build(deps): bump the minor-and-patch group with 5 updates #24
No reviewers
Labels
No labels
app
bug
ci
compliance
dependencies
docker
docs
documentation
duplicate
enhancement
good first issue
help wanted
infra
invalid
javascript
question
wontfix
No milestone
No project
No assignees
1 participant
Due date
No due date set.
Dependencies
No dependencies set.
Reference: adam/seahaven-slack-bot#24
Loading…
Add table
Reference in a new issue
No description provided.
Delete branch "dependabot/npm_and_yarn/minor-and-patch-62d144906b"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Bumps the minor-and-patch group with 5 updates:
2.252.02.253.13.1041.03.1045.03.1041.03.1045.02.1120.02.1121.00.25.120.28.0Updates
aws-cdk-libfrom 2.252.0 to 2.253.1Release notes
Sourced from aws-cdk-lib's releases.
Changelog
Sourced from aws-cdk-lib's changelog.
... (truncated)
Commits
b0c00e2fix(core): "exports cannot be updated" for cross-region references (#37790)f61656afix(s3deploy): empty sources leads to deployment error (#37786)55a4299chore: update analytics metadata blueprintse9c0b5achore(release): 2.253.0a52af7dfix(ecs): enabling the circuitBreaker is not recommended loudly enough (#37755)a661c2dfeat: update L1 CloudFormation resource definitions (#37753)c29dc17fix(cloudwatch): remove false positive warning for CDK tokens in MathExpressi...dedf99bchore: replaceLazywithIBox(#37739)4031918fix(codebuild): correct S3 log encryption boolean inversion (#37761)99d0a5bfix(eks): add dependency from HelmChart custom resource to s3 chartAsset IAM ...Updates
@aws-sdk/client-dynamodbfrom 3.1041.0 to 3.1045.0Release notes
Sourced from @aws-sdk/client-dynamodb's releases.
... (truncated)
Changelog
Sourced from @aws-sdk/client-dynamodb's changelog.
Commits
b329defPublish v3.1045.01ccd438Publish v3.1044.096baad9Publish v3.1043.0d942e31Publish v3.1042.0Updates
@aws-sdk/lib-dynamodbfrom 3.1041.0 to 3.1045.0Release notes
Sourced from @aws-sdk/lib-dynamodb's releases.
... (truncated)
Changelog
Sourced from @aws-sdk/lib-dynamodb's changelog.
Commits
b329defPublish v3.1045.01ccd438Publish v3.1044.096baad9Publish v3.1043.0d942e31Publish v3.1042.0Updates
aws-cdkfrom 2.1120.0 to 2.1121.0Release notes
Sourced from aws-cdk's releases.
Commits
7abdd4echore(deps): bump ip-address from 10.1.0 to 10.2.0 (#1479)ab82d61chore(deps): bump@aws-sdk/client-ssmfrom 3.1036.0 to 3.1037.0 (#1470)1f09294fix: update version includes a spurious newline (#1477)63db541chore(deps): bump@aws-sdk/client-ecrfrom 3.1036.0 to 3.1037.0 (#1473)04c27f2chore(deps): bump@aws-sdk/client-appsyncfrom 3.1036.0 to 3.1037.0 (#1471)68540ccchore(deps): bump@aws-sdk/client-cloudformationfrom 3.1036.0 to 3.1037.0 (#...158daf3chore(deps): bump@aws-sdk/client-kmsfrom 3.1036.0 to 3.1037.0 (#1469)0f86332chore(deps): upgrade dependencies (#1468)09b7f15chore: Remove package-lock.json from template.gitignore (#1466)9f872c9feat(deps): upgrade aws-cdk-lib (#1465)Updates
esbuildfrom 0.25.12 to 0.28.0Release notes
Sourced from esbuild's releases.
... (truncated)
Changelog
Sourced from esbuild's changelog.
... (truncated)
Commits
6a794dfpublish 0.28.0 to npm64ee0eafix #4435: supportwith { type: text }importsef65aeefix sort order insnapshots_packagejson.txt1a26a8etry to fixtest-old-ts, also shuffle CI tasks556ce6cuse''instead ofnullto omit build hashes8e675a8ci: allow missing binary hashes for tests7067763Reapply "update go 1.25.7 => 1.26.1"39473a9fix #4343: integrity check for binary download2025c9fpublish 0.27.7 to npmc6b586efix typo inMakefilefor@esbuild/win32-x64Maintainer changes
This version was pushed to npm by GitHub Actions, a new releaser for esbuild since your current version.
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore <dependency name> major versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)@dependabot ignore <dependency name> minor versionwill close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)@dependabot ignore <dependency name>will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)@dependabot unignore <dependency name>will remove all of the ignore conditions of the specified dependency@dependabot unignore <dependency name> <ignore condition>will remove the ignore condition of the specified dependency and ignore conditionsReviewed — looks good. Lockfile-only Dependabot bump for AWS SDK/CDK patch versions and esbuild. Worth noting esbuild jumps from 0.25 → 0.28 (two minor versions on a 0.x package, where minor bumps can carry breaking changes), but it's dev-only tooling consumed via CDK
NodejsFunctionbundling, so any bundling regression would surface immediately atcdk synth/deploy time. No Sea Haven convention or security concerns.