Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Snyk] Security upgrade mongoose from 6.4.3 to 8.8.3 #700

Open
wants to merge 1 commit into
base: master
Choose a base branch
from
Open
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
2 changes: 1 addition & 1 deletion package.json
Original file line number Diff line number Diff line change
Expand Up @@ -75,7 +75,7 @@
"moment": "2.29.4",
"moment-duration-format": "2.3.2",
"moment-timezone": "0.5.34",
"mongoose": "6.4.3",
"mongoose": "8.8.3",
"mongoose-autopopulate": "0.16.1",
"mongoose-lean-virtuals": "0.9.1",
"nconf": "0.12.0",
Expand Down
171 changes: 93 additions & 78 deletions yarn.lock
Original file line number Diff line number Diff line change
Expand Up @@ -2478,6 +2478,15 @@ __metadata:
languageName: node
linkType: hard

"@mongodb-js/saslprep@npm:^1.1.5":
version: 1.1.9
resolution: "@mongodb-js/saslprep@npm:1.1.9"
dependencies:
sparse-bitfield: ^3.0.3
checksum: 6f13983e41c9fbd5273eeae9135e47e5b7a19125a63287bea69e33a618f8e034cfcf2258c77d0f5d6dcf386dfe2bb520bc01613afd1528c52f82c71172629242
languageName: node
linkType: hard

"@nodelib/fs.scandir@npm:2.1.5":
version: 2.1.5
resolution: "@nodelib/fs.scandir@npm:2.1.5"
Expand Down Expand Up @@ -3535,13 +3544,12 @@ __metadata:
languageName: node
linkType: hard

"@types/whatwg-url@npm:^8.2.1":
version: 8.2.1
resolution: "@types/whatwg-url@npm:8.2.1"
"@types/whatwg-url@npm:^11.0.2":
version: 11.0.5
resolution: "@types/whatwg-url@npm:11.0.5"
dependencies:
"@types/node": "*"
"@types/webidl-conversions": "*"
checksum: 975987a9ca14a8d5a883523acb4fa0df7760cd8ca8dee56cd57753821e56060bfbead94df84f4504fe0b4270776d81cbb40fcd1f8643dab86da3a9abe926fb5c
checksum: 23a0c45aff51817807b473a6adb181d6e3bb0d27dde54e84883d5d5bc93358e95204d2188e7ff7fdc2cdaf157e97e1188ef0a22ec79228da300fc30d4a05b56a
languageName: node
linkType: hard

Expand Down Expand Up @@ -5209,12 +5217,10 @@ __metadata:
languageName: node
linkType: hard

"bson@npm:^4.6.2, bson@npm:^4.6.3":
version: 4.6.4
resolution: "bson@npm:4.6.4"
dependencies:
buffer: ^5.6.0
checksum: f56375865c8fc048179075296019a0d2e058edbbb6692e54e2751da738840968de678a48a2276faf2ec8f8b36c5c26f14670ab4d414fe68f0169215efe15d570
"bson@npm:^6.7.0":
version: 6.10.1
resolution: "bson@npm:6.10.1"
checksum: 7c85c8df309bbfd4d42fae54aa37112ee048a89457be908a0e53a01d077d548c94a5a6870dd725ef48130da935286edc8b9ce04830869446db22b8c13a370c42
languageName: node
linkType: hard

Expand Down Expand Up @@ -5253,7 +5259,7 @@ __metadata:
languageName: node
linkType: hard

"buffer@npm:^5.5.0, buffer@npm:^5.6.0":
"buffer@npm:^5.5.0":
version: 5.7.1
resolution: "buffer@npm:5.7.1"
dependencies:
Expand Down Expand Up @@ -7366,13 +7372,6 @@ __metadata:
languageName: node
linkType: hard

"denque@npm:^2.0.1":
version: 2.0.1
resolution: "denque@npm:2.0.1"
checksum: ec398d1e3c6c8d4f5213dcf9ad74d7faa3b461e29a0019c9742b49a97ac5e16aa7134db45fa9d841e318e7722dd1ba670a474fde9a5b0d870b3a5fc6fe914c30
languageName: node
linkType: hard

"depd@npm:2.0.0, depd@npm:~2.0.0":
version: 2.0.0
resolution: "depd@npm:2.0.0"
Expand Down Expand Up @@ -13017,10 +13016,10 @@ __metadata:
languageName: node
linkType: hard

"kareem@npm:2.4.1":
version: 2.4.1
resolution: "kareem@npm:2.4.1"
checksum: 83c8d8f5ea82e58fa9f43f62f65576ac32fc7c5f817deb2708c68996eb586bf3dc236404a4570c548730a041e29a6553f61f8a744fa96a1093e5dc28b4ce598f
"kareem@npm:2.6.3":
version: 2.6.3
resolution: "kareem@npm:2.6.3"
checksum: 4e3a4dc01747de19b345bdbb4a976a30ebeb9f8c2623ccb5bb509cbeebc28de09664355aa43e2ff641d8588c9155b7c2f177f389feb76f1b47224ff94c0fe63b
languageName: node
linkType: hard

Expand Down Expand Up @@ -15446,29 +15445,47 @@ __metadata:
languageName: node
linkType: hard

"mongodb-connection-string-url@npm:^2.5.2":
version: 2.5.2
resolution: "mongodb-connection-string-url@npm:2.5.2"
"mongodb-connection-string-url@npm:^3.0.0":
version: 3.0.1
resolution: "mongodb-connection-string-url@npm:3.0.1"
dependencies:
"@types/whatwg-url": ^8.2.1
whatwg-url: ^11.0.0
checksum: bd13af7d62d33e2d6e5217692961e34b2dafbbba5f41d361417257592754df3e925efc00fa8a5e038624e284245dab39e913d5f06ff962feede86d5f58fc5827
"@types/whatwg-url": ^11.0.2
whatwg-url: ^13.0.0
checksum: b0a3b9e619c53ce8c10452c6475dc1eeba4761ae1b293b1b37014acf609f44ab7057f084de8fceead9934dba2aad0a59315eab9371c1287dbaaf5aae48c6d371
languageName: node
linkType: hard

"mongodb@npm:4.7.0":
version: 4.7.0
resolution: "mongodb@npm:4.7.0"
"mongodb@npm:~6.10.0":
version: 6.10.0
resolution: "mongodb@npm:6.10.0"
dependencies:
bson: ^4.6.3
denque: ^2.0.1
mongodb-connection-string-url: ^2.5.2
saslprep: ^1.0.3
socks: ^2.6.2
dependenciesMeta:
saslprep:
"@mongodb-js/saslprep": ^1.1.5
bson: ^6.7.0
mongodb-connection-string-url: ^3.0.0
peerDependencies:
"@aws-sdk/credential-providers": ^3.188.0
"@mongodb-js/zstd": ^1.1.0
gcp-metadata: ^5.2.0
kerberos: ^2.0.1
mongodb-client-encryption: ">=6.0.0 <7"
snappy: ^7.2.2
socks: ^2.7.1
peerDependenciesMeta:
"@aws-sdk/credential-providers":
optional: true
"@mongodb-js/zstd":
optional: true
checksum: 6c8ddf1d14a4392d83702aa532e5a1e6deaa501cfd66e352a1226358422716e340465ca4b0f2c5d8f660bf15c06456059953fb99482f714c1dab408ecfe3aeea
gcp-metadata:
optional: true
kerberos:
optional: true
mongodb-client-encryption:
optional: true
snappy:
optional: true
socks:
optional: true
checksum: b8e7ab9fb84181cb020b5fef5fedd90a5fc12140e688fa12ba588d523a958bb9f8790bfaceeca9f594171794eda0f56be855d7d0588705db82b3de7bf5e2352c
languageName: node
linkType: hard

Expand All @@ -15493,18 +15510,18 @@ __metadata:
languageName: node
linkType: hard

"mongoose@npm:6.4.3":
version: 6.4.3
resolution: "mongoose@npm:6.4.3"
"mongoose@npm:8.8.3":
version: 8.8.3
resolution: "mongoose@npm:8.8.3"
dependencies:
bson: ^4.6.2
kareem: 2.4.1
mongodb: 4.7.0
bson: ^6.7.0
kareem: 2.6.3
mongodb: ~6.10.0
mpath: 0.9.0
mquery: 4.0.3
mquery: 5.0.0
ms: 2.1.3
sift: 16.0.0
checksum: 016bfaf417cf423d801415a7bbb82bca5d721732ed7938d6a8e5c856cd14fc8b95cfa490fd0cca65363c22790b5c6bd961ec42f65f8377e8bf1a1e00a59caf86
sift: 17.1.3
checksum: c9126da74aba790e470e889adf5e6ed31c67bddad39c9f70bc44531f6ae617c5fe69dd681e467be9fc6358ab9874e299b317b30367ca7ae8a45c8d160c0c2a51
languageName: node
linkType: hard

Expand All @@ -15529,12 +15546,12 @@ __metadata:
languageName: node
linkType: hard

"mquery@npm:4.0.3":
version: 4.0.3
resolution: "mquery@npm:4.0.3"
"mquery@npm:5.0.0":
version: 5.0.0
resolution: "mquery@npm:5.0.0"
dependencies:
debug: 4.x
checksum: 16a6887ba7594e71d38969ab58c7be1866a0ffa07a559e4bb43eaefd00db2ae174aedbe2187d94f2a86dca1e07e024d03c22c39fdea09bf08dbf586a2f7ecb0c
checksum: 0617ead71e40e3c38ab74a1e46214d578d654bf7916abd8b3fb2ceb433bb6287adfa0960f041f16e2ac41c5ed5d7ce2268582f0a0075fff2561bcd5a3f40b417
languageName: node
linkType: hard

Expand Down Expand Up @@ -18266,6 +18283,13 @@ __metadata:
languageName: node
linkType: hard

"punycode@npm:^2.3.0":
version: 2.3.1
resolution: "punycode@npm:2.3.1"
checksum: bb0a0ceedca4c3c57a9b981b90601579058903c62be23c5e8e843d2c2d4148a3ecf029d5133486fb0e1822b098ba8bba09e89d6b21742d02fa26bda6441a6fb2
languageName: node
linkType: hard

"q@npm:^1.5.1":
version: 1.5.1
resolution: "q@npm:1.5.1"
Expand Down Expand Up @@ -19773,15 +19797,6 @@ __metadata:
languageName: node
linkType: hard

"saslprep@npm:^1.0.3":
version: 1.0.3
resolution: "saslprep@npm:1.0.3"
dependencies:
sparse-bitfield: ^3.0.3
checksum: 4fdc0b70fb5e523f977de405e12cca111f1f10dd68a0cfae0ca52c1a7919a94d1556598ba2d35f447655c3b32879846c77f9274c90806f6673248ae3cea6ee43
languageName: node
linkType: hard

"sass-graph@npm:4.0.0":
version: 4.0.0
resolution: "sass-graph@npm:4.0.0"
Expand Down Expand Up @@ -20268,10 +20283,10 @@ __metadata:
languageName: node
linkType: hard

"sift@npm:16.0.0":
version: 16.0.0
resolution: "sift@npm:16.0.0"
checksum: 88d5754afe16fbaf4274223e492f4aa382c44070bc63b84b9dcfe0f16f65ff64361c4e642b2ae65dfe33a85170a6ecc378ca44487302a88835f58fe152e62894
"sift@npm:17.1.3":
version: 17.1.3
resolution: "sift@npm:17.1.3"
checksum: 56d09c72720cd75f757dad31fc13cc84461c06c0416d23c1dc05e64276676fa1fecaddb055f0d2aa714d36a93c2acaad8cb2f2ef6d06d8c8bb1af84657de2046
languageName: node
linkType: hard

Expand Down Expand Up @@ -21821,12 +21836,12 @@ __metadata:
languageName: node
linkType: hard

"tr46@npm:^3.0.0":
version: 3.0.0
resolution: "tr46@npm:3.0.0"
"tr46@npm:^4.1.1":
version: 4.1.1
resolution: "tr46@npm:4.1.1"
dependencies:
punycode: ^2.1.1
checksum: 44c3cc6767fb800490e6e9fd64fd49041aa4e49e1f6a012b34a75de739cc9ed3a6405296072c1df8b6389ae139c5e7c6496f659cfe13a04a4bff3a1422981270
punycode: ^2.3.0
checksum: aeeb821ac2cd792e63ec84888b4fd6598ac6ed75d861579e21a5cf9d4ee78b2c6b94e7d45036f2ca2088bc85b9b46560ad23c4482979421063b24137349dbd96
languageName: node
linkType: hard

Expand Down Expand Up @@ -22018,7 +22033,7 @@ __metadata:
moment: 2.29.4
moment-duration-format: 2.3.2
moment-timezone: 0.5.34
mongoose: 6.4.3
mongoose: 8.8.3
mongoose-autopopulate: 0.16.1
mongoose-lean-virtuals: 0.9.1
nconf: 0.12.0
Expand Down Expand Up @@ -22400,7 +22415,7 @@ __metadata:

"typescript@patch:typescript@^4.6.4#~builtin<compat/typescript>":
version: 4.7.4
resolution: "typescript@patch:typescript@npm%3A4.7.4#~builtin<compat/typescript>::version=4.7.4&hash=7ad353"
resolution: "typescript@patch:typescript@npm%3A4.7.4#~builtin<compat/typescript>::version=4.7.4&hash=701156"
bin:
tsc: bin/tsc
tsserver: bin/tsserver
Expand Down Expand Up @@ -23370,13 +23385,13 @@ __metadata:
languageName: node
linkType: hard

"whatwg-url@npm:^11.0.0":
version: 11.0.0
resolution: "whatwg-url@npm:11.0.0"
"whatwg-url@npm:^13.0.0":
version: 13.0.0
resolution: "whatwg-url@npm:13.0.0"
dependencies:
tr46: ^3.0.0
tr46: ^4.1.1
webidl-conversions: ^7.0.0
checksum: ed4826aaa57e66bb3488a4b25c9cd476c46ba96052747388b5801f137dd740b73fde91ad207d96baf9f17fbcc80fc1a477ad65181b5eb5fa718d27c69501d7af
checksum: 7f69272a1bfd5f0d994988b9e234e35d21071a9bffe0d6fd4477d295552665c566b176ff8e0251a0a79c61c5a67a7a392e248aae5887d7e22bdff0125209e26b
languageName: node
linkType: hard

Expand Down