some-comments
some-comments copied to clipboard
[Snyk] Security upgrade objection from 0.2.8 to 0.5.4
Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.
Changes included in this PR
- Changes to the following files to upgrade the vulnerable dependencies to a fixed version:
- package.json
Vulnerabilities that will be fixed
With an upgrade:
Severity | Priority Score (*) | Issue | Breaking Change | Exploit Maturity |
---|---|---|---|---|
![]() |
479/1000 Why? Has a fix available, CVSS 5.3 |
Buffer Overflow npm:validator:20160218 |
No | No Known Exploit |
(*) Note that the real score may have changed since the PR was raised.
Commit messages
Package name: objection
The new version differs by 212 commits.- 883a440 v0.5.4
- 8a4fd0f bugfix: afterGet was not called for nested models in eager query. fixes #165
- 35ccbfc perf test updates
- 1b5a221 add updateAndFetch + patchAndFetch instance query methods. fixes #139
- d961e58 bugfix: update model in instance.query().update operation. fixes #158
- 1a005f0 bugfix: insertWithRelated now works with additionalProperties = false in jsonSchema. fixes #125, fixes #95
- d4fa164 small performance fix
- bdfbac8 more tests for hiddenData
- d85bd0c hiddenData is not inherited anymore
- 27e4fcb avoid using _.omit since it returns prototype props now
- 4724f79 use delete instead of setting to undefined when removing a property
- 7117bf9 ES6 promise compatibility fixes
- f8ffdd2 v0.5.2
- 5122741 Merge pull request #154 from fl0w/master
- 0aff178 knex: update dependency, fixes #153
- 0d79cab use correct query builder in eager filters. fixes #135
- ca23ae1 add gitter badge to doc
- fbb290d fix doc typo
- efb60a5 v0.5.1
- ef8dbf7 afterGet hook. fixes #138
- 1027cb9 v0.5.0
- 86d55d9 update examples for objection 0.5.0
- 6ca624e minor fixes
- e8e4acd Merge pull request #148 from gitter-badger/gitter-badge
Check the changes in this PR to ensure they won't cause issues with your project.
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report