Skip to content
New issue

Have a question about this project? # for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “#”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? # to your account

chore(deps): bump parse-server from 4.5.0 to 5.4.0 #400

Closed

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Nov 21, 2022

Bumps parse-server from 4.5.0 to 5.4.0.

Release notes

Sourced from parse-server's releases.

5.4.0

5.4.0 (2022-11-19)

Bug Fixes

  • GraphQL query ignores condition equalTo with value false (#8032) (7f5a15d)
  • Internal indices for classes _Idempotency and _Role are not protected in defined schema (#8121) (c16f529)
  • LiveQuery with containedIn not working when object field is an array (#8128) (1d9605b)
  • Push notifications badge doesn't update with Installation beforeSave trigger (#8162) (3c75c2b)
  • Query aggregation pipeline cannot handle value of type Date when directAccess: true (#8167) (e424137)
  • Relation constraints in compound queries Parse.Query.or, Parse.Query.and not working (#8203) (28f0d26)
  • Security upgrade undici from 5.6.0 to 5.8.0 (#8108) (4aa016b)
  • Sorting by non-existing value throws INVALID_SERVER_ERROR on Postgres (#8157) (3b775a1)
  • Updating object includes unchanged keys in client response for certain key types (#8159) (37af1d7)

Features

  • Add convenience access to Parse Server configuration in Cloud Code via Parse.Server (#8244) (9f11115)
  • Add option to change the default value of the Parse.Query.limit() constraint (#8152) (0388956)
  • Add support for MongoDB 6 (#8242) (aba0081)
  • Add support for Postgres 15 (#8215) (2feb6c4)
  • LiveQuery support for unsorted distance queries (#8221) (0f763da)

5.4.0-beta.1

5.4.0-beta.1 (2022-10-29)

Bug Fixes

  • graphQL query ignores condition equalTo with value false (#8032) (7f5a15d)
  • internal indices for classes _Idempotency and _Role are not protected in defined schema (#8121) (c16f529)
  • liveQuery with containedIn not working when object field is an array (#8128) (1d9605b)
  • push notifications badge doesn't update with Installation beforeSave trigger (#8162) (3c75c2b)
  • query aggregation pipeline cannot handle value of type Date when directAccess: true (#8167) (e424137)
  • relation constraints in compound queries Parse.Query.or, Parse.Query.and not working (#8203) (28f0d26)
  • security upgrade undici from 5.6.0 to 5.8.0 (#8108) (4aa016b)
  • sorting by non-existing value throws INVALID_SERVER_ERROR on Postgres (#8157) (3b775a1)
  • updating object includes unchanged keys in client response for certain key types (#8159) (37af1d7)

Features

  • add convenience access to Parse Server configuration in Cloud Code via Parse.Server (#8244) (9f11115)
  • add option to change the default value of the Parse.Query.limit() constraint (#8152) (0388956)
  • add support for MongoDB 6 (#8242) (aba0081)
  • add support for Postgres 15 (#8215) (2feb6c4)
  • liveQuery support for unsorted distance queries (#8221) (0f763da)

... (truncated)

Commits
  • 9b34b02 chore(release): 5.4.0 [skip ci]
  • e373f09 build: Release (#8324)
  • a9a9772 Merge branch 'release' into beta
  • 735669a refactor: Prototype pollution via Cloud Code Webhooks; fixes security vulnera...
  • fd8a11b chore(release): 5.3.3 [skip ci]
  • 60c5a73 fix: Prototype pollution via Cloud Code Webhooks; fixes security vulnerabilit...
  • 3e983c4 chore(release): 5.3.2 [skip ci]
  • d9c3c02 refactor: Parse Server option requestKeywordDenylist can be bypassed via Cl...
  • 6728da1 fix: Parse Server option requestKeywordDenylist can be bypassed via Cloud C...
  • 46dbecd refactor: Remote code execution via MongoDB BSON parser through prototype pol...
  • Additional commits viewable in compare view
Maintainer changes

This version was pushed to npm by parseadmin, a new releaser for parse-server since your current version.


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [parse-server](https://github.com/parse-community/parse-server) from 4.5.0 to 5.4.0.
- [Release notes](https://github.com/parse-community/parse-server/releases)
- [Changelog](https://github.com/parse-community/parse-server/blob/alpha/CHANGELOG.md)
- [Commits](parse-community/parse-server@4.5.0...5.4.0)

---
updated-dependencies:
- dependency-name: parse-server
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added the dependencies Pull requests that update a dependency file label Nov 21, 2022
@nx-cloud
Copy link

nx-cloud bot commented Nov 21, 2022

☁️ Nx Cloud Report

We didn't find any information for the current pull request with the commit 343867c.
You might need to set the 'NX_BRANCH' environment variable in your CI pipeline.

Check the Nx Cloud Github Integration documentation for more information.


Sent with 💌 from NxCloud.

@dependabot @github
Copy link
Contributor Author

dependabot bot commented on behalf of github Jan 31, 2023

Superseded by #408.

@dependabot dependabot bot closed this Jan 31, 2023
@dependabot dependabot bot deleted the dependabot/npm_and_yarn/parse-server-5.4.0 branch January 31, 2023 10:03
# for free to join this conversation on GitHub. Already have an account? # to comment
Labels
dependencies Pull requests that update a dependency file
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant