Skip to content

Conversation

@mend-for-github-com
Copy link

@mend-for-github-com mend-for-github-com bot commented Jan 9, 2025

This PR contains the following updates:

Package Type Update Change
firebase-functions dependencies major ^5.0.1 -> ^6.1.0

By merging this PR, the issue #5 will be automatically resolved and closed:

Severity CVSS Score Vulnerability
High High 7.5 CVE-2024-45296
High High 7.5 CVE-2024-52798
Medium Medium 5.3 CVE-2024-47764
Medium Medium 5.0 CVE-2024-43796
Medium Medium 5.0 CVE-2024-43799
Medium Medium 5.0 CVE-2024-43800

Release Notes

firebase/firebase-functions (firebase-functions)

v6.1.0

Compare Source

  • Bump express version to 4.19.2 (#​1624)
  • Add support for beforeSmsSent auth blocking triggers. (#​1589)

v6.0.1

Compare Source

  • Fix bug where v1 functions can't be emulated (#​1615)

v6.0.0

Compare Source

  • Breaking: Change default entrypoint of the firebase-functions package to v2 instead of v1 (#​1594)
  • Add @​deprecated annotation on functions.config() API (#​1604)

v5.1.1

Compare Source

  • Fix retry in event triggered functions. (#​1463)
  • Expose retry configuration in v2 RTDB trigger (#​1588)
  • Fix CORS options for v2 callable functions (#​1564)
  • Remove invalid enforceAppCheck option for v2 onRequest trigger (#​1477)

v5.1.0

Compare Source


  • If you want to rebase/retry this PR, check this box

@mend-for-github-com mend-for-github-com bot added the security fix Security fix generated by Mend label Jan 9, 2025
@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/firebase-functions-6.x branch from df77bc3 to 1955efd Compare March 31, 2025 10:21
@mend-for-github-com mend-for-github-com bot changed the title Update dependency firebase-functions to v6 Update dependency firebase-functions to v6 - autoclosed Aug 6, 2025
@mend-for-github-com mend-for-github-com bot deleted the whitesource-remediate/firebase-functions-6.x branch August 6, 2025 06:27
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

security fix Security fix generated by Mend

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant