Skip to content

Bump mongoose from 6.8.3 to 6.11.3 in /server - #6

Closed
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/server/mongoose-6.11.3
Closed

Bump mongoose from 6.8.3 to 6.11.3 in /server#6
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/server/mongoose-6.11.3

Conversation

@dependabot

@dependabotdependabotBot commented on behalf of githubApr 30, 2024

Copy link
Copy Markdown

Bumps mongoose from 6.8.3 to 6.11.3.

Release notes

Sourced from mongoose's releases.

6.10.1 / 2023-03-03

  • fix: avoid removing empty query filters in $and and $or#13086#12898
  • fix(schematype): fixed validation for required UUID field #13018lpizzinidev
  • fix(types): add missing Paths generic param to Model.populate()#13070
  • docs(migrating_to_6): added info about removal of reconnectTries and reconnectInterval options #13083lpizzinidev
  • docs: fix code in headers for migrating_to_5 #13077hasezoey
  • docs: backport misc documentation changes into 6.x #13091hasezoey

6.10.0 / 2023-02-22

6.9.3 / 2023-02-22

  • fix(connection): delay calculating autoCreate and autoIndex until after initial connection established #13007#12940lpizzinidev
  • fix(discriminator): allows update doc with discriminatorKey #13056#13055abarriel
  • fix(query): avoid sending unnecessary empty projection to MongoDB server #13059#13050
  • fix(model): avoid sending null session option with document operations #13053#13052lpizzinidev
  • fix(types): use MergeTypes for type overrides in HydratedDocument #13066#13040
  • docs(middleware): list validate as a potential query middleware #13057#12680
  • docs(getters-setters): explain that getters do not run by default on toJSON() #13058#13049
  • docs: refactor docs generation scripts #13044hasezoey

6.9.2 / 2023-02-16

6.9.1 / 2023-02-06

  • fix(document): isModified should not be triggered when setting a nested boolean to the same value as previously #12994lpizzinidev
  • fix(document): save newly set defaults underneath single nested subdocuments #13002#12905
  • fix(update): handle custom discriminator model name when casting update #12947wassil
  • fix(connection): handles unique autoincrement ID for connections #12990lpizzinidev
  • fix(types): fix type of options of Model.aggregate #12933ghost91-
  • fix(types): fix "near" aggregation operator input type #12954Jokero
  • fix(types): add missing Top operator to AccumulatorOperator type declaration #12952lpizzinidev
  • docs(transactions): added example for Connection.transaction() method #12943#12934lpizzinidev
  • docs(populate): fix out of date comment referencing onModel property #13000
  • docs(transactions): fix typo in transactions.md #12995Parth86

... (truncated)

Changelog

Sourced from mongoose's changelog.

6.11.3 / 2023-07-11

  • fix: avoid prototype pollution on init
  • fix(schema): correctly handle uuids with populate() #13317#13595

7.3.3 / 2023-07-10

  • fix: avoid prototype pollution on init
  • fix(document): clean up all array subdocument modified paths on save() #13589#13582
  • types: avoid unnecessary MergeType<> if TOverrides not set, clean up statics and insertMany() type issues #13577#13529

7.3.2 / 2023-07-06

  • fix(model): avoid TypeError if insertMany() fails with error that does not have writeErrors property #13579#13531
  • fix(query): convert findOneAndUpdate to findOneAndReplace when overwrite set for backwards compat with Mongoose 6 #13572#13550
  • fix(query): throw readable error when executing a Query instance without an associated model #13571#13570
  • types: support mongoose.Schema.ObjectId as alias for mongoose.Schema.Types.ObjectId #13543#13534
  • docs(connections): clarify that socketTimeoutMS now defaults to 0 #13576#13537
  • docs(migrating_to_7): add mapReduce() removal to migration guide #13568#13548
  • docs(schemas): fix typo in schemas.md #13540Metehan-Altuntekin

7.3.1 / 2023-06-21

  • fix(query): respect query-level strict option on findOneAndReplace() #13516#13507
  • docs(connections): expand docs on serverSelectionTimeoutMS #13533#12967
  • docs: add example of accessing save options in pre save #13498
  • docs(connections+faq): add info on localhost vs 127.0.0.1
  • docs(SchemaType): validate members are validator & message (not msg) #13521lorand-horvath

7.3.0 / 2023-06-14

  • feat: upgrade mongodb -> 5.6.0 #13455lorand-horvath
  • feat(aggregate): add Aggregate.prototype.finally() to be consistent with Promise API for TypeScript #13509
  • feat(schema): support selecting subset of fields to apply optimistic concurrency to #13506#10591
  • feat(model): add ordered option to Model.create()#13472#4038
  • feat(schema): consistently add .get() function to all SchemaType classes
  • feat(populate): pass virtual to match function to allow merging match options #13477#12443
  • types: allow overwriting Paths in select() to tell TypeScript which fields are projected #13478#13224
  • types(schema): add validateModifiedOnly as schema option #13503#10153
  • docs: add note about validateModifiedOnly as a schema option #13503#10153
  • docs(migrating_to_7): update migrating_to_7.md to include Model.countDocuments #13508Climax777
  • docs(further_reading): remove style for "img" hasezoey

7.2.4 / 2023-06-12

  • fix(query): handle non-string discriminator key values in query #13496#13492

7.2.3 / 2023-06-09

... (truncated)

Commits
  • e9eb8ab chore: release 6.11.3
  • 688da8f test: fix flakey tests, remove test for #9597 because it affects global state...
  • 4f264a8 test: fix tests re: #13317
  • 9616af7 fix(schema): correctly handle uuids with populate()
  • 305ce4f fix: avoid prototype pollution on init
  • 35e59eb docs: link to migrating to 6 in 6.x docs
  • a28933e chore: release 6.11.2
  • 3a6b0dd chore: use deno v1.34 in test for MMS HTTP issues
  • f7c6d3e Merge pull request #13476 from Automattic/vkarpov15/gh-13453
  • 5552107 fix(cursor): allow find middleware to modify query cursor options
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
    You can disable automated security fix PRs for this repo from the Security Alerts page.

Bumps [mongoose](https://github.com/Automattic/mongoose) from 6.8.3 to 6.11.3.
- [Release notes](https://github.com/Automattic/mongoose/releases)
- [Changelog](https://github.com/Automattic/mongoose/blob/master/CHANGELOG.md)
- [Commits](Automattic/mongoose@6.8.3...6.11.3)
---
updated-dependencies:
- dependency-name: mongoose
dependency-type: direct:production
...
Signed-off-by: dependabot[bot] <support@github.com>
@dependabotdependabotBot added the dependencies Pull requests that update a dependency file label Apr 30, 2024
@dependabot@github

dependabotBot commented on behalf of githubApr 30, 2024

Copy link
Copy Markdown
Author

Superseded by #8.

@dependabotdependabotBot closed this Apr 30, 2024
@dependabot
dependabotBot deleted the dependabot/npm_and_yarn/server/mongoose-6.11.3 branch April 30, 2024 15:42
Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependenciesPull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants