From f66239821e6017bee7f614e8dfcb61e8dd7606b3 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Wed, 5 Feb 2025 07:05:26 +0000 Subject: [PATCH] fix: upgrade mongoose from 7.3.0 to 7.8.4 Snyk has created this PR to upgrade mongoose from 7.3.0 to 7.8.4. See this package in npm: mongoose See this project in Snyk: https://app.snyk.io/org/rodolfo.borbonn/project/830414e9-51d4-4536-82af-26c7f90e637a?utm_source=github&utm_medium=referral&page=upgrade-pr --- package-lock.json | 52 +++++++++++++++++++++++++++++++++-------------- package.json | 2 +- 2 files changed, 38 insertions(+), 16 deletions(-) diff --git a/package-lock.json b/package-lock.json index a7c77b08..ba228a14 100644 --- a/package-lock.json +++ b/package-lock.json @@ -19,7 +19,7 @@ "font-awesome": "^4.7.0", "http-errors": "~1.6.3", "jquery": "^3.7.0", - "mongoose": "^7.3.0", + "mongoose": "^7.8.4", "morgan": "~1.9.1", "passport": "^0.6.0", "passport-local": "^1.0.0", @@ -1136,6 +1136,16 @@ "node": ">=6" } }, + "node_modules/@mongodb-js/saslprep": { + "version": "1.1.9", + "resolved": "https://registry.npmjs.org/@mongodb-js/saslprep/-/saslprep-1.1.9.tgz", + "integrity": "sha512-tVkljjeEaAhCqTzajSdgbQ6gE6f3oneVwa3iXR6csiEwXXOFsiC6Uh9iAjAhXPtqa/XMDHWjjeNH/77m/Yq2dw==", + "license": "MIT", + "optional": true, + "dependencies": { + "sparse-bitfield": "^3.0.3" + } + }, "node_modules/@popperjs/core": { "version": "2.11.8", "resolved": "https://registry.npmjs.org/@popperjs/core/-/core-2.11.8.tgz", @@ -1613,9 +1623,10 @@ } }, "node_modules/bson": { - "version": "5.3.0", - "resolved": "https://registry.npmjs.org/bson/-/bson-5.3.0.tgz", - "integrity": "sha512-ukmCZMneMlaC5ebPHXIkP8YJzNl5DC41N5MAIvKDqLggdao342t4McltoJBQfQya/nHBWAcSsYRqlXPoQkTJag==", + "version": "5.5.1", + "resolved": "https://registry.npmjs.org/bson/-/bson-5.5.1.tgz", + "integrity": "sha512-ix0EwukN2EpC0SRWIj/7B5+A6uQMQy6KMREI9qQqvgpkV2frH63T0UDVd1SYedL6dNCmDBYB3QtXi4ISk9YT+g==", + "license": "Apache-2.0", "engines": { "node": ">=14.20.1" } @@ -2345,11 +2356,12 @@ } }, "node_modules/mongodb": { - "version": "5.6.0", - "resolved": "https://registry.npmjs.org/mongodb/-/mongodb-5.6.0.tgz", - "integrity": "sha512-z8qVs9NfobHJm6uzK56XBZF8XwM9H294iRnB7wNjF0SnY93si5HPziIJn+qqvUR5QOff/4L0gCD6SShdR/GtVQ==", + "version": "5.9.2", + "resolved": "https://registry.npmjs.org/mongodb/-/mongodb-5.9.2.tgz", + "integrity": "sha512-H60HecKO4Bc+7dhOv4sJlgvenK4fQNqqUIlXxZYQNbfEWSALGAwGoyJd/0Qwk4TttFXUOHJ2ZJQe/52ScaUwtQ==", + "license": "Apache-2.0", "dependencies": { - "bson": "^5.3.0", + "bson": "^5.5.0", "mongodb-connection-string-url": "^2.6.0", "socks": "^2.7.1" }, @@ -2357,10 +2369,12 @@ "node": ">=14.20.1" }, "optionalDependencies": { - "saslprep": "^1.0.3" + "@mongodb-js/saslprep": "^1.1.0" }, "peerDependencies": { - "@aws-sdk/credential-providers": "^3.201.0", + "@aws-sdk/credential-providers": "^3.188.0", + "@mongodb-js/zstd": "^1.0.0", + "kerberos": "^1.0.0 || ^2.0.0", "mongodb-client-encryption": ">=2.3.0 <3", "snappy": "^7.2.2" }, @@ -2368,6 +2382,12 @@ "@aws-sdk/credential-providers": { "optional": true }, + "@mongodb-js/zstd": { + "optional": true + }, + "kerberos": { + "optional": true + }, "mongodb-client-encryption": { "optional": true }, @@ -2386,13 +2406,14 @@ } }, "node_modules/mongoose": { - "version": "7.3.0", - "resolved": "https://registry.npmjs.org/mongoose/-/mongoose-7.3.0.tgz", - "integrity": "sha512-gvkV5qxmBkGohlk7VTeePMPM2OkQPeqVYZHvjoM4goOIK6G1eSfJMZwXV21asivXxlaz6OuP29TfGAKrKooDAg==", + "version": "7.8.4", + "resolved": "https://registry.npmjs.org/mongoose/-/mongoose-7.8.4.tgz", + "integrity": "sha512-qqQ7imsb9lyrW1jmYj6/wDiSewRtd/gpOU2Vdy1AMRBT7jrghKnoDMbC3keFUzZ0iyo3ZcYumisPKFnap5R4zQ==", + "license": "MIT", "dependencies": { - "bson": "^5.3.0", + "bson": "^5.5.0", "kareem": "2.5.1", - "mongodb": "5.6.0", + "mongodb": "5.9.2", "mpath": "0.9.0", "mquery": "5.0.0", "ms": "2.1.3", @@ -2702,6 +2723,7 @@ "version": "1.0.3", "resolved": "https://registry.npmjs.org/saslprep/-/saslprep-1.0.3.tgz", "integrity": "sha512-/MY/PEMbk2SuY5sScONwhUDsV2p77Znkb/q3nSVstq/yQzYJOH/Azh29p9oJLsl3LnQwSvZDKagDGBsBwSooag==", + "dev": true, "optional": true, "dependencies": { "sparse-bitfield": "^3.0.3" diff --git a/package.json b/package.json index a1965357..6f3d9d4d 100644 --- a/package.json +++ b/package.json @@ -17,7 +17,7 @@ "font-awesome": "^4.7.0", "http-errors": "~1.6.3", "jquery": "^3.7.0", - "mongoose": "^7.3.0", + "mongoose": "^7.8.4", "morgan": "~1.9.1", "passport": "^0.6.0", "passport-local": "^1.0.0",