.0 (@ dependabot[bot])
- #11152 chore(deps): bump fast-json-stringify from 5.5.0 to 5.6.1 (@ dependabot[bot])
- #11153 chore(deps): bump sequelize from 6.21.2 to 6.28.2 in /sample/07-sequelize (@ dependabot[bot])
- #11135 chore(deps-dev): bump @ commitlint/config-angular from 17.4.3 to 17.4.4 (@ dependabot[bot])
- #11136 chore(deps-dev): bump @ commitlint/cli from 17.4.3 to 17.4.4 (@ dependabot[bot])
- #11137 chore(deps-dev): bump @ types/node from 18.13.0 to 18.14.0 (@ dependabot[bot])
- #11144 chore(deps-dev): bump socket.io-client from 4.6.0 to 4.6.1 (@ dependabot[bot])
- #11127 chore(deps): bump undici from 5.9.1 to 5.19.1 in /sample/33-graphql-mercurius (@ dependabot[bot])
- #11128 chore(deps-dev): bump mongoose from 6.9.1 to 6.9.2 (@ dependabot[bot])
- #11120 chore(deps-dev): bump @ grpc/grpc-js from 1.8.8 to 1.8.9 (@ dependabot[bot])
- #11113 chore(deps-dev): bump @ fastify/multipart from 7.4.0 to 7.4.1 (@ dependabot[bot])
- #11269 chore(deps): bump ws from 8.12.1 to 8.13.0 (@ dependabot[bot])
- #11197 chore(deps): bump fastify from 4.14.0 to 4.14.1 (@ dependabot[bot])
- #11191 chore(deps): bump fastify from 4.13.0 to 4.14.0 (@ dependabot[bot])
- #11121 chore(deps): bump light-my-request from 5.8.0 to 5.9.1 (@ dependabot[bot])
- #11150 chore(deps): bump body-parser from 1.20.1 to 1.20.2 (@ dependabot[bot])
- #11143 chore(deps): bump socket.io from 4.6.0 to 4.6.1 (@ dependabot[bot])
- Antonio Tripodi (@ Tony133)
- Cody Tseng (@ CodyTseng)
- Eugen Kuksa (@ eugenk)
- Jake Son (@ jbl428)
- Jan Krüger (@ Flusinerd)
- Jongwoo Han (@ jongwooo)
- Martin Dagarin (@ SloCompTech)
- Micael Levi L. Cavalcante (@ micalevisk)
- Steve Juneyoung Kang (@ stevejkang)
- Thomas Ghysels (@ thgh)
- @ mohamadrezamomeni
-
9.3.9 - 2023-02-14
from @nestjs/common GitHub release notesv9.4.3
v9.4.2
v9.4.1
v9.4.0 (2023-04-05)
Features
microservicesBug fixes
platform-wswsservers on different paths (@ CodyTseng)platform-expressEnhancements
microservicesDependencies
common,coreCommitters: 8
v9.3.12 (2023-03-22)
Enhancements
coreundefined(@ micalevisk)commonDependencies
platform-fastifyCommitters: 2
v9.3.11
v9.3.10 (2023-03-15)
Bug fixes
commonplatform-expressNestExpressApplication#listen(@ micalevisk)platform-wsEnhancements
coreDependencies
platform-wsplatform-fastifyplatform-expressplatform-socket.ioCommitters: 11
v9.3.9
Package name: @nestjs/core
v9.4.3
v9.4.2
v9.4.1
v9.4.0 (2023-04-05)
Features
microservicesBug fixes
platform-wswsservers on different paths (@ CodyTseng)platform-expressEnhancements
microservicesDependencies