Skip to content

Bump mongoose from 9.6.3 to 9.8.1 - #366

Closed
dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/npm_and_yarn/mongoose-9.8.1
Closed

Bump mongoose from 9.6.3 to 9.8.1#366
dependabot[bot] wants to merge 1 commit into
masterfrom
dependabot/npm_and_yarn/mongoose-9.8.1

Bump mongoose from 9.6.3 to 9.8.1

105a1d1
Select commit
Loading
Failed to load commit list.
Codacy Production / Codacy Static Code Analysis required action Jul 28, 2026 in 0s

2 new security issues (0 max.).

Codacy Here is an overview of what got changed by this pull request:

Issues
======
+ Solved 2
- Added 2
           

See the complete overview on Codacy

Annotations

Check warning on line 22 in pnpm-lock.yaml

See this annotation in the file changed.

@codacy-production codacy-production / Codacy Static Code Analysis

pnpm-lock.yaml#L22

Insecure dependency npm/lodash@4.17.21 (CVE-2025-13465: lodash: prototype pollution in _.unset and _.omit functions) (update to 4.17.23)

Check warning on line 22 in pnpm-lock.yaml

See this annotation in the file changed.

@codacy-production codacy-production / Codacy Static Code Analysis

pnpm-lock.yaml#L22

Insecure dependency npm/lodash@4.17.21 (CVE-2026-2950: lodash: Lodash: Prototype pollution allows deletion of built-in prototype properties via array path bypass) (update to 4.18.0)