Snyk bot
|
407ed6ee36
|
fix: upgrade graphql from 15.5.3 to 15.6.0 (#7612)
|
2021-10-12 09:42:38 +02:00 |
|
Snyk bot
|
2b5bf2261b
|
refactor: upgrade graphql-relay from 0.8.0 to 0.9.0 (#7605)
Snyk has created this PR to upgrade graphql-relay from 0.8.0 to 0.9.0.
See this package in npm:
https://www.npmjs.com/package/graphql-relay
See this project in Snyk:
https://app.snyk.io/org/acinader/project/8c1a9edb-c8f5-4dc1-b221-4d6030a323eb?utm_source=github&utm_medium=referral&page=upgrade-pr
|
2021-10-06 01:44:45 +02:00 |
|
Snyk bot
|
20cb3333ab
|
fix: upgrade ws from 8.2.1 to 8.2.2 (#7598)
Snyk has created this PR to upgrade ws from 8.2.1 to 8.2.2.
See this package in npm:
https://www.npmjs.com/package/ws
See this project in Snyk:
https://app.snyk.io/org/acinader/project/8c1a9edb-c8f5-4dc1-b221-4d6030a323eb?utm_source=github&utm_medium=referral&page=upgrade-pr
Co-authored-by: Manuel <5673677+mtrezza@users.noreply.github.com>
|
2021-10-01 01:18:41 +02:00 |
|
dblythy
|
834ae366f9
|
Merge pull request from GHSA-7pr3-p5fm-8r9x
* fix: strip sessionToken on _User LiveQuery
* delete authData
* add changelog
* Update package.json
* Update CHANGELOG.md
* add changes
* Update ParseLiveQuery.spec.js
Co-authored-by: Manuel <5673677+mtrezza@users.noreply.github.com>
|
2021-09-30 04:52:12 +02:00 |
|
Snyk bot
|
bcbc035627
|
fix: upgrade graphql from 15.5.2 to 15.5.3 (#7596)
Snyk has created this PR to upgrade graphql from 15.5.2 to 15.5.3.
See this package in npm:
https://www.npmjs.com/package/graphql
See this project in Snyk:
https://app.snyk.io/org/acinader/project/8c1a9edb-c8f5-4dc1-b221-4d6030a323eb?utm_source=github&utm_medium=referral&page=upgrade-pr
Co-authored-by: Manuel <5673677+mtrezza@users.noreply.github.com>
|
2021-09-30 04:49:13 +02:00 |
|
dependabot[bot]
|
0fa8f5e27b
|
chore(deps): bump object-path from 0.11.7 to 0.11.8 (#7585)
|
2021-09-22 15:18:44 +02:00 |
|
Snyk bot
|
dee4d96627
|
fix: upgrade graphql from 15.5.1 to 15.5.2 (#7587)
|
2021-09-22 09:49:39 +02:00 |
|
Snyk bot
|
c3da2908fa
|
fix: upgrade ws from 7.5.3 to 8.2.1 (#7580)
Snyk has created this PR to upgrade ws from 7.5.3 to 8.2.1.
See this package in npm:
https://www.npmjs.com/package/ws
See this project in Snyk:
https://app.snyk.io/org/acinader/project/8c1a9edb-c8f5-4dc1-b221-4d6030a323eb?utm_source=github&utm_medium=upgrade-pr
|
2021-09-19 15:05:08 +02:00 |
|
Manuel
|
e9e3be1df8
|
ci: add node engine check (#7574)
* add issue bot for prs
* Update CHANGELOG.md
* Update issue-bot.yml
* replace node 15 with node 16
* Update CHANGELOG.md
* use node 16 as default node version
* ignore node 15 in ci self-check
* bumped madge for node deprecation DEP0148
* ci: add node engine check
* lint
* bump node engine
* Update ci.yml
* revert unnecessary changes
* Update CHANGELOG.md
* Update ci.yml
|
2021-09-14 16:29:56 +02:00 |
|
dependabot[bot]
|
1c626d50b5
|
chore(deps): bump axios from 0.21.1 to 0.21.4 (#7566)
Bumps [axios](https://github.com/axios/axios) from 0.21.1 to 0.21.4.
- [Release notes](https://github.com/axios/axios/releases)
- [Changelog](https://github.com/axios/axios/blob/master/CHANGELOG.md)
- [Commits](https://github.com/axios/axios/compare/v0.21.1...v0.21.4)
---
updated-dependencies:
- dependency-name: axios
dependency-type: indirect
...
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
|
2021-09-10 17:08:34 +02:00 |
|
dependabot[bot]
|
6ad3e6f8ad
|
chore(deps): bump object-path from 0.11.5 to 0.11.7 (#7535)
|
2021-09-02 14:41:44 +02:00 |
|
Manuel
|
f1da29f9c9
|
chore: bump package version to 4.10.3 (#7537)
* add issue bot for prs
* Update CHANGELOG.md
* Update issue-bot.yml
* bumped package version
|
2021-09-02 13:08:52 +02:00 |
|
Snyk bot
|
dee5a13a85
|
fix: upgrade ldapjs from 2.3.0 to 2.3.1 (#7524)
Snyk has created this PR to upgrade ldapjs from 2.3.0 to 2.3.1.
See this package in npm:
https://www.npmjs.com/package/ldapjs
See this project in Snyk:
https://app.snyk.io/org/acinader/project/8c1a9edb-c8f5-4dc1-b221-4d6030a323eb?utm_source=github&utm_medium=upgrade-pr
|
2021-08-25 11:32:40 +02:00 |
|
Manuel
|
c0d7ac0f68
|
Merge release 4.10.2 (#7515)
* bump version
* Update CHANGELOG.md
|
2021-08-24 01:21:03 +02:00 |
|
Manuel
|
f5f608ccf5
|
Merge release 4.10.1 (#7511)
* Update CHANGELOG.md
* bump version
* bumped mongodb@3.6.11
|
2021-08-24 00:56:40 +02:00 |
|
Snyk bot
|
a967e79219
|
fix: upgrade pg-promise from 10.10.2 to 10.11.0 (#7510)
|
2021-08-22 10:45:32 +02:00 |
|
Snyk bot
|
65c967a4c4
|
fix: package.json & package-lock.json to reduce vulnerabilities (#7509)
|
2021-08-22 10:25:47 +02:00 |
|
Manuel
|
66cb0f05b0
|
Merge v4.10.0 into master (#7505)
* bump version
* Update CHANGELOG.md
|
2021-08-20 11:57:09 -07:00 |
|
Manuel
|
c6fb88c298
|
adapt for master merge (#7501)
|
2021-08-18 15:22:52 -07:00 |
|
Antonio Davi Macedo Coelho de Castro
|
fc0fef5922
|
Merge pull request from GHSA-23r4-5mxp-c7g5 (#7497)
* Merge pull request from GHSA-23r4-5mxp-c7g5
* add anonymous login security fix
* add changelog entry
* update changelog
* Update package.json (#7498)
* Update package-lock.json (#7499)
Co-authored-by: Corey <coreyearleon@icloud.com>
|
2021-08-18 19:03:54 +02:00 |
|
dependabot[bot]
|
f8c4f9fc54
|
chore(deps): bump path-parse from 1.0.6 to 1.0.7 (#7484)
Bumps [path-parse](https://github.com/jbgutierrez/path-parse) from 1.0.6 to 1.0.7.
- [Release notes](https://github.com/jbgutierrez/path-parse/releases)
- [Commits](https://github.com/jbgutierrez/path-parse/commits/v1.0.7)
---
updated-dependencies:
- dependency-name: path-parse
dependency-type: indirect
...
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
|
2021-08-10 13:16:16 -07:00 |
|
Snyk bot
|
45d29cc58c
|
fix: upgrade mongodb from 3.6.9 to 3.6.10 (#7474)
Snyk has created this PR to upgrade mongodb from 3.6.9 to 3.6.10.
See this package in npm:
https://www.npmjs.com/package/mongodb
See this project in Snyk:
https://app.snyk.io/org/acinader/project/8c1a9edb-c8f5-4dc1-b221-4d6030a323eb?utm_source=github&utm_medium=upgrade-pr
|
2021-07-27 17:39:05 -07:00 |
|
Snyk bot
|
c3b71ba5b6
|
[Snyk] Upgrade ws from 7.4.6 to 7.5.3 (#7457)
* fix: upgrade ws from 7.4.6 to 7.5.0
Snyk has created this PR to upgrade ws from 7.4.6 to 7.5.0.
See this package in npm:
https://www.npmjs.com/package/ws
See this project in Snyk:
https://app.snyk.io/org/acinader/project/8c1a9edb-c8f5-4dc1-b221-4d6030a323eb?utm_source=github&utm_medium=upgrade-pr
* changed logging for circular obj
* upgraded to ws 7.5.3
Co-authored-by: Manuel Trezza <5673677+mtrezza@users.noreply.github.com>
|
2021-07-25 01:54:28 +02:00 |
|
Snyk bot
|
39f7c831e6
|
fix: upgrade @apollographql/graphql-playground-html from 1.6.28 to 1.6.29 (#7473)
Snyk has created this PR to upgrade @apollographql/graphql-playground-html from 1.6.28 to 1.6.29.
See this package in npm:
https://www.npmjs.com/package/@apollographql/graphql-playground-html
See this project in Snyk:
https://app.snyk.io/org/acinader/project/8c1a9edb-c8f5-4dc1-b221-4d6030a323eb?utm_source=github&utm_medium=upgrade-pr
|
2021-07-24 12:42:57 +02:00 |
|
Snyk bot
|
c58bf57f51
|
fix: upgrade @apollographql/graphql-playground-html from 1.6.27 to 1.6.28 (#7411)
Snyk has created this PR to upgrade @apollographql/graphql-playground-html from 1.6.27 to 1.6.28.
See this package in npm:
https://www.npmjs.com/package/@apollographql/graphql-playground-html
See this project in Snyk:
https://app.snyk.io/org/acinader/project/8c1a9edb-c8f5-4dc1-b221-4d6030a323eb?utm_source=github&utm_medium=upgrade-pr
Co-authored-by: Manuel Trezza <5673677+mtrezza@users.noreply.github.com>
|
2021-07-23 22:45:54 +02:00 |
|
Snyk bot
|
bbd7ee7313
|
fix: upgrade graphql from 15.5.0 to 15.5.1 (#7462)
Snyk has created this PR to upgrade graphql from 15.5.0 to 15.5.1.
See this package in npm:
https://www.npmjs.com/package/graphql
See this project in Snyk:
https://app.snyk.io/org/acinader/project/8c1a9edb-c8f5-4dc1-b221-4d6030a323eb?utm_source=github&utm_medium=upgrade-pr
Co-authored-by: Manuel Trezza <5673677+mtrezza@users.noreply.github.com>
|
2021-07-23 20:13:26 +02:00 |
|
Snyk bot
|
a95ad89736
|
[Snyk] Security upgrade parse from 3.2.0 to 3.3.0 (#7464)
* fix: package.json & package-lock.json to reduce vulnerabilities
The following vulnerabilities are fixed with an upgrade:
- https://snyk.io/vuln/SNYK-JS-WS-1296835
* update user test
Co-authored-by: Manuel Trezza <5673677+mtrezza@users.noreply.github.com>
|
2021-07-23 18:04:03 +02:00 |
|
Snyk bot
|
1fe47087a9
|
fix: upgrade apollo-server-express from 2.25.1 to 2.25.2 (#7465)
Snyk has created this PR to upgrade apollo-server-express from 2.25.1 to 2.25.2.
See this package in npm:
https://www.npmjs.com/package/apollo-server-express
See this project in Snyk:
https://app.snyk.io/org/acinader/project/8c1a9edb-c8f5-4dc1-b221-4d6030a323eb?utm_source=github&utm_medium=upgrade-pr
Co-authored-by: Manuel Trezza <5673677+mtrezza@users.noreply.github.com>
|
2021-07-23 17:13:50 +02:00 |
|
Snyk bot
|
2b3355cb02
|
fix: upgrade graphql-tag from 2.12.4 to 2.12.5 (#7466)
Snyk has created this PR to upgrade graphql-tag from 2.12.4 to 2.12.5.
See this package in npm:
https://www.npmjs.com/package/graphql-tag
See this project in Snyk:
https://app.snyk.io/org/acinader/project/8c1a9edb-c8f5-4dc1-b221-4d6030a323eb?utm_source=github&utm_medium=upgrade-pr
Co-authored-by: Manuel Trezza <5673677+mtrezza@users.noreply.github.com>
|
2021-07-23 15:47:36 +02:00 |
|
Snyk bot
|
9923cd3869
|
fix: upgrade graphql-relay from 0.7.0 to 0.8.0 (#7467)
Snyk has created this PR to upgrade graphql-relay from 0.7.0 to 0.8.0.
See this package in npm:
https://www.npmjs.com/package/graphql-relay
See this project in Snyk:
https://app.snyk.io/org/acinader/project/8c1a9edb-c8f5-4dc1-b221-4d6030a323eb?utm_source=github&utm_medium=upgrade-pr
Co-authored-by: Manuel Trezza <5673677+mtrezza@users.noreply.github.com>
|
2021-07-23 15:05:31 +02:00 |
|
Snyk bot
|
682f1bf143
|
fix: upgrade apollo-server-express from 2.25.0 to 2.25.1 (#7449)
Snyk has created this PR to upgrade apollo-server-express from 2.25.0 to 2.25.1.
See this package in npm:
https://www.npmjs.com/package/apollo-server-express
See this project in Snyk:
https://app.snyk.io/org/acinader/project/8c1a9edb-c8f5-4dc1-b221-4d6030a323eb?utm_source=github&utm_medium=upgrade-pr
|
2021-06-30 15:29:54 -07:00 |
|
Snyk bot
|
d36a53b2bf
|
fix: upgrade subscriptions-transport-ws from 0.9.19 to 0.10.0 (#7450)
Snyk has created this PR to upgrade subscriptions-transport-ws from 0.9.19 to 0.10.0.
See this package in npm:
https://www.npmjs.com/package/subscriptions-transport-ws
See this project in Snyk:
https://app.snyk.io/org/acinader/project/8c1a9edb-c8f5-4dc1-b221-4d6030a323eb?utm_source=github&utm_medium=upgrade-pr
|
2021-06-30 15:26:16 -07:00 |
|
Snyk bot
|
17cf1a46e5
|
fix: upgrade mongodb from 3.6.8 to 3.6.9 (#7445)
Snyk has created this PR to upgrade mongodb from 3.6.8 to 3.6.9.
See this package in npm:
https://www.npmjs.com/package/mongodb
See this project in Snyk:
https://app.snyk.io/org/acinader/project/8c1a9edb-c8f5-4dc1-b221-4d6030a323eb?utm_source=github&utm_medium=upgrade-pr
|
2021-06-27 22:00:47 -07:00 |
|
Snyk bot
|
c36588e3c2
|
fix: upgrade mongodb from 3.6.7 to 3.6.8 (#7430)
Snyk has created this PR to upgrade mongodb from 3.6.7 to 3.6.8.
See this package in npm:
https://www.npmjs.com/package/mongodb
See this project in Snyk:
https://app.snyk.io/org/acinader/project/8c1a9edb-c8f5-4dc1-b221-4d6030a323eb?utm_source=github&utm_medium=upgrade-pr
|
2021-06-23 22:38:05 -07:00 |
|
Snyk bot
|
4e5eba6c6c
|
fix: upgrade apollo-server-express from 2.24.1 to 2.25.0 (#7435)
Snyk has created this PR to upgrade apollo-server-express from 2.24.1 to 2.25.0.
See this package in npm:
https://www.npmjs.com/package/apollo-server-express
See this project in Snyk:
https://app.snyk.io/org/acinader/project/8c1a9edb-c8f5-4dc1-b221-4d6030a323eb?utm_source=github&utm_medium=upgrade-pr
|
2021-06-23 22:30:36 -07:00 |
|
Snyk bot
|
7df6c020b1
|
fix: upgrade ldapjs from 2.2.4 to 2.3.0 (#7436)
Snyk has created this PR to upgrade ldapjs from 2.2.4 to 2.3.0.
See this package in npm:
https://www.npmjs.com/package/ldapjs
See this project in Snyk:
https://app.snyk.io/org/acinader/project/8c1a9edb-c8f5-4dc1-b221-4d6030a323eb?utm_source=github&utm_medium=upgrade-pr
|
2021-06-23 22:30:11 -07:00 |
|
Snyk bot
|
770e36ff43
|
fix: upgrade graphql-relay from 0.6.0 to 0.7.0 (#7443)
Snyk has created this PR to upgrade graphql-relay from 0.6.0 to 0.7.0.
See this package in npm:
https://www.npmjs.com/package/graphql-relay
See this project in Snyk:
https://app.snyk.io/org/acinader/project/8c1a9edb-c8f5-4dc1-b221-4d6030a323eb?utm_source=github&utm_medium=upgrade-pr
|
2021-06-23 22:24:26 -07:00 |
|
dependabot[bot]
|
0638e5e697
|
chore(deps): bump normalize-url from 4.5.0 to 4.5.1 (#7428)
Bumps [normalize-url](https://github.com/sindresorhus/normalize-url) from 4.5.0 to 4.5.1.
- [Release notes](https://github.com/sindresorhus/normalize-url/releases)
- [Commits](https://github.com/sindresorhus/normalize-url/commits)
---
updated-dependencies:
- dependency-name: normalize-url
dependency-type: indirect
...
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
|
2021-06-10 15:21:20 -07:00 |
|
Snyk bot
|
bfdb6a93e8
|
fix: upgrade apollo-server-express from 2.24.0 to 2.24.1 (#7424)
Snyk has created this PR to upgrade apollo-server-express from 2.24.0 to 2.24.1.
See this package in npm:
https://www.npmjs.com/package/apollo-server-express
See this project in Snyk:
https://app.snyk.io/org/acinader/project/8c1a9edb-c8f5-4dc1-b221-4d6030a323eb?utm_source=github&utm_medium=upgrade-pr
|
2021-06-10 15:00:00 -07:00 |
|
Snyk bot
|
61affe2629
|
fix: upgrade mongodb from 3.6.6 to 3.6.7 (#7425)
Snyk has created this PR to upgrade mongodb from 3.6.6 to 3.6.7.
See this package in npm:
https://www.npmjs.com/package/mongodb
See this project in Snyk:
https://app.snyk.io/org/acinader/project/8c1a9edb-c8f5-4dc1-b221-4d6030a323eb?utm_source=github&utm_medium=upgrade-pr
|
2021-06-10 14:59:16 -07:00 |
|
Snyk bot
|
bea4707783
|
fix: package.json & package-lock.json to reduce vulnerabilities (#7423)
The following vulnerabilities are fixed with an upgrade:
- https://snyk.io/vuln/SNYK-JS-WS-1296835
|
2021-06-10 14:56:37 -07:00 |
|
Snyk bot
|
5abbeeb8d1
|
fix: upgrade winston-daily-rotate-file from 4.5.4 to 4.5.5 (#7407)
Snyk has created this PR to upgrade winston-daily-rotate-file from 4.5.4 to 4.5.5.
See this package in npm:
https://www.npmjs.com/package/winston-daily-rotate-file
See this project in Snyk:
https://app.snyk.io/org/acinader/project/8c1a9edb-c8f5-4dc1-b221-4d6030a323eb?utm_source=github&utm_medium=upgrade-pr
|
2021-05-31 08:36:52 -07:00 |
|
Snyk bot
|
8976ecc4a9
|
fix: upgrade follow-redirects from 1.14.0 to 1.14.1 (#7408)
Snyk has created this PR to upgrade follow-redirects from 1.14.0 to 1.14.1.
See this package in npm:
https://www.npmjs.com/package/follow-redirects
See this project in Snyk:
https://app.snyk.io/org/acinader/project/8c1a9edb-c8f5-4dc1-b221-4d6030a323eb?utm_source=github&utm_medium=upgrade-pr
|
2021-05-30 22:25:27 -07:00 |
|
Snyk bot
|
d915bacee7
|
fix: package.json & package-lock.json to reduce vulnerabilities (#7405)
The following vulnerabilities are fixed with an upgrade:
- https://snyk.io/vuln/SNYK-JS-WS-1296835
|
2021-05-27 16:50:50 -07:00 |
|
Snyk bot
|
4f80a5f4af
|
fix: upgrade winston-daily-rotate-file from 4.5.3 to 4.5.4 (#7402)
Snyk has created this PR to upgrade winston-daily-rotate-file from 4.5.3 to 4.5.4.
See this package in npm:
https://www.npmjs.com/package/winston-daily-rotate-file
See this project in Snyk:
https://app.snyk.io/org/acinader/project/8c1a9edb-c8f5-4dc1-b221-4d6030a323eb?utm_source=github&utm_medium=upgrade-pr
|
2021-05-25 15:40:31 -07:00 |
|
Snyk bot
|
8099cb05a4
|
fix: upgrade graphql-tag from 2.12.2 to 2.12.4 (#7396)
Snyk has created this PR to upgrade graphql-tag from 2.12.2 to 2.12.4.
See this package in npm:
https://www.npmjs.com/package/graphql-tag
See this project in Snyk:
https://app.snyk.io/org/acinader/project/8c1a9edb-c8f5-4dc1-b221-4d6030a323eb?utm_source=github&utm_medium=upgrade-pr
|
2021-05-24 21:18:16 -07:00 |
|
Snyk bot
|
d365f1f7cb
|
fix: upgrade pg-promise from 10.10.1 to 10.10.2 (#7399)
Snyk has created this PR to upgrade pg-promise from 10.10.1 to 10.10.2.
See this package in npm:
https://www.npmjs.com/package/pg-promise
See this project in Snyk:
https://app.snyk.io/org/acinader/project/8c1a9edb-c8f5-4dc1-b221-4d6030a323eb?utm_source=github&utm_medium=upgrade-pr
|
2021-05-24 14:43:59 -07:00 |
|
dependabot[bot]
|
581f822cba
|
chore(deps): bump browserslist from 4.16.3 to 4.16.6 (#7400)
Bumps [browserslist](https://github.com/browserslist/browserslist) from 4.16.3 to 4.16.6.
- [Release notes](https://github.com/browserslist/browserslist/releases)
- [Changelog](https://github.com/browserslist/browserslist/blob/main/CHANGELOG.md)
- [Commits](https://github.com/browserslist/browserslist/compare/4.16.3...4.16.6)
Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
|
2021-05-24 14:40:34 -07:00 |
|
Snyk bot
|
ff5755b05a
|
fix: upgrade apollo-server-express from 2.23.0 to 2.24.0 (#7395)
Snyk has created this PR to upgrade apollo-server-express from 2.23.0 to 2.24.0.
See this package in npm:
https://www.npmjs.com/package/apollo-server-express
See this project in Snyk:
https://app.snyk.io/org/acinader/project/8c1a9edb-c8f5-4dc1-b221-4d6030a323eb?utm_source=github&utm_medium=upgrade-pr
|
2021-05-24 09:26:47 -07:00 |
|
Snyk bot
|
e9d8ed4acb
|
fix: upgrade winston-daily-rotate-file from 4.5.2 to 4.5.3 (#7398)
Snyk has created this PR to upgrade winston-daily-rotate-file from 4.5.2 to 4.5.3.
See this package in npm:
https://www.npmjs.com/package/winston-daily-rotate-file
See this project in Snyk:
https://app.snyk.io/org/acinader/project/8c1a9edb-c8f5-4dc1-b221-4d6030a323eb?utm_source=github&utm_medium=upgrade-pr
|
2021-05-24 00:26:35 -07:00 |
|