Skip to content

Commit 904d4d7

Browse files
SNOW-3287660 Bump AWS dependencies to address fast-xml-parser vulnerability (#1355)
1 parent da6afd1 commit 904d4d7

2 files changed

Lines changed: 10 additions & 4 deletions

File tree

CHANGELOG.md

Lines changed: 6 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -2,6 +2,12 @@
22

33
## Upcoming Release
44

5+
Changes:
6+
7+
- Bumped `@aws-sdk/*` dependencies to address `fast-xml-parser` vulnerability (snowflakedb/snowflake-connector-nodejs#1355)
8+
9+
## 2.3.5
10+
511
New features:
612

713
- `connect()` now supports every authenticator type (including external browser and Okta), matching `connectAsync()` (snowflakedb/snowflake-connector-nodejs#1342)

package.json

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -7,10 +7,10 @@
77
},
88
"dependencies": {
99
"@aws-crypto/sha256-js": "^5.2.0",
10-
"@aws-sdk/client-s3": "^3.983.0",
11-
"@aws-sdk/client-sts": "^3.983.0",
12-
"@aws-sdk/credential-provider-node": "^3.972.5",
13-
"@aws-sdk/ec2-metadata-service": "^3.983.0",
10+
"@aws-sdk/client-s3": "^3.1016.0",
11+
"@aws-sdk/client-sts": "^3.1016.0",
12+
"@aws-sdk/credential-provider-node": "^3.972.25",
13+
"@aws-sdk/ec2-metadata-service": "^3.1016.0",
1414
"@azure/identity": "^4.10.1",
1515
"@azure/storage-blob": "12.26.x",
1616
"@smithy/node-http-handler": "^4.4.9",

0 commit comments

Comments
 (0)