Skip to content

chore(lambda): bump nx from 22.3.3 to 23.1.2 in /lambdas - #5389

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/lambdas/nx-23.1.2
Open

chore(lambda): bump nx from 22.3.3 to 23.1.2 in /lambdas#5389
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/npm_and_yarn/lambdas/nx-23.1.2

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 7, 2026

Copy link
Copy Markdown
Contributor

Bumps nx from 22.3.3 to 23.1.2.

Release notes

Sourced from nx's releases.

23.1.2 (2026-08-26)

🩹 Fixes

  • angular: make webpack-related packages optional peer dependencies (#36310)
  • angular: keep buildable libraries private (#36545)
  • angular-rspack: stop builds crashing on non-array styleUrls (#36550)
  • angular-rspack: rebuild components when their templates or styles change on Windows (#36641, #36619)
  • core: normalize resolved module paths (#36556, #36549)
  • core: stop pruneProjectGraph from mutating the source project graph (#36517, #36470)
  • core: make preset empty work without github.com and improve template download errors (#36508)
  • core: drain to stdout before exiting nx affected (#36569, #36568)
  • core: update brace-expansion to 5.0.9 for CVE-2026-14257 (#36577)
  • core: restrict daemon and plugin worker socket access to the owning user (#36370)
  • core: drain stdout before exiting nx run-many and nx run (#36607, #36606)
  • core: resolve main worktree root without a Windows verbatim prefix (#36649, #35637)
  • core: accept bun.lock lockfileVersion 2 and 3 (#36666)
  • core: maintain cacheability when an executor target default applies (#36477)
  • core: don't leave an unkillable nx process when a terminal closes (#36683, #36682)
  • core: honor the package manager's registry config in nx migrate (#35954, #35843)
  • core: resolve telemetry DNS in-process to avoid a getenv segfault (#36673)
  • core: skip target group members without a target (#36711, #36712)
  • core: port quoteShellArg helper for no-shell spawn fixes (a9e493bf5f)
  • core: stop resending accumulated task hash results to the daemon when hashing tasks (#36716)
  • core: apply package.json updates unblocked by later package groups (#36636)
  • core: adapt held-updates spec to enquirer prompt shape (8fe6dab9d2)
  • core: create external nodes for out-of-workspace link dependencies (#36745)
  • core: point duplicate project names from worktrees at the fix (#36734)
  • core: exclude volatile shell and editor env vars from the daemon (#36642, #36610)
  • core: stop the daemon before nx add installs a package (#36767)
  • devkit: honour cascading ignore files in tree walks and generator formatting (#36575)
  • devkit: correct version floor validation for ranges and prereleases (#36724)
  • docker: skip unchanged version action projects (#36542)
  • expo: keep the expo dev server alive under jest (#36635)
  • expo: derive metro projectRoot and node_modules from the app being bundled (#36650, #36531)
  • gradle: emit valid Groovy when applying the plugin to an existing allprojects block (#36697)
  • gradle: surface project graph timeout errors when the process ignores the kill signal (#36713)
  • js: avoid duplicate node start without watch (#36695, #36694)
  • js: resolve override selectors in affected detection (#36699, #36698)
  • maven: stop running maven and gradle graph analysis through a shell (#36626)
  • misc: move plugin internal imports to devkit/internal (#36430)
  • misc: use workspaceRoot in workspaceModule path (#35142)
  • misc: bump css-loader so npm can resolve rspack core 2 (#36643)
  • misc: make generated code lint-clean under oxlint defaults (#36749)
  • misc: de-flake the nx watch e2e suite (#36758)
  • nextjs: stop installing unused Next.js ESLint packages from the library generator (#36779)
  • nextjs: describe the library generator and export its server entry (#36776)
  • nx-dev: keep the kb index working for uncommitted articles (#36588)
  • nx-dev: update docs pricing link (#36625)
  • react: make module federation packages optional peer dependencies (#36492)

... (truncated)

Commits
  • d139a85 chore(core): drop arboard image-data feature from native build (#36781)
  • 17dfb12 fix(core): stop the daemon before nx add installs a package (#36767)
  • b30fcf4 fix(misc): de-flake the nx watch e2e suite (#36758)
  • 80e12ad fix(core): exclude volatile shell and editor env vars from the daemon (#36642)
  • 6cf9540 fix(release): resolve out-of-set local dependency versions (#36334)
  • b9cceaa fix(core): point duplicate project names from worktrees at the fix (#36734)
  • 7000973 fix(core): create external nodes for out-of-workspace link dependencies (#36745)
  • 8fe6dab fix(core): adapt held-updates spec to enquirer prompt shape
  • 71d56a8 fix(js): resolve override selectors in affected detection (#36699)
  • 77088e2 fix(core): apply package.json updates unblocked by later package groups (#36636)
  • Additional commits viewable in compare view
Install script changes

This version modifies postinstall script that runs during installation. Review the package contents before updating.


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [nx](https://github.com/nrwl/nx/tree/HEAD/packages/nx) from 22.3.3 to 23.1.2.
- [Release notes](https://github.com/nrwl/nx/releases)
- [Commits](https://github.com/nrwl/nx/commits/23.1.2/packages/nx)

---
updated-dependencies:
- dependency-name: nx
  dependency-version: 23.1.2
  dependency-type: direct:development
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code labels Sep 7, 2026
@dependabot
dependabot Bot requested a review from a team as a code owner September 7, 2026 14:13
@github-actions

github-actions Bot commented Sep 7, 2026

Copy link
Copy Markdown
Contributor

Dependency Review

The following issues were found:

  • ✅ 0 vulnerable package(s)
  • ✅ 0 package(s) with incompatible licenses
  • ✅ 0 package(s) with invalid SPDX license definitions
  • ✅ 0 package(s) with unknown licenses.
  • ⚠️ 1 packages with OpenSSF Scorecard issues.

View full job summary

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants