-
Notifications
You must be signed in to change notification settings - Fork 4
fix(deps): update patch tuesday #1882
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Conversation
|
The latest updates on your projects. Learn more about Vercel for GitHub. |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Pull request overview
This PR updates multiple dependencies across the repository, primarily focusing on AWS SDK packages, development tools, and GitHub Actions. The updates include patch and minor version bumps for various packages.
Changes:
- Updated AWS SDK packages from 3.968.0 to 3.971.0
- Updated Node.js from 22.21.1 to 22.22.0 (security release)
- Updated build tools and development dependencies including TypeScript ESLint, Prettier, and Next.js
Reviewed changes
Copilot reviewed 10 out of 12 changed files in this pull request and generated no comments.
Show a summary per file
| File | Description |
|---|---|
| pnpm-monorepo/packages/database/package.json | Updated @types/node to 22.19.7 |
| pnpm-monorepo/package.json | Updated pnpm to 10.28.1 and Prettier to 3.8.0 |
| pnpm-monorepo/apps/lambda/package.json | Updated AWS SDK packages and @types dependencies |
| app/package.json | Updated multiple dependencies including AWS SDK, Next.js, React libraries, and development tools |
| app/.devcontainer/Dockerfile | Updated Node.js base image to 22.22.0 |
| .github/workflows/validate-app.yml | Updated actions/setup-node to v6.2.0 |
| .github/workflows/production-database-migrations.yml | Updated actions/setup-node to v6.2.0 |
| .github/workflows/commitlint.yml | Updated actions/setup-node to v6.2.0 |
| .github/workflows/build-lambda-functions.yml | Updated oven-sh/setup-bun to v2.1.2 |
| .github/workflows/build-lambda-functions-pnpm.yml | Updated pnpm version to 10.28.1 and actions/setup-node to v6.2.0 |
Files not reviewed (1)
- pnpm-monorepo/pnpm-lock.yaml: Language not supported
💡 Add Copilot custom instructions for smarter, more guided reviews. Learn how to get started.
|
|
Warning Review the following alerts detected in dependencies. According to your organization's Security Policy, it is recommended to resolve "Warn" alerts. Learn more about Socket for GitHub.
|



This PR contains the following updates:
3.968.0->3.971.03.975.0(+2)3.968.0->3.971.03.975.0(+2)3.968.0->3.971.03.975.0(+2)3.968.0->3.971.03.975.0(+2)3.968.0->3.971.03.975.0(+2)3.0.6->3.1.03.3.0(+1)5.91.2->5.91.35.90.16->5.90.195.90.208.10.159->8.10.16022.19.6->22.19.78.53.0->8.53.18.54.08.53.0->8.53.18.54.0v6.1.0->v6.2.016.1.1->16.1.416.1.516.1.1->16.1.416.1.522.21.1-bookworm->22.22.0-bookwormv2.1.0->v2.1.23.7.4->3.8.03.8.16.0.3->6.1.05.2.1->5.2.3Release Notes
aws/aws-sdk-js-v3 (@aws-sdk/client-dynamodb)
v3.971.0Compare Source
Note: Version bump only for package @aws-sdk/client-dynamodb
v3.970.0Compare Source
Note: Version bump only for package @aws-sdk/client-dynamodb
v3.969.0Compare Source
Note: Version bump only for package @aws-sdk/client-dynamodb
aws/aws-sdk-js-v3 (@aws-sdk/client-eventbridge)
v3.971.0Compare Source
Note: Version bump only for package @aws-sdk/client-eventbridge
v3.970.0Compare Source
Note: Version bump only for package @aws-sdk/client-eventbridge
v3.969.0Compare Source
Note: Version bump only for package @aws-sdk/client-eventbridge
aws/aws-sdk-js-v3 (@aws-sdk/client-s3)
v3.971.0Compare Source
Note: Version bump only for package @aws-sdk/client-s3
v3.970.0Compare Source
Note: Version bump only for package @aws-sdk/client-s3
v3.969.0Compare Source
Note: Version bump only for package @aws-sdk/client-s3
aws/aws-sdk-js-v3 (@aws-sdk/client-ssm)
v3.971.0Compare Source
Note: Version bump only for package @aws-sdk/client-ssm
v3.970.0Compare Source
Note: Version bump only for package @aws-sdk/client-ssm
v3.969.0Compare Source
Note: Version bump only for package @aws-sdk/client-ssm
aws/aws-sdk-js-v3 (@aws-sdk/s3-request-presigner)
v3.971.0Compare Source
Note: Version bump only for package @aws-sdk/s3-request-presigner
v3.970.0Compare Source
Note: Version bump only for package @aws-sdk/s3-request-presigner
v3.969.0Compare Source
Note: Version bump only for package @aws-sdk/s3-request-presigner
ericelliott/cuid2 (@paralleldrive/cuid2)
v3.1.0Compare Source
TanStack/query (@tanstack/eslint-plugin-query)
v5.91.3Compare Source
Patch Changes
TanStack/query (@tanstack/react-query)
v5.90.19Compare Source
Patch Changes
53fc74e]:v5.90.18Compare Source
Patch Changes
dea1614]:v5.90.17Compare Source
Patch Changes
269351b]:typescript-eslint/typescript-eslint (@typescript-eslint/eslint-plugin)
v8.53.1Compare Source
🩹 Fixes
❤️ Thank You
You can read about our versioning strategy and releases on our website.
typescript-eslint/typescript-eslint (@typescript-eslint/parser)
v8.53.1Compare Source
This was a version bump only for parser to align it with other projects, there were no code changes.
You can read about our versioning strategy and releases on our website.
actions/setup-node (actions/setup-node)
v6.2.0Compare Source
What's Changed
Documentation
Dependency updates:
New Contributors
Full Changelog: actions/setup-node@v6...v6.2.0
vercel/next.js (eslint-config-next)
v16.1.4Compare Source
Core Changes
Credits
Huge thanks to @mischnic for helping!
v16.1.3Compare Source
Core Changes
Credits
Huge thanks to @acdlite and @ijjk for helping!
v16.1.2Compare Source
Core Changes
Credits
Huge thanks to @mischnic for helping!
nodejs/node (node)
v22.22.0: 2026-01-13, Version 22.22.0 'Jod' (LTS), @marco-ippolitoCompare Source
This is a security release.
Notable Changes
lib:
lib,permission:
src:
src,lib:
tls:
Commits
6badf4e6f4] - deps: update c-ares to v1.34.6 (Node.js GitHub Bot) #6099737509c3ff0] - deps: update undici to 6.23.0 (Matteo Collina) nodejs-private/node-private#791eb8e41f8db] - (CVE-2025-59465) lib: add TLSSocket default error handler (RafaelGSS) nodejs-private/node-private#797ebbf942a83] - (CVE-2025-55132) lib: disable futimes when permission model is enabled (RafaelGSS) nodejs-private/node-private#7486b4849583a] - (CVE-2025-55130) lib,permission: require full read and write to symlink APIs (RafaelGSS) nodejs-private/node-private#760ddadc31f09] - (CVE-2025-59466) src: rethrow stack overflow exceptions in async_hooks (Matteo Collina) nodejs-private/node-private#773d4d9f3915f] - (CVE-2025-55131) src,lib: refactor unsafe buffer creation to remove zero-fill toggle (Сковорода Никита Андреевич) nodejs-private/node-private#75925d6799df6] - (CVE-2026-21637) tls: route callback exceptions through error handlers (Matteo Collina) nodejs-private/node-private#796oven-sh/setup-bun (oven-sh/setup-bun)
v2.1.2Compare Source
oven-sh/setup-bunis the github action for setting up Bun.What's Changed
Full Changelog: oven-sh/setup-bun@v2...v2.1.2
v2.1.1Compare Source
oven-sh/setup-bunis the github action for setting up Bun.What's Changed
form-datadependency to version v4.0.5 due to GHSA-fjxv-7rqg-78g4 by @Jarred-SumnerFull Changelog: oven-sh/setup-bun@v2.1.0...v2.1.1
prettier/prettier (prettier)
v3.8.0Compare Source
diff
🔗 Release Notes
bvaughn/react-error-boundary (react-error-boundary)
v6.1.0Compare Source
Error->unknown)getErrorMessagehelper methodJohannesKlauss/react-keymap-hook (react-hotkeys-hook)
v5.2.3Compare Source
What's Changed
useKey: trueby @matiastucci in JohannesKlauss/react-hotkeys-hook#1275New Contributors
Full Changelog: JohannesKlauss/react-hotkeys-hook@v5.2.1...v5.2.3
v5.2.2Compare Source
Configuration
📅 Schedule: Branch creation - "before 7am on Tuesday" (UTC), Automerge - At any time (no schedule defined).
🚦 Automerge: Enabled.
♻ Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.
👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.
This PR has been generated by Renovate Bot.