- [CVE-2022-37599] Bump loader-utils from
2.0.3
to2.0.4
(#3031) - [CVE-2022-37603] Bump loader-utils from
2.0.3
to2.0.4
(#3031) - [CVE-2022-25860] Bump simple-git from
3.15.1
to3.16.0
(#3345) - [CVE-2022-25881] Resolve http-cache-semantics from
4.1.0
to4.1.1
(#3409) - [Security] Bump hapi/statehood from
7.0.3
to7.0.4
(#3411) - [CVE-2023-25166] Bump formula from
3.0.0
to3.0.1
(#3416) - [CVE-2020-36632] Bump flat from
4.1.1
to5.0.2
(#3419) - [CVE-2023-25653] Bump node-jose from
2.1.1
to2.2.0
(#3445) - [CVE-2022-24999] Resolve qs from
6.5.3
to6.11.0
(#3450) - [CVE-2022-25758] Bump node-sass from
6.0.1
to7.0.3
and sass-loader from10.2.1
to10.4.1
to bump scss-tokenizer from0.2.3
to0.4.3
(#3455) - [CVE-2020-24025] Bump node-sass from
6.0.1
to7.0.3
(#3455)
- Add disablePrototypePoisoningProtection configuration to prevent JS client from erroring when cluster utilizes JS reserved words (#2992)
- [Multiple DataSource] Add support for SigV4 authentication (#3058)
- [Multiple DataSource] Refactor test connection to support SigV4 auth type (#3456)
- [Search Telemetry] Fix search telemetry's observable object that won't be GC-ed(#3390)
- [Region Maps] Add ui setting to configure custom vector map's size parameter(#3399)
- Fix detection of Chrome's version on Darwin during CI (#3296)
- [Docs] Fix documentation link for date math (#3207)
- Bump
re2
andsupertest
(#3018) - Upgrade vega-tooltip to
0.30.0
to support custom tooltips (#3359) - Allow relaxing the Node.js runtime version requirement (#3402)
- Make build scripts find and use the latest version of Node.js that satisfies
engines.node
(#3467) - Add
@opensearch-project/opensearch@^2.x
as dependency aliased as@opensearch-project/opensearch-next
(#3469)