[Snyk] Upgrade reflect-metadata from 0.1.14 to 0.2.1 #1281

Closed
opened 2026-04-05 16:26:34 +02:00 by MrUnknownDE · 0 comments
Owner

Originally created by @simlarsen on 1/10/2024

This PR was automatically created by Snyk using the credentials of a real user.


Snyk has created this PR to upgrade reflect-metadata from 0.1.14 to 0.2.1.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 3 versions ahead of your current version.
  • The recommended version was released a month ago, on 2023-12-14.
Release notes
Package name: reflect-metadata from reflect-metadata GitHub release notes
Commit messages
Package name: reflect-metadata
  • 5c2589f 0.2.1
  • 1e66739 Fix stack overflow crash in isProviderFor
  • 68fd019 Merge pull request #149 from rbuckton/lite-mode-no-dynamic-eval
  • 85d168f Remove dynamic execution from lite-mode
  • 893db5d Drop prerelease from version
  • 6ef3aed Merge pull request #144 from rbuckton/lite-mode
  • 7391602 Merge branch 'main' into lite-mode
  • f16259f Update ci.yml
  • 4e604aa Create ci.yml
  • ad6f84b Mark as prerelease for testing purposes
  • b53ea48 Fix fallback handling, better tests, remove process.env reference
  • 31dde5f Add shared registry for use when multiple versions are loaded
  • 6227ddf drop dual CJS/ESM implementation
  • 977503c /no-conflict only defers to global Reflect if it hasn't already been used
  • bdab024 package.json cleanup
  • 83fc28b Add fallback to no-conflict version
  • 359e1f6 Fix Set.entries()
  • 39dda64 Fix Set.entries()
  • aa18f01 Use SameValueZero in Map polyfill
  • 63083c4 Bump patch version
  • c8c06cc Bypass webpack process.env inlining

Compare


Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs

*Originally created by @simlarsen on 1/10/2024* <p>This PR was automatically created by Snyk using the credentials of a real user.</p><br /><h3>Snyk has created this PR to upgrade reflect-metadata from 0.1.14 to 0.2.1.</h3> :information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project. <hr/> - The recommended version is **3 versions** ahead of your current version. - The recommended version was released **a month ago**, on 2023-12-14. <details> <summary><b>Release notes</b></summary> <br/> <details> <summary>Package name: <b>reflect-metadata</b></summary> <ul> <li> <b>0.2.1</b> - <a href="https://snyk.io/redirect/github/rbuckton/reflect-metadata/releases/tag/v0.2.1">2023-12-14</a></br><h2>What's Changed</h2> <ul> <li>Fix stack overflow crash in isProviderFor by <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/rbuckton/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://snyk.io/redirect/github/rbuckton">@ rbuckton</a> in <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="2042278239" data-permission-text="Title is private" data-url="https://github.com/rbuckton/reflect-metadata/issues/155" data-hovercard-type="pull_request" data-hovercard-url="/rbuckton/reflect-metadata/pull/155/hovercard" href="https://snyk.io/redirect/github/rbuckton/reflect-metadata/pull/155">#155</a></li> <li>Update main to v0.2.1 by <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/rbuckton/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://snyk.io/redirect/github/rbuckton">@ rbuckton</a> in <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="2042288748" data-permission-text="Title is private" data-url="https://github.com/rbuckton/reflect-metadata/issues/156" data-hovercard-type="pull_request" data-hovercard-url="/rbuckton/reflect-metadata/pull/156/hovercard" href="https://snyk.io/redirect/github/rbuckton/reflect-metadata/pull/156">#156</a></li> </ul> <p><strong>Full Changelog</strong>: <a class="commit-link" href="https://snyk.io/redirect/github/rbuckton/reflect-metadata/compare/v0.2.0...v0.2.1"><tt>v0.2.0...v0.2.1</tt></a></p> </li> <li> <b>0.2.0</b> - <a href="https://snyk.io/redirect/github/rbuckton/reflect-metadata/releases/tag/v0.2.0">2023-12-13</a></br><h2>What's Changed</h2> <ul> <li>Add /lite and /no-conflict exports by <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/rbuckton/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://snyk.io/redirect/github/rbuckton">@ rbuckton</a> in <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="2031646367" data-permission-text="Title is private" data-url="https://github.com/rbuckton/reflect-metadata/issues/144" data-hovercard-type="pull_request" data-hovercard-url="/rbuckton/reflect-metadata/pull/144/hovercard" href="https://snyk.io/redirect/github/rbuckton/reflect-metadata/pull/144">#144</a></li> <li>No dynamic evaluation in <code>/lite</code> mode by <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/rbuckton/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://snyk.io/redirect/github/rbuckton">@ rbuckton</a> in <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="2040307031" data-permission-text="Title is private" data-url="https://github.com/rbuckton/reflect-metadata/issues/149" data-hovercard-type="pull_request" data-hovercard-url="/rbuckton/reflect-metadata/pull/149/hovercard" href="https://snyk.io/redirect/github/rbuckton/reflect-metadata/pull/149">#149</a></li> </ul> <p><strong>Full Changelog</strong>: <a class="commit-link" href="https://snyk.io/redirect/github/rbuckton/reflect-metadata/compare/v0.1.14...v0.2.0"><tt>v0.1.14...v0.2.0</tt></a></p> </li> <li> <b>0.2.0-pre.0</b> - <a href="https://snyk.io/redirect/github/rbuckton/reflect-metadata/releases/tag/v0.2.0-pre.0">2023-12-13</a></br><h2>What's Changed</h2> <ul> <li>Add /lite and /no-conflict exports by <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/rbuckton/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://snyk.io/redirect/github/rbuckton">@ rbuckton</a> in <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="2031646367" data-permission-text="Title is private" data-url="https://github.com/rbuckton/reflect-metadata/issues/144" data-hovercard-type="pull_request" data-hovercard-url="/rbuckton/reflect-metadata/pull/144/hovercard" href="https://snyk.io/redirect/github/rbuckton/reflect-metadata/pull/144">#144</a></li> </ul> <p><strong>Full Changelog</strong>: <a class="commit-link" href="https://snyk.io/redirect/github/rbuckton/reflect-metadata/compare/v0.1.14...v0.2.0-pre.0"><tt>v0.1.14...v0.2.0-pre.0</tt></a></p> </li> <li> <b>0.1.14</b> - <a href="https://snyk.io/redirect/github/rbuckton/reflect-metadata/releases/tag/v0.1.14">2023-12-07</a></br><h2>What's Changed</h2> <ul> <li>Fix variable name by <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/amatiasq/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://snyk.io/redirect/github/amatiasq">@ amatiasq</a> in <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="445985230" data-permission-text="Title is private" data-url="https://github.com/rbuckton/reflect-metadata/issues/109" data-hovercard-type="pull_request" data-hovercard-url="/rbuckton/reflect-metadata/pull/109/hovercard" href="https://snyk.io/redirect/github/rbuckton/reflect-metadata/pull/109">#109</a></li> <li>Bypass webpack <code>process.env</code> inlining by <a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/rbuckton/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://snyk.io/redirect/github/rbuckton">@ rbuckton</a> in <a class="commit-link" data-hovercard-type="commit" data-hovercard-url="https://github.com/rbuckton/reflect-metadata/commit/c8c06ccdfc836ef8adfc8ade216dee9fd2046ecb/hovercard" href="https://snyk.io/redirect/github/rbuckton/reflect-metadata/commit/c8c06ccdfc836ef8adfc8ade216dee9fd2046ecb"><tt>c8c06cc</tt></a></li> </ul> <h2>New Contributors</h2> <ul> <li><a class="user-mention notranslate" data-hovercard-type="user" data-hovercard-url="/users/amatiasq/hovercard" data-octo-click="hovercard-link-click" data-octo-dimensions="link_type:self" href="https://snyk.io/redirect/github/amatiasq">@ amatiasq</a> made their first contribution in <a class="issue-link js-issue-link" data-error-text="Failed to load title" data-id="445985230" data-permission-text="Title is private" data-url="https://github.com/rbuckton/reflect-metadata/issues/109" data-hovercard-type="pull_request" data-hovercard-url="/rbuckton/reflect-metadata/pull/109/hovercard" href="https://snyk.io/redirect/github/rbuckton/reflect-metadata/pull/109">#109</a></li> </ul> <p><strong>Full Changelog</strong>: <a class="commit-link" href="https://snyk.io/redirect/github/rbuckton/reflect-metadata/compare/v0.1.13...v0.1.14"><tt>v0.1.13...v0.1.14</tt></a></p> </li> </ul> from <a href="https://snyk.io/redirect/github/rbuckton/reflect-metadata/releases">reflect-metadata GitHub release notes</a> </details> </details> <details> <summary><b>Commit messages</b></summary> </br> <details> <summary>Package name: <b>reflect-metadata</b></summary> <ul> <li><a href="https://snyk.io/redirect/github/rbuckton/reflect-metadata/commit/5c2589f4a99b5e52873f7868172bf72a5c017b37">5c2589f</a> 0.2.1</li> <li><a href="https://snyk.io/redirect/github/rbuckton/reflect-metadata/commit/1e66739f7d983ac8683da58e7a685593cc9efbee">1e66739</a> Fix stack overflow crash in isProviderFor</li> <li><a href="https://snyk.io/redirect/github/rbuckton/reflect-metadata/commit/68fd0199d3ddf0a23b530a841f1ab334cb83be0c">68fd019</a> Merge pull request #149 from rbuckton/lite-mode-no-dynamic-eval</li> <li><a href="https://snyk.io/redirect/github/rbuckton/reflect-metadata/commit/85d168f9f05976e2102bfaea062a66b412610ef8">85d168f</a> Remove dynamic execution from lite-mode</li> <li><a href="https://snyk.io/redirect/github/rbuckton/reflect-metadata/commit/893db5d4e352f3aee2e7988e8a56d0fa19d3dd89">893db5d</a> Drop prerelease from version</li> <li><a href="https://snyk.io/redirect/github/rbuckton/reflect-metadata/commit/6ef3aedf9c019f1e9ff8c1439c807b658a6f7f8f">6ef3aed</a> Merge pull request #144 from rbuckton/lite-mode</li> <li><a href="https://snyk.io/redirect/github/rbuckton/reflect-metadata/commit/7391602a08e708c068a0c5a10ff015b4add77fdf">7391602</a> Merge branch &#x27;main&#x27; into lite-mode</li> <li><a href="https://snyk.io/redirect/github/rbuckton/reflect-metadata/commit/f16259f895dbf1b78d3f0017866c8a887b7b402e">f16259f</a> Update ci.yml</li> <li><a href="https://snyk.io/redirect/github/rbuckton/reflect-metadata/commit/4e604aa2d5b899317f45ecc532c51a34122a6773">4e604aa</a> Create ci.yml</li> <li><a href="https://snyk.io/redirect/github/rbuckton/reflect-metadata/commit/ad6f84bd3e793a601f4652a98665bff23e064515">ad6f84b</a> Mark as prerelease for testing purposes</li> <li><a href="https://snyk.io/redirect/github/rbuckton/reflect-metadata/commit/b53ea48fa3c717dc0ce61275a5e3668d7741d874">b53ea48</a> Fix fallback handling, better tests, remove process.env reference</li> <li><a href="https://snyk.io/redirect/github/rbuckton/reflect-metadata/commit/31dde5fba00afaea8c08bc9f13b186c069879566">31dde5f</a> Add shared registry for use when multiple versions are loaded</li> <li><a href="https://snyk.io/redirect/github/rbuckton/reflect-metadata/commit/6227ddf59080ac402f46ca8cd0e29ba9f9a7184e">6227ddf</a> drop dual CJS/ESM implementation</li> <li><a href="https://snyk.io/redirect/github/rbuckton/reflect-metadata/commit/977503cedfd1ec4bce2e8e8a7defd40256c1f2c7">977503c</a> /no-conflict only defers to global Reflect if it hasn&#x27;t already been used</li> <li><a href="https://snyk.io/redirect/github/rbuckton/reflect-metadata/commit/bdab024135474851b88a2c32d183ec103e1890d2">bdab024</a> package.json cleanup</li> <li><a href="https://snyk.io/redirect/github/rbuckton/reflect-metadata/commit/83fc28b93cb9a72b92691c0bd9913057699fc595">83fc28b</a> Add fallback to no-conflict version</li> <li><a href="https://snyk.io/redirect/github/rbuckton/reflect-metadata/commit/359e1f66c37b38b475a07451aaef606591e7c5a2">359e1f6</a> Fix Set.entries()</li> <li><a href="https://snyk.io/redirect/github/rbuckton/reflect-metadata/commit/39dda64556901d8658d43bc309ca897b0f1287ae">39dda64</a> Fix Set.entries()</li> <li><a href="https://snyk.io/redirect/github/rbuckton/reflect-metadata/commit/aa18f01caa69b85fdadb3a4750eb2a8f16dd0add">aa18f01</a> Use SameValueZero in Map polyfill</li> <li><a href="https://snyk.io/redirect/github/rbuckton/reflect-metadata/commit/63083c44297ef6fb81b76c5ab027aeda8f08f278">63083c4</a> Bump patch version</li> <li><a href="https://snyk.io/redirect/github/rbuckton/reflect-metadata/commit/c8c06ccdfc836ef8adfc8ade216dee9fd2046ecb">c8c06cc</a> Bypass webpack process.env inlining</li> </ul> <a href="https://snyk.io/redirect/github/rbuckton/reflect-metadata/compare/e6bbe4f255186e06ab4f7704067bcd84f603c9ee...5c2589f4a99b5e52873f7868172bf72a5c017b37">Compare</a> </details> </details> <hr/> **Note:** *You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.* For more information: <img src="https://api.segment.io/v1/pixel/track?data=eyJ3cml0ZUtleSI6InJyWmxZcEdHY2RyTHZsb0lYd0dUcVg4WkFRTnNCOUEwIiwiYW5vbnltb3VzSWQiOiI1NDIyYjQ5Mi1jZWUzLTQ3NjAtOTMwMS02YTlmMjgwYzNkNTYiLCJldmVudCI6IlBSIHZpZXdlZCIsInByb3BlcnRpZXMiOnsicHJJZCI6IjU0MjJiNDkyLWNlZTMtNDc2MC05MzAxLTZhOWYyODBjM2Q1NiJ9fQ==" width="0" height="0"/> 🧐 [View latest project report](https://app.snyk.io/org/oneuptime-RsC2nshvQ2Vnr35jHvMnMP/project/f6446ec8-d441-487e-b58f-38373430e213?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr) 🛠 [Adjust upgrade PR settings](https://app.snyk.io/org/oneuptime-RsC2nshvQ2Vnr35jHvMnMP/project/f6446ec8-d441-487e-b58f-38373430e213/settings/integration?utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr) 🔕 [Ignore this dependency or unsubscribe from future upgrade PRs](https://app.snyk.io/org/oneuptime-RsC2nshvQ2Vnr35jHvMnMP/project/f6446ec8-d441-487e-b58f-38373430e213/settings/integration?pkg&#x3D;reflect-metadata&amp;utm_source&#x3D;github&amp;utm_medium&#x3D;referral&amp;page&#x3D;upgrade-pr#auto-dep-upgrades) <!--- (snyk:metadata:{"prId":"5422b492-cee3-4760-9301-6a9f280c3d56","prPublicId":"5422b492-cee3-4760-9301-6a9f280c3d56","dependencies":[{"name":"reflect-metadata","from":"0.1.14","to":"0.2.1"}],"packageManager":"npm","type":"auto","projectUrl":"https://app.snyk.io/org/oneuptime-RsC2nshvQ2Vnr35jHvMnMP/project/f6446ec8-d441-487e-b58f-38373430e213?utm_source=github&utm_medium=referral&page=upgrade-pr","projectPublicId":"f6446ec8-d441-487e-b58f-38373430e213","env":"prod","prType":"upgrade","vulns":[],"issuesToFix":[],"upgrade":[],"upgradeInfo":{"versionsDiff":3,"publishedDate":"2023-12-14T18:54:20.669Z"},"templateVariants":[],"hasFixes":false,"isMajorUpgrade":false,"isBreakingChange":false,"priorityScoreList":[]}) --->
Sign in to join this conversation.
No Label
1 Participants
Notifications
Due Date
No due date set.
Dependencies

No dependencies set.

Reference: github/oneuptime#1281