ZeusCloud icon indicating copy to clipboard operation
ZeusCloud copied to clipboard

[Snyk] Upgrade @aws-sdk/client-secrets-manager from 3.329.0 to 3.363.0

Open vishjain opened this issue 1 year ago • 1 comments

This PR was automatically created by Snyk using the credentials of a real user.


Snyk has created this PR to upgrade @aws-sdk/client-secrets-manager from 3.329.0 to 3.363.0.

As this is a private repository, Snyk-bot does not have access. Therefore, this PR has been created automatically, but appears to have been created by a real user. :sparkles: Snyk has automatically assigned this pull request, set who gets assigned.

:information_source: Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 22 versions ahead of your current version.
  • The recommended version was released 22 days ago, on 2023-06-29.

The recommended version fixes:

Severity Issue PriorityScore (*) Exploit Maturity
Regular Expression Denial of Service (ReDoS)
SNYK-JS-FASTXMLPARSER-5668858
589/1000
Why? Has a fix available, CVSS 7.5
No Known Exploit

(*) Note that the real score may have changed since the PR was raised.

Release notes
Package name: @aws-sdk/client-secrets-manager
  • 3.363.0 - 2023-06-29

    3.363.0(2023-06-29)

    New Features
    • client-chime: The Amazon Chime SDK APIs in the Chime namespace are no longer supported. Customers should use APIs in the dedicated Amazon Chime SDK namespaces: ChimeSDKIdentity, ChimeSDKMediaPipelines, ChimeSDKMeetings, ChimeSDKMessaging, and ChimeSDKVoice. (a6ff65fa)
    • client-appstream: This release introduces app block builder, allowing customers to provision a resource to package applications into an app block (8c61b346)
    • client-sagemaker: Adding support for timeseries forecasting in the CreateAutoMLJobV2 API. (1c2f6f07)
    • client-cleanrooms: This release adds support for the OR operator in RSQL join match conditions and the ability to control which operators (AND, OR) are allowed in a join match condition. (03a2f9ac)
    • client-glue: This release adds support for AWS Glue Crawler with Iceberg Tables, allowing Crawlers to discover Iceberg Tables in S3 and register them in Glue Data Catalog for query engines to query against. (2a11fd8a)
    • client-dynamodb: This release adds ReturnValuesOnConditionCheckFailure parameter to PutItem, UpdateItem, DeleteItem, ExecuteStatement, BatchExecuteStatement and ExecuteTransaction APIs. When set to ALL_OLD, API returns a copy of the item as it was when a conditional write failed (cef0845a)
    • client-gamelift: Amazon GameLift now supports game builds that use the Amazon Linux 2023 (AL2023) operating system. (ce985baa)
    • clients: use migrated @ smithy packages (#4873) (d036e2e4)
  • 3.362.0 - 2023-06-28

    3.362.0(2023-06-28)

    Documentation Changes
    • api-reference: deprecation message on TypeDoc api reference (#4894) (2b5a3e46)
    New Features
    • client-lambda: Surface ResourceConflictException in DeleteEventSourceMapping (9aafa260)
    • client-internetmonitor: This release adds a new feature for Amazon CloudWatch Internet Monitor that enables customers to set custom thresholds, for performance and availability drops, for triggering when to create a health event. (fb478aae)
    • client-rds: Amazon Relational Database Service (RDS) now supports joining a RDS for SQL Server instance to a self-managed Active Directory. (a3ee38fa)
    • client-sagemaker: This release adds support for Model Cards Model Registry integration. (75339d28)
    • client-kinesis-analytics-v2: Support for new runtime environment in Kinesis Data Analytics Studio: Zeppelin-0.10, Apache Flink-1.15 (bb74957c)
    • client-s3: The S3 LISTObjects, ListObjectsV2 and ListObjectVersions API now supports a new optional header x-amz-optional-object-attributes. If header contains RestoreStatus as the value, then S3 will include Glacier restore status i.e. isRestoreInProgress and RestoreExpiryDate in List response. (54577854)
    • client-omics: Add Common Workflow Language (CWL) as a supported language for Omics workflows (3cb41fa7)
    Bug Fixes
    • util-retry: correct attempts count on StandardRetryStrategy (#4891) (63c3e60c)
  • 3.360.0 - 2023-06-26

    3.360.0(2023-06-26)

    New Features
    • client-guardduty: Add support for user.extra.sessionName in Kubernetes Audit Logs Findings. (bdf8f40b)
    • client-glue: Timestamp Starting Position For Kinesis and Kafka Data Sources in a Glue Streaming Job (b441cefc)
    • client-connect: This release provides a way to search for existing tags within an instance. Before tagging a resource, ensure consistency by searching for pre-existing key:value pairs. (fff346b4)
    • client-pinpoint: Added time zone estimation support for journeys (cd5ca74b)
    • client-iam: Support for a new API "GetMFADevice" to present MFA device metadata such as device certifications (46a60093)
    Bug Fixes
    • node-http-handler: rejoin on error in writeRequestBody (#4880) (6c8730a9)
  • 3.359.0 - 2023-06-23
  • 3.358.0 - 2023-06-22
  • 3.357.0 - 2023-06-21
  • 3.354.0 - 2023-06-16
  • 3.353.0 - 2023-06-15
  • 3.352.0 - 2023-06-13
  • 3.350.0 - 2023-06-09
  • 3.348.0 - 2023-06-07
  • 3.347.1 - 2023-06-07
  • 3.347.0 - 2023-06-06
  • 3.345.0 - 2023-06-02
  • 3.344.0 - 2023-06-01
  • 3.342.0 - 2023-05-30
  • 3.341.0 - 2023-05-26
  • 3.338.0 - 2023-05-23
  • 3.337.0 - 2023-05-22
  • 3.335.0 - 2023-05-18
  • 3.334.0 - 2023-05-16
  • 3.332.0 - 2023-05-11
  • 3.329.0 - 2023-05-08
from @aws-sdk/client-secrets-manager GitHub release notes

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

🧐 View latest project report

👩‍💻 Set who automatically gets assigned

🛠 Adjust upgrade PR settings

🔕 Ignore this dependency or unsubscribe from future upgrade PRs

vishjain avatar Jul 22 '23 05:07 vishjain

Updated dependencies detected. Learn more about Socket for GitHub ↗︎

Packages Version New capabilities Transitives Size Publisher
@aws-sdk/client-secrets-manager 3.329.0...3.363.0 network +40/-22 2.35 MB aws-sdk-bot

socket-security[bot] avatar Jul 22 '23 05:07 socket-security[bot]