geodatagouv / geoplatform

Core API and processing tools for geo.data.gouv.fr
MIT License
5 stars 1 forks source link

Bump mongoose from 5.4.18 to 5.6.13 #293

Closed dependabot-preview[bot] closed 4 years ago

dependabot-preview[bot] commented 5 years ago

Bumps mongoose from 5.4.18 to 5.6.13.

Changelog *Sourced from [mongoose's changelog](https://github.com/Automattic/mongoose/blob/master/History.md).* > 5.6.13 / 2019-09-04 > =================== > * fix(parallel): fix parallelLimit when fns is empty [#8130](https://github-redirect.dependabot.com/Automattic/mongoose/issues/8130) [#8128](https://github-redirect.dependabot.com/Automattic/mongoose/issues/8128) [sibelius](https://github.com/sibelius) > * fix(document): ensure nested mixed validator gets called exactly once [#8117](https://github-redirect.dependabot.com/Automattic/mongoose/issues/8117) > * fix(populate): handle `justOne = undefined` [#8125](https://github-redirect.dependabot.com/Automattic/mongoose/issues/8125) [taxilian](https://github.com/taxilian) > > 5.6.12 / 2019-09-03 > =================== > * fix(schema): handle required validator correctly with `clone()` [#8111](https://github-redirect.dependabot.com/Automattic/mongoose/issues/8111) > * fix(schema): copy schematype getters and setters when cloning [#8124](https://github-redirect.dependabot.com/Automattic/mongoose/issues/8124) [StphnDamon](https://github.com/StphnDamon) > * fix(discriminator): avoid unnecessarily cloning schema to avoid leaking memory on repeated `discriminator()` calls [#2874](https://github-redirect.dependabot.com/Automattic/mongoose/issues/2874) > * docs(schematypes): clarify when Mongoose uses `toString()` to convert an object to a string [#8112](https://github-redirect.dependabot.com/Automattic/mongoose/issues/8112) [TheTrueRandom](https://github.com/TheTrueRandom) > * docs(plugins): fix out of date link to npm docs [#8100](https://github-redirect.dependabot.com/Automattic/mongoose/issues/8100) > * docs(deprecations): fix typo [#8109](https://github-redirect.dependabot.com/Automattic/mongoose/issues/8109) [jgcmarins](https://github.com/jgcmarins) > * refactor(model): remove dependency on `async.parallelLimit()` for `insertMany()` [#8073](https://github-redirect.dependabot.com/Automattic/mongoose/issues/8073) > > 5.6.11 / 2019-08-25 > =================== > * fix(model): allow passing options to `exists()` [#8075](https://github-redirect.dependabot.com/Automattic/mongoose/issues/8075) > * fix(document): make `validateUpdatedOnly` option handle pre-existing errors [#8091](https://github-redirect.dependabot.com/Automattic/mongoose/issues/8091) > * fix: throw readable error if middleware callback isnt a function [#8087](https://github-redirect.dependabot.com/Automattic/mongoose/issues/8087) > * fix: don't throw error if calling `find()` on a nested array [#8089](https://github-redirect.dependabot.com/Automattic/mongoose/issues/8089) > * docs(middleware): clarify that you must add middleware before compiling your model [#5087](https://github-redirect.dependabot.com/Automattic/mongoose/issues/5087) > * docs(query): add missing options to `setOptions()` [#8099](https://github-redirect.dependabot.com/Automattic/mongoose/issues/8099) > > 5.6.10 / 2019-08-20 > =================== > * fix(schema): fix require() path to work around yet another bug in Jest [#8053](https://github-redirect.dependabot.com/Automattic/mongoose/issues/8053) > * fix(document): skip casting when initing a populated path [#8062](https://github-redirect.dependabot.com/Automattic/mongoose/issues/8062) > * fix(document): prevent double-calling validators on mixed objects with nested properties [#8067](https://github-redirect.dependabot.com/Automattic/mongoose/issues/8067) > * fix(query): handle schematype with `null` options when checking immutability [#8070](https://github-redirect.dependabot.com/Automattic/mongoose/issues/8070) [rich-earth](https://github.com/rich-earth) > * fix(schema): support `Schema#path()` to get schema path underneath doc array [#8057](https://github-redirect.dependabot.com/Automattic/mongoose/issues/8057) > * docs(faq): add disable color instruction [#8066](https://github-redirect.dependabot.com/Automattic/mongoose/issues/8066) > > 5.6.9 / 2019-08-07 > ================== > * fix(model): delete versionError after saving to prevent memory leak [#8048](https://github-redirect.dependabot.com/Automattic/mongoose/issues/8048) > * fix(cursor): correctly handle batchSize option with query cursor [#8039](https://github-redirect.dependabot.com/Automattic/mongoose/issues/8039) > * fix(populate): handle virtual populate with count = 0 if virtual embedded in doc array [#7573](https://github-redirect.dependabot.com/Automattic/mongoose/issues/7573) > * fix(schema): allow declaring ObjectId array with `{ type: 'ObjectID' }`, last 'D' case insensitive [#8034](https://github-redirect.dependabot.com/Automattic/mongoose/issues/8034) > > 5.6.8 / 2019-08-02 > ================== > * fix(aggregate): allow modifying pipeline in pre('aggregate') hooks [#8017](https://github-redirect.dependabot.com/Automattic/mongoose/issues/8017) > * fix(query): make `findOneAndReplace()` work with `orFail()` [#8030](https://github-redirect.dependabot.com/Automattic/mongoose/issues/8030) > * fix(document): allow saving an unchanged document if required populated path is null [#8018](https://github-redirect.dependabot.com/Automattic/mongoose/issues/8018) > * fix(debug): support disabling colors in debug mode [#8033](https://github-redirect.dependabot.com/Automattic/mongoose/issues/8033) [Mangosteen-Yang](https://github.com/Mangosteen-Yang) > * docs: add async-await guide [#8028](https://github-redirect.dependabot.com/Automattic/mongoose/issues/8028) [Rossh87](https://github.com/Rossh87) > * docs(plugins): rewrite plugins docs to be more modern and not use strange `= exports` syntax [#8026](https://github-redirect.dependabot.com/Automattic/mongoose/issues/8026) > * docs(transactions): clarify relationship between `session` in docs and MongoDB driver ClientSession class, link to driver docs [#8009](https://github-redirect.dependabot.com/Automattic/mongoose/issues/8009) > ... (truncated)
Commits - [`5b11924`](https://github.com/Automattic/mongoose/commit/5b119248a490211089230e4cdace8d2ac9483c43) chore: release 5.6.13 - [`3a105e6`](https://github.com/Automattic/mongoose/commit/3a105e6719716793779647192c48d4ccd102cb50) test(model): add test for [#8130](https://github-redirect.dependabot.com/Automattic/mongoose/issues/8130) - [`cad316a`](https://github.com/Automattic/mongoose/commit/cad316ae9f12ea1d7d413412d71bc5dfec895d08) Merge pull request [#8130](https://github-redirect.dependabot.com/Automattic/mongoose/issues/8130) from sibelius/patch-1 - [`6a9abe8`](https://github.com/Automattic/mongoose/commit/6a9abe8deffc11901aabc1f9531c0efe39b642c4) fix(document): ensure nested mixed validator gets called exactly once - [`a57e491`](https://github.com/Automattic/mongoose/commit/a57e491d2eff30c248d55cfe4caab8bdee6cbb7e) test(document): repro [#8117](https://github-redirect.dependabot.com/Automattic/mongoose/issues/8117) - [`7879913`](https://github.com/Automattic/mongoose/commit/787991396460ef74806729de4774b8b9f2098257) fix(parallel): fix parallelLimit when fns is empty - [`5e289d7`](https://github.com/Automattic/mongoose/commit/5e289d79c6ae6d9528bea88ab94b6492a318a0e3) style: fix lint - [`946f7da`](https://github.com/Automattic/mongoose/commit/946f7da57678efb5ecb78958959192efbbc79c6f) chore: now working on 5.6.13 - [`006a0f6`](https://github.com/Automattic/mongoose/commit/006a0f64fac14e6e1dbac48d63c820e6c94aa27f) Merge pull request [#8125](https://github-redirect.dependabot.com/Automattic/mongoose/issues/8125) from gradecam/feature/fix_justOne_default - [`763e3e4`](https://github.com/Automattic/mongoose/commit/763e3e4406c5c1ed6ec3be38bb0fcfddac00b689) Fix for bug which doesn't properly honor defaults for justOne - Additional commits viewable in [compare view](https://github.com/Automattic/mongoose/compare/5.4.18...5.6.13)


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.

Dependabot will not automatically merge this PR because it includes a minor update to a production dependency.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) - `@dependabot use these labels` will set the current labels as the default for future PRs for this repo and language - `@dependabot use these reviewers` will set the current reviewers as the default for future PRs for this repo and language - `@dependabot use these assignees` will set the current assignees as the default for future PRs for this repo and language - `@dependabot use this milestone` will set the current milestone as the default for future PRs for this repo and language - `@dependabot badge me` will comment on this PR with code to add a "Dependabot enabled" badge to your readme Additionally, you can set the following in your Dependabot [dashboard](https://app.dependabot.com): - Update frequency (including time of day and day of week) - Automerge options (never/patch/minor, and dev/runtime dependencies) - Pull request limits (per update run and/or open at any time) - Out-of-range updates (receive only lockfile updates, if desired) - Security updates (receive only security updates, if desired) Finally, you can contact us by mentioning @dependabot.
codecov[bot] commented 5 years ago

Codecov Report

Merging #293 into master will not change coverage. The diff coverage is n/a.

Impacted file tree graph

@@           Coverage Diff           @@
##           master     #293   +/-   ##
=======================================
  Coverage   23.55%   23.55%           
=======================================
  Files          99       99           
  Lines        2165     2165           
=======================================
  Hits          510      510           
  Misses       1655     1655

Continue to review full report at Codecov.

Legend - Click here to learn more Δ = absolute <relative> (impact), ø = not affected, ? = missing data Powered by Codecov. Last update 7f73d5d...e32dbb4. Read the comment docs.

dependabot-preview[bot] commented 4 years ago

Superseded by #296.