aerogear / datasync-starter

GraphQL Low Code React and Node.js DataSync Application template
http://graphback.dev
MIT License
32 stars 38 forks source link

fix(deps): update dependency simpl-schema to v1.10.2 [security] #458

Open renovate[bot] opened 3 years ago

renovate[bot] commented 3 years ago

Mend Renovate

This PR contains the following updates:

Package Change Age Adoption Passing Confidence
simpl-schema 1.7.3 -> 1.10.2 age adoption passing confidence

GitHub Vulnerability Alerts

CVE-2020-7742

This affects the package simpl-schema before 1.10.2. Attacker controlled input into a schema could result in remote code execution within the scope of the surrounding application.


Release Notes

longshotlabs/simpl-schema ### [`v1.10.2`](https://togithub.com/longshotlabs/simpl-schema/releases/tag/1.10.2) [Compare Source](https://togithub.com/longshotlabs/simpl-schema/compare/1.10.1...1.10.2) ##### Bug Fixes - protect obj merge ([5012884](https://togithub.com/aldeed/simpl-schema/commit/50128841fa7fc2d137c36a397054279144caea3d)) ### [`v1.10.1`](https://togithub.com/longshotlabs/simpl-schema/releases/tag/1.10.1) [Compare Source](https://togithub.com/longshotlabs/simpl-schema/compare/1.10.0...1.10.1) ##### Bug Fixes - allow extending only array, not items ([9891a15](https://togithub.com/aldeed/simpl-schema/commit/9891a1555bd6a0e22ae51e39039fe43efa16b280)), closes [#​404](https://togithub.com/aldeed/simpl-schema/issues/404) ### [`v1.10.0`](https://togithub.com/longshotlabs/simpl-schema/releases/tag/1.10.0) [Compare Source](https://togithub.com/longshotlabs/simpl-schema/compare/1.9.1...1.10.0) ##### Features - add constructorOptionDefaults static fn ([fc93376](https://togithub.com/aldeed/simpl-schema/commit/fc93376e43ba2fe42f7125435d4cd9f550125c5b)), closes [#​401](https://togithub.com/aldeed/simpl-schema/issues/401) ### [`v1.9.1`](https://togithub.com/longshotlabs/simpl-schema/releases/tag/1.9.1) [Compare Source](https://togithub.com/longshotlabs/simpl-schema/compare/1.9.0...1.9.1) ##### Bug Fixes - update .labels() fn to support subschemas ([d8ae4a9](https://togithub.com/aldeed/simpl-schema/commit/d8ae4a97ad3ecc72495d346f4447ae3fcfc536cd)), closes [#​400](https://togithub.com/aldeed/simpl-schema/issues/400) ### [`v1.9.0`](https://togithub.com/longshotlabs/simpl-schema/releases/tag/1.9.0) [Compare Source](https://togithub.com/longshotlabs/simpl-schema/compare/1.8.1...1.9.0) ##### Features - set context name ([fc3f58f](https://togithub.com/aldeed/simpl-schema/commit/fc3f58fd5039439bb8ece8d6e90747d104fdfb9b)) ### [`v1.8.1`](https://togithub.com/longshotlabs/simpl-schema/releases/tag/1.8.1) [Compare Source](https://togithub.com/longshotlabs/simpl-schema/compare/1.8.0...1.8.1) ##### Bug Fixes - only non-iterable, non-Date objects, regardless of prototype are valid for Object type ([#​383](https://togithub.com/aldeed/simpl-schema/issues/383)) ([ab227a3](https://togithub.com/aldeed/simpl-schema/commit/ab227a3f6926aff382c3ff645512eb61cef4caa6)) ### [`v1.8.0`](https://togithub.com/longshotlabs/simpl-schema/releases/tag/1.8.0) [Compare Source](https://togithub.com/longshotlabs/simpl-schema/compare/1.7.3...1.8.0) ##### Features - add validationContext to functionsContext ([0c5c432](https://togithub.com/aldeed/simpl-schema/commit/0c5c432e9bd31ca5c3d12850e1d8b6b15189474e))

Configuration

📅 Schedule: Branch creation - "" (UTC), Automerge - At any time (no schedule defined).

🚦 Automerge: Enabled.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.



This PR has been generated by Mend Renovate. View repository job log here.

renovate[bot] commented 1 year ago

Edited/Blocked Notification

Renovate will not automatically rebase this PR, because it does not recognize the last commit author and assumes somebody else may have edited the PR.

You can manually request rebase by checking the rebase/retry box above.

Warning: custom changes will be lost.