From 33bd44e93f062fbdee95af05e3a2b46d867ff66b Mon Sep 17 00:00:00 2001 From: garvit singh Date: Fri, 22 Nov 2024 10:57:17 -0500 Subject: [PATCH] Release 3.3.12 (#142) --- CHANGELOG.md | 6 ++++++ source/cognito-trigger/package-lock.json | 10 +++++----- source/cognito-trigger/package.json | 2 +- source/ui/package-lock.json | 10 +++++----- source/ui/package.json | 2 +- 5 files changed, 18 insertions(+), 12 deletions(-) diff --git a/CHANGELOG.md b/CHANGELOG.md index a274095..920bea7 100644 --- a/CHANGELOG.md +++ b/CHANGELOG.md @@ -5,6 +5,12 @@ All notable changes to this project will be documented in this file. The format is based on [Keep a Changelog](https://keepachangelog.com/en/1.0.0/), and this project adheres to [Semantic Versioning](https://semver.org/spec/v2.0.0.html). +## [3.3.12] - 2024-11-22 + +### Security + +- Bumped cross-spawn to `7.0.6` to mitigate [CVE-2024-21538](https://avd.aquasec.com/nvd/cve-2024-21538) + ## [3.3.11] - 2024-10-31 ### Security diff --git a/source/cognito-trigger/package-lock.json b/source/cognito-trigger/package-lock.json index b7da4d7..e111b1c 100644 --- a/source/cognito-trigger/package-lock.json +++ b/source/cognito-trigger/package-lock.json @@ -1,12 +1,12 @@ { "name": "cognito-trigger", - "version": "3.3.11", + "version": "3.3.12", "lockfileVersion": 3, "requires": true, "packages": { "": { "name": "cognito-trigger", - "version": "3.3.11", + "version": "3.3.12", "license": "Apache-2.0", "dependencies": { "@aws-sdk/client-cognito-identity-provider": "^3.102.0", @@ -3305,9 +3305,9 @@ "dev": true }, "node_modules/cross-spawn": { - "version": "7.0.3", - "resolved": "https://registry.npmjs.org/cross-spawn/-/cross-spawn-7.0.3.tgz", - "integrity": "sha512-iRDPJKUPVEND7dHPO8rkbOnPpyDygcDFtWjpeWNCgy8WP2rXcxXL8TskReQl6OrB2G7+UJrags1q15Fudc7G6w==", + "version": "7.0.6", + "resolved": "https://registry.npmjs.org/cross-spawn/-/cross-spawn-7.0.6.tgz", + "integrity": "sha512-uV2QOWP2nWzsy2aMp8aRibhi9dlzF5Hgh5SHaB9OiTGEyDTiJJyx0uy51QXdyWbtAHNua4XJzUKca3OzKUd3vA==", "dev": true, "dependencies": { "path-key": "^3.1.0", diff --git a/source/cognito-trigger/package.json b/source/cognito-trigger/package.json index ca37057..6e52cb3 100644 --- a/source/cognito-trigger/package.json +++ b/source/cognito-trigger/package.json @@ -1,6 +1,6 @@ { "name": "cognito-trigger", - "version": "3.3.11", + "version": "3.3.12", "description": "Triggered when a new user is confirmed in the user pool to allow for custom actions to be taken", "author": { "name": "Amazon Web Services", diff --git a/source/ui/package-lock.json b/source/ui/package-lock.json index 39459ca..a8a3925 100644 --- a/source/ui/package-lock.json +++ b/source/ui/package-lock.json @@ -1,12 +1,12 @@ { "name": "network-orchestrator-for-aws-transit-gateway", - "version": "3.3.11", + "version": "3.3.12", "lockfileVersion": 3, "requires": true, "packages": { "": { "name": "network-orchestrator-for-aws-transit-gateway", - "version": "3.3.11", + "version": "3.3.12", "license": "Apache-2.0", "dependencies": { "@aws-amplify/auth": "^5.4.0", @@ -15702,9 +15702,9 @@ } }, "node_modules/cross-spawn": { - "version": "7.0.3", - "resolved": "https://registry.npmjs.org/cross-spawn/-/cross-spawn-7.0.3.tgz", - "integrity": "sha512-iRDPJKUPVEND7dHPO8rkbOnPpyDygcDFtWjpeWNCgy8WP2rXcxXL8TskReQl6OrB2G7+UJrags1q15Fudc7G6w==", + "version": "7.0.6", + "resolved": "https://registry.npmjs.org/cross-spawn/-/cross-spawn-7.0.6.tgz", + "integrity": "sha512-uV2QOWP2nWzsy2aMp8aRibhi9dlzF5Hgh5SHaB9OiTGEyDTiJJyx0uy51QXdyWbtAHNua4XJzUKca3OzKUd3vA==", "dependencies": { "path-key": "^3.1.0", "shebang-command": "^2.0.0", diff --git a/source/ui/package.json b/source/ui/package.json index caea543..ae5ed2c 100644 --- a/source/ui/package.json +++ b/source/ui/package.json @@ -1,6 +1,6 @@ { "name": "network-orchestrator-for-aws-transit-gateway", - "version": "3.3.11", + "version": "3.3.12", "description": "Network Orchestration for AWS Transit Gateway(SO0058)", "license": "Apache-2.0", "author": {