chore(deps): update dependency drizzle-orm to ^0.45.0 - autoclosed#5239
Closed
renovate[bot] wants to merge 1 commit intodevelopfrom
Closed
chore(deps): update dependency drizzle-orm to ^0.45.0 - autoclosed#5239renovate[bot] wants to merge 1 commit intodevelopfrom
renovate[bot] wants to merge 1 commit intodevelopfrom
Conversation
|
4a4eee2 to
ddfd38d
Compare
ddfd38d to
3cbcea2
Compare
3cbcea2 to
5663107
Compare
5663107 to
3707cac
Compare
3707cac to
1b1bd5f
Compare
1b1bd5f to
de6697a
Compare
de6697a to
ce1056b
Compare
ce1056b to
eca52d5
Compare
eca52d5 to
6502a63
Compare
ede6046 to
cc3a112
Compare
cc3a112 to
8758d36
Compare
8758d36 to
656f3c9
Compare
656f3c9 to
d68a3d3
Compare
d68a3d3 to
34f9e85
Compare
34f9e85 to
85ca6d4
Compare
85ca6d4 to
ec5f2d2
Compare
ec5f2d2 to
79977e5
Compare
79977e5 to
ead177d
Compare
ead177d to
5aa6f2e
Compare
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
^0.44.2→^0.45.0Release Notes
drizzle-team/drizzle-orm (drizzle-orm)
v0.45.2Compare Source
sql.identifier(),sql.as()escaping issues. Previously all the values passed to this functions were not properly escapedcausing a possible SQL Injection (CWE-89) vulnerability
Thanks to @EthanKim88, @0x90sh and @wgoodall01 for reaching out to us with a reproduction and suggested fix
v0.45.1Compare Source
require()(#5107)v0.45.0Compare Source
$onUpdatenot handlingSQLvalues (fixes #2388, tests implemented by L-Mario564 in #2911)pgmappers not handlingDateinstances inbun-sql:postgresqldriver responses fordate,timestamptypes (fixes #4493)v0.44.7Compare Source
v0.44.6Compare Source
v0.44.5Compare Source
.one()indurable-sqlitesessionblobcolumnsblobcolumnsblobmappingv0.44.4Compare Source
v0.44.3Compare Source
$clientfor clients created by drizzle functionupdated_atcolumn to theneon_auth.users_synctable definition.Configuration
📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR was generated by Mend Renovate. View the repository job log.