Skip to content
New issue

Have a question about this project? # for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “#”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? # to your account

[Snyk] Upgrade @supabase/supabase-js from 2.38.2 to 2.45.4 #1065

Open
wants to merge 1 commit into
base: main
Choose a base branch
from

Conversation

ajile-in
Copy link
Contributor

@ajile-in ajile-in commented Nov 6, 2024

snyk-top-banner

Snyk has created this PR to upgrade @supabase/supabase-js from 2.38.2 to 2.45.4.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 40 versions ahead of your current version.

  • The recommended version was released on 2 months ago.

Issues fixed by the recommended upgrade:

Issue Score Exploit Maturity
high severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-ES5EXT-6095076
696 Proof of Concept
Release notes
Package name: @supabase/supabase-js
  • 2.45.4 - 2024-09-10

    2.45.4 (2024-09-10)

    Bug Fixes

    • bump postgrest-js to v1.16.1 (96caa1d)
  • 2.45.3 - 2024-08-30

    2.45.3 (2024-08-30)

    Bug Fixes

    • deps-dev: bump webpack from 5.82.1 to 5.94.0 (#1264) (2153874)
  • 2.45.2 - 2024-08-23

    2.45.2 (2024-08-23)

    Bug Fixes

  • 2.45.1 - 2024-08-06

    2.45.1 (2024-08-06)

    Bug Fixes

    • Allow passing a custom lock function to supabase client (5f37e69)
  • 2.45.0 - 2024-07-29

    2.45.0 (2024-07-29)

    Features

  • 2.44.4 - 2024-07-15

    2.44.4 (2024-07-15)

    Bug Fixes

  • 2.44.3 - 2024-07-08

    2.44.3 (2024-07-08)

    Bug Fixes

    • imports not working w/ Metro bundler (564df44)
  • 2.44.2 - 2024-06-28

    2.44.2 (2024-06-28)

    Bug Fixes

  • 2.44.1 - 2024-06-27

    2.44.1 (2024-06-27)

    Bug Fixes

    • postgrest-js esm typings (5d92d48)
  • 2.44.0 - 2024-06-25

    2.44.0 (2024-06-25)

    Features

  • 2.43.6 - 2024-06-25
  • 2.43.5 - 2024-06-16
  • 2.43.4 - 2024-05-23
  • 2.43.3 - 2024-05-22
  • 2.43.2 - 2024-05-15
  • 2.43.1 - 2024-05-03
  • 2.43.0 - 2024-05-01
  • 2.42.7 - 2024-04-25
  • 2.42.6 - 2024-04-25
  • 2.42.5 - 2024-04-18
  • 2.42.4 - 2024-04-15
  • 2.42.3 - 2024-04-12
  • 2.42.2 - 2024-04-12
  • 2.42.1 - 2024-04-11
  • 2.42.0 - 2024-04-03
  • 2.41.1 - 2024-03-28
  • 2.41.0 - 2024-03-28
  • 2.40.0 - 2024-03-25
  • 2.39.8 - 2024-03-12
  • 2.39.7 - 2024-02-19
  • 2.39.6 - 2024-02-14
  • 2.39.5 - 2024-02-14
  • 2.39.4 - 2024-02-13
  • 2.39.3 - 2024-01-11
  • 2.39.2 - 2024-01-02
  • 2.39.1 - 2023-12-18
  • 2.39.0 - 2023-11-28
  • 2.38.5 - 2023-11-20
  • 2.38.4 - 2023-10-26
  • 2.38.3 - 2023-10-24
  • 2.38.2 - 2023-10-19
from @supabase/supabase-js GitHub release notes

Important

  • Check the changes in this PR to ensure they won't cause issues with your project.
  • This PR was automatically created by Snyk using the credentials of a real user.
  • Max score is 1000. Note that the real score may have changed since the PR was raised.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

Snyk has created this PR to upgrade @supabase/supabase-js from 2.38.2 to 2.45.4.

See this package in npm:
@supabase/supabase-js

See this project in Snyk:
https://app.snyk.io/org/ajile-in/project/892c7fb7-c901-4398-99bf-2724ed833596?utm_source=github&utm_medium=referral&page=upgrade-pr
Copy link

sonarqubecloud bot commented Nov 6, 2024

# for free to join this conversation on GitHub. Already have an account? # to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants