Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bump mongoose, express-restify-mongoose and mongoose-long in /webui #14

Open
wants to merge 1 commit into
base: main
Choose a base branch
from

Conversation

dependabot[bot]
Copy link

@dependabot dependabot bot commented on behalf of github Jan 16, 2025

Bumps mongoose, express-restify-mongoose and mongoose-long. These dependencies needed to be updated together.
Updates mongoose from 5.13.20 to 8.9.5

Release notes

Sourced from mongoose's releases.

8.9.5 / 2025-01-13

  • fix: disallow nested $where in populate match
  • fix(schema): handle bitwise operators on Int32 #15176 #15170

8.9.4 / 2025-01-09

  • fix(document): fix document not applying manual populate when using a function in schema.options.ref #15138 IchirokuXVI
  • fix(model): make Model.validate() static correctly cast document arrays #15169 #15164
  • fix(model): allow passing validateBeforeSave option to bulkSave() to skip validation #15161 #15156
  • fix(schema): allow multiple self-referencing discriminator schemas using Schema.prototype.discriminator #15142 #15120
  • types: avoid BufferToBinary<> wiping lean types when passed to generic functions #15160 #15158
  • docs: fix <code> in header ids #15159
  • docs: fix header in field-level-encryption.md #15137 damieng

8.9.3 / 2024-12-30

  • fix(schema): make duplicate index error a warning for now to prevent blocking upgrading #15135 #15112 #15109
  • fix(model): handle document array paths set to non-array values in Model.castObject() #15124 #15075
  • fix(document): avoid using childSchemas.path for compatibility with pre-Mongoose-8.8 schemas #15131 #15071
  • fix(model): avoid throwing unnecessary error if updateOne() returns null in save() #15126
  • perf(cursor): clear the stack every time if using populate with batchSize to avoid stack overflows with large docs #15136 #10449
  • types: make BufferToBinary avoid Document instances #15123 #15122
  • types(model+query): avoid stripping out virtuals when calling populate with paths generic #15132 #15111
  • types(schema): add missing removeIndex #15134
  • types: add cleanIndexes() to IndexManager interface #15127
  • docs: move search endpoint to netlify #15119

8.9.2 / 2024-12-19

  • fix(schema): avoid throwing duplicate index error if index spec keys have different order or index has a custom name #15112 #15109
  • fix(map): clean modified subpaths when overwriting values in map of subdocs #15114 #15108
  • fix(aggregate): pull session from transaction local storage for aggregation cursors #15094 IchirokuXVI
  • types: correctly handle union types in BufferToBinary and related helpers #15103 #15102 #15057
  • types: add UUID to RefType #15115 #15101
  • docs: remove link to Mongoose 5.x docs from dropdown #15116
  • docs(connection+document+model): remove remaining references to remove(), clarify that deleteOne() does not execute until then() or exec() #15113 #15107

8.9.1 / 2024-12-16

  • fix(connection): remove heartbeat check in load balanced mode #15089 #15042 #14812
  • fix(discriminator): gather childSchemas when creating discriminator to ensure $getAllSubdocs() can properly get all subdocs #15099 #15088 #15092
  • fix(model): handle discriminators in castObject() #15096 #15075
  • fix(schema): throw error if duplicate index definition using unique in schema path and subsequent .index() call #15093 #15056
  • fix: mark documents that are populated using hydratedPopulatedDocs option as populated in top-level doc #15080 #15048
  • fix(document+schema): improve error message for get() on invalid path #15098 #15071
  • docs: remove more callback doc references & some small other changes #15095

8.9.0 / 2024-12-13

... (truncated)

Changelog

Sourced from mongoose's changelog.

8.9.5 / 2025-01-13

  • fix: disallow nested $where in populate match
  • fix(schema): handle bitwise operators on Int32 #15176 #15170

7.8.4 / 2025-01-13

  • fix: disallow nested $where in populate match

6.13.6 / 2025-01-13

  • fix: disallow nested $where in populate match

8.9.4 / 2025-01-09

  • fix(document): fix document not applying manual populate when using a function in schema.options.ref #15138 IchirokuXVI
  • fix(model): make Model.validate() static correctly cast document arrays #15169 #15164
  • fix(model): allow passing validateBeforeSave option to bulkSave() to skip validation #15161 #15156
  • fix(schema): allow multiple self-referencing discriminator schemas using Schema.prototype.discriminator #15142 #15120
  • types: avoid BufferToBinary<> wiping lean types when passed to generic functions #15160 #15158
  • docs: fix <code> in header ids #15159
  • docs: fix header in field-level-encryption.md #15137 damieng

8.9.3 / 2024-12-30

  • fix(schema): make duplicate index error a warning for now to prevent blocking upgrading #15135 #15112 #15109
  • fix(model): handle document array paths set to non-array values in Model.castObject() #15124 #15075
  • fix(document): avoid using childSchemas.path for compatibility with pre-Mongoose-8.8 schemas #15131 #15071
  • fix(model): avoid throwing unnecessary error if updateOne() returns null in save() #15126
  • perf(cursor): clear the stack every time if using populate with batchSize to avoid stack overflows with large docs #15136 #10449
  • types: make BufferToBinary avoid Document instances #15123 #15122
  • types(model+query): avoid stripping out virtuals when calling populate with paths generic #15132 #15111
  • types(schema): add missing removeIndex #15134
  • types: add cleanIndexes() to IndexManager interface #15127
  • docs: move search endpoint to netlify #15119

8.9.2 / 2024-12-19

  • fix(schema): avoid throwing duplicate index error if index spec keys have different order or index has a custom name #15112 #15109
  • fix(map): clean modified subpaths when overwriting values in map of subdocs #15114 #15108
  • fix(aggregate): pull session from transaction local storage for aggregation cursors #15094 IchirokuXVI
  • types: correctly handle union types in BufferToBinary and related helpers #15103 #15102 #15057
  • types: add UUID to RefType #15115 #15101
  • docs: remove link to Mongoose 5.x docs from dropdown #15116
  • docs(connection+document+model): remove remaining references to remove(), clarify that deleteOne() does not execute until then() or exec() #15113 #15107

8.9.1 / 2024-12-16

  • fix(connection): remove heartbeat check in load balanced mode #15089 #15042 #14812
  • fix(discriminator): gather childSchemas when creating discriminator to ensure $getAllSubdocs() can properly get all subdocs #15099 #15088 #15092

... (truncated)

Commits

Updates express-restify-mongoose from 6.1.2 to 9.0.5

Release notes

Sourced from express-restify-mongoose's releases.

9.0.5

What's Changed

New Contributors

Full Changelog: florianholzapfel/express-restify-mongoose@9.0.4...9.0.5

9.0.4

What's Changed

New Contributors

Full Changelog: florianholzapfel/express-restify-mongoose@9.0.3...9.0.4

9.0.3

What's Changed

Full Changelog: florianholzapfel/express-restify-mongoose@9.0.2...9.0.3

9.0.2

What's Changed

Full Changelog: florianholzapfel/express-restify-mongoose@9.0.1...9.0.2

9.0.1

What's Changed

Full Changelog: florianholzapfel/express-restify-mongoose@9.0.0...9.0.1

9.0.0

What's Changed

New Contributors

... (truncated)

Changelog

Sourced from express-restify-mongoose's changelog.

Changelog

7.0.0

This release requires mongoose 6.x

  • updated mongoose to version 6.x

6.0.0

This release requires mongoose ~5.8

  • updated mongoose to version 5.8

5.0.0

  • dropped support for Node 4 and added support for Node 10
  • removed query operator parsing #285
  • moved request query in req.erm.query #299 #353
  • removed next from postProcess #334
  • added error when skip and/or limit is not a valid integer
  • removed _id tinkering #326
  • removed dependency on async

4.3.0

  • added support for async outputFn by returning a Promise

4.2.2

  • removed dependency on lodash, use specific modules and native methods when possible #352

4.2.1

4.2.0

  • removed compile step, code now runs natively on Node 4+ and babel is only used for coverage

4.1.1

  • fixed distinct queries when options.totalCountHeader is enabled

4.1.0

  • improved sync error handling in buildQuery by wrapping in a promise
  • fixed crash when distinct and sort operators were used in the same query

4.0.0

... (truncated)

Commits
  • ec46992 Merge pull request #469 from leemin0830/enable-nested-populate
  • 5156875 Merge pull request #470 from florianholzapfel/dependabot/npm_and_yarn/braces-...
  • 502faf2 Merge pull request #465 from florianholzapfel/dependabot/npm_and_yarn/body-pa...
  • da2cac9 Merge branch 'main' into dependabot/npm_and_yarn/body-parser-1.20.3
  • 725b473 chore(deps): bump braces from 3.0.2 to 3.0.3
  • 1d4cbb4 Merge pull request #464 from florianholzapfel/dependabot/npm_and_yarn/microma...
  • 084b4be Merge pull request #466 from florianholzapfel/dependabot/npm_and_yarn/express...
  • af17c98 Merge pull request #467 from florianholzapfel/dependabot/npm_and_yarn/rollup-...
  • d22be3e Enable nested populate query again.
  • d93f987 chore(deps): bump rollup from 3.29.4 to 3.29.5
  • Additional commits viewable in compare view

Updates mongoose-long from 0.7.1 to 0.8.0

Changelog

Sourced from mongoose-long's changelog.

0.8.0 / 2023-10-31

  • feat: support Mongoose 8
Commits

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
    You can disable automated security fix PRs for this repo from the Security Alerts page.

Summary by Sourcery

Update Mongoose, Express Restify Mongoose, and Mongoose Long to their latest versions.

Enhancements:

  • Upgrade Mongoose from 5.13.20 to 8.9.5.
  • Upgrade Express Restify Mongoose from 6.1.2 to 9.0.5.
  • Upgrade Mongoose Long from 0.7.1 to 0.8.0.

Bumps [mongoose](https://github.com/Automattic/mongoose), [express-restify-mongoose](https://github.com/florianholzapfel/express-restify-mongoose) and [mongoose-long](https://github.com/aheckmann/mongoose-long). These dependencies needed to be updated together.

Updates `mongoose` from 5.13.20 to 8.9.5
- [Release notes](https://github.com/Automattic/mongoose/releases)
- [Changelog](https://github.com/Automattic/mongoose/blob/master/CHANGELOG.md)
- [Commits](Automattic/mongoose@5.13.20...8.9.5)

Updates `express-restify-mongoose` from 6.1.2 to 9.0.5
- [Release notes](https://github.com/florianholzapfel/express-restify-mongoose/releases)
- [Changelog](https://github.com/florianholzapfel/express-restify-mongoose/blob/main/CHANGELOG.md)
- [Commits](florianholzapfel/express-restify-mongoose@6.1.2...9.0.5)

Updates `mongoose-long` from 0.7.1 to 0.8.0
- [Changelog](https://github.com/mongoosejs/mongoose-long/blob/master/History.md)
- [Commits](mongoosejs/mongoose-long@0.7.1...0.8.0)

---
updated-dependencies:
- dependency-name: mongoose
  dependency-type: direct:production
- dependency-name: express-restify-mongoose
  dependency-type: direct:production
- dependency-name: mongoose-long
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code labels Jan 16, 2025
Copy link

sourcery-ai bot commented Jan 16, 2025

Reviewer's Guide by Sourcery

This PR bumps mongoose from 5.13.20 to 8.9.5, express-restify-mongoose from 6.1.2 to 9.0.5, and mongoose-long from 0.7.1 to 0.8.0. These updates were done together to maintain compatibility. The update to mongoose-long was necessary to support Mongoose 8. The update to express-restify-mongoose includes support for Mongoose 8 and MongoDB 7, along with various bug fixes, performance improvements, and dependency updates. The mongoose update itself contains numerous bug fixes, performance enhancements, and improvements to types.

No diagrams generated as the changes look simple and do not need a visual representation.

File-Level Changes

Change Details Files
Bumped mongoose from version 5.13.20 to 8.9.5.
  • Updated the mongoose dependency to 8.9.5 in the package.json file.
  • Updated the lockfile (package-lock.json) to reflect the changes in dependencies and sub-dependencies of mongoose 8.9.5 and other updated packages
webui/package.json
webui/package-lock.json
Bumped express-restify-mongoose from version 6.1.2 to 9.0.5.
  • Updated the express-restify-mongoose dependency to 9.0.5 in the package.json file.
  • Updated the lockfile (package-lock.json) to reflect the changes in dependencies and sub-dependencies of express-restify-mongoose 9.0.5 and other updated packages
webui/package.json
webui/package-lock.json
Bumped mongoose-long from version 0.7.1 to 0.8.0.
  • Updated the mongoose-long dependency to 0.8.0 in the package.json file.
  • Updated the lockfile (package-lock.json) to reflect the changes in dependencies and sub-dependencies of mongoose-long 0.8.0 and other updated packages
webui/package.json
webui/package-lock.json

Tips and commands

Interacting with Sourcery

  • Trigger a new review: Comment @sourcery-ai review on the pull request.
  • Continue discussions: Reply directly to Sourcery's review comments.
  • Generate a GitHub issue from a review comment: Ask Sourcery to create an
    issue from a review comment by replying to it.
  • Generate a pull request title: Write @sourcery-ai anywhere in the pull
    request title to generate a title at any time.
  • Generate a pull request summary: Write @sourcery-ai summary anywhere in
    the pull request body to generate a PR summary at any time. You can also use
    this command to specify where the summary should be inserted.

Customizing Your Experience

Access your dashboard to:

  • Enable or disable review features such as the Sourcery-generated pull request
    summary, the reviewer's guide, and others.
  • Change the review language.
  • Add, remove or edit custom review instructions.
  • Adjust other review settings.

Getting Help

@CLAassistant
Copy link

CLA assistant check
Thank you for your submission! We really appreciate it. Like many open source projects, we ask that you sign our Contributor License Agreement before we can accept your contribution.
You have signed the CLA already but the status is still pending? Let us recheck it.

Copy link

@sourcery-ai sourcery-ai bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

We have skipped reviewing this pull request. It seems to have been created by a bot (hey, dependabot[bot]!). We assume it knows what it's doing!

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant