[Snyk] Upgrade: ejs, mariadb, pg, prettier, reflect-metadata, sequelize #13
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.



Snyk has created this PR to upgrade multiple dependencies.
👯 The following dependencies are linked and will therefore be updated together.ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
ejs
from 3.1.9 to 3.1.10 | 1 version ahead of your current version | 5 months ago
on 2024-04-12
mariadb
from 3.2.3 to 3.3.1 | 2 versions ahead of your current version | 3 months ago
on 2024-06-05
pg
from 8.11.3 to 8.12.0 | 4 versions ahead of your current version | 3 months ago
on 2024-06-04
prettier
from 3.2.5 to 3.3.3 | 4 versions ahead of your current version | 2 months ago
on 2024-07-13
reflect-metadata
from 0.2.1 to 0.2.2 | 1 version ahead of your current version | 6 months ago
on 2024-03-29
sequelize
from 6.37.1 to 6.37.3 | 2 versions ahead of your current version | 5 months ago
on 2024-04-13
Issues fixed by the recommended upgrade:
SNYK-JS-EJS-6689533
Release notes
Package name: ejs
-
3.1.10 - 2024-04-12
-
3.1.9 - 2023-03-12
from ejs GitHub release notesVersion 3.1.10
Version 3.1.9
Package name: mariadb
-
3.3.1 - 2024-06-05
- CONJS-288 ensure pool timeout error give details #268
- CONJS-289 connection possibly staying in hanging state after batch execution #281
- CONJS-290 possible ECONRESET when executing batch #281
- CONJS-292 ensure String object parameter
- CONJS-286 exchanges stop when closing prepare and prepareCacheLength is set to 0
- CONJS-287 typescript missing queryoption for prepare command
-
3.3.0 - 2024-03-21
- CONJS-284 pipeline PREPARE and EXECUTE
- CONJS-264 TLS ephemeral certificate automatic implementation
- CONJS-279 Improve text encoding decoding
- CONJS-281 cannot connect to 11.3+ server with character-set-collations = utf8mb4=uca1400_ai_ci
- CONJS-277 using connection.importFile when connection is not connected to database result in error
- CONJS-278 Possible buffer overwrite when sending query bigger than 16M
- CONJS-282 error when using mysql_clear_test password authentication plugin
- CONJS-283 wrong decoding of binary unsigned MEDIUMINT
- CONJS-285 DECIMAL field wrong decoding with deprecated option 'supportBigNumbers' set
-
3.2.3 - 2023-12-19
- CONJS-207 Add support for connection redirection
- CONJS-271 wrong binary decoding of 00:00:00 TIME values
- CONJS-272 Error doesn't always have parameters according to option
- CONJS-273 Bulk insert error when last bunch of parameters is reaching max_allowed_packet
- CONJS-274 permit disabling BULK insert for one batch
- CONJS-207 Add support for connection redirection
from mariadb GitHub release notes3.3.1 (May 2024)
Full Changelog
Issues Fixed
3.3.0 (Mar 2024)
Full Changelog
Notable changes
Issues Fixed
3.2.3 (Dec 2023)
Full Changelog
Package name: pg
-
8.12.0 - 2024-06-04
-
8.11.6 - 2024-06-04
-
8.11.5 - 2024-04-02
-
8.11.4 - 2024-03-30
-
8.11.3 - 2023-08-16
from pg GitHub release notes[email protected]
[email protected]
Package name: prettier
-
3.3.3 - 2024-07-13
-
3.3.2 - 2024-06-11
-
3.3.1 - 2024-06-05
-
3.3.0 - 2024-06-01
-
3.2.5 - 2024-02-04
from prettier GitHub release notes🔗 Changelog
🔗 Changelog
🔗 Changelog
diff
🔗 Release note
🔗 Changelog
Package name: reflect-metadata
-
0.2.2 - 2024-03-29
-
0.2.1 - 2023-12-14
- Fix stack overflow crash in isProviderFor by @ rbuckton in #155
- Update main to v0.2.1 by @ rbuckton in #156
from reflect-metadata GitHub release notesWhat's Changed
Full Changelog: v0.2.0...v0.2.1
Package name: sequelize
-
6.37.3 - 2024-04-13
- postgres: use schema for foreign key constrains of a table (#17099) (6aba382)
-
6.37.2 - 2024-03-29
- add
-
6.37.1 - 2024-02-18
- types: Add definition of
from sequelize GitHub release notes6.37.3 (2024-04-13)
Bug Fixes
6.37.2 (2024-03-29)
Bug Fixes
readOnlyto the transaction options types and docs (#17226) (7c8972f)6.37.1 (2024-02-18)
Bug Fixes
returninginSaveOptions. (#16954) (505467b)Important
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.
For more information: