8000 [Snyk] Upgrade: apollo-datasource, apollo-datasource-rest, apollo-server, apollo-server-testing by snyk-bot · Pull Request #2 8000 · UpperLEFTY/fullstack-tutorial · GitHub
[go: up one dir, main page]

Skip to content

[Snyk] Upgrade: apollo-datasource, apollo-datasource-rest, apollo-server, apollo-server-testing#2

Open
snyk-bot wants to merge 1 commit intomasterfrom
snyk-upgrade-b40bcd9b92f49a9f0dcc9e3fe6fd1772
Open

[Snyk] Upgrade: apollo-datasource, apollo-datasource-rest, apollo-server, apollo-server-testing#2
snyk-bot wants to merge 1 commit intomasterfrom
snyk-upgrade-b40bcd9b92f49a9f0dcc9e3fe6fd1772

Conversation

@snyk-bot
Copy link
@snyk-bot snyk-bot commented Oct 8, 2021

Snyk has created this PR to upgrade multiple dependencies.

👯‍♂ The following dependencies are linked and will therefore be updated together.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.

Name Versions Released on
apollo-datasource
from 0.1.3 to 0.9.0
37 versions ahead of your current version 5 months ago
on 2021-04-30
apollo-datasource-rest
from 0.1.5 to 0.14.0
79 versions ahead of your current version 4 months ago
on 2021-05-27
apollo-server
from 2.15.0 to 2.25.2
49 versions ahead of your current version 4 months ago
on 2021-06-22
apollo-server-testing
from 2.15.0 to 2.25.2
49 versions ahead of your current version 4 months ago
on 2021-06-22

The recommended version fixes:

Severity Issue PriorityScore (*) Exploit Maturity
Prototype Pollution
SNYK-JS-OBJECTPATH-1585658
376/1000
Why? CVSS 7.3
No Known Exploit
Regular Expression Denial of Service (ReDoS)
SNYK-JS-WS-1296835
376/1000
Why? CVSS 7.3
Proof of Concept
Regular Expression Denial of Service (ReDoS)
SNYK-JS-WS-1296835
376/1000
Why? CVSS 7.3
Proof of Concept
Prototype Pollution
SNYK-JS-OBJECTPATH-1569453
376/1000
Why? CVSS 7.3
No Known Exploit

(*) Note that the real score may have changed since the PR was raised.

Release notes
Package name: apollo-datasource
  • 0.9.0 - 2021-04-30
  • 0.9.0-alpha.0 - 2021-04-28
  • 0.8.1-unified2.0 - 2021-04-22
  • 0.8.1-unified.0 - 2021-04-22
  • 0.8.0 - 2021-03-26
  • 0.8.0-alpha.0 - 2021-03-22
  • 0.7.3 - 2021-01-14
  • 0.7.2 - 2020-06-30
  • 0.7.1 - 2020-05-27
  • 0.7.1-alpha.0 - 2020-05-08
  • 0.7.0 - 2020-02-06
  • 0.6.4 - 2019-12-27
  • 0.6.3 - 2019-08-30
  • 0.6.2 - 2019-08-28
  • 0.6.1 - 2019-07-25
  • 0.6.0 - 2019-07-16
  • 0.5.1-alpha.13 - 2019-07-15
  • 0.5.1-alpha.8 - 2019-07-13
  • 0.5.1-alpha.0 - 2019-06-25
  • 0.5.0 - 2019-05-31
  • 0.4.1-alpha.0 - 2019-05-27
  • 0.4.0 - 2019-05-07
  • 0.4.0-alpha.1 - 2019-04-05
  • 0.4.0-alpha.0 - 2019-03-22
  • 0.3.1 - 2019-02-14
  • 0.3.1-rc.0 - 2019-02-14
  • 0.3.0 - 2019-02-07
  • 0.3.0-alpha.2 - 2019-01-23
  • 0.3.0-alpha.1 - 2019-01-16
  • 0.3.0-alpha.0 - 2018-12-18
  • 0.2.2 - 2019-01-25
  • 0.2.1 - 2018-11-26
  • 0.2.0 - 2018-11-07
  • 0.2.0-register.2195 - 2018-10-09
  • 0.2.0-alpha.2 - 2018-11-05
  • 0.2.0-alpha.1 - 2018-10-26
  • 0.2.0-alpha.0 - 2018-10-10
  • 0.1.3 - 2018-09-03
from apollo-datasource GitHub release notes
Package name: apollo-datasource-rest
  • 0.14.0 - 2021-05-27
  • 0.14.0-alpha.0 - 2021-05-26
  • 0.13.0 - 2021-04-30
  • 0.13.0-alpha.2 - 2021-04-30
  • 0.13.0-alpha.1 - 2021-04-29
  • 0.13.0-alpha.0 - 2021-04-28
  • 0.12.1-unified2.1 - 2021-04-27
  • 0.12.1-unified2.0 - 2021-04-22
  • 0.12.1-unified.0 - 2021-04-22
  • 0.12.0 - 2021-04-14
  • 0.12.0-alpha.0 - 2021-04-09
  • 0.11.0 - 2021-03-26
  • 0.11.0-alpha.0 - 2021-03-22
  • 0.10.0 - 2021-02-09
  • 0.10.0-alpha.0 - 2021-02-09
  • 0.9.7 - 2021-01-14
  • 0.9.6 - 2020-12-22
  • 0.9.5 - 2020-10-30
  • 0.9.5-alpha.0 - 2020-10-19
  • 0.9.4 - 2020-09-22
  • 0.9.4-rc.0 - 2020-09-18
  • 0.9.3 - 2020-06-30
  • 0.9.2 - 2020-05-27
  • 0.9.2-alpha.1 - 2020-05-19
  • 0.9.2-alpha.0 - 2020-05-13
  • 0.9.1-alpha.0 - 2020-05-08
  • 0.9.0 - 2020-05-04
  • 0.9.0-alpha.1 - 2020-04-23
  • 0.9.0-alpha.0 - 2020-04-10
  • 0.8.1 - 2020-04-07
  • 0.8.1-alpha.5 - 2020-04-02
  • 0.8.1-alpha.4 - 2020-03-26
  • 0.8.1-alpha.3 - 2020-03-26
  • 0.8.1-alpha.1 - 2020-03-18
  • 0.8.0 - 2020-03-03
  • 0.8.0-alpha.1 - 2020-02-24
  • 0.7.0 - 2020-02-06
  • 0.6.11 - 2019-12-27
  • 0.6.10 - 2019-12-17
  • 0.6.9 - 2019-11-21
  • 0.6.8 - 2019-11-20
  • 0.6.7 - 2019-11-20
  • 0.6.6 - 2019-10-21
  • 0.6.5 - 2019-10-10
  • 0.6.4 - 2019-09-01
  • 0.6.3 - 2019-08-30
  • 0.6.2 - 2019-08-28
  • 0.6.1 - 2019-07-25
  • 0.6.0 - 2019-07-16
  • 0.5.2-alpha.13 - 2019-07-15
  • 0.5.2-alpha.0 - 2019-07-13
  • 0.5.1 - 2019-07-11
  • 0.5.1-alpha.0 - 2019-06-25
  • 0.5.0 - 2019-05-31
  • 0.4.1-alpha.6 - 2019-05-30
  • 0.4.1-alpha.5 - 2019-05-27
  • 0.4.1-alpha.4 - 2019-05-23
  • 0.4.1-alpha.0 - 2019-05-23
  • 0.4.0 - 2019-05-07
  • 0.4.0-rc.0 - 2019-04-30
  • 0.4.0-alpha.3 - 2019-04-14
  • 0.4.0-alpha.2 - 2019-04-05
  • 0.4.0-alpha.1 - 2019-04-05
  • 0.4.0-alpha.0 - 2019-03-22
  • 0.3.2 - 2019-02-21
  • 0.3.1 - 2019-02-14
  • 0.3.1-rc.0 - 2019-02-14
  • 0.3.0 - 2019-02-07
  • 0.3.0-alpha.3 - 2019-02-07
  • 0.3.0-alpha.2 - 2019-01-23
  • 0.3.0-alpha.1 - 2019-01-16
  • 0.3.0-alpha.0 - 2018-12-18
  • 0.2.2 - 2019-01-25
  • 0.2.1 - 2018-11-26
  • 0.2.0 - 2018-11-07
  • 0.2.0-register.2195 - 2018-10-09
  • 0.2.0-alpha.2 - 2018-11-05
  • 0.2.0-alpha.1 - 2018-10-26
  • 0.2.0-alpha.0 - 2018-10-10
  • 0.1.5 - 2018-09-03
from apollo-datasource-rest GitHub release notes
Package name: apollo-server
  • 2.25.2 - 2021-06-22
  • 2.25.1 - 2021-06-08
  • 2.25.0 - 2021-05-27
  • 2.25.0-alpha.1 - 2021-05-27
  • 2.25.0-alpha.0 - 2021-05-26
  • 2.24.1 - 2021-05-18
  • 2.24.0 - 2021-04-30
  • 2.24.0-alpha.2 - 2021-04-30
  • 2.24.0-alpha.1 - 2021-04-29
  • 2.24.0-alpha.0 - 2021-04-28
  • 2.23.1-unified2.3 - 2021-04-27
  • 2.23.1-unified2.2 - 2021-04-27
  • 2.23.1-unified2.1 - 2021-04-23
  • 2.23.1-unified2.0 - 2021-04-22
  • 2.23.1-unified.2 - 2021-04-22
  • 2.23.1-unified.0 - 2021-04-22
  • 2.23.0 - 2021-04-14
  • 2.23.0-alpha.1 - 2021-04-09
  • 2.23.0-alpha.0 - 2021-04-09
  • 2.22.2 - 2021-03-29
  • 2.22.2-alpha.0 - 2021-03-29
  • 2.22.1 - 2021-03-26
  • 2.22.0 - 2021-03-26
  • 2.22.0-alpha.0 - 2021-03-22
  • 2.21.2 - 2021-03-18
  • 2.21.2-alpha.0 - 2021-03-16
  • 2.21.1 - 2021-03-08
  • 2.21.1-alpha.0 - 2021-03-06
  • 2.21.0 - 2021-02-12
  • 2.21.0-alpha.2 - 2021-02-11
  • 2.21.0-alpha.1 - 2021-02-11
  • 2.21.0-alpha.0 - 2021-02-11
  • 2.20.0 - 2021-02-09
  • 2.20.0-alpha.0 - 2021-02-09
  • 2.19.2 - 2021-01-14
  • 2.19.1 - 2020-12-22
  • 2.19.0 - 2020-10-30
  • 2.19.0-alpha.1 - 2020-10-19
  • 2.19.0-alpha.0 - 2020-10-05
  • 2.18.2 - 2020-10-05
  • 2.18.1 - 2020-09-24
  • 2.18.0 - 2020-09-22
  • 2.18.0-rc.1 - 2020-09-21
  • 2.18.0-rc.0 - 2020-09-18
  • 2.17.1-alpha.0 - 2020-09-03
  • 2.17.0 - 2020-08-27
  • 2.16.1 - 2020-07-27
  • 2.16.0 - 2020-07-17
  • 2.15.1 - 2020-06-30
  • 2.15.0 - 2020-06-17
from apollo-server GitHub release notes
Package name: apollo-server-testing
  • 2.25.2 - 2021-06-22
  • 2.25.1 - 2021-06-08
  • 2.25.0 - 2021-05-27
  • 2.25.0-alpha.1 - 2021-05-27
  • 2.25.0-alpha.0 - 2021-05-26
  • 2.24.1 - 2021-05-18
  • 2.24.0 - 2021-04-30
  • 2.24.0-alpha.2 - 2021-04-30
  • 2.24.0-alpha.1 - 2021-04-29
  • 2.24.0-alpha.0 - 2021-04-28
  • 2.23.1-unified2.3 - 2021-04-27
  • 2.23.1-unified2.2 - 2021-04-27
  • 2.23.1-unified2.1 - 2021-04-23
  • 2.23.1-unified2.0 - 2021-04-22
  • 2.23.1-unified.2 - 2021-04-22
  • 2.23.1-unified.0 - 2021-04-22
  • 2.23.0 - 2021-04-14
  • 2.23.0-alpha.1 - 2021-04-09
  • 2.23.0-alpha.0 - 2021-04-09
  • 2.22.2 - 2021-03-29
  • 2.22.2-alpha.0 - 2021-03-29
  • 2.22.1 - 2021-03-26
  • 2.22.0 - 2021-03-26
  • 2.22.0-alpha.0 - 2021-03-22
  • 2.21.2 - 2021-03-18
  • 2.21.2-alpha.0 - 2021-03-16
  • 2.21.1 - 2021-03-08
  • 2.21.1-alpha.0 - 2021-03-06
  • 2.21.0 - 2021-02-12
  • 2.21.0-alpha.2 - 2021-02-11
  • 2.21.0-alpha.1 - 2021-02-11
  • 2.21.0-alpha.0 - 2021-02-11
  • 2.20.0 - 2021-02-09
  • 2.20.0-alpha.0 - 2021-02-09
  • 2.19.2 - 2021-01-14
  • 2.19.1 - 2020-12-22
  • 2.19.0 - 2020-10-30
  • 2.19.0-alpha.1 - 2020-10-19
  • 2.19.0-alpha.0 - 2020-10-05
  • 2.18.2 - 2020-10-05
  • 2.18.1 - 2020-09-24
  • 2.18.0 - 2020-09-22
  • 2.18.0-rc.1 - 2020-09-21
  • 2.18.0-rc.0 - 2020-09-18
  • 2.17.1-alpha.0 - 2020-09-03
  • 2.17.0 - 2020-08-27
  • 2.16.1 - 2020-07-27
  • 2.16.0 - 2020-07-17
  • 2.15.1 - 2020-06-30
  • 2.15.0 - 2020-06-17
from apollo-server-testing GitHub release notes
Commit messages
Package name: apollo-datasource
  • f2349d0 Release
  • 984d7e3 Follow-up to #4995: also update node-fetch in apollo-server-env
  • 4e5f03e Release
  • 90553fb chore(deps): update dependency @ apollographql/apollo-tools to v0.5.0 (#5144)
  • 56f17b9 chore(deps): update dependency node-fetch to v2.6.1 (#4995)
  • 2727556 Release
  • 68c30e1 better version of not requiring Long
  • 6d3be40 protobufjs that doesn't generate Long import in .t.ds
  • 3415b07 Release
  • ddbfae2 changelog
  • 8ce26dd apollo-server-core: unified Studio reporting (#4142)
  • 78304ec chore(deps): update dependency apollo-graphql to v0.9.2 (#5132)
  • a23513e chore(deps): update dependency @ apollographql/apollo-tools to v0.4.14 (#5131)
  • 1a14f87 Fix indentation in unions-interfaces.md (#5128)
  • 855dfec chore(deps): update dependency ioredis to v4.27.1 (#5127)
  • f53ab5a chore(deps): update dependency apollo-graphql to v0.9.0 (#5124)
  • 746d772 chore(deps): update dependency @ apollographql/apollo-tools to v0.4.12 (#5123)
  • da1ed9f Update DEVELOPMENT.md
  • 0aa0e4b CI: new job which fails if a file contains FIXME (#5121)
  • 9a46598 chore(deps): update dependency react-dom to v17.0.2 (#5068)
  • f80ec88 chore(deps): update dependency form-data to v4 (#4941)
  • b48de2e chore(deps): update dependency react to v17.0.2 (#5067)
  • ad7f807 chore(deps): update dependency gatsby to v2.32.12 (#5102)
  • 4678898 chore(deps): update oss orb to v0.0.17 (#5116)

Compare

Package name: apollo-datasource-rest
  • 42983b0 Release
  • 19572d7 Release
  • 6396938 Remove deprecation warning
  • c8c0748 Release
  • 300fabb CHANGELOG for v2.25.0
  • 909bb3f Allow specifying graph refs instead of ID/variant (#5241)
  • 9267a79 Add direnv/nvm config files (#5240)
  • cd779db Deprecate apollo-server-testing; allow ASTs for executeOperation (#5238)
  • df92f39 docs: replace spectrum with community forum (#5228)
  • 892f359 docs: encourage setting APOLLO_GRAPH_ID (#5226)
  • d6b1bd4 apollo-server-core: Add fetcher option to schema and usage reporting (#5179)
  • 087862f CHANGELOG for #5222
  • a43c411 Fix bug in schemaReporter.ts where stop() called while sendOneReportAndScheduleNext() is suspended would still result in setTimeout() being called. (#5222)
  • 9e1bf7d Release
  • 61fb405 CHANGELOG for v2.24.1
  • 0242e1b chore(deps): update dependency gatsby-theme-apollo-docs to v4.7.4 (#5208)
  • 6d671c4 Merge pull request #5169 from apollographql/sb/service-subgraph
  • ccc4285 chore(deps): update dependency gatsby to v2.32.13 (#5196)
  • 4ec316b chore(deps): update dependency codecov to v3.8.2 (#5198)
  • 8c0bc8d chore(deps): update dependency ioredis to v4.27.2 (#5199)
  • 28a1e9c chore(deps): update dependency ts-jest to v26.5.6 (#5200)
  • 7726fc5 chore(deps): update oss orb to v0.0.19 (#5201)
  • 0b7ad9d chore(deps): update dependency @ josephg/resolvable to v1.0.1 (#5197)
  • 7c4f815 chore(deps): update dependency prettier to v2.3.0 (#5203)

Compare

Package name: apollo-server
  • 70a4312 Release
  • e719b78 CHANGELOG: 2.25.2
  • dc8693f Update Express types files, allow further upgrades (#5352)
  • 6b9c2a0 docs: correct link to GraphQLResolveInfo details (#5332)
  • 78ab403 Renovate: note disallowed major version bumps
  • c7bb352 Renovate: disable circleci manager
  • e9dcbbd Merge pull request #5312 from apollographql/sb/gcp-edits
  • b0a8a09 Edit pass on Google Cloud Functions docs
  • c929290 Merge pull request #5185 from ginglis13/gcp-functions-docs
  • eecaa31 Renovate: allow automerge
  • 8175573 Followup: actually tell renovate to use release-3.0 instead of just commenting, and use default schedule
  • 0f9ead5 Follow-up: leave @ types/node around at 12.x, fix typo
  • ba3fdca Renovate: start running against release-3.0
  • eed8a92 Merge pull request #5301 from apollographql/sb/add-sandbox
  • ab0fbfd Restore note about enabling introspection
  • 4316ce5 Improve Sandbox screenshot
  • 503600e Keep subscriptions article on GraphQL playground temporarily
  • 2523a61 add new community datasource (#5299)
  • 1fcd4e6 Changes for release of Sandbox
  • bbcedd9 Update CHANGELOG now that ws@5.2.3 is out
  • f47c11d Release
  • 1255e06 CHANGELOG for v2.25.1
  • 8d1179e Avoid ws CVE-2021-32640 (#5285)
  • 3e81b39 VSCode tasks: split screen tsc and shell

Compare

Package name: apollo-server-testing
  • 70a4312 Release
  • e719b78 CHANGELOG: 2.25.2
  • dc8693f Update Express types files, allow further upgrades (#5352)
  • 6b9c2a0 docs: correct link to GraphQLResolveInfo details (#5332)
  • 78ab403 Renovate: note disallowed major version bumps
  • c7bb352 Renovate: disable circleci manager
  • e9dcbbd Merge pull request #5312 from apollographql/sb/gcp-edits
  • b0a8a09 Edit pass on Google Cloud Functions docs
  • c929290 Merge pull request #5185 from ginglis13/gcp-functions-docs
  • eecaa31 Renovate: allow automerge
  • 8175573 Followup: actually tell renovate to use release-3.0 instead of just commenting, and use default schedule
  • 0f9ead5 Follow-up: leave @ types/node around at 12.x, fix typo
  • ba3fdca Renovate: start running against release-3.0
  • eed8a92 Merge pull request #5301 from apollographql/sb/add-sandbox
  • ab0fbfd Restore note about enabling introspection
  • 4316ce5 Improve Sandbox screenshot
  • 503600e Keep subscriptions article on GraphQL playground temporarily
  • 2523a61 add new community datasource (#5299)
  • 1fcd4e6 Changes for release of Sandbox
  • bbcedd9 Update CHANGELOG now that ws@5.2.3 is out
  • f47c11d Release
  • 1255e06 CHANGELOG for v2.25.1
  • 8d1179e Avoid ws CVE-2021-32640 (#5285)
  • 3e81b39 VSCode tasks: split screen tsc and shell

Compare


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs

Snyk has created this PR to upgrade:
  - apollo-datasource from 0.1.3 to 0.9.0.
    See this package in npm: https://www.npmjs.com/package/apollo-datasource
  - apollo-datasource-rest from 0.1.5 to 0.14.0.
    See this package in npm: https://www.npmjs.com/package/apollo-datasource-rest
  - apollo-server from 2.15.0 to 2.25.2.
    See this package in npm: https://www.npmjs.com/package/apollo-server
  - apollo-server-testing from 2.15.0 to 2.25.2.
    See this package in npm: https://www.npmjs.com/package/apollo-server-testing

See this project in Snyk:
https://app.snyk.io/org/upperlefty/project/aea70dbb-3b13-4d2a-8916-8894be756369?utm_source=github&utm_medium=referral&page=upgrade-pr
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant

0