Skip to content

Conversation

@ikp4success
Copy link
Member

[2.4.4] - 2025-09-24

Security

  • Updated axios from 1.7.7 to 1.12.1 to mitigate CVE-2025-58754, a DoS vulnerability.
  • Updated Python Lambda base image from public.ecr.aws/lambda/python:3.12.2025.09.02.19 to public.ecr.aws/lambda/python:3.12.2025.09.22.12 to address CVE-2025-24528, CVE-2025-3576, CVE-2025-7425, and CVE-2025-8058.
  • Removed deprecated NPM package "fs" has been identified as potentially vulnerable to package takeover.

Fixed

  • Fixed solution CloudFormation template deployment failures in AWS China partition by implementing partition-aware S3 URL generation Issue #338
  • Fixed timeout issue with Get Agent status API by optimizing retry logic to work within AppSync's 30 second timeout limit

@jangidms jangidms merged commit d06912f into main Sep 25, 2025
4 of 5 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants