[Snyk] Upgrade nodemailer from 6.9.13 to 7.0.6 #260
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Snyk has created this PR to upgrade nodemailer from 6.9.13 to 7.0.6.
ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
The recommended version is 12 versions ahead of your current version.
The recommended version was released a month ago.
Issues fixed by the recommended upgrade:
SNYK-JS-UNDICI-8641354
SNYK-JS-VITE-9512410
SNYK-JS-VITE-9653016
SNYK-JS-WS-7266574
SNYK-JS-CROSSSPAWN-8303230
SNYK-JS-MONGOOSE-8446504
SNYK-JS-MONGOOSE-8623536
SNYK-JS-NUXT-7640974
SNYK-JS-NUXT-9486043
SNYK-JS-NUXTDEVTOOLS-7640977
SNYK-JS-SUPABASEAUTHJS-10255365
SNYK-JS-VITE-8023174
SNYK-JS-VITE-8648411
SNYK-JS-VITE-9576207
SNYK-JS-VITE-9685035
SNYK-JS-VITE-9919777
SNYK-JS-VUETEMPLATECOMPILER-7554675
SNYK-JS-BABELHELPERS-9397697
SNYK-JS-BABELRUNTIME-10044504
SNYK-JS-KOA-10944994
SNYK-JS-MICROMATCH-6838728
SNYK-JS-NANOID-8492085
SNYK-JS-NANOID-8492085
SNYK-JS-NUXT-7640972
SNYK-JS-NUXTVITEBUILDER-8663232
SNYK-JS-PARSEGITCONFIG-9403763
SNYK-JS-PATHTOREGEXP-7925106
SNYK-JS-ROLLUP-8073097
SNYK-JS-SIRV-12558119
SNYK-JS-UNDICI-10176064
SNYK-JS-VITE-12558116
SNYK-JS-VITE-8022916
SNYK-JS-VUETEMPLATECOMPILER-8219888
SNYK-JS-BRACEEXPANSION-9789073
SNYK-JS-BRACEEXPANSION-9789073
SNYK-JS-DEVALUE-12205530
SNYK-JS-KOA-8720152
SNYK-JS-KOA-9679272
SNYK-JS-NUXT-12878602
SNYK-JS-SEND-7926862
SNYK-JS-SERVESTATIC-7926865
Release notes
Package name: nodemailer
-
7.0.6 - 2025-08-30
- encoder: avoid silent data loss by properly flushing trailing base64 (#1747) (01ae76f)
- handle multiple XOAUTH2 token requests correctly (#1754) (dbe0028)
- ReDoS vulnerability in parseDataURI and _processDataUrl (#1755) (90b3e24)
-
7.0.5 - 2025-07-07
- updated well known delivery service list (fa2724b)
-
7.0.4 - 2025-06-29
- pools: Emit 'clear' once transporter is idle and all connections are closed (839e286)
- smtp-connection: jsdoc public annotation for socket (#1741) (c45c84f)
- well-known-services: Added AliyunQiye (bb9e6da)
-
7.0.3 - 2025-05-08
- attachments: Set the default transfer encoding for message/rfc822 attachments as '7bit' (007d5f3)
-
7.0.2 - 2025-05-04
- ses: Fixed structured from header (faa9a5e)
-
7.0.1 - 2025-05-04
- ses: Use formatted FromEmailAddress for SES emails (821cd09)
-
7.0.0 - 2025-05-03
- SESv2 SDK support, removed older SES SDK v2 and v3 , removed SES rate limiting and idling features
- SESv2 SDK support, removed older SES SDK v2 and v3 , removed SES rate limiting and idling features (15db667)
-
6.10.1 - 2025-04-13
- close correct socket (a18062c)
-
6.10.0 - 2025-01-23
- services: add Seznam email service configuration (#1695) (d1ae0a8)
- proxy: Set error and timeout errors for proxied sockets (aa0c99c)
-
6.9.16 - 2024-10-28
- addressparser: Correctly detect if user local part is attached to domain part (f2096c5)
-
6.9.15 - 2024-09-03
-
6.9.14 - 2024-06-19
-
6.9.13 - 2024-03-20
from nodemailer GitHub release notes7.0.6 (2025-08-27)
Bug Fixes
7.0.5 (2025-07-07)
Bug Fixes
7.0.4 (2025-06-29)
Bug Fixes
7.0.3 (2025-05-08)
Bug Fixes
7.0.2 (2025-05-04)
Bug Fixes
7.0.1 (2025-05-04)
Bug Fixes
7.0.0 (2025-05-03)
⚠ BREAKING CHANGES
Features
6.10.1 (2025-02-06)
Bug Fixes
6.10.0 (2025-01-23)
Features
Bug Fixes
6.9.16 (2024-10-28)
Bug Fixes
Important
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.
For more information: