Skip to content

fix(deps): update external fixes - #341

Merged
renovate[bot] merged 1 commit into
mainfrom
renovate-external-fixes
Aug 1, 2026
Merged

fix(deps): update external fixes#341
renovate[bot] merged 1 commit into
mainfrom
renovate-external-fixes

Conversation

@renovate

@renovate renovate Bot commented Aug 1, 2026

Copy link
Copy Markdown
Contributor

This PR contains the following updates:

Package Change Age Confidence Type Update
@aws-sdk/client-cloudwatch-logs (source) 3.1095.03.1101.0 age confidence dependencies minor
@aws-sdk/client-lambda (source) 3.1095.03.1101.0 age confidence dependencies minor
@aws-sdk/client-s3 (source) 3.1095.03.1101.0 age confidence dependencies minor
@aws-sdk/client-sqs (source) 3.1095.03.1101.0 age confidence dependencies minor
@aws-sdk/credential-provider-node (source) 3.972.723.972.76 age confidence dependencies patch
@redocly/cli 2.41.02.43.2 age confidence devDependencies minor
lint-staged 17.2.017.3.0 age confidence devDependencies minor
nock 14.0.1614.0.17 age confidence devDependencies patch
node (source) 24.18.024.18.1 age confidence patch

Release Notes

aws/aws-sdk-js-v3 (@​aws-sdk/client-cloudwatch-logs)

v3.1101.0

Compare Source

Features
  • client-cloudwatch-logs: Amazon CloudWatch Logs now lets you create and update lookup tables directly from CloudWatch Logs query results by passing a queryId, and configure a lookup table as a scheduled query destination so it refreshes automatically with the latest query results on each run. (6f5f75a)

v3.1100.0

Compare Source

Note: Version bump only for package @​aws-sdk/client-cloudwatch-logs

v3.1099.0

Compare Source

Note: Version bump only for package @​aws-sdk/client-cloudwatch-logs

v3.1098.0

Compare Source

Note: Version bump only for package @​aws-sdk/client-cloudwatch-logs

v3.1097.0

Compare Source

Note: Version bump only for package @​aws-sdk/client-cloudwatch-logs

v3.1096.0

Compare Source

Note: Version bump only for package @​aws-sdk/client-cloudwatch-logs

aws/aws-sdk-js-v3 (@​aws-sdk/client-lambda)

v3.1101.0

Compare Source

Note: Version bump only for package @​aws-sdk/client-lambda

v3.1100.0

Compare Source

Note: Version bump only for package @​aws-sdk/client-lambda

v3.1099.0

Compare Source

Features
  • client-lambda: Add Python3.15 (python3.15) and NodeJs 26 (nodejs26.x) support to AWS Lambda (e9cf506)

v3.1098.0

Compare Source

Note: Version bump only for package @​aws-sdk/client-lambda

v3.1097.0

Compare Source

Note: Version bump only for package @​aws-sdk/client-lambda

v3.1096.0

Compare Source

Note: Version bump only for package @​aws-sdk/client-lambda

aws/aws-sdk-js-v3 (@​aws-sdk/client-s3)

v3.1101.0

Compare Source

Note: Version bump only for package @​aws-sdk/client-s3

v3.1100.0

Compare Source

Note: Version bump only for package @​aws-sdk/client-s3

v3.1099.0

Compare Source

Note: Version bump only for package @​aws-sdk/client-s3

v3.1098.0

Compare Source

Note: Version bump only for package @​aws-sdk/client-s3

v3.1097.0

Compare Source

Note: Version bump only for package @​aws-sdk/client-s3

v3.1096.0

Compare Source

Note: Version bump only for package @​aws-sdk/client-s3

aws/aws-sdk-js-v3 (@​aws-sdk/client-sqs)

v3.1101.0

Compare Source

Note: Version bump only for package @​aws-sdk/client-sqs

v3.1100.0

Compare Source

Note: Version bump only for package @​aws-sdk/client-sqs

v3.1099.0

Compare Source

Note: Version bump only for package @​aws-sdk/client-sqs

v3.1098.0

Compare Source

Note: Version bump only for package @​aws-sdk/client-sqs

v3.1097.0

Compare Source

Note: Version bump only for package @​aws-sdk/client-sqs

v3.1096.0

Compare Source

3.1096.0(2026-07-27)
New Features
  • clients: update client endpoints as of 2026-07-27 (24e536ee)
  • client-bcm-data-exports: With this release, customers can configure their data exports to deliver CSV reports in ZIP compressed format. (bf6df63c)
  • client-glue: Adds BatchGetDataQualityRulesetEvaluationRun API to retrieve multiple runs in one call, ObservationScope and ObservationMode parameters for anomaly detection, writing evaluation results to Data Catalog tables, and custom log group paths for recommendation runs. (70d8b71e)
  • client-sagemaker: This release adds LoRA adapters, training plans, and new instance types to SageMaker inference optimization. CreateAIRecommendationJob accepts optional AdapterSource and CreateOptimizationJob accepts optional TrainingPlanArns and the ml.g7e and ml.p6-b200 families. (587c6437)
  • client-account: This release adds support for the GetPrimaryEmailUpdateStatus API operation, which allows customers to retrieve the current status of a primary email address update request for an AWS account. The operation returns status information including whether the update is pending, completed, or failed. (d633065c)
  • client-quicksight: Added new Governance fields to Custom Permissions API to support Deny By Default functionality. (730d4716)
  • client-cleanrooms: This release adds support for the CR.8X worker type for SQL (32 vCPU) (4c532188)
  • client-emr-containers: With this launch, you can now set concurrent job limits on a virtual cluster, giving you fine-grained control over how many job runs execute at once and how many can wait in queue. (b6c745a4)
  • client-securityagent: AWS Security Agent adds a new task hours field that reflects the active work done for a task. (6419f793)
  • client-partnercentral-account: Adds optional headquarters location to StartProfileUpdateTask, letting partners record their headquarters as an ISO 3166 country and subdivision code on their profile. When headquarters is provided, both the country and subdivision codes are required. (db69aaa7)
  • client-cleanroomsml: This release adds support for the CR.8X worker type for SQL (32 vCPU) (bcabd86a)
Bug Fixes
  • core/protocols: handle JSON exponent notation in jsonReviver (#​8226) (c3b27fd3)

For list of updated packages, view updated-packages.md in assets-3.1096.0.zip

aws/aws-sdk-js-v3 (@​aws-sdk/credential-provider-node)

v3.972.76

Chores
  • credential-provider-node: update dependencies.

v3.972.75

Chores

v3.972.74

Chores
  • credential-provider-node: update dependencies.

v3.972.73

Chores
  • credential-provider-node: update dependencies.
Redocly/redocly-cli (@​redocly/cli)

v2.43.2

Compare Source

Patch Changes

v2.43.1

Compare Source

Patch Changes

v2.43.0

Compare Source

Patch Changes

v2.42.0

Compare Source

Minor Changes
  • Added an experimental generate-client command that generates a typed, zero-dependency TypeScript client from an OpenAPI description — auth, retries, middleware, typed SSE streaming, pagination, and multipart included — plus optional companion generators for Zod validation, TanStack Query and SWR hooks, MSW mocks, and date transformers.
    See the generate-client command reference and the Use the generated client guide.
Patch Changes

v2.41.2

Compare Source

Patch Changes
  • Updated js-yaml from 5.2.1 to 5.2.2 to resolve a vulnerability in YAML parsing.

  • Added support for the Arazzo spec-compliant workflow reference form $sourceDescriptions.<name>.<workflowId> in dependsOn, step workflowId, and success/failure action workflowId.

    Unresolvable workflow references fail only the affected workflow with a clear error message, and no longer abort the whole run or pass unnoticed.

  • Updated @​redocly/openapi-core to v2.41.2.

  • Updated @​redocly/respect-core to v2.41.2.

v2.41.1

Compare Source

Patch Changes
  • Fixed an issue where the drift command's schema-consistency rule reported false-positive findings for oneOf schemas with a discriminator.
    Payloads are validated only against the branch selected by the discriminator value instead of every oneOf branch.
    Schemas whose discriminator does not meet Ajv's structural requirements keep the previous behavior.
  • Extended the drift command's built-in undocumented-header ignore list with x-amz-, x-amzn- and x-github- prefixes, and the x-hub-signature / x-hub-signature-256 webhook signature headers.
lint-staged/lint-staged (lint-staged)

v17.3.0

Compare Source

Minor Changes
  • #​1825 16b3f74 - It is now possible to run multiple tasks in parallel for a single glob by configuring it with an array of tasks (which run sequentially), and then placing another array inside it (where the tasks will run in parallel). The following demonstrates the order tasks will start in:

    {
      "*.ts": ["first", "second", ["third", "third"], "fourth"]
    }

    As a concrete example, lint-staged's own configuration is:

    /** @&#8203;type {import('./lib/index.js').Configuration} */
    export default {
      "*": [
        [
          "oxfmt --check --no-error-on-unmatched-pattern",
          "oxlint --no-error-on-unmatched-pattern",
        ],
      ],
      "*.ts": () => "tsc",
    };

    which means:

    1. for all staged files, run the two commands in parallel with staged filenames appended, for example:
      • oxfmt --check --no-error-on-unmatched-pattern lib/index.js
      • oxlint --no-error-on-unmatched-pattern lib/index.js
    2. additionally, if any *.ts files are staged, run tsc without appending any arguments
    3. The two sets of commands also run in parallel
Patch Changes
  • #​1829 15f7e53 - During an in-progress merge, files that are unchanged from the branch being merged are now skipped. Technically, files are only included if there are staged changes against both HEAD and MERGE_HEAD.
nock/nock (nock)

v14.0.17

Compare Source

Bug Fixes
  • remove interceptor from scope.interceptors on nock.removeInterceptor (#​2997) (1ee467c)
nodejs/node (node)

v24.18.1: 2026-07-29, Version 24.18.1 'Krypton' (LTS), @​juanarbol

Compare Source

This is a security release.

Notable Changes
  • (CVE-2026-56846) http2: retain header memory in session accounting (Matteo Collina) – High
  • (CVE-2026-56848) http2: defer rst stream while in scope (Matteo Collina) – High
  • (CVE-2026-58043) permission: avoid granting radix split nodes (RafaelGSS) – High
  • (CVE-2026-56850) https: distinguish PFX object-array agent keys (RafaelGSS) – Medium
  • (CVE-2026-58040) https: bind identity checks to session reuse (Matteo Collina) – Medium
  • (CVE-2026-58041) sqlite: invalidate tag store iterators on statement reset (Matteo Collina) – Medium
  • (CVE-2026-58042) dns: handle large resolveAny address replies (RafaelGSS) – Medium
  • (CVE-2026-58045) zlib: throw on out-of-bounds write buffers (RafaelGSS) – Medium
  • (CVE-2026-56847) permission: enforce fs write permission for trace events (RafaelGSS) – Low
  • (CVE-2026-58039) permission: check final report output path (RafaelGSS) – Low
  • (CVE-2026-58044) http: reject requests exceeding max header count (Matteo Collina) – Low
  • deps: update llhttp to 9.4.3 (Paolo Insogna)
  • deps: update undici to 7.29.0 (Node.js GitHub Bot)
Commits

Configuration

📅 Schedule: (in timezone Europe/Zurich)

  • Branch creation
    • "after 2pm on Saturday"
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Enabled.

Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@github-actions

github-actions Bot commented Aug 1, 2026

Copy link
Copy Markdown

This PR will trigger a patch release when merged.

@renovate
renovate Bot temporarily deployed to dev-branches August 1, 2026 19:14 Inactive
@codecov

codecov Bot commented Aug 1, 2026

Copy link
Copy Markdown

Codecov Report

✅ All modified and coverable lines are covered by tests.

📢 Thoughts on this report? Let us know!

@renovate
renovate Bot merged commit 02380f7 into main Aug 1, 2026
18 checks passed
@renovate
renovate Bot deleted the renovate-external-fixes branch August 1, 2026 23:01
solaris007 pushed a commit that referenced this pull request Aug 1, 2026
## [1.16.3](v1.16.2...v1.16.3) (2026-08-01)

### Bug Fixes

* **deps:** update external fixes ([#341](#341)) ([02380f7](02380f7))
@solaris007

Copy link
Copy Markdown
Member

🎉 This PR is included in version 1.16.3 🎉

The release is available on GitHub release

Your semantic-release bot 📦🚀

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant