SharonKoch / Wiki_Demo

Wiki.js | A modern and powerful wiki app built on Node.js
https://js.wiki
GNU Affero General Public License v3.0
1 stars 0 forks source link

chore(deps): update dependency mssql to v8 - autoclosed #70

Closed mend-for-github-com[bot] closed 6 months ago

mend-for-github-com[bot] commented 9 months ago

This PR contains the following updates:

Package Type Update Change
mssql dependencies major 6.2.3 -> 8.0.0

By merging this PR, the issue #30 will be automatically resolved and closed:

Severity CVSS Score CVE
Critical Critical 9.8 CVE-2023-26136
High High 7.8 CVE-2021-28458
High High 7.8 CVE-2021-43138
High High 7.5 CVE-2021-3749
Medium Medium 6.5 CVE-2020-8244
Medium Medium 6.5 CVE-2022-0155
Medium Medium 6.5 CVE-2023-45857
Medium Medium 6.1 CVE-2023-26159
Medium Medium 5.9 CVE-2020-28168
Medium Medium 5.9 CVE-2022-0536
Medium Medium 4.3 CVE-2021-21366

Release Notes

tediousjs/node-mssql (mssql) ### [`v8.0.0`](https://togithub.com/tediousjs/node-mssql/blob/HEAD/CHANGELOG.txt#v800-2022-01-30) [Compare Source](https://togithub.com/tediousjs/node-mssql/compare/v7.3.5...v8.0.0) \[new] Add table.rows.clear() method to allow for chunking updates ([#​1094](https://togithub.com/tediousjs/node-mssql/pull/1094)) \[new] Add valueHandler map to store callbacks that are used to process row values ([#​1356](https://togithub.com/tediousjs/node-mssql/pull/1356)) \[change] msnodesqlv8 driver detects os platform and attempts to pick correct connections string for it (([#​1318](https://togithub.com/tediousjs/node-mssql/issues/1318))\[https://github.com/tediousjs/node-mssql/pull/1318](https://togithub.com/tediousjs/node-mssql/pull/1318)8]) \[change] Updated to latest Tedious 14 (([#​1312](https://togithub.com/tediousjs/node-mssql/issues/1312))\[https://github.com/tediousjs/node-mssql/pull/1312](https://togithub.com/tediousjs/node-mssql/pull/1312)2]) \[change] Errors for bad bulk load parameters have slightly different error messages (([#​1318](https://togithub.com/tediousjs/node-mssql/issues/1318))\[https://github.com/tediousjs/node-mssql/pull/1318](https://togithub.com/tediousjs/node-mssql/pull/1318)8]) \[change] Options provided to the driver via the config.options object will not be overridden with other values if set explicitly (([#​1340](https://togithub.com/tediousjs/node-mssql/issues/1340))\[https://github.com/tediousjs/node-mssql/pull/1340](https://togithub.com/tediousjs/node-mssql/pull/1340)0]) \[change] Duplicate column names will now be presented as an array even if the values are empty (([#​1240](https://togithub.com/tediousjs/node-mssql/issues/1240))\[https://github.com/tediousjs/node-mssql/pull/1240](https://togithub.com/tediousjs/node-mssql/pull/1240)0]) \[change] Update tarn pool dependency (([#​1344](https://togithub.com/tediousjs/node-mssql/issues/1344))\[https://github.com/tediousjs/node-mssql/pull/1344](https://togithub.com/tediousjs/node-mssql/pull/1344)4]) \[removed] Remove connection string parser helpers (([#​1342](https://togithub.com/tediousjs/node-mssql/issues/1342))\[https://github.com/tediousjs/node-mssql/pull/1342](https://togithub.com/tediousjs/node-mssql/pull/1342)2]) \[removed] Remove deprecated pool properties (([#​1359](https://togithub.com/tediousjs/node-mssql/issues/1359))\[https://github.com/tediousjs/node-mssql/pull/1359](https://togithub.com/tediousjs/node-mssql/pull/1359)9]) ### [`v7.3.5`](https://togithub.com/tediousjs/node-mssql/blob/HEAD/CHANGELOG.txt#v735-2022-05-27) [Compare Source](https://togithub.com/tediousjs/node-mssql/compare/v7.3.4...v7.3.5) \[fix] quote identifiers in table constraint declaration ([#​1397](https://togithub.com/tediousjs/node-mssql/pull/1397)) ### [`v7.3.4`](https://togithub.com/tediousjs/node-mssql/blob/HEAD/CHANGELOG.txt#v734-2022-05-18) [Compare Source](https://togithub.com/tediousjs/node-mssql/compare/v7.3.3...v7.3.4) \[fix] msnodesqlv8.js file was missing from previous release ### [`v7.3.3`](https://togithub.com/tediousjs/node-mssql/blob/HEAD/CHANGELOG.txt#v733-2022-05-18) [Compare Source](https://togithub.com/tediousjs/node-mssql/compare/v7.3.2...v7.3.3) Duplicate tag ### [`v7.3.2`](https://togithub.com/tediousjs/node-mssql/blob/HEAD/CHANGELOG.txt#v732-2022-05-18) [Compare Source](https://togithub.com/tediousjs/node-mssql/compare/v7.3.1...v7.3.2) \[fix] nodemsqlv8 driver tests working against Node 10 ([#​1368](https://togithub.com/tediousjs/node-mssql/pull/1368)) \[fix] quote identifiers in table primary keys ([#​1394](https://togithub.com/tediousjs/node-mssql/pull/1394)) ### [`v7.3.1`](https://togithub.com/tediousjs/node-mssql/blob/HEAD/CHANGELOG.txt#v731-2022-02-24) [Compare Source](https://togithub.com/tediousjs/node-mssql/compare/v7.3.0...v7.3.1) \[fix] Bump debug dependency ([#​1361](https://togithub.com/tediousjs/node-mssql/pull/1361)) ### [`v7.3.0`](https://togithub.com/tediousjs/node-mssql/blob/HEAD/CHANGELOG.txt#v730-2021-11-18) [Compare Source](https://togithub.com/tediousjs/node-mssql/compare/v7.2.1...v7.3.0) \[new] Transaction/PreparedStatements expose the config from their parent connection ([#​1338](https://togithub.com/tediousjs/node-mssql/pull/1338)) \[fix] Fix inherited request configs from the pool. Specifically stream and arrayRowMode now inherit accurately from the connection config ([#​1338](https://togithub.com/tediousjs/node-mssql/pull/1338)) ### [`v7.2.1`](https://togithub.com/tediousjs/node-mssql/blob/HEAD/CHANGELOG.txt#v721-2021-08-19) [Compare Source](https://togithub.com/tediousjs/node-mssql/compare/v7.2.0...v7.2.1) \[fix] Fix issue with bulk insert of dates (([#​1298](https://togithub.com/tediousjs/node-mssql/issues/1298))\[https://github.com/tediousjs/node-mssql/pull/1298](https://togithub.com/tediousjs/node-mssql/pull/1298)8]) ### [`v7.2.0`](https://togithub.com/tediousjs/node-mssql/blob/HEAD/CHANGELOG.txt#v720-2021-07-29) [Compare Source](https://togithub.com/tediousjs/node-mssql/compare/v7.1.3...v7.2.0) \[new] Update Geography field parsing to provide lat/lng props from Geography Point (([#​1282](https://togithub.com/tediousjs/node-mssql/issues/1282))\[https://github.com/tediousjs/node-mssql/pull/1282](https://togithub.com/tediousjs/node-mssql/pull/1282)2]) \[fix] Handle errors when adding rows to bulk operations (([#​1264](https://togithub.com/tediousjs/node-mssql/issues/1264))\[https://github.com/tediousjs/node-mssql/pull/1264](https://togithub.com/tediousjs/node-mssql/pull/1264)4]) \[fix] Input/Output parameter passing fix for msnodesqlv8 driver (([#​1275](https://togithub.com/tediousjs/node-mssql/issues/1275))\[https://github.com/tediousjs/node-mssql/pull/1275](https://togithub.com/tediousjs/node-mssql/pull/1275)5]) ### [`v7.1.3`](https://togithub.com/tediousjs/node-mssql/blob/HEAD/CHANGELOG.txt#v713-2021-06-11) [Compare Source](https://togithub.com/tediousjs/node-mssql/compare/168f599409a3eba79ae3bdb2bc0854af80e27591...v7.1.3) \[fix] Request timeout settings now respect value parsed from connection strings (([#​1257](https://togithub.com/tediousjs/node-mssql/issues/1257))\[https://github.com/tediousjs/node-mssql/pull/1257](https://togithub.com/tediousjs/node-mssql/pull/1257)7) ### [`v7.1.2`](https://togithub.com/tediousjs/node-mssql/compare/v7.1.1...168f599409a3eba79ae3bdb2bc0854af80e27591) [Compare Source](https://togithub.com/tediousjs/node-mssql/compare/v7.1.1...168f599409a3eba79ae3bdb2bc0854af80e27591) ### [`v7.1.1`](https://togithub.com/tediousjs/node-mssql/blob/HEAD/CHANGELOG.txt#v711-2021-06-09) [Compare Source](https://togithub.com/tediousjs/node-mssql/compare/v7.1.0...v7.1.1) \[fix] Errors from tedious connection creation now cause connection promise to reject (([#​1254](https://togithub.com/tediousjs/node-mssql/issues/1254))\[https://github.com/tediousjs/node-mssql/pull/1254](https://togithub.com/tediousjs/node-mssql/pull/1254)4]) \[fix] Encrypt and transaction binding settings now respect value parsed from connection strings (([#​1252](https://togithub.com/tediousjs/node-mssql/issues/1252))\[https://github.com/tediousjs/node-mssql/pull/1252](https://togithub.com/tediousjs/node-mssql/pull/1252)2) ### [`v7.1.0`](https://togithub.com/tediousjs/node-mssql/blob/HEAD/CHANGELOG.txt#v710-2021-05-13) [Compare Source](https://togithub.com/tediousjs/node-mssql/compare/v7.0.0...v7.1.0) \[new] Add `parseJSON` support to query strings \[fix] Bump various dependencies for security fixes ### [`v7.0.0`](https://togithub.com/tediousjs/node-mssql/blob/HEAD/CHANGELOG.txt#v700-2021-05-06) [Compare Source](https://togithub.com/tediousjs/node-mssql/compare/v6.4.1...v7.0.0) \[new] Result sets with duplicate keys can now be handled using `request.arrayRowMode` ([#​1130](https://togithub.com/tediousjs/node-mssql/pull/1130)) \[new] Requests in stream mode now emit a `rowsaffected` event ([#​1213](https://togithub.com/tediousjs/node-mssql/pull/1213)) \[new] msnodesqlv8 driver now has detailed error support ([#​1212](https://togithub.com/tediousjs/node-mssql/pull/1212)) \[new] Connection validation checks before releasing connections from the pool. This can be turned of via `validateConnection: false` config option ([#​1192](https://togithub.com/tediousjs/node-mssql/pull/1192)) \[new] UseUTC is now supported on msnodesqlv8 connections ([#​1222](https://togithub.com/tediousjs/node-mssql/pull/1222)) \[change] Updated to latest Tedious 11 \[change] Updated tarnjs to v3 \[change] Updated to support latest msnodesqlv8 v2 ([#​1157](https://togithub.com/tediousjs/node-mssql/pull/1157)) \[change] Piped streams no longer have errors forwarded on to them ([#​1028](https://togithub.com/tediousjs/node-mssql/pull/1028)) \[change] tedious config option `trustServerCertificate` defaults to `false` if not supplied ([#​1030](https://togithub.com/tediousjs/node-mssql/pull/1030)) \[change] Request.pipe now pipes a true node stream for better support of backpressure ([#​1078](https://togithub.com/tediousjs/node-mssql/pull/1078)) \[change] drop support for NodeJS < 10 ([#​1070](https://togithub.com/tediousjs/node-mssql/pull/1070)) \[fix] Ensure line endings are unix style (LF) \[fix] Avoid using deprecated `.inspect` on Objects ([#​1071](https://togithub.com/tediousjs/node-mssql/pull/1071)) \[fix] Bump various dependencies for security fixes ([#​1102](https://togithub.com/tediousjs/node-mssql/pull/1102)) \[fix] Trailing rows from request streams using msnodesqlv8 driver fail to be emitted ([#​1109](https://togithub.com/tediousjs/node-mssql/pull/1109)) \[fix] Issue with geography v2 parsing resolve ([#​1138](https://togithub.com/tediousjs/node-mssql/pull/1138)) \[fix] Connection config objects are now deep cloned when stored against a connection pool ([#​1217](https://togithub.com/tediousjs/node-mssql/pull/1217)) \[removed] Support for connection uri format has been removed (eg: `mssql://user:password@host/?params=values`) ### [`v6.4.1`](https://togithub.com/tediousjs/node-mssql/blob/HEAD/CHANGELOG.txt#v641-2022-02-24) [Compare Source](https://togithub.com/tediousjs/node-mssql/compare/v6.4.0...v6.4.1) \[fix] Bump debug dependency ([#​1361](https://togithub.com/tediousjs/node-mssql/pull/1361)) ### [`v6.4.0`](https://togithub.com/tediousjs/node-mssql/blob/HEAD/CHANGELOG.txt#v640-2021-11-18) [Compare Source](https://togithub.com/tediousjs/node-mssql/compare/v6.3.2...v6.4.0) \[new] Transaction/PreparedStatements expose the config from their parent connection \[fix] Fix inherited request configs from the pool. Specifically stream and arrayRowMode now inherit accurately from the connection config ([#​1338](https://togithub.com/tediousjs/node-mssql/pull/1338)) ### [`v6.3.2`](https://togithub.com/tediousjs/node-mssql/blob/HEAD/CHANGELOG.txt#v632-2021-05-13) [Compare Source](https://togithub.com/tediousjs/node-mssql/compare/v6.3.1...v6.3.2) \[fix] Bump various dependencies for security fixes ### [`v6.3.1`](https://togithub.com/tediousjs/node-mssql/blob/HEAD/CHANGELOG.txt#v631-2021-01-01) [Compare Source](https://togithub.com/tediousjs/node-mssql/compare/v6.3.0...v6.3.1) \[fix] Ensure line endings are unix style (LF) ### [`v6.3.0`](https://togithub.com/tediousjs/node-mssql/blob/HEAD/CHANGELOG.txt#v630-2020-12-14) [Compare Source](https://togithub.com/tediousjs/node-mssql/compare/v6.2.3...v6.3.0) \[new] Result sets with duplicate keys can now be handled using `request.arrayRowMode` ([#​1130](https://togithub.com/tediousjs/node-mssql/pull/1130)) \[fix] Issue with geography v2 parsing resolve ([#​1138](https://togithub.com/tediousjs/node-mssql/pull/1138)) \[fix] Fixed issue where msnodesqlv8 could sometimes terminate queries before all errors has been emitted causing queries to hang ([#​1145](https://togithub.com/tediousjs/node-mssql/pull/1145))