DataDog / datadog-ci

Use Datadog from your CI.
https://datadoghq.com
Apache License 2.0
129 stars 55 forks source link

chore(deps): bump @aws-sdk/core from 3.535.0 to 3.621.0 #1409

Closed gs-coa closed 3 months ago

gs-coa commented 3 months ago

What and why?

Fix fast-xml-parser vulnerable to ReDOS at currency parsing.

@datadog/datadog-ci requires fast-xml-parser via a transitive dependency on @aws-sdk/core

Release notes: https://github.com/aws/aws-sdk-js-v3/releases/tag/v3.621.0

How?

Version bump

Review checklist

Drarig29 commented 3 months ago

Hi! Thanks for the contribution, but I'm closing in favor of https://github.com/DataDog/datadog-ci/pull/1416 because we like to keep all aws-sdk packages' versions in sync.