AlaSQL / alasql-sqllogictest

sqllogictest for AlaSQL
MIT License
1 stars 1 forks source link

[Snyk] Security upgrade alasql from 0.3.9 to 0.6.0 #9

Closed snyk-bot closed 4 years ago

snyk-bot commented 4 years ago

Snyk has created this PR to fix one or more vulnerable packages in the `npm` dependencies of this project.

merge advice

Changes included in this PR

Vulnerabilities that will be fixed

With an upgrade:
Severity Issue Breaking Change Exploit Maturity
low severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-XLSX-585898
No Proof of Concept
Commit messages
Package name: alasql The new version differs by 187 commits.
  • d96b07b Support table/row names starting with numbers
  • 5556072 feat: NULLS FIRST/LAST clause in ORDER BY (#1187)
  • a5c98f5 Updated version in files to 0.5.9
  • b5a7a1b Fix DROP Filestorage Database with database name (#1184)
  • ff4ce97 Composite foreign keys implementation (#1179)
  • 9eb03a8 Update Insert's toString() (#1177)
  • 17bb51f Updated version in files to 0.5.8
  • 998ab4e Update dependencies
  • 3dcbf7b Fix usage of CURRENT_TIMESTAMP (Fix #1174)
  • 14ed71d Updated version in files to 0.5.6
  • 2fafeef Merge 5.6
  • 62119aa Fix db use method (#1168)
  • 2a28b8f Bump acorn from 6.3.0 to 6.4.1 (#1172)
  • 34f54b0 Adds handling for groupBy within nested array data set/params (#1167)
  • a725fec Merge tag 'v0.5.5' into develop
  • ad85b44 Merge branch 'release/0.5.5'
  • 0c271f9 Updated version in files to 0.5.5
  • 53a7c52 Better typing. Fix #1138
  • 4ffa0c7 Fix pipeline
  • d92136d Merge tag 'v0.5.4' into develop
  • 8845103 Merge branch 'release/0.5.4'
  • 0d143b6 Bump
  • b7fcb14 Fix automated tests
  • 5da2819 Devops
See the full diff

Check the changes in this PR to ensure they won't cause issues with your project.


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information: 🧐 View latest project report

🛠 Adjust project settings

📚 Read more about Snyk's upgrade and patch logic