Skip to content

Conversation

@mend-for-github-com
Copy link

@mend-for-github-com mend-for-github-com bot commented Jul 26, 2024

This PR contains the following updates:

Package Change Age Adoption Passing Confidence
sqlite3 ^4.0.3 -> ^5.0.0 age adoption passing confidence

By merging this PR, the issue #15 will be automatically resolved and closed:

Severity CVSS Score Vulnerability Reachability
Critical Critical 9.8 CVE-2021-44906

Unreachable

Medium Medium 5.6 CVE-2020-7598

Unreachable

Low Low 3.1 CVE-2025-5889

Release Notes

TryGhost/node-sqlite3 (sqlite3)

v5.0.0

Compare Source

  • prebuilt: Node 14 support, dropped support for all version of Node < 10 #​1304
  • prebuilt: add electron 7.2 #​1324
  • napi: refactor codebase to use N-API instead of NAN (+ various improvements) #​1304
  • trace: don't require throw to add trace info for verbose #​1317
  • ci: remove permission setting #​1319

v4.2.0

Compare Source

  • electron: Electron v8, v8.1.x & v8.2.x #​1294 #​1308
  • sqlite3: update to 3.31.1 (3310100) #​1289
  • webpack: split sqlite3-binding.js out so that it could be override by webpack #​1268
  • sqlite3: enable 'SQLITE_ENABLE_DBSTAT_VTAB=1' #​1281
  • deps: remove request #​1287
  • deps: alternative update of node-gyp for electron (v1 - v4), windows #​1283
  • electron: fix dist url #​1282
  • docs: Added json1 support note #​1303

v4.1.1

Compare Source

  • Electron v6.1 and v7 support #​1237
  • Electron v7.1 support #​1254
  • SQLite3 update to 3.30.1 #​1238
  • Overwrite 'msbuild_toolset' only if 'toolset' is defined #​1242
  • Upgrade CI to node-gyp 6.x for Windows Electron v5 & v6 builds #​1245
  • Node v13 support #​1247
  • Use minimum supported node version for Electron 7 #​1255

v4.1.0

Compare Source

v4.0.9

Compare Source

  • ci: use trusty for ubuntu to create prebuilt binaries for node v12 to create lower requirements for libc

v4.0.8

Re-release of 4.0.7 but without the excess .vscode files.

v4.0.6

Compare Source

A re-release of the retracted v4.0.5 because of node-pre-gyp being unavailable.

v4.0.4

Compare Source


  • If you want to rebase/retry this PR, check this box

@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/sqlite3-5.x branch from a19e6e3 to fe3567e Compare July 26, 2024 19:00
@mend-for-github-com mend-for-github-com bot added the security fix Security fix generated by Mend label Jul 26, 2024
@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/sqlite3-5.x branch from fe3567e to c4cc70a Compare July 26, 2024 19:11
@mend-for-github-com mend-for-github-com bot removed the security fix Security fix generated by Mend label Jul 26, 2024
@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/sqlite3-5.x branch from c4cc70a to 92bc93c Compare July 29, 2024 01:51
@mend-for-github-com mend-for-github-com bot added the security fix Security fix generated by Mend label Jul 29, 2024
@mend-for-github-com mend-for-github-com bot removed the security fix Security fix generated by Mend label Jan 23, 2025
@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/sqlite3-5.x branch from 92bc93c to a2fec90 Compare January 23, 2025 19:27
@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/sqlite3-5.x branch from a2fec90 to 368b644 Compare February 4, 2025 19:22
@mend-for-github-com mend-for-github-com bot added the security fix Security fix generated by Mend label Feb 4, 2025
@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/sqlite3-5.x branch from 368b644 to cd0a45d Compare June 9, 2025 19:36
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

security fix Security fix generated by Mend

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant