[Snyk] Upgrade: , aws-cdk #99
Open
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
This PR was automatically created by Snyk using the credentials of a real user.

Snyk has created this PR to upgrade multiple dependencies.
👯 The following dependencies are linked and will therefore be updated together.ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
@aws-cdk/cloudformation-diff
from 2.99.1 to 2.140.0 | 53 versions ahead of your current version | 22 days ago
on 2024-05-02
aws-cdk
from 2.99.1 to 2.140.0 | 53 versions ahead of your current version | 22 days ago
on 2024-05-02
Release notes
Package name: @aws-cdk/cloudformation-diff
-
2.140.0 - 2024-05-02
- update L1 CloudFormation resource definitions (#30037) (bb7e4d8)
- api-gateway: deploy RestApi to existing stage (#29486) (f0835d9), closes #25582
- cloudfront: add
- codecommit:
- ec2: add support for environment files and variables in systemd (#29629) (90f1aa9)
- efs: allow to specify az for one-zone (#30010) (cbf130e)
- allow to register an existing record created manually as an alias ARecord target (#29565) (4f8b7db), closes #23048
- update L1 CloudFormation resource definitions (#29997) (c949076), closes /docs.aws.amazon.com/AWSCloudFormation/latest/UserGuide/aws-resource-ec2-launchtemplate.html#aws-resource-ec2 /docs.aws.amazon.com/AWSCloudFormation/latest/UserGuide/aws-resource-ec2-launchtemplate.html#aws-resource-ec2
- ec2: ebs optimized instance (#29962) (767ac65)
- eks: add atomic flag for aws-eks Helm Chart (#29454) (666f24f), closes #22254
- events:
- kms: key rotation period (#29928) (a6a5219), closes #29927
- crossRegionReference: error message missing stack information (#29961) (4f1c94b), closes #29699 #29699
- custom-resources: fails to use latest SDK version (#29958) (247aa35), closes #29891
- stepfunctions: regex in DistributedMap label is incorrectly escaping characters (#29765) (7c4eb71)
- cdk diff prints upgrade bootstrap warning even when current version exceeds the recommended version (#29938) (28b0080), closes #28888
-
2.139.1 - 2024-04-30
- fix(lambda): version.fromVersionArn creates invalid Version object (#30003) (ced7a46)
-
2.139.0 - 2024-04-24
- appconfig: constrain environments to a single deployment at a time (#29500) (3dd834d), closes #29345
- ecs: support
- ecs: support adding docker labels after container construction (#29734) (8e215b3), closes #29728
- efs: replicating file systems (#29347) (a15dc93), closes #21455
- ses-actions:
- update L1 CloudFormation resource definitions (#29924) (27b7a45)
- CLI:
- CLI: bootstrap shows no hotswap changes when there are no changes (#29877) (2126ee5), closes #25736
- custom-resource-handler: auto-delete-[objects|images] breaks on cloudformation rollback (#29581) (69ea52f)
- custom-resources: cannot set logging for state machine generated in CompleteHandler (#28706) (99041b2), closes #27283 #28577 #28744 #27310 #28699 #28587
- eks: incorrect nodegroupName(under feature flag) (#29794) (8bb8c55)
- elasticloadbalancingv2: crossZoneEnabled does not support false for ALB (#29907) (f6c902e)
- events-targets:
- s3-notifications: cdk destroy deletes external/existing s3 notification events (#29939) (7360a88)
- ses-actions: permissions too wide for S3 action (#29833) (2da544f), closes #29811 #29823 /docs.aws.amazon.com/ses/latest/dg/receiving-email-permissions.html#receiving-email-permissions-s3
-
2.138.0 - 2024-04-18
- AppSync: addRdsDataSource support for DatabaseCluster (#29544) (1894f2d), closes #29302
- cognito: support provider details for
- custom-resources: add logging property to
- ec2: well-known port aliases (#29793) (f10494c)
- elasticloadbalancingv2: add removeSuffix param for ExternalApplicationListener.addAction() (#29746) (f4af330), closes #29496
- route53:
- sns: add TracingConfig prop (#29783) (f14b60f), closes #29714
- stepfunctions-tasks: add httpinvoke step functions task (#28673) (178e481), closes #28278
- update L1 CloudFormation resource definitions (#29798) (7103fed), closes /docs.aws.amazon.com/AWSCloudFormation/latest/UserGuide/aws-resource-ec2-launchtemplate.html#aws-resource-ec2 /docs.aws.amazon.com/AWSCloudFormation/latest/UserGuide/aws-resource-ec2-launchtemplate.html#aws-resource-ec2 /docs.aws.amazon.com/AWSCloudFormation/latest/UserGuide/aws-properties-ec2-security-group.html#cfn-ec2 /docs.aws.amazon.com/AWSCloudFormation/latest/UserGuide/aws-properties-ec2-security-group.html#cfn-ec2
- ecs-patterns: integ test failed with certificate error (#29623) (5347369), closes /github.com/aws/aws-cdk/pull/29186#issuecomment-1959231406 /github.com/aws/aws-cdk/pull/29186#issuecomment-1959231406
- eks: add support of Helm charts located in ECR of AWS CN region (#29778) (0da25e5), closes #28460
- globalaccelerator: changing
- lambda: version.fromVersionArn creates invalid Version object (#29820) (8198884)
- spec2cdk: get tag gives null result in Java CDK (#29870) (5a918d1)
- stepfunctions: the catch field in CustomState is not rendered (#29654) (77e9fc6)
- cognito-identitypool-alpha: The argument of
- cognito-identitypool-alpha: inconvenient IdentityPoolProviderUrl.userPool() (#29025) (90a7734)
-
2.137.0 - 2024-04-11
- assertions: add stack tagging assertions (#29247) (72f189d), closes #27620
- cloudfront: adding support for inline KeyValueStore sources (#29419) (5675010), closes #29204
- ec2:
- elasticloadbalancingv2: application load balancer attributes (#29586) (067c4a5), closes #29585
- appsync: source api association does not depend on schema (#29455) (92a160b), closes #29044
- s3-deployment:
- sns: contentBasedDeduplication is always false for imported topic (#29542) (4a9e683), closes #29532
- integ-tests:
-
2.136.1 - 2024-04-10
- chore(ec2): update WindowsVersions enum (#29737) (0e9d5ca), closes #29736
-
2.136.0 - 2024-04-06
- rds: specify PreferredMaintenanceWindow in reader or writer props (#29686) (615ee2d), closes #29687
- stepfunction: add enableExecuteCommand to sfn ECSRunTask (#29638) (d5b8594), closes #29637
- cli: diff with changeset fails if deploy role cannot be assumed (#29718) (21dba21), closes #29650
- cloudwatch-actions:
- iam: grantAssumeRole silently fails with service and account principals (#29452) (36fd79d), closes #24507
- pipelines: codeStar connection accepts nested repository (#29631) (10357c0), closes #27504
- s3-assets: throw if path property is empty (#29425) (2814011), closes #29410
-
2.135.0 - 2024-04-02
- lambda: adding support for Ruby3.3 lambda runtime (#29680) (e63c777)
- update L1 CloudFormation resource definitions (#29677) (99e9589), closes /docs.aws.amazon.com/AmazonRDS/latest/AuroraUserGuide/aurora-serverless-v2.requirements.html#aurora-serverless-v2 /docs.aws.amazon.com/AmazonRDS/latest/AuroraUserGuide/aurora-serverless-v2.requirements.html#aurora-serverless-v2
- route53: allow specifying an STS region when creating a cross-account zone delegation (#29466) (fe4bc1d)
- sns: add signature version prop (#29543) (dffedca), closes #29539
- cli: cdk watch for Lambdas with Advanced Logging Controls do not stream logs to the terminal (#29451) (4dbf5c8), closes #29448 /github.com/aws/aws-cdk/blob/main/packages/aws-cdk/lib/api/logs/find-cloudwatch-logs.ts#L114
- cli: ecs hotswap deployment waits correctly for success or failure (#28448) (5c30255)
- ec2: global vpc endpoint support (#29563) (df48fd7), closes #29560 10.0.0.2#53 10.0.0.2#53
- eks: missing support for "InstanceTypes" attribute assignment for AL2023 AMIs (#29505) (e77ce26), closes #29335
- events-targets: hardcoded AWS partition in ECS task resource ARN (#29633) (69cff2e), closes #29610
- route53: allow records with a weight of 0 (#29595) (cc7e95b), closes #29556
- add validation for ALB access log bucket when KMS key is provided (#29382) (2cc2449), closes #22031
-
2.134.0 - 2024-03-26
- update L1 CloudFormation resource definitions (#29605) (bf34b6c)
- update L1 CloudFormation resource definitions (#29606) (432f97d)
- apigatewayv2: add missing
- appsync: queryDepthLimit and resolverCountLimit props on GraphqlApi (#29182) (ba6d0b3)
- cli: warn of non-existent stacks in
- codepipeline-actions: show status reason in the pipeline for failed change set executions (#29534) (6d16337)
- eks: trainium instance types (#29155) (507b709), closes #29131
- elasticloadbalancingv2:
- elasticloadbalancingv2: client keepalive for ALB (#29504) (9b79f94), closes #29503
- elasticloadbalancingv2: enforce security group inbound rules prop (#29522) (8df2823), closes #29516
- update L1 CloudFormation resource definitions (#29530) (1fdac0c)
- update L1 CloudFormation resource definitions (#29569) (c9fb4f7)
- update L1 CloudFormation resource definitions (#29573) (53d2094)
- rds: eliminating the need for explicit
- CLI:
- cloudformation-diff: move aws-sdk to dependency for cfn-diff to get CFN types resolved in exports (#28768) (28c4be3), closes #28680 #28679
- cloudwatch: cloudwatch ec2 alarm action with multiple dimension results in error (#29364) (cc37778)
- cloudwatch: unrecognized statistic warning when using percentileRank statistic in Stats helper (#29498) (f2ad980), closes #29465
- ecs-patterns: integ test unable to create ECS service (#29490) (6faa60e), closes /github.com/aws/aws-cdk/pull/29186#issuecomment-1959231406
- elasticloadbalancingv2: allow alb slow start duration of 0 seconds (#29445) (cf2351b), closes #29437
- kms: kms key grant methods misidentify region when enclosing stack is different region (#29315) (9076d6e)
- opensearch: cannot disable cluster logging (#29205) (c7fcaf7), closes #29294
- "feat(cli): warn of non-existent stacks in
- kinesisanalytics-flink: add support for Flink 1.18 (#29554) (8fd8ee8), closes /docs.aws.amazon.com/AWSCloudFormation/latest/UserGuide/aws-resource-kinesisanalyticsv2-application.html#aws-resource-kinesisanalyticsv2
- glue: s3 path specified in --spark-event-logs-path needs to end with slash (#29357) (4ff3565), closes #29356
-
2.133.0 - 2024-03-15
- CLI: improved nested stack diff (#29172) (135b520)
- codepipeline: change default pipeline type to V2 (under feature flag) (#29096) (e85231c), closes /github.com/aws/aws-cdk/pull/28538#discussion_r1471761574 /github.com/aws/aws-cdk/blob/main/packages/aws-cdk-lib/aws-codepipeline/lib/pipeline.ts#L492
- ec2: add APPCONFIG and APPCONFIGDATA to InterfaceVpcEndpointAwsService (#29408) (baaa50c)
- ecs-patterns: support
- opensearchservice: cold storage option (#29387) (ce52c7e), closes #29366
- rds: proxy for mariadb (#29412) (6fef789), closes #29402
- stepfunctions-tasks: start glue crawler (#29016) (5592553), closes #24188
- update L1 CloudFormation resource definitions (#29438) (5b910f0)
- cli:
- lambda-nodejs: fixing esbuildArgs to take in account re-specified keys (#29167) (919d16f), closes #25385
- stepfunctions: the retry field in CustomState is not iterable (#29403) (a1fbd51), closes #29274
- prevent changeset diff for non-deployed stacks (#29485) (fac4a9c), closes #29394 #29172
-
2.132.1 - 2024-03-12
-
2.132.0 - 2024-03-09
-
2.131.0 - 2024-03-01
-
2.130.0 - 2024-02-23
-
2.129.0 - 2024-02-21
-
2.128.0 - 2024-02-14
-
2.127.0 - 2024-02-10
-
2.126.0 - 2024-02-02
-
2.125.0 - 2024-02-01
-
2.124.0 - 2024-01-26
-
2.123.0 - 2024-01-24
-
2.122.0 - 2024-01-18
-
2.121.1 - 2024-01-13
-
2.121.0 - 2024-01-12
-
2.120.0 - 2024-01-12
-
2.119.0 - 2024-01-11
-
2.118.0 - 2024-01-03
-
2.117.0 - 2023-12-27
-
2.116.1 - 2023-12-22
-
2.116.0 - 2023-12-22
-
2.115.0 - 2023-12-14
-
2.114.1 - 2023-12-06
-
2.114.0 - 2023-12-05
-
2.113.0 - 2023-12-01
-
2.112.0 - 2023-12-01
-
2.111.0 - 2023-11-27
-
2.110.1 - 2023-11-22
-
2.110.0 - 2023-11-17
-
2.109.0 - 2023-11-16
-
2.108.1 - 2023-11-14
-
2.108.0 - 2023-11-14
-
2.107.0 - 2023-11-13
-
2.106.1 - 2023-11-11
-
2.106.0 - 2023-11-10
-
2.105.0 - 2023-11-08
-
2.104.0 - 2023-11-02
-
2.103.1 - 2023-10-27
-
2.103.0 - 2023-10-26
-
2.102.1 - 2023-10-25
-
2.102.0 - 2023-10-19
-
2.101.1 - 2023-10-16
-
2.101.0 - 2023-10-13
-
2.100.0 - 2023-10-06
-
2.99.1 - 2023-09-30
from @aws-cdk/cloudformation-diff GitHub release notesFeatures
autoPublishproperty to theFunction(#30030) (5dd72b8), closes #30028kmsKeyfor repository (#29988) (5f8e52e)fromApiDestinationAttributesimport method (#29943) (db155e1), closes #29942Bug Fixes
Alpha modules (2.140.0-alpha.0)
Reverts
Alpha modules (2.139.1-alpha.0)
Features
pidModeforFargateTaskDefinition(#29670) (ed75b16), closes #29619WorkMailrule action (#29854) (6fdc458)Bug Fixes
diff --templatecrashes (#29896) (466f170), closes #29890ApiGatewayevents target should accept IRestApi (#29397) (8e1fefd), closes #16423 /github.com/aws/aws-cdk/pull/16542#discussion_r713676896 /github.com/aws/aws-cdk/pull/16542#issuecomment-925051255Alpha modules (2.139.0-alpha.0)
Features
UserPoolIdentityProviderSaml(#29588) (375f1a6), closes #29494 #29598AwsSdkCalland createLoggingclass (#29648) (b049064)DNSSECzone signing (#28604) (213fffc)Bug Fixes
installLatestAwsSdkbreaks Security Group reference (#29620) (ece7eb6), closes #23796 /github.com/aws/aws-cdk/blob/main/packages/aws-cdk-lib/aws-globalaccelerator/lib/_accelerator-security-group.ts#L32Alpha modules (2.138.0-alpha.0)
⚠ BREAKING CHANGES TO EXPERIMENTAL FEATURES
IdentityPoolProviderUrl.userPool()has been changed fromurl: stringtouserPool: UserPool, userPoolClient: UserPoolClient. If you want to specify custom identifier string, useIdentityPoolProviderUrl.custom()instead.Bug Fixes
Features
NatInstanceProviderV2improvements (#29729) (4eb02a4), closes #29720Bug Fixes
BucketDeploymentfails when bootstrap stack'sStagingBucketis encrypted with customer managed KMS key (#29540) (0b429fb), closes #25100 #25100 #25100Alpha modules (2.137.0-alpha.0)
Bug Fixes
httpApiCall.expectwith resolved URL (#29705) (49b4aa1), closes #29700 #29701Reverts
Alpha modules (2.136.1-alpha.0)
Features
Bug Fixes
LambdaActionfails if added to multiple action types (#29515) (a12887b), closes #29514Alpha modules (2.136.0-alpha.0)
Features
Bug Fixes
Alpha modules (2.135.0-alpha.0)
Features
WebSocketIntegrationprops (#29566) (7534dcd), closes #29562cdk destroy(#27921) (f0d1d67), closes #27179denyAllIgwTrafficandclientRoutingPolicyfor NLB (#29521) (7fe8ad3), closes #29520secret.grantRead()invokes when using DataAPI with Aurora cluster (#29399) (bc9d0b4), closes #29362 /github.com/aws/aws-cdk/pull/29338#discussion_r1512026791Bug Fixes
cdk diffstack deletion causes a race condition (#29492) (067539a), closes #29265Reverts
cdk destroy" (#29577) (f60e6e9), closes aws/aws-cdk#27921 40aws-cdk-testing/cli-integ/tests/cli-integ-tests/cli.integtest.ts#L190 /github.com/aws/aws-cdk/blob/07ce8ecc42782475d099b89944571375341c28d3/packages/aws-cdk/lib/api/cxapp/cloud-executable.ts#L86Alpha modules (2.134.0-alpha.0)
Features
Bug Fixes
Features
securityGroupsinNetworkLoadBalancedFargateService(#29431) (00e8a7b), closes #29430 /github.com/aws/aws-cdk/pull/29186#issuecomment-1959231406Bug Fixes
cdk lsreturns stack id instead of stack display name (#29447) (77189be), closes #29420Reverts
Alpha modules (2.133.0-alpha.0)
Package name: aws-cdk
Features
autoPublishproperty to theFunction(#30030) (5dd72b8), closes #30028kmsKeyfor repository (#29988) (