Skip to content

Commit fd3dbef

Browse files
authored
Merge pull request #1774 from telefonicaid/dependabot/npm_and_yarn/mongoose-8.22.1
Bump mongoose from 8.9.5 to 8.22.1
2 parents 10b63ac + 40e9f7c commit fd3dbef

2 files changed

Lines changed: 2 additions & 1 deletion

File tree

CHANGES_NEXT_RELEASE

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -1 +1,2 @@
11
- Upgrade uuid dep from 8.3.2 to 14.0.0 due to CWE-787 CWE-1285
2+
- Upgrade mongoose from 8.9.5 to 8.22.1 due to CWE-74 CVE-2026-42334

package.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -52,7 +52,7 @@
5252
"logops": "2.1.2",
5353
"moment": "~2.29.2",
5454
"moment-timezone": "~0.5.34",
55-
"mongoose": "8.9.5",
55+
"mongoose": "8.22.1",
5656
"query-string": "7.1.1",
5757
"revalidator": "~0.3.1",
5858
"underscore": "~1.13.4",

0 commit comments

Comments
 (0)