Skip to content

Conversation

dorgamliel-snyk
Copy link

snyk-top-banner

Snyk has created this PR to upgrade @aws-sdk/client-ecr from 3.821.0 to 3.872.0.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 22 versions ahead of your current version.

  • The recommended version was released 21 days ago.

Release notes
Package name: @aws-sdk/client-ecr
  • 3.872.0 - 2025-08-20

    3.872.0(2025-08-20)

    Chores
    • clients: use 'include' in tsconfig.json (#7266) (b2eec675)
    • protocoltests: use schema log filter when available (#7261) (2e38b4e1)
    New Features
    • clients: update client endpoints as of 2025-08-20 (87f16686)
    • client-route53-recovery-control-config: Remove incorrect endpoint tests (41b859ac)
    • client-efs: Remove incorrect endpoint tests (fd49ae01)
    • client-sagemaker: This release adds 1/ Launch ml.p5.4xlarge instance in Processing jobs, Training jobs and Training Plan 2/ Makes S3Uri to be required for S3FileSystem and S3FileSystemConfig. (bfd2fd25)
    • client-iam: Remove incorrect endpoint tests (7be4068f)
    • client-detective: Remove incorrect endpoint tests (43a4451a)
    • client-billing: Clarify IPv4 and IPv6 endpoints (a5ebd35d)
    • client-networkmanager: Remove incorrect endpoint tests (2d0793e7)
    • client-sesv2: Remove incorrect endpoint tests (a4b659ed)
    • client-kinesis: Remove incorrect endpoint tests (569d9f89)
    • client-datazone: This release supports policy grant identifier for cloud formation integration (385adca1)
    • client-dynamodb: Remove incorrect endpoint tests (16a3ca86)
    • client-eks: EKS Add-ons Custom Namespace Support (b6126131)
    • client-kinesis-analytics-v2: Adds Key Management Service (KMS) support allowing customer-managed key (CMK) encryption for Flink application data. (e39ef0e4)
    • client-cognito-identity-provider: This release adds support for the new Terms APIs which allow displaying Terms of Use and Privacy Policy on the Managed Login user-registration page. (d7b8b115)
    • client-marketplace-entitlement-service: Remove incorrect endpoint tests (a3abef00)
    • client-cost-explorer: Remove incorrect endpoint tests (6fcdfaa6)
    • client-marketplace-metering: Remove incorrect endpoint tests (3febc575)
    • client-bedrock-runtime: Launch CountTokens API to allow token counting (e9e8d2d5)
    • client-budgets: Remove incorrect endpoint tests (384a8db5)
    • client-pinpoint-sms-voice-v2: This change added InternationalSendingEnbaled as part of describe/Update/Request phone number API response, and as part of update/Request phone number API request (8ea06052)
    Bug Fixes

    For list of updated packages, view updated-packages.md in assets-3.872.0.zip

  • 3.864.0 - 2025-08-08

    3.864.0(2025-08-08)

    Chores
    • core/protocols: correct x-amz-target header in schema protocols (#7248) (425c0037)
    Documentation Changes
    • client-transcribe: Update documentation to use key ARN only in OutputEncryptionKMSKeyId request parameter (aa5d9f03)
    New Features
    • clients: update client endpoints as of 2025-08-08 (3540d6ea)
    • client-iot-data-plane: Adding DeleteConnection API to IoT Data Plane (8fd62429)
    • client-s3vectors: Removed incorrect endpoint tests (c14f49d4)
    • client-iot-managed-integrations: Removed incorrect endpoint tests (48cf435c)
    • client-sagemaker: Adds support for GB200 UltraServers in Amazon SageMaker training jobs, training plans, and HyperPod clusters (b5dc676b)
    • client-application-signals: Removed incorrect endpoint tests (794fce3b)
    • client-networkflowmonitor: Removed incorrect endpoint tests (1a2f3527)
    • client-invoicing: Removed incorrect endpoint tests (fa3eb01c)
    • client-notificationscontacts: Removed incorrect endpoint tests (ea092358)
    • client-keyspacesstreams: Removed incorrect endpoint tests (32d8e3cc)
    • client-connect: This release adds a new API GetContactMetrics for Amazon Connect. (d2612b57)
    • client-billing: Removed incorrect endpoint tests (d47a2b84)
    • client-gameliftstreams: Removed incorrect endpoint tests (78d0339d)
    • client-dsql: Removed incorrect endpoint tests (a3da5408)
    • client-bcm-pricing-calculator: Removed incorrect endpoint tests (68d38d89)
    • client-notifications: Removed incorrect endpoint tests (4194d2ad)
    • client-backupsearch: Removed incorrect endpoint tests (0fc50afd)
    • client-mpa: Removed incorrect endpoint tests (bbc9d0d5)
    • client-security-ir: Removed incorrect endpoint tests (2b832bff)
    • client-inspector2: Add CVSSV4 to Vulnerability Search API and update enable/disable account id list length to 5 (c6f99382)
    • client-partnercentral-selling: Removed incorrect endpoint tests (4fe5c4a7)
    • client-workspaces-instances: Removed incorrect endpoint tests (d412c8c5)
    Tests
    • lib-storage: increase timeout for checksum calculation (#7249) (0c9e1b89)

    For list of updated packages, view updated-packages.md in assets-3.864.0.zip

  • 3.863.0 - 2025-08-07

    3.863.0(2025-08-07)

    Chores
    • core/protocols: generate idempotencyTokens in ShapeSerializers (#7247) (35c2bf28)
    Documentation Changes
    • client-batch: This feature allows customers to use AWS Batch with Linux with ARM64 CPU Architecture with Fargate Spot compute support. (4f027296)
    • client-gameliftstreams: Adds Proton 9.0-2 to the list of runtime environment options available when creating an Amazon GameLift Streams application (fee76f44)
    New Features
    • client-codebuild: AWS CodeBuild now supports comment-based pull request control. (14bb0367)
    • client-guardduty: Added support for VPC owner account ID associated with DNS request in the GuardDuty finding. (79364bdb)
    • client-glue: AWS Glue Data Catalog now supports Iceberg Optimization settings at the Catalog level, and supports new options to control the optimization job run rate. (5451046b)
    • client-cloudfront: Added new viewer security policy, TLSv1.3_2025, for CloudFront. (100ddffa)
    Tests
    • bundlers: add e2e test for bundler tree-shaking (#7245) (7312c1b3)

    For list of updated packages, view updated-packages.md in assets-3.863.0.zip

  • 3.862.0 - 2025-08-06
  • 3.859.0 - 2025-08-01
  • 3.858.0 - 2025-07-31
  • 3.857.0 - 2025-07-30
  • 3.856.0 - 2025-07-29
  • 3.855.0 - 2025-07-28
  • 3.851.0 - 2025-07-22
  • 3.848.0 - 2025-07-17
  • 3.846.0 - 2025-07-16
  • 3.845.0 - 2025-07-15
  • 3.844.0 - 2025-07-09
  • 3.840.0 - 2025-06-30
  • 3.839.0 - 2025-06-27
  • 3.835.0 - 2025-06-23
  • 3.830.0 - 2025-06-16
  • 3.828.0 - 2025-06-11
  • 3.826.0 - 2025-06-06
  • 3.825.0 - 2025-06-05
  • 3.823.0 - 2025-06-03
  • 3.821.0 - 2025-05-30
from @aws-sdk/client-ecr GitHub release notes

Important

  • Check the changes in this PR to ensure they won't cause issues with your project.
  • This PR was automatically created by Snyk using the credentials of a real user.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

@dorgamliel-snyk dorgamliel-snyk requested a review from a team as a code owner September 10, 2025 21:52
@CLAassistant
Copy link

CLA assistant check
Thank you for your submission! We really appreciate it. Like many open source projects, we ask that you sign our Contributor License Agreement before we can accept your contribution.
You have signed the CLA already but the status is still pending? Let us recheck it.

Snyk has created this PR to upgrade @aws-sdk/client-ecr from 3.821.0 to 3.872.0.

See this package in npm:
@aws-sdk/client-ecr

See this project in Snyk:
https://app.snyk.io/org/snyk-apprisk-essentials-closed-beta-demo-group/project/efbe78b2-2034-4184-adcf-e3fb5f8a7bd4?utm_source=github&utm_medium=referral&page=upgrade-pr
@parker-snyk parker-snyk force-pushed the snyk-upgrade-5f610368fdb5ddaf5c06b16bcb5e7bb7 branch from 8239eb0 to be410ef Compare September 16, 2025 20:17
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

5 participants