Skip to content
New issue

Have a question about this project? # for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “#”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? # to your account

[Snyk] Upgrade @supabase/supabase-js from 2.43.4 to 2.48.0 #186

Open
wants to merge 1 commit into
base: main
Choose a base branch
from

Conversation

josetutis
Copy link
Collaborator

snyk-top-banner

Snyk has created this PR to upgrade @supabase/supabase-js from 2.43.4 to 2.48.0.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 44 versions ahead of your current version.

  • The recommended version was released 24 days ago.

Issues fixed by the recommended upgrade:

Issue Score Exploit Maturity
high severity Denial of Service (DoS)
SNYK-JS-WS-7266574
696 Proof of Concept
Release notes
Package name: @supabase/supabase-js
  • 2.48.0 - 2025-01-20

    2.48.0 (2025-01-20)

    Features

    • deps: bump postgrest-js to 1.18.0 (4397e57)
  • 2.47.16 - 2025-01-17

    2.47.16 (2025-01-17)

    Bug Fixes

    • 🐛 Fix nullish coalescing operator issue in hasCustomAuthorizationHeader (e8cffda), closes #1338
  • 2.47.15 - 2025-01-16

    2.47.15 (2025-01-16)

    Bug Fixes

    • Make the return value of accessToken nullable (f8e48ff)
  • 2.47.14 - 2025-01-15

    2.47.14 (2025-01-15)

    Bug Fixes

    • bump postgrest-js to 1.17.11 (6822cdc)
  • 2.47.13 - 2025-01-14

    2.47.13 (2025-01-14)

    Bug Fixes

    • export PostgrestError as a class (7ba8408)
  • 2.47.12 - 2025-01-08

    2.47.12 (2025-01-08)

    Bug Fixes

    • Bump postgrest-js to 1.17.10 (80d3c76)
  • 2.47.11 - 2025-01-07

    2.47.11 (2025-01-07)

    NOTE: This release makes typings stricter which may break existing code.

    Example code which was previously working:

    await supabase
      .from('mytable')
      .select()
      .eq('myenumcolumn', 'not_a_valid_enum_variant')

    Bug Fixes

    • stricter typings when filtering with .eq(), .neq(), and .in() (e50a86e)
  • 2.47.10 - 2024-12-19

    2.47.10 (2024-12-19)

    Bug Fixes

    • bump functions-js to 2.4.4 (0f7434a)
  • 2.47.9 - 2024-12-18

    2.47.9 (2024-12-18)

    Bug Fixes

  • 2.47.8 - 2024-12-16

    2.47.8 (2024-12-16)

    Bug Fixes

    Fixes a number of typing issues. More details at https://github.com/orgs/supabase/discussions/30324

  • 2.47.7 - 2024-12-13
  • 2.47.6 - 2024-12-12
  • 2.47.5 - 2024-12-11
  • 2.47.4 - 2024-12-11
  • 2.47.4-rc.1 - 2024-12-11
  • 2.47.3 - 2024-12-09
  • 2.47.2 - 2024-12-06
  • 2.47.1 - 2024-12-05
  • 2.47.0 - 2024-12-05
  • 2.46.2 - 2024-11-27
  • 2.46.2-rc.3 - 2024-11-13
  • 2.46.2-rc.2 - 2024-11-13
  • 2.46.2-rc.1 - 2024-11-06
  • 2.46.1 - 2024-10-30
  • 2.46.0 - 2024-10-29
  • 2.46.0-rc.5 - 2024-10-29
  • 2.46.0-rc.4 - 2024-10-28
  • 2.46.0-rc.3 - 2024-10-28
  • 2.46.0-rc.2 - 2024-10-18
  • 2.46.0-rc.1 - 2024-10-18
  • 2.45.6 - 2024-10-19
  • 2.45.5 - 2024-10-18
  • 2.45.4 - 2024-09-10
  • 2.45.3 - 2024-08-30
  • 2.45.2 - 2024-08-23
  • 2.45.1 - 2024-08-06
  • 2.45.0 - 2024-07-29
  • 2.44.4 - 2024-07-15
  • 2.44.3 - 2024-07-08
  • 2.44.2 - 2024-06-28
  • 2.44.1 - 2024-06-27
  • 2.44.0 - 2024-06-25
  • 2.43.6 - 2024-06-25
  • 2.43.5 - 2024-06-16
  • 2.43.4 - 2024-05-23
from @supabase/supabase-js GitHub release notes

Important

  • Check the changes in this PR to ensure they won't cause issues with your project.
  • This PR was automatically created by Snyk using the credentials of a real user.
  • Max score is 1000. Note that the real score may have changed since the PR was raised.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

Snyk has created this PR to upgrade @supabase/supabase-js from 2.43.4 to 2.48.0.

See this package in npm:
@supabase/supabase-js

See this project in Snyk:
https://app.snyk.io/org/josetutis/project/3c402998-992a-4249-ae7b-830abf69abcf?utm_source=github&utm_medium=referral&page=upgrade-pr
Copy link

vercel bot commented Feb 13, 2025

The latest updates on your projects. Learn more about Vercel for Git ↗︎

Name Status Preview Comments Updated (UTC)
final-project-khc ✅ Ready (Inspect) Visit Preview 💬 Add feedback Feb 13, 2025 3:38am

# for free to join this conversation on GitHub. Already have an account? # to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants