add @IsTimeZone decorator to check if given string is valid IANA time zone
add @IsISO4217CurrencyCode decorator to check if the string is an ISO 4217 currency code
add @IsStrongPassword decorator to check if given password matches specific complexity criteria
add @IsBase58 decorator to check if a string is base58 encoded
add @IsTaxId decorator to check if a given string is a valid tax ID in a given locale
add support for passing function as date generator in @MinDate and @MaxDate decorators
add option to print constraint error message instead of constraint type in validation error
improve decorator metadata lookup performance
return possible values in error message for @IsEnum decorator
Fixed
re-added @types/validator as dependency
fix error generation when using @NestedValidation
pass validation options correctly to validator in @IsDateString decorator
support passing Symbol as parameter in error message generation
specify supported locales for @IsAlphanumeric decorator
correctly assign decorator name in metadata instead of loosing it
fix various spelling errors in documentation
fix various spelling errors and inconsistencies in JSDoc for decorators
Changed
enable forbidUnknownValues option by default
remove documentation about deprecated schema based validation and added warning
update warning message logged about missing decorator metadata
update libphonenumber-js to ^1.10.14 from ^1.9.43
update various dev-dependencies
BREAKING CHANGES
forbidUnknownValues option is enabled by default
From this release the forbidUnknownValues is enabled by default. This is the desired behavior for majority of
use-cases, but this change may break validation for some. The two scenarios that results in failed validation:
when attempting to validate a class instance without metadata for it
when using group validation and the specified validation group results in zero validation applied
The old behavior can be restored via specifying forbidUnknownValues: false option when calling the validate functions.
You can trigger a rebase of this PR by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
- `@dependabot show ignore conditions` will show all of the ignore conditions of the specified dependency
- `@dependabot ignore major version` will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
- `@dependabot ignore minor version` will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
- `@dependabot ignore ` will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
- `@dependabot unignore ` will remove all of the ignore conditions of the specified dependency
- `@dependabot unignore ` will remove the ignore condition of the specified dependency and ignore conditions
Note
Automatic rebases have been disabled on this pull request as it has been open for over 30 days.
Bumps class-validator from 0.13.1 to 0.14.1.
Release notes
Sourced from class-validator's releases.
... (truncated)
Changelog
Sourced from class-validator's changelog.
... (truncated)
Commits
adffae3
bump package-lock version from 0.14.0 to 0.14.1 (#2375)0a18ea2
[UPDATE] bump repo version (#2372)19f290f
build(deps-dev): bump@types/node
from 20.10.8 to 20.11.0 (#2369)0042559
Fix validator imports (#2360)611f833
build(deps-dev): bump@types/node
from 20.10.7 to 20.10.8 (#2359)b76fab3
build(deps-dev): bump eslint-plugin-jest from 27.6.1 to 27.6.2 (#2358)e8f3c8a
build(deps-dev): bump@types/node
from 20.10.6 to 20.10.7 (#2355)6d176e2
build(deps-dev): bump eslint-plugin-jest from 27.6.0 to 27.6.1 (#2353)d16211c
build(deps-dev): bump@types/node
from 20.10.5 to 20.10.6 (#2351)3ab54c4
build(deps): bump libphonenumber-js from 1.10.52 to 1.10.53 (#2348)You can trigger a rebase of this PR by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show