From 54b9ce25233637289da1e0210aef79efc221df8a Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Mon, 21 Oct 2024 12:30:48 +0000 Subject: [PATCH] Upgrade: [dependabot] - bump cdk-nag from 2.29.10 to 2.29.12 (#91) Bumps [cdk-nag](https://github.com/cdklabs/cdk-nag) from 2.29.10 to 2.29.12.
Release notes

Sourced from cdk-nag's releases.

v2.29.12

2.29.12 (2024-10-20)

v2.29.11

2.29.11 (2024-10-19)

Commits

[![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=cdk-nag&package-manager=npm_and_yarn&previous-version=2.29.10&new-version=2.29.12)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores) Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`. [//]: # (dependabot-automerge-start) [//]: # (dependabot-automerge-end) ---
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
Signed-off-by: dependabot[bot] Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> --- package-lock.json | 8 ++++---- packages/cdk/package.json | 2 +- 2 files changed, 5 insertions(+), 5 deletions(-) diff --git a/package-lock.json b/package-lock.json index 137e549d..c66adc16 100644 --- a/package-lock.json +++ b/package-lock.json @@ -4224,9 +4224,9 @@ "link": true }, "node_modules/cdk-nag": { - "version": "2.29.10", - "resolved": "https://registry.npmjs.org/cdk-nag/-/cdk-nag-2.29.10.tgz", - "integrity": "sha512-BKkDOsIGAkFSk4wCU2QVHh1PVE79DzxF2KGgCkwSX3yXJ5SVhldc6CjyB4r46dh/A6cJ5/+FfDiWrmMrTANTAw==", + "version": "2.29.12", + "resolved": "https://registry.npmjs.org/cdk-nag/-/cdk-nag-2.29.12.tgz", + "integrity": "sha512-w0yw2W0z+5UFhaWGmhRsT/LCxv8O3HcNv/nPFb9UswsFcBbq4EM4wsyxCZ9z8XWWvblj/Q/rDC3pamLnQIhxpA==", "peerDependencies": { "aws-cdk-lib": "^2.156.0", "constructs": "^10.0.5" @@ -16174,7 +16174,7 @@ "version": "0.1.0", "dependencies": { "aws-cdk-lib": "^2.162.1", - "cdk-nag": "^2.29.10", + "cdk-nag": "^2.29.12", "constructs": "^10.4.2", "source-map-support": "^0.5.21" }, diff --git a/packages/cdk/package.json b/packages/cdk/package.json index b7f9f977..eb68c0fa 100644 --- a/packages/cdk/package.json +++ b/packages/cdk/package.json @@ -11,7 +11,7 @@ }, "dependencies": { "aws-cdk-lib": "^2.162.1", - "cdk-nag": "^2.29.10", + "cdk-nag": "^2.29.12", "constructs": "^10.4.2", "source-map-support": "^0.5.21" },