Skip to content

Update dependency aws-cdk-lib#5886

Merged
dlvenable merged 1 commit intomainfrom
whitesource-remediate/aws-cdk-lib-2.x
Jul 30, 2025
Merged

Update dependency aws-cdk-lib#5886
dlvenable merged 1 commit intomainfrom
whitesource-remediate/aws-cdk-lib-2.x

Conversation

@mend-for-github-com
Copy link
Copy Markdown
Contributor

@mend-for-github-com mend-for-github-com bot commented Jul 18, 2025

This PR contains the following updates:

Package Type Update Change
aws-cdk-lib (source) dependencies minor 2.100.0 -> 2.177.0
aws-cdk-lib (source) dependencies minor 2.189.1 -> 2.190.0

By merging this PR, the issue #5779 will be automatically resolved and closed:

Severity CVSS Score Vulnerability
Low Low 3.9 CVE-2025-23206

By merging this PR, the issue #5825 will be automatically resolved and closed:

Severity CVSS Score Vulnerability
Low Low 3.1 CVE-2025-5889

Release Notes

aws/aws-cdk (aws-cdk-lib)

v2.177.0

Compare Source

Features
Bug Fixes

Alpha modules (2.177.0-alpha.0)
⚠ BREAKING CHANGES TO EXPERIMENTAL FEATURES
  • glue-alpha: Developers must refactor their existing Job
    instantiation method calls to choose the right job type and language,
    and use the new constants static values to define the associated Job
    configuration settings. See the RFC and/or new README for examples.
Description of how you validated changes

Increased unit test coverage to > 90%, consulted with Glue service team
on best practices and sane defaults, updated integration tests.

Features
Bug Fixes
  • custom-resource-handlers: do not allow unauthorized connection for iam OIDC connection (under feature flag) (#​32921) (3e4f377), closes #​32920
Code Refactoring
  • glue-alpha: Refactored glue-alpha L2 CDK construct RFC 0497 (#​32521) (1a18dc9)

v2.176.0

Compare Source

Features
Bug Fixes
Reverts

Alpha modules (2.176.0-alpha.0)
Features
Bug Fixes

v2.175.1

Compare Source

Bug Fixes

Alpha modules (2.175.1-alpha.0)

v2.175.0

Compare Source

Features
Bug Fixes

Alpha modules (2.175.0-alpha.0)
Features
Bug Fixes

v2.174.1

Compare Source

Features

Alpha modules (2.174.1-alpha.0)

v2.174.0

Compare Source

Features
Bug Fixes
Reverts

Alpha modules (2.174.0-alpha.0)
Features
Bug Fixes

v2.173.4

Compare Source

Bug Fixes

Alpha modules (2.173.4-alpha.0)

v2.173.3

Compare Source

Bug Fixes

Alpha modules (2.173.3-alpha.0)

v2.173.2

Compare Source

Bug Fixes
  • cli: allow credential plugins to return null for expiration (#​32554) (e59b1db)
  • cli: doesn't support plugins that return initially empty credentials (#​32552) (7ee9b90)

Alpha modules (2.173.2-alpha.0)

v2.173.1

Compare Source

Bug Fixes
  • cli: getting credentials via SSO fails when the region is set in the profile (#​32520) (01fec04)

Alpha modules (2.173.1-alpha.0)

v2.173.0

Compare Source

Features
Bug Fixes

Alpha modules (2.173.0-alpha.0)
Features

v2.172.0

Compare Source

⚠ BREAKING CHANGES TO EXPERIMENTAL FEATURES
  • apigateway: We will be removing deprecated APIGatewayV2 constructs from aws-apigateway module.
Features
Bug Fixes

Alpha modules (2.172.0-alpha.0)
Features
Bug Fixes
  • scheduler-targets-alpha: incorrect validation of maximumEventAge (#​32284) (2eebc59)

v2.171.1

Compare Source

Bug Fixes

Alpha modules (2.171.1-alpha.0)

v2.171.0

Compare Source

Features
Bug Fixes

Alpha modules (2.171.0-alpha.0)

v2.170.0

Compare Source

Features
Bug Fixes
Reverts

Alpha modules (2.170.0-alpha.0)

v2.169.0

Compare Source

Features
Bug Fixes

@github-actions

This comment has been minimized.

@github-actions
Copy link
Copy Markdown

github-actions bot commented Jul 18, 2025

Unit Test Results

  3 832 files  +  1 278    3 832 suites  +1 278   1h 51m 22s ⏱️ + 40m 9s
11 801 tests +     836  11 795 ✔️ +     836    6 💤 ±0  0 ±0 
33 054 runs  +11 018  33 036 ✔️ +11 012  18 💤 +6  0 ±0 

Results for commit 4ad111f. ± Comparison against base commit c6f072a.

♻️ This comment has been updated with latest results.

@mend-for-github-com mend-for-github-com bot force-pushed the whitesource-remediate/aws-cdk-lib-2.x branch from a481458 to 4ad111f Compare July 29, 2025 00:01
@mend-for-github-com mend-for-github-com bot changed the title Update dependency aws-cdk-lib to v2.177.0 Update dependency aws-cdk-lib Jul 29, 2025
@dlvenable dlvenable merged commit fe0d8a7 into main Jul 30, 2025
52 of 54 checks passed
@mend-for-github-com mend-for-github-com bot deleted the whitesource-remediate/aws-cdk-lib-2.x branch July 30, 2025 17:31
opensearch-trigger-bot bot pushed a commit that referenced this pull request Jul 30, 2025
Co-authored-by: mend-for-github-com[bot] <50673670+mend-for-github-com[bot]@users.noreply.github.com>
(cherry picked from commit fe0d8a7)
dlvenable pushed a commit that referenced this pull request Jul 30, 2025
(cherry picked from commit fe0d8a7)

Co-authored-by: mend-for-github-com[bot] <50673670+mend-for-github-com[bot]@users.noreply.github.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

backport 2.12 security fix Security fix generated by WhiteSource

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant