This repository was archived by the owner on Mar 13, 2025. It is now read-only.
[Snyk] Upgrade dynamoose from 2.3.0 to 2.8.2 #59
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Snyk has created this PR to upgrade dynamoose from 2.3.0 to 2.8.2.
ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
The recommended version fixes:
SNYK-JS-AWSSDK-1059424
Why? Proof of Concept exploit, CVSS 7.3
SNYK-JS-DYNAMOOSE-1070792
Why? Proof of Concept exploit, CVSS 7.3
(*) Note that the real score may have changed since the PR was raised.
Release notes
Package name: dynamoose
Version 2.8.2
This release fixes a few major bugs.
Please comment or contact me if you have any questions about this release.
Bug Fixes
waitForActive: true
Documentation
Scan.startAt
&Query.startAt
example in documentation\n
appeared in schema attribute type documentation appeared instead of new lineVersion 2.8.1
This release includes a few critical bug fixes.
Please comment or contact me if you have any questions about this release.
Bug Fixes
Index can't be found for query
error when querying table itselfVersion 2.8.0
This release contains general stability improvements to Dynamoose.
Please comment or contact me if you have any questions about this release.
General
returnValues
settings property forModel.update
waitForActive
model setting to be a booleanBug Fixes
using
methodsaveUnknown
properties when usingModel.update
Query.sort
method when using TypeScriptDocumentation
Version 2.7.3
This release moves internal Dynamoose object utilities to a different package.
Please comment or contact me if you have any questions about this release.
Other
Version 2.7.2
This release fixes a bug related to the return value of
document.save
andModel.create
, and more.Please comment or contact me if you have any questions about this release.
Bug Fixes
document.save
&Model.create
now return the document saved to DynamoDBnull
when passing in a invalid typenull
value as opposed to the previousobject
Other
Version 2.7.1
This release has a lot of bug fixes for Dynamoose.
Please comment or contact me if you have any questions about this release.
Bug Fixes
$DELETE
inModel.delete
Documentation
saveUnknown
more clear in documentationOther
undefined
into ConditionalVersion 2.7.0
This release patches a 🚨 security vulnerability 🚨.
Please comment or contact me if you have any questions about this release.
General
$DELETE
option forModel.update
Bug Fixes
update
setting being true for model with indexCommit messages
Package name: dynamoose
Compare
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.
For more information:
🧐 View latest project report
🛠 Adjust upgrade PR settings
🔕 Ignore this dependency or unsubscribe from future upgrade PRs