Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[SECURITY] Renovate Update Security Alerts [SECURITY] #123

Merged
merged 2 commits into from
May 7, 2024

Conversation

renovate[bot]
Copy link
Contributor

@renovate renovate bot commented Apr 22, 2024

Mend Renovate

This PR contains the following updates:

Package Change Age Adoption Passing Confidence Type Update Pending
Werkzeug (changelog) ==3.0.2 -> ==3.0.3 age adoption passing confidence patch
aws (source) 5.45.0 -> 5.48.0 age adoption passing confidence required_provider minor
boto3 ==1.34.87 -> ==1.34.98 age adoption passing confidence patch 1.34.99
connexion ==2.7.0 -> ==2.14.2 age adoption passing confidence minor
coverage ==7.4.4 -> ==7.5.0 age adoption passing confidence minor 7.5.1
fakeredis ==2.21.3 -> ==2.22.0 age adoption passing confidence minor
github.com/aws/aws-sdk-go v1.44.284 -> v1.52.2 age adoption passing confidence require minor v1.52.3
github.com/aws/aws-sdk-go v1.44.281 -> v1.52.2 age adoption passing confidence require minor v1.52.3
github.com/terraform-aws-modules/terraform-aws-lambda v7.2.6 -> v7.4.0 age adoption passing confidence module minor
github/codeql-action v3.25.1 -> v3.25.3 age adoption passing confidence action patch
hashicorp/terraform 1.8.0 -> 1.8.2 age adoption passing confidence required_version patch
jsonschema (changelog) ==4.21.1 -> ==4.22.0 age adoption passing confidence minor
markupsafe (changelog) ==2.1.1 -> ==2.1.5 age adoption passing confidence patch
pytest (changelog) ==8.1.1 -> ==8.2.0 age adoption passing confidence minor
pytest-xdist (changelog) ==3.5.0 -> ==3.6.1 age adoption passing confidence minor
python 3.8-slim -> 3.12-slim age adoption passing confidence final minor
python 3.8-slim-buster -> 3.11-slim-buster age adoption passing confidence final minor
requests-aws4auth ==1.0.1 -> ==1.2.3 age adoption passing confidence minor

GitHub Vulnerability Alerts

CVE-2024-34069

The debugger in affected versions of Werkzeug can allow an attacker to execute code on a developer's machine under some circumstances. This requires the attacker to get the developer to interact with a domain and subdomain they control, and enter the debugger PIN, but if they are successful it allows access to the debugger even if it is only running on localhost. This also requires the attacker to guess a URL in the developer's application that will trigger the debugger.


Release Notes

hashicorp/terraform-provider-aws (aws)

v5.48.0

Compare Source

FEATURES:

  • New Resource: aws_bedrockagent_agent_knowledge_base_association (#​37185)

ENHANCEMENTS:

  • resource/aws_cloudwatch_event_target: Add force_destroy argument (#​37130)
  • resource/aws_elasticache_replication_group: Increase default Delete timeout to 45 minutes (#​37182)
  • resource/aws_elasticache_replication_group: Use the configured Delete timeout when detaching from any global replication group (#​37182)
  • resource/aws_fsx_ontap_file_system: Add support for specifying 1 ha_pair with SINGLE_AZ_1 and MULTI_AZ_1 deployment types (#​36511)
  • resource/aws_fsx_ontap_file_system: Increase storage_capacity maximum to 1PiB (#​36511)
  • resource/aws_fsx_ontap_file_system: Support up to 12 ha_pairs (#​36511)
  • resource/aws_fsx_ontap_file_system: Update throughput_capacity_per_ha_pair to support all values from throughput_capacity (#​36511)
  • resource/aws_fsx_ontap_volume: Add aggregate_configuration configuration block (#​36511)
  • resource/aws_fsx_ontap_volume: Add size_in_bytes and volume_style arguments (#​36511)

BUG FIXES:

  • resource/aws_bcmdataexports_export: Fix table_configurations expand/flatten (#​37205)
  • resource/aws_cloudwatch_event_connection: Add plan-time validation preventing empty auth_parameters.oauth.oauth_http_parameters or auth_parameters.invocation_http_parameters
    body, header and query_string configuration blocks (#​26755)
  • resource/aws_elasticache_replication_group: Decrease replica count after other updates (#​34819)
  • resource/aws_elasticache_replication_group: Fix unexpected state 'snapshotting' errors when increasing or decreasing replica count (#​30493)

v5.47.0

Compare Source

NOTES:

  • provider: Updates to Go 1.22. This is the last Go release that will run on macOS 10.15 Catalina (#​36996)
  • resource/aws_bedrockagent_knowledge_base: Because we cannot easily test this functionality, it is best effort and we ask for community help in testing (#​36783)

FEATURES:

  • New Data Source: aws_identitystore_groups (#​36993)
  • New Resource: aws_bcmdataexports_export (#​36847)
  • New Resource: aws_bedrockagent_agent (#​36851)
  • New Resource: aws_bedrockagent_agent_action_group (#​36935)
  • New Resource: aws_bedrockagent_agent_alias (#​36905)
  • New Resource: aws_bedrockagent_knowledge_base (#​36783)
  • New Resource: aws_globalaccelerator_cross_account_attachment (#​35991)
  • New Resource: aws_verifiedpermissions_policy (#​35413)

ENHANCEMENTS:

  • data-source/aws_eip: Add arn attribute (#​35991)
  • resource/aws_api_gateway_rest_api: Correctly set root_resource_id on resource Read (#​37040)
  • resource/aws_appmesh_mesh: Add spec.service_discovery argument (#​37042)
  • resource/aws_cloudformation_stack_set: Adds guidance on permissions when using delegated administrator account (#​37069)
  • resource/aws_db_instance: Add dedicated_log_volume argument (#​36503)
  • resource/aws_eip: Add arn attribute (#​35991)
  • resource/aws_elasticache_replication_group: Add transit_encryption_mode argument (#​30403)
  • resource/aws_elasticache_replication_group: Changes to the transit_encryption_enabled argument can now be done in-place for engine versions > 7.0.5 (#​30403)
  • resource/aws_kinesis_firehose_delivery_stream: Add snowflake_configuration argument (#​36646)
  • resource/aws_memorydb_user: Support IAM authentication mode (#​32027)
  • resource/aws_sagemaker_app_image_config: Add code_editor_app_image_config and jupyter_lab_image_config.jupyter_lab_image_config arguments (#​37059)
  • resource/aws_sagemaker_app_image_config: Change kernel_gateway_image_config.kernel_spec MaxItems to 5 (#​37059)
  • resource/aws_transfer_server: Add sftp_authentication_methods argument (#​37015)

BUG FIXES:

  • resource/aws_batch_job_definition: Fix issues where changes causing a new revision do not trigger changes in dependent resources and/or cause an error, "Provider produced inconsistent final plan" (#​37111)
  • resource/aws_ce_cost_category: Allow up to 3 levels of and, not and or operand nesting for the rule argument (#​30862)
  • resource/aws_elasticache_replication_group: Fix excessive delay on read (#​30403)
  • resource/aws_servicecatalog_portfolio: Fixes error where deletion fails if resource was deleted out of band. (#​37066)
  • resource/aws_servicecatalog_provisioned_product: Fixes error where tag values are not applied to products when tag values don't change. (#​37066)

v5.46.0

Compare Source

NOTES:

  • provider: When using YAML or JSON documents, such as in template_body of aws_cloudformation_stack, CRLF was previously treated as different from LF but these are now treated as equivalent in many situations (#​14270)

FEATURES:

  • New Resource: aws_eip_domain_name (#​36963)

ENHANCEMENTS:

  • data-source/aws_alb: Add client_keep_alive argument (#​36969)
  • data-source/aws_eip: Add ptr_record attribute (#​36963)
  • data-source/aws_iam_policy: Add attachment_count attribute (#​36759)
  • data-source/aws_lb: Add client_keep_alive argument (#​36969)
  • data-source/aws_organizations_organization: Add master_account_name attribute (#​36797)
  • data-source/aws_vpc_dhcp_options: Add ipv6_address_preferred_lease_time attribute (#​36934)
  • resource/aws_alb: Add client_keep_alive argument (#​36969)
  • resource/aws_autoscaling_group: Add alarm_specification to the instance_refresh.preferences configuration block (#​36954)
  • resource/aws_cloudformation_stack_set: Add retry when creating to potentially help with eventual consistency problems (#​36982)
  • resource/aws_cloudfront_origin_access_control: Add lambda and mediapackagev2 as valid values for origin_access_control_origin_type (#​34362)
  • resource/aws_cloudwatch_event_rule: Add force_destroy attribute (#​34905)
  • resource/aws_codebuild_project: Add GitLab and GitLab Self Managed support to the report_build_status and build_status_config arguments (#​36942)
  • resource/aws_default_vpc_dhcp_options: Add ipv6_address_preferred_lease_time as Computed attribute (#​36934)
  • resource/aws_dms_replication_task: Add resource_identifier argument (#​36901)
  • resource/aws_eip: Add ptr_record attribute (#​36963)
  • resource/aws_elasticache_serverless_cache: Add minimum attribute in cache_usage_limits.data_storage and cache_usage_limits.ecpu_per_second (#​36766)
  • resource/aws_fsx_openzfs_file_system: Add endpoint_ip_address attribute (#​36767)
  • resource/aws_iam_policy: Add attachment_count attribute (#​36759)
  • resource/aws_imagebuilder_image: Add execution_role and workflow arguments (#​36953)
  • resource/aws_lb: Add client_keep_alive argument (#​36969)
  • resource/aws_mwaa_environment: Add database_vpc_endpoint_service and webserver_vpc_endpoint_service attributes (#​36903)
  • resource/aws_organizations_organization: Add master_account_name attribute (#​36797)
  • resource/aws_transfer_connector: Add security_policy_name argument (#​36893)
  • resource/aws_vpc_dhcp_options: Add ipv6_address_preferred_lease_time attribute (#​36934)
  • resource/aws_vpc_ipam_pool: Add cascade argument (#​36898)

BUG FIXES:

  • data-source/aws_iam_policy_document: When using multiple principals, sort them to avoid differences based only on order (#​25967)
  • resource/aws_appconfig_deployment: Fix ConflictException errors on resource Create (#​36980)
  • resource/aws_ce_anomaly_monitor: Change monitor_dimension to ForceNew (#​36773)
  • resource/aws_ce_anomaly_subscription: Change account_id to ForceNew (#​36773)
  • resource/aws_cloudformation_stack: CRLF line endings in template_body no longer cause erroneous diffs (#​14270)
  • resource/aws_db_proxy: Fix interface conversion: interface {} is nil, not map[string]interface {} panic when auth is empty ({}) (#​36967)
  • resource/aws_dms_replication_config: Adds validation to replication_settings to disallow Logging.CloudWatchLogGroup and Logging.CloudWatchLogStream. (#​36936)
  • resource/aws_dms_replication_config: Suppresses differences in partial replication_settings JSON documents. (#​36936)
  • resource/aws_dms_replication_task: Adds validation to replication_task_settings to disallow Logging.CloudWatchLogGroup and Logging.CloudWatchLogStream. (#​36936)
  • resource/aws_dms_replication_task: Allows leaving replication_task_settings unset to use default settings. (#​36936)
  • resource/aws_dms_replication_task: Suppresses differences in partial replication_task_settings JSON documents. (#​36936)
  • resource/aws_fsx_windows_file_system: Fix error BadRequest: AuditLogDestination must not be provided when auditing is disabled when updating audit_log_configuration.0.file_access_audit_log_level and audit_log_configuration.0.file_share_access_audit_log_level to "DISABLED" (#​36928)
  • resource/aws_glue_job: Mark number_of_workers and worker_type as optional/computed, preventing persistent differences when max_capacity is set. (#​36770)
  • resource/aws_iam_user_login_profile: Fix forced re-creation when password_reset_required is true and initial password reset is completed (#​36926)
  • resource/aws_lightsail_distribution: Fix to properly set certificate_name on create and update (#​36888)
  • resource/aws_vpc_dhcp_options: Fix NotFound error handling on delete (#​36933)
boto/boto3 (boto3)

v1.34.98

Compare Source

=======

  • api-change:bedrock-agent: [botocore] This release adds support for using Provisioned Throughput with Bedrock Agents.
  • api-change:connect: [botocore] This release adds 5 new APIs for managing attachments: StartAttachedFileUpload, CompleteAttachedFileUpload, GetAttachedFile, BatchGetAttachedFileMetadata, DeleteAttachedFile. These APIs can be used to programmatically upload and download attachments to Connect resources, like cases.
  • api-change:connectcases: [botocore] This feature supports the release of Files related items
  • api-change:datasync: [botocore] Updated guidance on using private or self-signed certificate authorities (CAs) with AWS DataSync object storage locations.
  • api-change:inspector2: [botocore] This release adds CSV format to GetCisScanReport for Inspector v2
  • api-change:sagemaker: [botocore] Amazon SageMaker Inference now supports m6i, c6i, r6i, m7i, c7i, r7i and g5 instance types for Batch Transform Jobs
  • api-change:sesv2: [botocore] Adds support for specifying replacement headers per BulkEmailEntry in SendBulkEmail in SESv2.

v1.34.97

Compare Source

=======

  • api-change:dynamodb: [botocore] This release adds support to specify an optional, maximum OnDemandThroughput for DynamoDB tables and global secondary indexes in the CreateTable or UpdateTable APIs. You can also override the OnDemandThroughput settings by calling the ImportTable, RestoreFromPointInTime, or RestoreFromBackup APIs.
  • api-change:ec2: [botocore] This release includes a new API for retrieving the public endorsement key of the EC2 instance's Nitro Trusted Platform Module (NitroTPM).
  • api-change:personalize: [botocore] This releases ability to delete users and their data, including their metadata and interactions data, from a dataset group.
  • api-change:redshift-serverless: [botocore] Update Redshift Serverless List Scheduled Actions Output Response to include Namespace Name.

v1.34.96

Compare Source

=======

  • api-change:bedrock-agent: [botocore] This release adds support for using MongoDB Atlas as a vector store when creating a knowledge base.
  • api-change:ec2: [botocore] Documentation updates for Amazon EC2.
  • api-change:personalize-runtime: [botocore] This release adds support for a Reason attribute for predicted items generated by User-Personalization-v2.
  • api-change:securityhub: [botocore] Updated CreateMembers API request with limits.
  • api-change:sesv2: [botocore] Fixes ListContacts and ListImportJobs APIs to use POST instead of GET.

v1.34.95

Compare Source

=======

  • api-change:chime-sdk-voice: [botocore] Due to changes made by the Amazon Alexa service, GetSipMediaApplicationAlexaSkillConfiguration and PutSipMediaApplicationAlexaSkillConfiguration APIs are no longer available for use. For more information, refer to the Alexa Smart Properties page.
  • api-change:codeartifact: [botocore] Add support for the Ruby package format.
  • api-change:fms: [botocore] AWS Firewall Manager now supports the network firewall service stream exception policy feature for accounts within your organization.
  • api-change:omics: [botocore] Add support for workflow sharing and dynamic run storage
  • api-change:opensearch: [botocore] This release enables customers to create Route53 A and AAAA alias record types to point custom endpoint domain to OpenSearch domain's dualstack search endpoint.
  • api-change:pinpoint-sms-voice-v2: [botocore] Amazon Pinpoint has added two new features Multimedia services (MMS) and protect configurations. Use the three new MMS APIs to send media messages to a mobile phone which includes image, audio, text, or video files. Use the ten new protect configurations APIs to block messages to specific countries.
  • api-change:qbusiness: [botocore] This is a general availability (GA) release of Amazon Q Business. Q Business enables employees in an enterprise to get comprehensive answers to complex questions and take actions through a unified, intuitive web-based chat experience - using an enterprise's existing content, data, and systems.
  • api-change:quicksight: [botocore] New Q embedding supporting Generative Q&A
  • api-change:route53resolver: [botocore] Release of FirewallDomainRedirectionAction parameter on the Route 53 DNS Firewall Rule. This allows customers to configure a DNS Firewall rule to inspect all the domains in the DNS redirection chain (default) , such as CNAME, ALIAS, DNAME, etc., or just the first domain and trust the rest.
  • api-change:sagemaker: [botocore] Amazon SageMaker Training now supports the use of attribute-based access control (ABAC) roles for training job execution roles. Amazon SageMaker Inference now supports G6 instance types.
  • api-change:signer: [botocore] Documentation updates for AWS Signer. Adds cross-account signing constraint and definitions for cross-account actions.

v1.34.94

Compare Source

=======

  • api-change:amplify: [botocore] Updating max results limit for listing any resources (Job, Artifacts, Branch, BackendResources, DomainAssociation) to 50 with the exception of list apps that where max results can be up to 100.
  • api-change:connectcases: [botocore] This feature releases DeleteField, DeletedLayout, and DeleteTemplate API's
  • api-change:inspector2: [botocore] Update Inspector2 to include new Agentless API parameters.
  • api-change:timestream-query: [botocore] This change allows users to update and describe account settings associated with their accounts.
  • api-change:transcribe: [botocore] This update provides error messaging for generative call summarization in Transcribe Call Analytics
  • api-change:trustedadvisor: [botocore] This release adds the BatchUpdateRecommendationResourceExclusion API to support batch updates of Recommendation Resource exclusion statuses and introduces a new exclusion status filter to the ListRecommendationResources and ListOrganizationRecommendationResources APIs.

v1.34.93

Compare Source

=======

  • api-change:codepipeline: [botocore] Add ability to manually and automatically roll back a pipeline stage to a previously successful execution.
  • api-change:cognito-idp: [botocore] Add LimitExceededException to SignUp errors
  • api-change:connectcampaigns: [botocore] This release adds support for specifying if Answering Machine should wait for prompt sound.
  • api-change:marketplace-entitlement: [botocore] Releasing minor endpoint updates.
  • api-change:oam: [botocore] This release introduces support for Source Accounts to define which Metrics and Logs to share with the Monitoring Account
  • api-change:rds: [botocore] SupportsLimitlessDatabase field added to describe-db-engine-versions to indicate whether the DB engine version supports Aurora Limitless Database.
  • api-change:support: [botocore] Releasing minor endpoint updates.

v1.34.92

Compare Source

=======

  • api-change:appsync: [botocore] UpdateGraphQLAPI documentation update and datasource introspection secret arn update
  • api-change:fms: [botocore] AWS Firewall Manager adds support for network ACL policies to manage Amazon Virtual Private Cloud (VPC) network access control lists (ACLs) for accounts in your organization.
  • api-change:ivs: [botocore] Bug Fix: IVS does not support arns with the svs prefix
  • api-change:ivs-realtime: [botocore] Bug Fix: IVS Real Time does not support ARNs using the svs prefix.
  • api-change:rds: [botocore] Updates Amazon RDS documentation for setting local time zones for RDS for Db2 DB instances.
  • api-change:stepfunctions: [botocore] Add new ValidateStateMachineDefinition operation, which performs syntax checking on the definition of a Amazon States Language (ASL) state machine.

v1.34.91

Compare Source

=======

  • api-change:datasync: [botocore] This change allows users to disable and enable the schedules associated with their tasks.
  • api-change:ec2: [botocore] Launching capability for customers to enable or disable automatic assignment of public IPv4 addresses to their network interface
  • api-change:emr-containers: [botocore] EMRonEKS Service support for SecurityConfiguration enforcement for Spark Jobs.
  • api-change:entityresolution: [botocore] Support Batch Unique IDs Deletion.
  • api-change:gamelift: [botocore] Amazon GameLift releases container fleets support for public preview. Deploy Linux-based containerized game server software for hosting on Amazon GameLift.
  • api-change:ssm: [botocore] Add SSM DescribeInstanceProperties API to public AWS SDK.

v1.34.90

Compare Source

=======

  • api-change:bedrock: [botocore] This release introduces Model Evaluation and Guardrails for Amazon Bedrock.
  • api-change:bedrock-agent: [botocore] Introducing the ability to create multiple data sources per knowledge base, specify S3 buckets as data sources from external accounts, and exposing levers to define the deletion behavior of the underlying vector store data.
  • api-change:bedrock-agent-runtime: [botocore] This release introduces zero-setup file upload support for the RetrieveAndGenerate API. This allows you to chat with your data without setting up a Knowledge Base.
  • api-change:bedrock-runtime: [botocore] This release introduces Guardrails for Amazon Bedrock.
  • api-change:ce: [botocore] Added additional metadata that might be applicable to your reservation recommendations.
  • api-change:ec2: [botocore] This release introduces EC2 AMI Deregistration Protection, a new AMI property that can be enabled by customers to protect an AMI against an unintended deregistration. This release also enables the AMI owners to view the AMI 'LastLaunchedTime' in DescribeImages API.
  • api-change:pi: [botocore] Clarifies how aggregation works for GetResourceMetrics in the Performance Insights API.
  • api-change:rds: [botocore] Fix the example ARN for ModifyActivityStreamRequest
  • api-change:workspaces-web: [botocore] Added InstanceType and MaxConcurrentSessions parameters on CreatePortal and UpdatePortal Operations as well as the ability to read Customer Managed Key & Additional Encryption Context parameters on supported resources (Portal, BrowserSettings, UserSettings, IPAccessSettings)

v1.34.89

Compare Source

=======

  • api-change:bedrock-agent: [botocore] Releasing the support for simplified configuration and return of control
  • api-change:bedrock-agent-runtime: [botocore] Releasing the support for simplified configuration and return of control
  • api-change:payment-cryptography: [botocore] Adding support to TR-31/TR-34 exports for optional headers, allowing customers to add additional metadata (such as key version and KSN) when exporting keys from the service.
  • api-change:redshift-serverless: [botocore] Updates description of schedule field for scheduled actions.
  • api-change:route53profiles: [botocore] Route 53 Profiles allows you to apply a central DNS configuration across many VPCs regardless of account.
  • api-change:sagemaker: [botocore] This release adds support for Real-Time Collaboration and Shared Space for JupyterLab App on SageMaker Studio.
  • api-change:servicediscovery: [botocore] This release adds examples to several Cloud Map actions.
  • api-change:transfer: [botocore] Adding new API to support remote directory listing using SFTP connector

v1.34.88

Compare Source

=======

  • api-change:glue: [botocore] Adding RowFilter in the response for GetUnfilteredTableMetadata API
  • api-change:internetmonitor: [botocore] This update introduces the GetInternetEvent and ListInternetEvents APIs, which provide access to internet events displayed on the Amazon CloudWatch Internet Weather Map.
  • api-change:personalize: [botocore] This releases auto training capability while creating a solution and automatically syncing latest solution versions when creating/updating a campaign
spec-first/connexion (connexion)

v2.14.2

Compare Source

What's Changed

Full Changelog: spec-first/connexion@2.14.1...2.14.2

v2.14.1

Compare Source

What's Changed

New Contributors

Full Changelog: spec-first/connexion@2.14.0...2.14.1

v2.14.0

Compare Source

What's Changed

New Contributors

Full Changelog: spec-first/connexion@2.13.1...2.14.0

v2.13.1

Compare Source

What's Changed

Full Changelog: spec-first/connexion@2.13.0...2.13.1

v2.13.0

Compare Source

What's Changed

New Contributors

Full Changelog: spec-first/connexion@2.12.0...2.13.0

v2.12.0

Compare Source

What's Changed

New Contributors

Full Changelog: spec-first/connexion@2.11.2...2.12.0

v2.11.2

Compare Source

What's Changed

New Contributors

Full Changelog: spec-first/connexion@2.11.1...2.11.2

v2.11.1

Compare Source

What's Changed

Full Changelog: spec-first/connexion@2.11.0...2.11.1

v2.11.0

Compare Source

What's Changed

New Contributors

Full Changelog: spec-first/connexion@2.10.0...2.11.0

v2.10.0

Compare Source

Note

~Due to unavailability of maintainers with access to the connexion PyPi project, this version has been released under a new PyPi project connexion2 for now:
https://pypi.org/project/connexion2/~

EDIT 15/01/2022: This version is now available under the main PyPi repository:
https://pypi.org/project/connexion/2.10.0/

Changelog

  • Bump Flask & Werkzeug major versions to 2.x #​1402
  • Send request exception signal in common exception handler #​1326
  • Render correct UI template when serving multiple APIs #​1404
  • Use jsonschema for validation instead of openapi_spec_validator #​936
  • Add Relative resolver #​1419
  • Add keywords to the list of pythonic words #​1425
  • Improved error 415 #​1185

Full Changelog: spec-first/connexion@2.9.0...2.10.0

v2.9.0

Compare Source

Release with new (backwards-compatible) features: https://pypi.org/project/connexion/2.9.0/

Notable changes:


Configuration

📅 Schedule: Branch creation - "" (UTC), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

This PR has been generated by Mend Renovate. View repository job log here.

@renovate renovate bot added dependencies Pull requests that update a dependency file Renovate labels Apr 22, 2024
@renovate renovate bot force-pushed the renovate-all-minor-patch-updates branch 11 times, most recently from d9f0e8e to b258922 Compare April 29, 2024 00:51
@renovate renovate bot force-pushed the renovate-all-minor-patch-updates branch 3 times, most recently from 0b19203 to 0d16023 Compare May 2, 2024 10:23
@renovate renovate bot requested a review from a team as a code owner May 2, 2024 10:23
@github-actions github-actions bot added documentation Improvements or additions to documentation terraform github_actions docker python labels May 2, 2024
@renovate renovate bot force-pushed the renovate-all-minor-patch-updates branch 8 times, most recently from a56fcbf to aeda4f0 Compare May 5, 2024 18:51
@renovate renovate bot force-pushed the renovate-all-minor-patch-updates branch 2 times, most recently from fe3b153 to 9e176f1 Compare May 6, 2024 01:15
@github-actions github-actions bot removed documentation Improvements or additions to documentation dependencies Pull requests that update a dependency file github_actions docker python labels May 6, 2024
@renovate renovate bot force-pushed the renovate-all-minor-patch-updates branch from 9e176f1 to cedc8a2 Compare May 6, 2024 13:42
@github-actions github-actions bot added documentation Improvements or additions to documentation dependencies Pull requests that update a dependency file github_actions docker python labels May 6, 2024
@renovate renovate bot force-pushed the renovate-all-minor-patch-updates branch 3 times, most recently from 68077f7 to 0d78181 Compare May 7, 2024 07:56
@renovate renovate bot changed the title Renovate Update Patch & Minor Updates [SECURITY] Renovate Update Security Alerts [SECURITY] May 7, 2024
@renovate renovate bot force-pushed the renovate-all-minor-patch-updates branch from 986e707 to 5100bb5 Compare May 7, 2024 08:04
Copy link
Contributor Author

renovate bot commented May 7, 2024

Edited/Blocked Notification

Renovate will not automatically rebase this PR, because it does not recognize the last commit author and assumes somebody else may have edited the PR.

You can manually request rebase by checking the rebase/retry box above.

Warning: custom changes will be lost.

@nickdavis2001 nickdavis2001 merged commit 93129d3 into main May 7, 2024
15 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file docker documentation Improvements or additions to documentation github_actions python Renovate terraform
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant