tot-ra / graphql-schema-registry

GraphQL schema registry
MIT License
372 stars 68 forks source link

[Snyk] Upgrade @apollo/client from 3.3.6 to 3.5.5 #89

Closed snyk-bot closed 2 years ago

snyk-bot commented 2 years ago

Snyk has created this PR to upgrade @apollo/client from 3.3.6 to 3.5.5.

merge advice :information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


The recommended version fixes:

Severity Issue PriorityScore (*) Exploit Maturity
Information Exposure
SNYK-JS-APOLLOCLIENT-1085706
479/1000
Why? Has a fix available, CVSS 5.3
No Known Exploit

(*) Note that the real score may have changed since the PR was raised.

Release notes
Package name: @apollo/client
  • 3.5.5 - 2021-11-23

    Bump @ apollo/client npm version to 3.5.5.

  • 3.5.4 - 2021-11-19

    Apollo Client 3.5.5 (2021-11-23)

    Bug Fixes

    • Remove printer: Printer positional parameter from publicly-exported selectHttpOptionsAndBody function, whose addition in #8699 was a breaking change (starting in Apollo Client 3.5.0) for direct consumers of selectHttpOptionsAndBody.
      @ benjamn in #9103

    Apollo Client 3.5.4 (2021-11-19)

    Notices

    • [Relevant if you use Apollo Client with React Native] Since Apollo Client v3.5.0, CommonJS bundles provided by @ apollo/client use a .cjs file extension rather than .cjs.js, so Node.js won't interpret them as ECMAScript modules. While this change should be an implementation detail, it may cause problems for the Metro bundler used by React Native, whose resolver.sourceExts configuration does not include the cjs extension by default.

      As a workaround until this issue is resolved, you can configure Metro to understand the .cjs file extension by creating a metro.config.js file in the root of your React Native project:

      const { getDefaultConfig } = require("metro-config");
      const { resolver: defaultResolver } = getDefaultConfig.getDefaultValues();
      exports.resolver = {
        ...defaultResolver,
        sourceExts: [
          ...defaultResolver.sourceExts,
          "cjs",
        ],
      };

    Improvements

    • Restore the ability to pass onError() and onCompleted() to the mutation execution function.
      @ brainkim in #9076

    • Work around webpack 5 errors of the form

      The request 'ts-invariant/process' failed to resolve only because it was resolved as fully specified
      

      by ensuring import ... from 'ts-invariant/process' is internally written to import ... from 'ts-invariant/process/index.js'.
      @ benjamn in #9083

    Apollo Client 3.5.3 (2021-11-17)

    • Avoid rewriting non-relative imported module specifiers in config/rewriteModuleIds.ts script, thereby allowing bundlers to resolve those imports as they see fit.
      @ benjamn in #9073

    • Ensure only current file is matched when running VSCode debugger.
      @ eps1lon in #9050

    Apollo Client 3.5.2 (2021-11-10)

    • Fix useMutation execute function returning non-identical execution functions when passing similar options.
      @ brainkim in #9093

    Apollo Client 3.5.1 (2021-11-09)

    • Remove npm from dependencies, and avoid referencing graphql-js enum value.
      @ brainkim in #9030

    Apollo Client 3.5.0 (2021-11-08)

    Improvements

    • Add updateQuery and updateFragment methods to ApolloCache, simplifying common readQuery/writeQuery cache update patterns.
      @ wassim-k in #8382

    • Field directives and their arguments can now be included along with field argument names when using field policy keyArgs: [...] notation. For example, if you have a Query.feed field that takes an argument called type and uses a @ connection(key:...) directive to keep feed data from different queries separate within the cache, you might configure both using the following InMemoryCache field policy:

      new InMemoryCache({
        typePolicies: {
          Query: {
            fields: {
              feed: {
                keyArgs: ["type", "@ connection", ["key"]],
              },
            },
          },
        },
      })

      @ benjamn in #8678

    • Report single MissingFieldError instead of a potentially very large MissingFieldError[] array for incomplete cache reads, improving performance and memory usage.
      @ benjamn in #8734

    • When writing results into InMemoryCache, each written object is now identified using policies.identify after traversing the fields of the object (rather than before), simplifying identification and reducing duplicate work. If you have custom keyFields functions, they still receive the raw result object as their first parameter, but the KeyFieldsContext parameter now provides context.storeObject (the StoreObject just processed by processSelectionSet) and context.readField (a helper function for reading fields from context.storeObject and any References it might contain, similar to readField for read, merge, and cache.modify functions).
      @ benjamn in #8996

    • Ensure cache.identify never throws when primary key fields are missing, and include the source object in the error message when keyFields processing fails.
      @ benjamn in #8679

    • The HttpLink constructor now accepts an optional print function that can be used to customize how GraphQL DocumentNode objects are transformed back into strings before they are sent over the network.
      @ sarahgp in #8699

    • Make @ apollo/client/testing a fully-fledged, independent entry point, instead of re-exporting @ apollo/client/utilities/testing (which was never an entry point and no longer exists).
      @ benjamn in #8769

    • A new nested entry point called @ apollo/client/testing/core has been created. Importing from this entry point instead of @ apollo/client/testing excludes any React-related dependencies.
      @ wassim-k in #8687

    • Make cache.batch return the result of calling the options.update function.
      @ benjamn in #8696

    • The NetworkError and ErrorResponse types have been changed to align more closely.
      @ korywka in #8424

    • Include graphql@16 in peer deps.
      @ brainkim in #8997

    • Update zen-observable-ts to eliminate transitive dependency on @ types/zen-observable.
      @ benjamn in #8695

    React Refactoring

    Improvements (due to @ brainkim in #8875):

    • The useLazyQuery function now returns a promise with the result.
    • The useMutation result now exposes a method which can be reset.

    Bug Fixes (due to @ brainkim in #8596):

    • The useQuery and useLazyQuery hooks will now have ObservableQuery methods defined consistently.
    • Calling useLazyQuery methods like startPolling will start the query.
    • Calling the useLazyQuery execution function will now behave more like refetch. previousData will be preserved.
    • standby fetchPolicies will now act like skip: true more consistently.
    • Calling refetch on a skipped query will have no effect (issue #8270).
    • Prevent onError and onCompleted functions from firing continuously, and improving their polling behavior.
  • 3.5.3 - 2021-11-17

    Bump @ apollo/client npm version to 3.5.3.

  • 3.5.2 - 2021-11-10

    Version bump; prep for publish

  • 3.5.1 - 2021-11-09

    Version bump; prep for publish

  • 3.5.0 - 2021-11-08

    Changelog update; prep for publish

  • 3.5.0-rc.3 - 2021-11-03
  • 3.5.0-rc.2 - 2021-10-22
  • 3.5.0-rc.1 - 2021-10-04
  • 3.5.0-rc.0 - 2021-10-04
  • 3.5.0-beta.18 - 2021-10-01
  • 3.5.0-beta.17 - 2021-09-27
  • 3.5.0-beta.16 - 2021-09-20
  • 3.5.0-beta.15 - 2021-09-17
  • 3.5.0-beta.14 - 2021-09-17
  • 3.5.0-beta.13 - 2021-09-13
  • 3.5.0-beta.12 - 2021-09-10
  • 3.5.0-beta.11 - 2021-08-30
  • 3.5.0-beta.10 - 2021-08-30
  • 3.5.0-beta.9 - 2021-08-26
  • 3.5.0-beta.8 - 2021-08-24
  • 3.5.0-beta.7 - 2021-08-23
  • 3.5.0-beta.6 - 2021-08-18
  • 3.5.0-beta.5 - 2021-08-09
  • 3.5.0-beta.4 - 2021-08-04
  • 3.5.0-beta.3 - 2021-08-03
  • 3.5.0-beta.2 - 2021-08-02
  • 3.5.0-beta.1 - 2021-07-29
  • 3.5.0-beta.0 - 2021-07-28
  • 3.4.17 - 2021-11-08

    Version bump; prep for publish

  • 3.4.16 - 2021-10-04
  • 3.4.15 - 2021-09-27
  • 3.4.14 - 2021-09-27
  • 3.4.13 - 2021-09-20
  • 3.4.12 - 2021-09-17
  • 3.4.11 - 2021-09-10
  • 3.4.10 - 2021-08-27
  • 3.4.9 - 2021-08-24
  • 3.4.8 - 2021-08-16
  • 3.4.7 - 2021-08-09
  • 3.4.6 - 2021-08-09
  • 3.4.5 - 2021-08-04
  • 3.4.4 - 2021-08-03
  • 3.4.3 - 2021-08-02
  • 3.4.2 - 2021-08-02
  • 3.4.1 - 2021-07-29
  • 3.4.0 - 2021-07-28
  • 3.4.0-rc.23 - 2021-07-23
  • 3.4.0-rc.22 - 2021-07-22
  • 3.4.0-rc.21 - 2021-07-19
  • 3.4.0-rc.20 - 2021-07-15
  • 3.4.0-rc.19 - 2021-07-12
  • 3.4.0-rc.18 - 2021-07-09
  • 3.4.0-rc.17 - 2021-07-06
  • 3.4.0-rc.16 - 2021-07-06
  • 3.4.0-rc.15 - 2021-06-28
  • 3.4.0-rc.14 - 2021-06-24
  • 3.4.0-rc.13 - 2021-06-23
  • 3.4.0-rc.12 - 2021-06-22
  • 3.4.0-rc.11 - 2021-06-17
  • 3.4.0-rc.10 - 2021-06-16
  • 3.4.0-rc.9 - 2021-06-16
  • 3.4.0-rc.8 - 2021-06-16
  • 3.4.0-rc.7 - 2021-06-15
  • 3.4.0-rc.6 - 2021-06-08
  • 3.4.0-rc.5 - 2021-06-07
  • 3.4.0-rc.4 - 2021-06-04
  • 3.4.0-rc.3 - 2021-06-02
  • 3.4.0-rc.2 - 2021-05-26
  • 3.4.0-rc.1 - 2021-05-25
  • 3.4.0-rc.0 - 2021-05-19
  • 3.4.0-beta.28 - 2021-05-19
  • 3.4.0-beta.27 - 2021-05-18
  • 3.4.0-beta.26 - 2021-05-12
  • 3.4.0-beta.25 - 2021-05-11
  • 3.4.0-beta.24 - 2021-05-05
  • 3.4.0-beta.23 - 2021-04-13
  • 3.4.0-beta.22 - 2021-04-10
  • 3.4.0-beta.21 - 2021-04-07
  • 3.4.0-beta.20 - 2021-04-05
  • 3.4.0-beta.19 - 2021-03-26
  • 3.4.0-beta.18 - 2021-03-26
  • 3.4.0-beta.17 - 2021-03-25
  • 3.4.0-beta.16 - 2021-03-24
  • 3.4.0-beta.15 - 2021-03-17
  • 3.4.0-beta.14 - 2021-03-15
  • 3.4.0-beta.13 - 2021-03-11
  • 3.4.0-beta.12 - 2021-03-03
  • 3.4.0-beta.11 - 2021-02-14
  • 3.4.0-beta.10 - 2021-02-09
  • 3.4.0-beta.9 - 2021-02-09
  • 3.4.0-beta.8 - 2021-02-05
  • 3.4.0-beta.7 - 2021-02-04
  • 3.4.0-beta.6 - 2021-01-29
  • 3.4.0-beta.5 - 2021-01-29
  • 3.4.0-beta.4 - 2020-12-16
  • 3.4.0-beta.3 - 2020-12-12
  • 3.4.0-beta.2 - 2020-12-04
  • 3.4.0-beta.1 - 2020-12-03
  • 3.4.0-beta.0 - 2020-12-01
  • 3.3.21 - 2021-07-06
  • 3.3.20 - 2021-06-08
  • 3.3.19 - 2021-05-18
  • 3.3.18 - 2021-05-13
  • 3.3.17 - 2021-05-11
  • 3.3.16 - 2021-04-30
  • 3.3.15 - 2021-04-13
  • 3.3.14 - 2021-04-05
  • 3.3.13 - 2021-03-24
  • 3.3.12 - 2021-03-15
  • 3.3.11 - 2021-02-15
  • 3.3.10 - 2021-02-14
  • 3.3.9 - 2021-02-09
  • 3.3.8 - 2021-02-05
  • 3.3.7 - 2021-01-14
  • 3.3.6 - 2020-12-11
from @apollo/client GitHub release notes

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs