Skip to content

Conversation

@mend-for-github-com
Copy link

@mend-for-github-com mend-for-github-com bot commented Mar 26, 2025

This PR contains the following updates:

Package Change Age Adoption Passing Confidence
feathers-socketio ^1.4.1 -> ^2.0.0 age adoption passing confidence

By merging this PR, the issue #8 will be automatically resolved and closed:

Severity CVSS Score Vulnerability Reachability
Critical Critical 10.0 CVE-2022-2421

Reachable

High High 8.1 WS-2020-0443

Reachable

High High 7.5 CVE-2020-36048

Reachable

High High 7.5 CVE-2020-36049

Reachable

High High 7.5 WS-2017-0421

Reachable

High High 7.1 CVE-2022-41940

Reachable

Medium Medium 5.3 CVE-2020-28481

Reachable

Medium Medium 4.3 CVE-2017-20162

Reachable

Medium Medium 4.3 CVE-2017-20162

Reachable

Low Low 3.5 CVE-2017-20165

Reachable

Low Low 3.5 CVE-2017-20165

Reachable


Release Notes

feathersjs/feathers-socketio (feathers-socketio)

v2.0.0

Compare Source

Full Changelog

Closed issues:

  • An in-range update of feathers-hooks is breaking the build 🚨 #​74
  • An in-range update of debug is breaking the build 🚨 #​73
  • An in-range update of debug is breaking the build 🚨 #​71

Merged pull requests:

v1.6.0

Compare Source

Full Changelog

Closed issues:

  • Add headers and remote ip address to socket.feathers #​67

Merged pull requests:

v1.5.2

Compare Source

Full Changelog

Merged pull requests:

  • Server-side socketio typedef to allow import \* as syntax when importing #​65 (myknbani)

v1.5.1

Compare Source

Full Changelog

Closed issues:

  • Typescript definition bug #​63

Merged pull requests:

v1.5.0

Compare Source

Full Changelog

Merged pull requests:

v1.4.3

Compare Source

Full Changelog

Closed issues:

  • Get data after connection established #​59
  • Unable to use feathers from within React (Feathers vs SocketIO implementation setup issue) #​51

Merged pull requests:

v1.4.2

Compare Source

Full Changelog

Closed issues:

  • Upgrade to socket.io 1.4 #​39
  • Disable/restrict failed request queue? #​38
  • Uncaught (in promise) Error: Timeout of 5000ms exceeded calling sites::find(…) #​36
  • Regarding plain websockets #​34
  • Clean way to subscribe to a filtered set of events #​32
  • "Can't find variable: Reflect" on bad requests/authentication token missing; react-native #​31
  • Client should convert error objects to feathers-errors #​30

Merged pull requests:


  • If you want to rebase/retry this PR, check this box

@mend-for-github-com mend-for-github-com bot added the security fix Security fix generated by Mend label Mar 26, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

security fix Security fix generated by Mend

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant