Skip to content

fix(deps): update all patch dependencies - #2754

Open
renovate[bot] wants to merge 1 commit into
mainfrom
renovate/all-patch
Open

fix(deps): update all patch dependencies#2754
renovate[bot] wants to merge 1 commit into
mainfrom
renovate/all-patch

Conversation

@renovate

@renovate renovate Bot commented Aug 8, 2026

Copy link
Copy Markdown
Contributor

This PR contains the following updates:

Package Change Age Confidence Type Update Pending
@vitejs/plugin-react (source) 6.0.46.0.5 age confidence devDependencies patch
boto3 1.43.541.43.64 age confidence dependencies patch 1.43.69 (+4)
node (source) 22.23.1-alpine22.23.2-alpine age confidence stage patch
node (source) 22.23.122.23.2 age confidence patch
translate-toolkit 3.19.153.19.17 age confidence dependencies patch

Review

  • Updates have been tested and work
  • If updates are AWS related, versions match the infrastructure (e.g. Lambda runtime, database, etc.)

Release Notes

vitejs/vite-plugin-react (@​vitejs/plugin-react)

v6.0.5

Compare Source

Fixed the react compiler preset filter to be linear (#​1353)

The improved filter in v6.0.3 was non-linear and caused a performance regression (#​1349). The filter was changed to be linear to avoid that.

boto/boto3 (boto3)

v1.43.64

Compare Source

=======

  • api-change:connect: [botocore] Amazon Connect Customer now supports up to 50 attachments per email, increased from the previous limit of 10. The individual maximum attachment size limit of 20 MB and the total email size limit of 25 MB still hold true.
  • api-change:dsql: [botocore] UpdateCluster now checks the RemovePeerCluster permission on the specific cluster being removed, not a wildcard and docs now clarify how to set kmsEncryptionKey so the cluster uses the AWS-owned key.
  • api-change:dynamodb: [botocore] Vector indexes are a type of index in Amazon DynamoDB that enable similarity search on vector embedding stored in your table items. Vector indexes use approximate nearest neighbor search to find items whose vectors are most similar to a query vector that you provide.
  • api-change:ec2: [botocore] Amazon EC2 now supports Application Status Checks, a new status check that monitors your application's health through configurable HTTP(S) paths and ports, so you can detect and automatically respond to application-level impairments.
  • api-change:endpoint-rules: [botocore] Update endpoint-rules client to latest version
  • api-change:iam: [botocore] Updating endpoint generation logic
  • api-change:inspector2: [botocore] Adding Azure SBOM export capability.
  • api-change:organizations: [botocore] Improved accuracy of CloudTrail event documentation for AWS Organizations membership operations.
  • api-change:partnercentral-selling: [botocore] Partners can now create leads with only 5 required fields and free-text values for all other fields, reducing import friction. Engagement invitations now include enrichment data (propensity scores, lead readiness) directly in the response.
  • api-change:sso-admin: [botocore] AWS IAM Identity Center now lets you create organization-level instances without enabling multi-account permissions. You can enable multi-account permissions during instance creation or later via console or API, which then provisions the necessary service-linked roles.
  • api-change:workspaces: [botocore] Added ClientExperiencePolicy to ClientProperties object for ModifyClientProperties and DescribeClientProperties APIs.

v1.43.63

Compare Source

=======

  • api-change:directconnect: [botocore] Added route visibility support for AWS Direct Connect, allowing customers to call ListVirtualInterfaceRoutes to view the BGP routes including AS path and BGP communities advertised over their virtual interfaces.
  • api-change:eks-auth: [botocore] Added eksNodeName, instanceId, and zone optional parameters to the AssumeRoleForPodIdentity API.
  • api-change:mediaconvert: [botocore] Updates Kantar server URL validation to accept Fifty5Blue domain. Adds support for output to S3 Glacier Instant Retrieval.
  • api-change:network-firewall: [botocore] This launch allows customers to use Network Firewall as an explicit Proxy and protect their workloads against threat of data exfiltration.
  • api-change:observabilityadmin: [botocore] Launch CMK support for Telemetry Enablement Organization and Account Rules.
  • api-change:timestream-influxdb: [botocore] This release adds support for customer-managed backup restore, and encryption of new DbInstances and DbClusters using customer-managed KMS keys.
  • api-change:wafv2: [botocore] Updated descriptions for number of PreParseTextTransformations allowed per rule statement

v1.43.62

Compare Source

=======

  • api-change:amp: [botocore] Amazon Managed Service for Prometheus adds support for an Amazon OpenSearch Service exporter for managed collectors.
  • api-change:bedrock-runtime: [botocore] Added support for mid-conversation tool changes in the Amazon Bedrock Converse and ConverseStream APIs
  • api-change:billing: [botocore] Adds GetEnterpriseSupportChargeSummary, GetEnterpriseSupportContractDetails, and ListEnterpriseSupportLinkedAccountCharges. These APIs provide first-time programmatic access to billing data for Enterprise Support usage previously only available upon request through AWS Concierge or Support.
  • api-change:cloudformation: [botocore] Adding enum for sensitive property to DriftIgnoredReason
  • api-change:connectcampaignsv2: [botocore] Launching feature for abandonment rate pacing control for outbound campaigns.
  • api-change:datazone: [botocore] Adding support for enhanced Git experience in Sagemaker Unified Studio.
  • api-change:elementalinference: [botocore] AWS Elemental Inference now supports graphic composition on cropped video outputs, enabling branded graphics and other visual elements to be overlaid as part of the inference workflow.
  • api-change:endpoint-rules: [botocore] Update endpoint-rules client to latest version
  • api-change:logs: [botocore] Amazon CloudWatch Logs now lets you create and update lookup tables directly from CloudWatch Logs query results by passing a queryId, and configure a lookup table as a scheduled query destination so it refreshes automatically with the latest query results on each run.
  • api-change:marketplace-catalog: [botocore] This release enhances the ListEntities API to support TargetAgreementId, TargetAgreementIntent, and CreatedBySource filters for the Offer entity type.
  • api-change:network-firewall: [botocore] Doc Updates for Container Attributes
  • api-change:outposts: [botocore] Adds the "EKS" value to the AWSServiceName enum and marks the Address field as sensitive.
  • api-change:quicksight: [botocore] Adding TopicV2 management APIs, adding possibility to use Topics in Analysis
  • api-change:rds: [botocore] Adds StorageOperationStatus and StorageOperationPercentProgress to DescribeDBInstances, letting you monitor RDS storage initialization and optimization progress.
  • api-change:resiliencehubv2: [botocore] Adding support for new testing capability in AWS Resilience Hub.

v1.43.61

Compare Source

=======

  • api-change:bcm-pricing-calculator: [botocore] Removing Smithy RPC v2 CBOR support that was added in previous SDK release.
  • api-change:bcm-recommended-actions: [botocore] Removing Smithy RPC v2 CBOR support that was added in previous SDK release.

v1.43.60

Compare Source

=======

  • api-change:bedrock-agentcore-control: [botocore] Adds support for configuring models through the OpenResponses API for custom evaluators. CreateEvaluator and UpdateEvaluator now accept an OpenResponses model configuration for LLM-as-a-Judge evaluations.
  • api-change:endpoint-rules: [botocore] Update endpoint-rules client to latest version
  • api-change:iam: [botocore] Improved IAM Policy Simulator accuracy. Simulator now evaluates SCP conditions and resource scoping, returns explicitDeny for explicit SCP denials, and reports accurate cross-account decisions.
  • api-change:kafka: [botocore] Amazon MSK Express brokers now support streaming tables for Apache Iceberg, continuously materializing Apache Kafka topics as Iceberg tables in Amazon S3 Tables. Express brokers also now support data delivery to Amazon S3 general purpose buckets.
  • api-change:lambda: [botocore] Add Python3.15 (python3.15) and NodeJs 26 (nodejs26.x) support to AWS Lambda
  • api-change:network-firewall: [botocore] Adds UPDATING field to Container Association Status
  • api-change:pricing-plan-manager: [botocore] Adds support for Public PricingPlanManager SDK
  • api-change:sagemaker: [botocore] Adds support for g7 family instance types for SageMaker Studio JupyterLab and CodeEditor apps for IAD (us-east-1), PDX (us-west-2), CMH (us-east-2).
  • api-change:securityagent: [botocore] Adds support for providing a branch override when configured integrated repositories

v1.43.59

Compare Source

=======

  • api-change:dms: [botocore] Updated documentation for various DMS Schema Conversion operations
  • api-change:ec2: [botocore] This release adds support for policy-based routing on AWS Transit Gateway, enabling you to route traffic based on 5-tuple matching (source IP, destination IP, source port, destination port, and protocol) using new policy table entry APIs that direct matching traffic to a target route table.
  • api-change:gameliftstreams: [botocore] Adds ListApplicationShaderCaches API to retrieve shader cache metadata for applications and adds stream URLs, which give end users temporary, unauthenticated access to a stream session in their browser. Includes CreateStreamUrl, GetStreamUrl, ListStreamUrls, and RevokeStreamUrl operations.
  • api-change:glue: [botocore] Adding filtering, partitioning, and VPC support to AWS Glue REST API connector
  • api-change:iotsitewise: [botocore] We have released a new set of APIs in support of a major new feature within AWS IoT SiteWise called Scenario Discover. Please see user guide about the feature and the API guide in public documentation for new APIs.
  • api-change:wafv2: [botocore] AWS WAF now supports pre-parse text transformations, letting you normalize raw query strings before parsing, available on rule statements that use SingleQueryArgument or AllQueryArguments as the FieldToMatch. AWS WAF also added 10 new text transformations, including ModSecurity v3 parity options.

v1.43.58

Compare Source

=======

  • api-change:bedrock-agentcore-control: [botocore] AgentCore Identity now supports Private Key JWT client authentication for OAuth 2.0 credential providers. Agents can authenticate to identity provider token endpoints with a JWT client assertion signed by a customer-managed AWS KMS asymmetric key, eliminating the need for client secrets.
  • api-change:connect: [botocore] Documentation updates for SearchRules, AssociateRoutingProfileQueues, CreateRoutingProfile, AssociateContactWithUser CreateTaskTemplate, and UpdateTaskTemplate
  • api-change:datasync: [botocore] Adds Enhanced mode support for EFS and FSx Lustre locations without an agent, and for HDFS (TDE), Azure Blob, and object storage locations with an agent. HDFS Enhanced mode supports multiple NameNodes for High Availability. Enhanced mode agents can now be deployed on Microsoft Hyper-V.
  • api-change:rolesanywhere: [botocore] Increases certificate string length for trust anchor source data to support new adjustable trust anchor limits.
  • api-change:trustedadvisor: [botocore] Adds ListRecommendationsForResource API and four CheckSummary fields (resourceArnQueryable, awsResourceTypes, checkGranularity, recommendationId) to retrieve recommendations for a given resource ARN.

v1.43.57

Compare Source

=======

  • api-change:account: [botocore] This release adds support for the GetPrimaryEmailUpdateStatus API operation, which allows customers to retrieve the current status of a primary email address update request for an AWS account. The operation returns status information including whether the update is pending, completed, or failed.
  • api-change:bcm-data-exports: [botocore] With this release, customers can configure their data exports to deliver CSV reports in ZIP compressed format.
  • api-change:cleanrooms: [botocore] This release adds support for the CR.8X worker type for SQL (32 vCPU)
  • api-change:cleanroomsml: [botocore] This release adds support for the CR.8X worker type for SQL (32 vCPU)
  • api-change:emr-containers: [botocore] With this launch, you can now set concurrent job limits on a virtual cluster, giving you fine-grained control over how many job runs execute at once and how many can wait in queue.
  • api-change:glue: [botocore] Adds BatchGetDataQualityRulesetEvaluationRun API to retrieve multiple runs in one call, ObservationScope and ObservationMode parameters for anomaly detection, writing evaluation results to Data Catalog tables, and custom log group paths for recommendation runs.
  • api-change:partnercentral-account: [botocore] Adds optional headquarters location to StartProfileUpdateTask, letting partners record their headquarters as an ISO 3166 country and subdivision code on their profile. When headquarters is provided, both the country and subdivision codes are required.
  • api-change:quicksight: [botocore] Added new Governance fields to Custom Permissions API to support Deny By Default functionality.
  • api-change:sagemaker: [botocore] This release adds LoRA adapters, training plans, and new instance types to SageMaker inference optimization. CreateAIRecommendationJob accepts optional AdapterSource and CreateOptimizationJob accepts optional TrainingPlanArns and the ml.g7e and ml.p6-b200 families.
  • api-change:securityagent: [botocore] AWS Security Agent adds a new task hours field that reflects the active work done for a task.

v1.43.56

Compare Source

=======

  • api-change:application-insights: [botocore] This release adds Smithy RPC v2 CBOR as an additional protocol alongside the existing AWS JSON 1.1. The SDK will prioritize its most performant protocol.
  • api-change:artifact: [botocore] Added the PutComplianceInquiryFeedback API, enabling customers to submit feedback on compliance inquiry responses. Customers can rate responses as helpful or not helpful and provide optional reason codes and comments.
  • api-change:cognito-idp: [botocore] Amazon Cognito user pools now support the AdminGetUserAuthFactors operation, which lets administrators retrieve the configured authentication factors (such as password, SMS, email, and TOTP) available for a specific user in a user pool.
  • api-change:endpoint-rules: [botocore] Update endpoint-rules client to latest version
  • api-change:neptune-graph: [botocore] Update validations for Tag Keys and KMS Key ARNs.
  • api-change:odb: [botocore] Documentation-only update to clarify the operation-specific valid values for the externalIdType field.
  • api-change:rtbfabric: [botocore] The deprecated inboundLinksCount field has been removed from the GetResponderGateway API response. Customers who previously relied on this field should use linksRequestedCount instead.

v1.43.55

Compare Source

=======

  • api-change:appstream: [botocore] This release adds Smithy RPC v2 CBOR as an additional protocol alongside the existing AWS JSON 1.1. The SDK will prioritize its most performant protocol.
  • api-change:backup-gateway: [botocore] This release adds Smithy RPC v2 CBOR as an additional protocol alongside the existing AWS JSON 1.0. The SDK will prioritize its most performant protocol.
  • api-change:bcm-pricing-calculator: [botocore] This release adds Smithy RPC v2 CBOR as an additional protocol alongside the existing AWS JSON 1.0. The SDK will prioritize its most performant protocol.
  • api-change:bcm-recommended-actions: [botocore] This release adds Smithy RPC v2 CBOR as an additional protocol alongside the existing AWS JSON 1.0. The SDK will prioritize its most performant protocol.
  • api-change:bedrock-agentcore: [botocore] Adds support for the Bring Your Own Storage(BYOS) feature in AgentCore Browser and Code Interpreter. Enables mounting S3Files and EFS File Systems via Access points.
  • api-change:bedrock-agentcore-control: [botocore] Adds support for the Bring Your Own Storage(BYOS) feature in AgentCore Browser and Code Interpreter. Enables mounting S3Files and EFS File Systems via Access points.
  • api-change:datazone: [botocore] Adds support for notebook sync with S3 ipynb files
  • api-change:gameliftstreams: [botocore] GameLift Streams now supports configuring a custom aspect ratio per stream session to accommodate different player devices. Supported aspect ratios include landscape, portrait, and square - delivering a full-screen experience without letterboxing or cropping.
  • api-change:kendra-ranking: [botocore] This release adds Smithy RPC v2 CBOR as an additional protocol alongside the existing AWS JSON 1.0. The SDK will prioritize its most performant protocol.
  • api-change:mediapackagev2: [botocore] This release adds support for non-epoch-locked CMAF ingest in MediaPackageV2 channels.
  • api-change:quicksight: [botocore] Added new capabilities to custom permissions profiles to control access to Amazon Quick through the browser extension and Microsoft Word, Outlook, Excel, and PowerPoint add-ins.
  • api-change:redshift-data: [botocore] This release include long polling provids a new parameter wait-time-seconds to 5 API operations, new API ListSessions, and a new parameter execution-mode to BatchExecuteStatement
  • api-change:sagemaker: [botocore] Release support for c6a, m6a, m6g, m7g, m8g instance types for SageMaker HyperPod
  • api-change:workspaces-instances: [botocore] This release adds Smithy RPC v2 CBOR as an additional protocol alongside the existing AWS JSON 1.0. The SDK will prioritize its most performant protocol.
nodejs/node (node)

v22.23.2: 2026-07-29, Version 22.23.2 'Jod' (LTS), @​marco-ippolito

Compare Source

This is a security release.

Notable Changes
  • (CVE-2026-56846) http2: retain header memory in session accounting (Matteo Collina) – High
  • (CVE-2026-56848) http2: defer rst stream while in scope (Matteo Collina) – High
  • (CVE-2026-58043) permission: avoid granting radix split nodes (RafaelGSS) – High
  • (CVE-2026-56850) https: distinguish PFX object-array agent keys (RafaelGSS) – Medium
  • (CVE-2026-58040) https: bind identity checks to session reuse (Matteo Collina) – Medium
  • (CVE-2026-58042) dns: handle large resolveAny address replies (RafaelGSS) – Medium
  • (CVE-2026-58045) zlib: throw on out-of-bounds write buffers (RafaelGSS) – Medium
  • (CVE-2026-56847) permission: enforce fs write permission for trace events (RafaelGSS) – Low
  • (CVE-2026-58039) permission: check final report output path (RafaelGSS) – Low
  • (CVE-2026-58044) http: reject requests exceeding max header count (Matteo Collina) – Low
  • deps: update llhttp to 9.4.3 (Paolo Insogna)
  • deps: update undici to 6.28.0 (Node.js GitHub Bot)
Commits
translate/translate (translate-toolkit)

v3.19.17

Compare Source

Released on 31 July 2026

This release contains bug fixes.

Changes

Formats and Converters
  • catkeys
    • Omit untranslated units when serializing catalogs
  • DTD
    • Preserve apostrophe entities during round trips
  • Markdown
    • Avoid applying stale YAML folded scalar offsets to translated
      content
  • RC
    • Preserve inline comments next to their original controls in po2rc
  • TS
    • Preserve disambiguation, developer guidance, and translator comment
      types during PO conversion
Other
  • Handle source changes from scalar values to nested containers without
    serialization errors

Contributors

This release was made possible by the following contributors:

Michal Čihař

v3.19.16

Compare Source

Released on 30 July 2026

This release contains improvements and bug fixes.

Changes

Formats and Converters
  • Markdown and MDX
    • Preserve explicit heading IDs outside translatable content
    • Retain compatibility with existing catalogs that include heading IDs
  • ODF
    • Add odf2po and po2odf converters
    • Support translation of styles, metadata, and embedded ODF objects
    • Preserve package members and metadata when creating translated
      documents
    • Apply non-empty XLIFF translations regardless of approval or state
      metadata
  • TS
    • Reject documents with incompatible major versions instead of
      silently loading them with the wrong parser
Other
  • Improve storage type annotations
  • Update development tooling and CI dependencies

Contributors

This release was made possible by the following contributors:

Michal Čihař


Configuration

📅 Schedule: (in timezone America/Montreal)

  • Branch creation
    • "every weekend"
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate
renovate Bot force-pushed the renovate/all-patch branch 8 times, most recently from 193f818 to 95f864e Compare August 12, 2026 17:28
@renovate

renovate Bot commented Aug 12, 2026

Copy link
Copy Markdown
Contributor Author

⚠️ Artifact update problem

Renovate failed to update an artifact related to this branch. You probably do not want to merge this PR as-is.

♻ Renovate will retry this branch, including artifacts, only when one of the following happens:

  • any of the package files in this branch needs updating, or
  • the branch becomes conflicted, or
  • you click the rebase/retry checkbox if found above, or
  • you rename this PR's title to start with "rebase!" to trigger it manually

The artifact failure details are included below:

File name: poetry.lock
The --no-wheel and --wheel options are deprecated. They have no effect for Python > 3.8 as wheel is no longer bundled in virtualenv.
Updating dependencies
Resolving dependencies...

Creating virtualenv notification-admin-3EIkLYcy-py3.12 in /home/ubuntu/.cache/pypoetry/virtualenvs

Because notifications-utils (53.2.32) @ git+https://github.com/cds-snc/notifier-utils.git@53.2.33 depends on both boto3 (1.43.54) and boto3 (1.43.54), boto3 is required.
So, because notification-admin depends on boto3 (1.43.64), version solving failed.

@renovate
renovate Bot force-pushed the renovate/all-patch branch from 95f864e to 411ec4e Compare August 12, 2026 17:43
@renovate
renovate Bot force-pushed the renovate/all-patch branch from 411ec4e to fde4e65 Compare August 12, 2026 17:46
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants