Skip to content

Conversation

dependabot[bot]
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Aug 19, 2025

Bumps mongoose from 8.16.5 to 8.17.2.

Release notes

Sourced from mongoose's releases.

8.17.2 / 2025-08-18

  • fix: avoid Model.validate() hanging when all paths fail casting #15580 #15579 piotracalski
  • types(document): better support for flattenObjectIds and versionKey options for toObject() and toJSON() #15582 #15578
  • docs: fix docs jsdoc tags and add UUID to be listed #15585
  • docs(document): fix code sample that errors with "Cannot set properties of undefined" #15589

8.17.1 / 2025-08-07

  • fix(query): propagate read preference and read concern to populate if read() called after populate() #15567 #15553
  • fix(model): call correct function in autoSearchIndex #15569 #15565
  • fix(model): allow setting statics option on discriminator schema #15568 #15556
  • fix(model): remove unnecessary conversion of undefined -> null in findById #15566 #15551
  • types: allow passing in projections without as const #15564 #15557
  • types: support maxLength and minLength in SchemaTypeOptions #15570 #4720

8.17.0 / 2025-07-30

  • feat: upgrade mongodb -> 6.18.0 #15552
  • feat(mongoose): export base Connection and Collection classes #15548
  • feat: make Schema.prototype.$conditionalHandlers public #15497
  • types: automatically infer discriminator type #15547 #15535
  • types: make versionKey: false disable __v from hydrated document #15524 #15511
  • types: indicate support for mongodb abort #15549 GalacticHypernova
  • types: add options property to schemas #15524
  • types(schematype): make defaultOptions static and add schemaOptions to DocumentArray #15529 #15524
Changelog

Sourced from mongoose's changelog.

8.17.2 / 2025-08-18

  • fix: avoid Model.validate() hanging when all paths fail casting #15580 #15579 piotracalski
  • types(document): better support for flattenObjectIds and versionKey options for toObject() and toJSON() #15582 #15578
  • docs: fix docs jsdoc tags and add UUID to be listed #15585
  • docs(document): fix code sample that errors with "Cannot set properties of undefined" #15589

8.17.1 / 2025-08-07

  • fix(query): propagate read preference and read concern to populate if read() called after populate() #15567 #15553
  • fix(model): call correct function in autoSearchIndex #15569 #15565
  • fix(model): allow setting statics option on discriminator schema #15568 #15556
  • fix(model): remove unnecessary conversion of undefined -> null in findById #15566 #15551
  • types: allow passing in projections without as const #15564 #15557
  • types: support maxLength and minLength in SchemaTypeOptions #15570 #4720

8.17.0 / 2025-07-30

  • feat: upgrade mongodb -> 6.18.0 #15552
  • feat(mongoose): export base Connection and Collection classes #15548
  • feat: make Schema.prototype.$conditionalHandlers public #15497
  • types: automatically infer discriminator type #15547 #15535
  • types: make versionKey: false disable __v from hydrated document #15524 #15511
  • types: indicate support for mongodb abort #15549 GalacticHypernova
  • types: add options property to schemas #15524
  • types(schematype): make defaultOptions static and add schemaOptions to DocumentArray #15529 #15524
Commits

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [mongoose](https://github.com/Automattic/mongoose) from 8.16.5 to 8.17.2.
- [Release notes](https://github.com/Automattic/mongoose/releases)
- [Changelog](https://github.com/Automattic/mongoose/blob/master/CHANGELOG.md)
- [Commits](Automattic/mongoose@8.16.5...8.17.2)

---
updated-dependencies:
- dependency-name: mongoose
  dependency-version: 8.17.2
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Aug 19, 2025
@saileshbro
Copy link
Owner

🎉 Snyk checks have passed. No issues have been found so far.

security/snyk check is complete. No issues have been found. (View Details)

Copy link
Contributor Author

dependabot bot commented on behalf of github Aug 26, 2025

Superseded by #518.

@dependabot dependabot bot closed this Aug 26, 2025
@dependabot dependabot bot deleted the dependabot/npm_and_yarn/mongoose-8.17.2 branch August 26, 2025 17:27
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant