[Snyk] Upgrade aws-cdk-lib from 2.55.1 to 2.131.0 #21
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
This PR was automatically created by Snyk using the credentials of a real user.
Snyk has created this PR to upgrade aws-cdk-lib from 2.55.1 to 2.131.0.
ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
The recommended version fixes:
SNYK-JS-AWSCDKLIB-5721464
Why? Has a fix available, CVSS 8.8
SNYK-JS-SEMVER-3247795
Why? Has a fix available, CVSS 8.8
(*) Note that the real score may have changed since the PR was raised.
Release notes
Package name: aws-cdk-lib
-
2.131.0 - 2024-03-01
- apigatewayv2-integrations: stepfunctions integration (#28982) (19d75d6), closes #28904
- applicationautoscaling: add missing PredefinedMetricType enum values (#29066) (63390e1), closes #29065
- appsync:
- appsync: add the
- core: add
- docdb: support snapshot removal policy (#28798) (05b1bb0), closes #28773
- ec2: support for the credit configuration mode for burstable instances (#28728) (3cbad4a), closes #19166
- ecs-patterns: allow custom ephemeral storage for ECS Fargate services (#29275) (9156b13), closes #18105
- update L1 CloudFormation resource definitions (#29257) (f3d74bb)
- autoscaling: step scaling without adjustment type fails (#29158) (a7de7fe)
- cli: add skip-tests.txt file for v2.130.0 (#29320) (fdacbe0), closes #29313
- CLI: sam resources hidden in changeset diffs (#29223) (aa186ac), closes #29185
- cli-integ: add regression patch for cli integ fix (#29313) (f803cf6), closes #29305
- cli-integ: use
- cloudtrail: isOrganizationTrail attaches insufficient permissions to bucket (#29242) (457afa9)
- core: a number of resources are not taggable with
- custom-resources: custom resource response may silently get dropped (#28826) (c52ff08)
- ec2: internet gateway is created even if public subnets are reserved (#28607) (985c7e4), closes #28593
- ecs:
- ecs: stack name can result in noncompliant capacity provider name (#29235) (aca68ba), closes #29151
- stepfunctions: escaped curly braces result in error during state machine execution (#29267) (a21e429), closes #29261
-
2.130.0 - 2024-02-23
- appconfig: graduate to stable 🚀 (#29188) (7feabc1)
- bedrock: stabilityai model (#29210) (6c17ca5)
- custom-resources-handlers: s3 deployment handler log injection vulnerability (#28599) (83aa395), closes #28469
- pipelines: generates warning since CDK 2.128.0 due to addition of v2 pipeline support in aws-codepipeline (#29199) (eca1bcf), closes #29190 /github.com/aws/aws-cdk/blob/main/packages/aws-cdk-lib/pipelines/lib/codepipeline/codepipeline.ts#L467-L480
-
2.129.0 - 2024-02-21
- update L1 CloudFormation resource definitions (#29191) (c579e3c)
- applicationautoscaling: timezone for ScheduledAction (#29116) (8694125), closes #22645 #27754
- cloudfront-origin: adding FunctionUrlOrigin (#29101) (2b0ed53)
- ecs: credentialSpecs in ContainerDefinitionOptions (#29085) (e92dbec)
- events-targets:
- lambda: Add
- lambda: adding .net 8 (dotnet8) lambda runtime support (#29178) (74335f6)
- rds: support Aurora MySQL 3.05.2 (#29166) (da0b82c)
- sns: enforce ssl with topic policy (#29144) (a75f447), closes #29142
- synthetics: latest canary runtimes for NodeJS, Python (#29132) (3c122a4), closes #29135
- appconfig: scope generated alarm role policy to '*' for composite alarm support (#29171) (c17879d)
-
2.128.0 - 2024-02-14
- cloudwatch: add
- codedeploy: ignoreAlarmConfiguration parameter to Deployment Groups (#26957) (e890e89)
- codepipeline: pipeline type v2 with pipeline-level variables and triggers (#28538) (40ffe2b), closes #28476 #28694
- ses:
- allow overriding the filename of the processed file after substitution (#29029) (88decc6), closes #28450
- lambda: @ deprecated tag to deprecated runtimes (#29081) (2503f68)
- stepfunctions-tasks: missing permissions for running tasks on ecs (#27891) (683d595), closes #27803
- app-staging-synthesizer-alpha:
- app-staging-synthesizer-alpha: require passing
- pipes-enrichments: new EventBridge Pipes enrichments alpha module (#29063) (5a54ec5)
- pipes-targets: new EventBridge Pipes targets alpha module (#29057) (9419f54)
- scheduler-targets-alpha:
- appconfig: deployment recreated on every cdk deployment (#28782) (a21731c)
-
2.127.0 - 2024-02-10
-
2.126.0 - 2024-02-02
- migrate: Add CDK Migrate
-
2.125.0 - 2024-02-01
-
2.124.0 - 2024-01-26
-
2.123.0 - 2024-01-24
-
2.122.0 - 2024-01-18
-
2.121.1 - 2024-01-13
-
2.121.0 - 2024-01-12
-
2.120.0 - 2024-01-12
-
2.119.0 - 2024-01-11
-
2.118.0 - 2024-01-03
-
2.117.0 - 2023-12-27
-
2.116.1 - 2023-12-22
-
2.116.0 - 2023-12-22
-
2.115.0 - 2023-12-14
-
2.114.1 - 2023-12-06
-
2.114.0 - 2023-12-05
-
2.113.0 - 2023-12-01
-
2.112.0 - 2023-12-01
-
2.111.0 - 2023-11-27
-
2.110.1 - 2023-11-22
-
2.110.0 - 2023-11-17
-
2.109.0 - 2023-11-16
-
2.108.1 - 2023-11-14
-
2.108.0 - 2023-11-14
-
2.107.0 - 2023-11-13
-
2.106.1 - 2023-11-11
-
2.106.0 - 2023-11-10
-
2.105.0 - 2023-11-08
-
2.104.0 - 2023-11-02
-
2.103.1 - 2023-10-27
-
2.103.0 - 2023-10-26
-
2.102.1 - 2023-10-25
-
2.102.0 - 2023-10-19
-
2.101.1 - 2023-10-16
-
2.101.0 - 2023-10-13
-
2.100.0 - 2023-10-06
-
2.99.1 - 2023-09-30
-
2.99.0 - 2023-09-28
-
2.98.0 - 2023-09-26
-
2.97.1 - 2023-09-26
-
2.97.0 - 2023-09-22
-
2.96.2 - 2023-09-15
-
2.96.1 - 2023-09-14
-
2.96.0 - 2023-09-13
-
2.95.1 - 2023-09-09
-
2.95.0 - 2023-09-07
-
2.94.0 - 2023-09-01
-
2.93.0 - 2023-08-23
-
2.92.0 - 2023-08-15
-
2.91.0 - 2023-08-10
-
2.90.0 - 2023-08-04
-
2.89.0 - 2023-07-28
-
2.88.0 - 2023-07-20
-
2.87.0 - 2023-07-06
-
2.86.0 - 2023-06-29
-
2.85.0 - 2023-06-21
-
2.84.0 - 2023-06-14
-
2.83.1 - 2023-06-09
-
2.83.0 - 2023-06-07
-
2.82.0 - 2023-06-02
-
2.81.0 - 2023-05-25
-
2.80.0 - 2023-05-20
-
2.79.1 - 2023-05-11
-
2.79.0 - 2023-05-10
-
2.78.0 - 2023-05-04
-
2.77.0 - 2023-04-26
-
2.76.0 - 2023-04-20
-
2.75.1 - 2023-04-19
-
2.75.0 - 2023-04-18
-
2.74.0 - 2023-04-13
-
2.73.0 - 2023-04-06
-
2.72.1 - 2023-03-31
-
2.72.0 - 2023-03-29
-
2.71.0 - 2023-03-29
-
2.70.0 - 2023-03-22
-
2.69.0 - 2023-03-14
-
2.68.0 - 2023-03-08
-
2.67.0 - 2023-03-02
-
2.66.1 - 2023-02-24
-
2.66.0 - 2023-02-21
-
2.65.0 - 2023-02-15
-
2.64.0 - 2023-02-09
-
2.63.2 - 2023-02-04
-
2.63.1 - 2023-02-03
-
2.63.0 - 2023-01-31
-
2.62.2 - 2023-01-27
-
2.62.1 - 2023-01-26
-
2.62.0 - 2023-01-25
-
2.61.1 - 2023-01-20
-
2.61.0 - 2023-01-19
-
2.60.0 - 2023-01-12
-
2.59.0 - 2023-01-03
-
2.58.1 - 2022-12-30
-
2.58.0 - 2022-12-29
-
2.57.0 - 2022-12-27
-
2.56.1 - 2022-12-23
-
2.56.0 - 2022-12-21
-
2.55.1 - 2022-12-16
from aws-cdk-lib GitHub release notesFeatures
environmentVariablesproperty for GraphqlApi (#29064) (f0af5b1)grantmethod to the importedGraphqlApi(#29086) (7e8239b), closes #23031descriptiontoexportValueandexportStringListValuemethods (#29150) (2e080fe), closes #29092Bug Fixes
Python_3_12instead ofPython_3_7lambda runtime (#29305) (8d07b85)Tags.of()(#28989) (7a4c189)autoscalingGroupattribute does not exist onImportedCluster(#29244) (98b9bf2), closes #29241Alpha modules (2.131.0-alpha.0)
Features
Bug Fixes
Alpha modules (2.130.0-alpha.0)
Features
launchTypeproperty for ECS task (#29069) (b4daf84), closes #28990Ipv6AllowedforDualStacksupport for Lambda function (#28928) (90caad9)Alpha modules (2.129.0-alpha.0)
Bug Fixes
Features
TableWidget(#29078) (4599aa3), closes #28975grantmethods toIEmailIdentity(#29084) (c3c771c), closes #29083Bug Fixes
Alpha modules (2.128.0-alpha.0)
⚠ BREAKING CHANGES TO EXPERIMENTAL FEATURES
stagingBucketEncryptionproperty is now required. For existing apps, specifyBucketEncryption.KMSto retain existing behavior. For new apps, choose the bucket encryption that makes most sense for your use case.BucketEncryption.S3_MANAGEDis available and is intended to be the default when this module is stabilized.Features
stagingBucketEncryptionand note that we intend to default toS3_MANAGEDin the future (#28978) (fc8b955), closes #28815 #28903 /github.com/aws/aws-cdk/pull/28978#issuecomment-1930007176SageMakerStartPipelineExecutionTarget (#28927) (db260b0), closes #27457Bug Fixes
Read more
Features
--from-scanfunctionality (#28962) (bbc14b3)Alpha modules (2.126.0-alpha.0)
Read more
Read more
Read more
Read more
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.
For more information:
🧐 View latest project report
🛠 Adjust upgrade PR settings
🔕 Ignore this dependency or unsubscribe from future upgrade PRs