Closed dependabot[bot] closed 1 year ago
This branch is running in CodeSandbox. Use the links below to review this PR faster.
Open in CodeSandbox Web Editor | VS Code | VS Code Insiders | Preview
New and updated dependency changes detected. Learn more about Socket for GitHub โ๏ธ
๐ฎ Removed packages: mongoose@5.10.7
Looks like these dependencies are up-to-date now, so this is no longer needed.
Bumps mpath to 0.8.4 and updates ancestor dependency mongoose. These dependencies need to be updated together.
Updates
mpath
from 0.7.0 to 0.8.4Changelog
Sourced from mpath's changelog.
Commits
634a0fa
chore: release 0.8.489402d2
fix: throw error ifparts
contains an element that isn't a string or number03c4efe
chore: add basic SECURITY.md filead7a023
chore: release 0.8.3f050c3a
fix: use var instead of let/const for Node.js 4.x supporte3bdd36
chore: release 0.8.2b09cebc
chore: add lintffed519
fix(stringToParts): fall back to legacy treatment for square brackets if squa...095573c
chore: release 0.8.1c507d2c
fix(stringToParts): handle empty string and trailing dot the same way that `s...Updates
mongoose
from 5.10.7 to 5.13.17Changelog
Sourced from mongoose's changelog.
... (truncated)
Commits
1bc07ec
chore: release 5.13.173f827b3
Merge branch '5.x' of github.com:Automattic/mongoose into 5.xeeabe5f
chore: run CI tests on ubuntu 20.04 because 18.04 no longer supported14464d1
Merge pull request #13195 from raj-goguardian/gh-131927e888e4
fix(update): handle $and & $or in array filters.5dd0a4e
Merge pull request #13138 from rdeavila94/gh-13136c8191da
Update model.indexes.test.js7364264
Update model.indexes.test.js77b9d99
Updated the isIndexEqual function to take into account non-text indexes when ...9dd82be
Merge pull request #13132 from rdeavila94/gh-12654Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) You can disable automated security fix PRs for this repo from the [Security Alerts page](https://github.com/magneum/BloomBot/network/alerts).