[Snyk] Upgrade graphql from 16.6.0 to 16.11.0 #16
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Snyk has created this PR to upgrade graphql from 16.6.0 to 16.11.0.
ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
The recommended version is 15 versions ahead of your current version.
The recommended version was released a month ago.
Issues fixed by the recommended upgrade:
SNYK-JS-GRAPHQL-5905181
Release notes
Package name: graphql
-
16.11.0 - 2025-04-26
- #4363 Ensure we validate for using nullable variables in oneOf input fields (@ JoviDeCroock)
- #4366 feat(execution): add max coercion errors option to execution context (@ cristunaranjo)
- #4367 fix(coerce-input-value): input object coercion rejects arrays (@ cristunaranjo)
- #4310 First draft for upgrade guide to v17 (@ JoviDeCroock)
- #4331 fix sidebar for documentation and
- #4335 Add cspell exception (@ JoviDeCroock)
- #4340 Improve flow of documentation around GraphiQL (@ benjie)
- #4343 typofix: removes extra parenthesis from getting started code snippet (@ rabahalishah)
- #4351 fixed wrong variable name (@ fto-dev)
- #4352 docs(getting-started): promises current links (@ guspan-tanadi)
- #4368 Update docs for execution options (@ JoviDeCroock)
- #4369 Correct some syntax (@ JoviDeCroock)
- #4372 Refactor every code-first example to leverage resolve (@ JoviDeCroock)
- #4373 docs: Update getting-started.mdx (@ Shubhdeep12)
- #4312 Increase print/visit performance (@ JoviDeCroock)
- #4327 Add redirect for /api (@ JoviDeCroock)
- #4377 Chore: bump setup-node (@ JoviDeCroock)
- #4378 Change to gqlConf 2025 (@ JoviDeCroock)
- #4379 Add missing parenthesis (@ benjie)
- Benjie(@ benjie)
- Cris Naranjo (@ cristunaranjo)
- Dimitri POSTOLOV(@ dimaMachina)
- Fatih Ozdemir(@ fto-dev)
- Guspan Tanadi(@ guspan-tanadi)
- Jovi De Croock(@ JoviDeCroock)
- Rabah Ali Shah(@ rabahalishah)
- Shubhdeep Chhabra(@ Shubhdeep12)
-
16.11.0-canary.pr.4384.c095a7b7d5dc33c988f84f0c921ae2f74bb710e6 - 2025-05-01
-
16.11.0-canary.pr.4364.2b4ffe237616247a733274dfdcb404c3d55d9f02 - 2025-04-30
-
16.10.0 - 2024-12-15
- #4286 fix: properly type
- #4292 Expose tokenCount on the DocumentNode (@ JoviDeCroock)
- #4137 backport(v16): Require non-empty directive locations (#4100) (@ benjie)
- #4168 fix(validation): catch OverlappingFieldsCanBeMergedRule violations with nested fragments (@ sachindshinde)
- #4226 Backport introspection type fix (@ JoviDeCroock)
- #4291 Address empty selection-set (@ JoviDeCroock)
- #4240 Convert from docusaurus to nextra (@ JoviDeCroock)
- #4248 Add content from graphql/graphql.github.io#1782 (@ JoviDeCroock)
- #4249 Styling fixes (@ JoviDeCroock)
- #4256 Various fixes to docs (@ JoviDeCroock)
- #4279 Solve some low hanging fruit in the documentation (@ JoviDeCroock)
- #4283 Add overview page and add stackblitz to tutorial (@ JoviDeCroock)
- #4284 Provide people with tabs so they can use classes as well (@ JoviDeCroock)
- #4289 Add note about defer/stream being v17 (@ JoviDeCroock)
- #4290 Write about
- #4295 Split up in v16 API documentation (@ JoviDeCroock)
- #4138 Upgrade codecov action and pass token (@ benjie)
- #4139 Fix codecov workflow (@ benjie)
- #4157 Add GraphQLConf 2024 banner (@ bignimbus)
- #4193 Upgrade deprecated actions (@ JoviDeCroock)
- Benjie(@ benjie)
- Jeff Auriemma(@ bignimbus)
- Jovi De Croock(@ JoviDeCroock)
- Sachin D. Shinde(@ sachindshinde)
- tpoisseau(@ tpoisseau)
-
16.10.0-canary.pr.4364.6b142546832c1283b535908fb8c9a171b2f7cc20 - 2025-03-27
-
16.10.0-canary.pr.4359.9fe5229b2fc30d3e5b07a6b00693fac42b649fdd - 2025-04-03
-
16.10.0-canary.pr.4192.22fb497360b20aa7bf7c12aa87d2420ff394b3a0 - 2025-03-27
-
16.9.0 - 2024-06-21
- #4119 backport[v16]: Introduce "recommended" validation rules (@ benjie)
- #4122 backport[v16]: Enable passing values configuration to GraphQLEnumType as a thunk (@ benjie)
- #4124 backport[v16]: Implement OneOf Input Objects via
- Benjie(@ benjie)
-
16.9.0-canary.pr.4192.1813397076f44a55e5798478e7321db9877de97a - 2024-09-14
-
16.9.0-canary.pr.4159.0fa29326c53fcd63c6473c7357c28aa13fa0019d - 2024-08-13
-
16.8.2 - 2024-06-12
-
16.8.1 - 2023-09-19
-
16.8.0 - 2023-08-14
-
16.7.1 - 2023-06-22
-
16.7.0 - 2023-06-21
-
16.6.0 - 2022-08-16
from graphql GitHub release notesv16.11.0 (2025-04-26)
New Feature 🚀
Bug Fix 🐞
Docs 📝
11 PRs were merged
/api-v16(@ dimaMachina)Polish 💅
Internal 🏠
4 PRs were merged
Committers: 8
v16.10.0 (2024-12-15)
New Feature 🚀
extensionsin GraphQLFormattedError (@ tpoisseau)Bug Fix 🐞
Docs 📝
10 PRs were merged
@ oneOfin the graphql-js documentation (@ JoviDeCroock)Internal 🏠
4 PRs were merged
Committers: 5
v16.9.0 (2024-06-21)
New Feature 🚀
@ oneOfdirective (@ benjie)Committers: 1
Important
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.
For more information:
Summary by Sourcery
Bug Fixes: