Open joeherold opened 5 years ago
@joeherold Thanks for posting! We'll take a look as soon as possible.
In the mean time, there are a few ways you can help speed things along:
Please remember: never post in a public forum if you believe you've found a genuine security vulnerability. Instead, disclose it responsibly.
For help with questions about Sails, click here.
@joeherold Thanks for letting us know. I confirmed the npm audit vulnerability with the latest sails-mysql and made a note to have it checked out. In the meantime, we have an alternative/newer mysql/mssql/postgresql supported adapter sails-sql that isn't getting any vulnerability reports from npm audit 👍. At the moment postgresql is the primary db support in development for that adapter, mysql should be ready for production.
@johnabrams7 thanks for the information. but sails-sql sais:
THIS IS A WORK IN PROGRESS UNDER ACTIVE DEVELOPMENT - DO NOT USE IN PRODUCTION
I just came across using it with my current project @apollo-waterline/server and wanted to avoid an install warning. I will check out sails-sql, even though
@joeherold—
That's true generally—and it's certainly the case for PostgreSQL—but the MySql implementation of sails-sql is production-ready!
Node version: v10.15.1 Sails version (sails): 1.x DB adapter & version : sails-mysql@1.0.1