fix(deps): upgrade @aws-sdk/client-ecr to 3.1039.0#1688
fix(deps): upgrade @aws-sdk/client-ecr to 3.1039.0#1688robguinness-snyk wants to merge 1 commit into
Conversation
|
This is a minor version upgrade for the AWS SDK client. According to the release notes, the updates between versions 3.1030.0 and 3.1039.0 consist of routine updates and feature additions across the SDK. The only change specific to Source: AWS SDK for JavaScript v3 Releases
|
PR Reviewer Guide 🔍
|
Snyk has created this PR to upgrade @aws-sdk/client-ecr from 3.1030.0 to 3.1039.0.
ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.
The recommended version is 9 versions ahead of your current version.
The recommended version was released 22 days ago.
Issues fixed by the recommended upgrade:
SNYK-JS-BRACEEXPANSION-16755174
SNYK-JS-FASTURI-16642394
SNYK-JS-FASTURI-16642399
SNYK-JS-WS-16722635
SNYK-JS-FASTXMLBUILDER-16540557
SNYK-JS-FASTXMLBUILDER-16540558
SNYK-JS-QS-16721866
Breaking Change Risk
Release notes
Package name: @aws-sdk/client-ecr
-
3.1039.0 - 2026-04-29
- codegen:
- smithy-aws-typescript-codegen 0.49.0 (#7972) (799fdc7b)
- sync for adaptive retry fixes (#7970) (3dfb72b7)
- xml-builder: manual version bump for 3.972.21 release (#7969) (99bfb4b8)
- client-ecr: Removes support for registry policy V1 (0fc28e9f)
- clients: update client endpoints as of 2026-04-29 (2c0c0979)
- client-workspaces-web: Allow admins to configure IPv6 ranges on IP Access Settings. (a1d8beb2)
- client-account: Adds AccountState in the response for the GetAccountInformation API. Each state represents a specific phase in the account lifecycle. Use this information to manage account access, automate workflows, or trigger actions based on account state changes. (dc283531)
- client-gamelift: Amazon GameLift Servers adds a new DescribeContainerGroupPortMappings API for container fleets, making it easy to discover which connection ports map to your container ports without needing to remotely access the compute. (71e95d8f)
- client-transfer: This launch will increase the limits for customers to list the contents from the remote directories from 10k to 200k. (58052c95)
- client-cloudfront: Amazon CloudFront now supports cache tag. Tag objects via response headers and invalidate all matching objects in a single request, replacing manual URL tracking and broad wildcards. (fac83987)
- client-mediapackagev2: This feature adds configuration for specifying SCTE marker handling and allow greater control over generated manifest and segment URIs (cd814f6b)
- client-bedrock-agentcore-control: Adds configuration bundles for versioned, immutable agent configuration snapshots with branch-based lineage (480b6517)
- client-bedrock-agentcore: Adds batch evaluation for running evaluators against multiple agent sessions with server-side orchestration, AI-powered recommendations for optimizing system prompts and tool descriptions, and AB testing with controlled traffic splitting and statistical significance reporting (c9db8716)
- client-deadline: Adds support for rtx-pro-server-6000 GPU accelerator for service-managed fleets. (86aab769)
- xml-builder: inline nodable/entities for dist format compatibility (#7968) (02b6be6b)
- client-dynamodb:
- enable verbose e2e test mode (#7974) (97d9277e)
- e2e test table cleanup (#7971) (8009782e)
-
3.1038.0 - 2026-04-27
- codegen: sync for typed waiter-result values (#7965) (e9f8d8a9)
- client-gameliftstreams: Adds Proton 10.0-4 to the list of runtime environment options available when creating an Amazon GameLift Streams application (eee81edd)
- client-sagemaker: Updated API documentation for endpoint MetricsConfig. Added details on supported metric publish frequencies and clarified how EnableEnhancedMetrics controls utilization and invocation metric behavior. (c3a61e2d)
- client-billingconductor: Add support for Passthrough pricing plan (31ed64a4)
- client-glue: Addition of AdditionalAuditContext to GetPartition, GetPartitions, GetTableVersion, and GetTableVersions (eaf5eef0)
- client-kms: KMS GetKeyLastUsage API provides information on the last successful cryptographic operation performed on KMS keys. This new API provides KMS customers with the last timestamp, CloudTrail eventId, and the cryptographic operation that was performed on the key. (7edc07d4)
- client-ivs: Adds tags parameter to the CreateAdConfiguration operation (6e9a5a05)
- client-workspaces: Added support for Protocol as modified resource and added update failure as modification state (6bd9ee46)
- client-application-signals: Application Signals now supports creating composite Service Level Objectives on Service Operations. Users can now create service SLO on multiple operations. (6a04d604)
- client-cloudwatch-logs: Adds support for selecting all logs sources and types in a single association. (0f944495)
- client-omics: Enable Public Internet or VPC configuration to BatchRun (345017d3)
- client-mgn: Added network modernization support, enabling customers to edit, resize, merge, and split VPCs and subnets during migration while retaining functional, non-conflicting IP addresses. (8cc99968)
- client-opensearch: Amazon OpenSearch Service now supports JWKS URL configuration for JWT authentication (5dfd0544)
- xml-builder: use xml 1.1 parsing behavior for entities (#7964) (7a30bce0)
-
3.1037.0 - 2026-04-24
- clients: update client endpoints as of 2026-04-24 (ca3df2be)
- client-evs: EVS now supports i7i.metal-24xl EC2 bare metal instance type, delivering high random IOPS performance with real-time latency, ideal for IO intensive and latency-sensitive workloads such as transactional databases, real-time analytics, and AI ML pre-processing. (fd92ee48)
- client-cloudwatch-logs: Adding nextToken and maxItems to the GetQueryResults API. (1a5ef619)
- client-transfer: AWS Transfer Family now support configurable IP address types for Web Apps of type VPC, enabling customers to select IPv4-only or dual-stack (IPv4 and IPv6) configurations based on their network requirements. (f2a72a85)
- client-bedrock-agentcore-control: Added support for configuring identity providers and inbound authorizers within a private VPC for AWS Bedrock AgentCore, enabling secure network connection without public internet access (a0bf24cd)
- client-connect: Amazon Connect is expanding attachment capabilities to give customers greater flexibility and control. Currently limited to predefined file types, the new feature will allow contact center administrators to customize which file extensions and sizes are supported across chat, email, tasks, and cases. (7e987e88)
- client-connecthealth: Corrected CreateWebAppConfiguration documentation. Adding slash as an allowed character for the Ambient documentation agent to allow pronoun specifications. (c21882c4)
- client-kinesis: tolerance for flaky H2 session ordering assertion in E2E test (#7959) (58734960)
-
3.1036.0 - 2026-04-23
- codegen: sync for http2 session closure, retry longpoll backoff, and fast-xml-parser version bump (#7958) (107aefc4)
- xml-builder: up fast-xml-parser to 5.7.1 (#7957) (110b1c01)
- client-pcs: This release adds support for Slurm 25.11 with expedited requeue enabled by default for jobs failing due to node issues, configurable requeue delay, health checks at node startup only, and unauthenticated HTTP endpoints disabled by default for improved security. (1110500a)
- client-datazone: Releasing For LakehouseProperties attributes in the Connections API's (d0c03722)
- client-iot-managed-integrations: Adds "Status" field to provisioning profile operation response types, giving users visibility into the readiness of a provisioning profile to be used for device provisioning. (72d6968c)
- client-opensearch: Amazon OpenSearch UI applications now support cross-Region domain association, enabling you to connect OpenSearch Dashboards in one AWS Region to OpenSearch domains in other Regions within the same partition for centralized data visualization. (600311b9)
- client-transcribe-streaming: add concurrency to startStreamTranscription test (#7948) (e2cf194b)
-
3.1035.0 - 2026-04-22
- client-iot-wireless: Enable customers to optionally specify a desired confidence level for Cellular and WiFi position estimates. Customers can use this to trade off confidence level and radius of uncertainty based on their needs. (9fcaea59)
- client-ecs: GPU health monitoring and auto-repair for ECS Managed Instances (0ffa1090)
- client-osis: Update the pipeline configuration body character limit for the CreatePipeline API call. (d19d4063)
- client-opensearch: Adds support for RollbackServiceSoftwareUpdate API (e8b37945)
- client-batch: Support of S3Files volume type, container start and stop timeouts. (802ac4b8)
- client-ec2: Managed resource visibility settings control whether resources that AWS services provision on your behalf within your AWS account appear in your Amazon console views and API list operations. (698293af)
- client-emr-serverless: This release adds support for Spark connect sessions starting with release label emr-7.13.0. (966d4934)
- client-bedrock-agentcore: Adds support for Amazon Bedrock AgentCore Harness data plane APIs, enabling customers to invoke managed agent loops and execute commands on live agent sessions with streaming responses. (a465bad8)
- client-s3-control: This release adds support for five additional checksum algorithms for data integrity checking in Amazon S3 - MD5, SHA-512, XXHash3, XXHash64, and XXHash128. (e8c4a764)
- client-bedrock-agentcore-control: Adds support for Amazon Bedrock AgentCore Harness control plane APIs, enabling customers to create, manage, and configure managed agent loops with customizable models, tools, memory, and isolated execution environments. (ace8fec5)
- client-ivs: Adds support for Amazon IVS server-side ad insertion (a4a29e9e)
- client-s3: This release adds five additional checksum algorithms for S3 data integrity (MD5, SHA-512, XXHash3, XXHash64, XXHash128) and support for S3 Inventory on directory buckets (S3 Express One Zone). (41a6a595)
- client-lambda: Add Ruby 4.0 (ruby4.0) support to AWS Lambda. (ece8ce80)
- client-s3: retry errors with 200 status code (#7945) (7d9d8d17)
- client-sts: override IDPCommunicationError to be retryable (#7946) (d75e129a)
- clients: add snapshot tests for http2-default clients (#7947) (189729bb)
- client-kinesis: http2 session concurrency tests (#7941) (408d99eb)
-
3.1034.0 - 2026-04-21
- core/client: retry behavior control flag (#7943) (f8a0e2eb)
- codegen: sync for http2 session concurrency fixes (#7942) (273ad5be)
- client-snowball: This release adds Smithy RPC v2 CBOR as an additional protocol alongside the existing AWS JSON 1.1. The SDK will prioritize its most performant protocol. (dc2372c3)
- client-compute-optimizer: This release adds Smithy RPC v2 CBOR as an additional protocol alongside the existing AWS JSON 1.0. The SDK will prioritize its most performant protocol. (bfd1554d)
- client-cognito-identity-provider: Adding dutch language support for Cognito Managed Login and Terms on Console (dca261d2)
- client-compute-optimizer-automation: This release adds Smithy RPC v2 CBOR as an additional protocol alongside the existing AWS JSON 1.0. The SDK will prioritize its most performant protocol. (1dce21e2)
- client-network-firewall: Support for new types of partner managed rulegroups for Network Firewall Service (267a4f8e)
- client-gamelift: This release adds Smithy RPC v2 CBOR as an additional protocol alongside the existing AWS JSON 1.1. The SDK will prioritize its most performant protocol. (c1e73830)
- client-sagemaker: SageMaker AI now supports generative AI inference recommendations. Provide your model and workload, and SageMaker AI optimizes configurations, benchmarks them on real GPUs, and returns deployment-ready recommendations with validated metrics, accelerating the path to production from weeks to hours. (d111c8b8)
- client-marketplace-entitlement-service: This release adds Smithy RPC v2 CBOR as an additional protocol alongside the existing AWS JSON 1.1. The SDK will prioritize its most performant protocol. (76ca21fc)
- client-comprehendmedical: This release adds Smithy RPC v2 CBOR as an additional protocol alongside the existing AWS JSON 1.1. The SDK will prioritize its most performant protocol. (d3de08b9)
- lockfile: update yarn.lock for util-retry resolution version (#7944) (f83dd482)
-
3.1033.0 - 2026-04-20
- client-guardduty: Expanded support for new suppression rule fields. (f0bb9093)
- clients:
- update client endpoints as of 2026-04-20 (d6a7886a)
- use binary decision diagrams for endpoint resolution (#7931) (ff1b2bae)
- client-application-signals: Releasing Second phase of SLO Recommendations where you can create recommended SLOs out-of-the box using CreateSLO API (266b97c3)
- client-ec2: Added Transit Gateway Integration into AWS Client VPN. (7ea00cb5)
- client-observabilityadmin: Enablement for Security Hub v2 via Observability Admin Telemetry Rule for account and organization level. (f70978fb)
- client-evs: Amazon EVS now allows you to create connectors to your vCenter appliances and create Windows Server entitlements for virtual machines running in your EVS environments (f4cdcf8d)
- client-location: This release adds support for new Job APIs for bulk workloads. The initial job type supported is Address Validation. The new APIs added are StartJob, CancelJob, ListJobs, and GetJob. (444f15ce)
- client-kafka: Amazon MSK Replicator now supports data migration from external Apache Kafka clusters to Amazon MSK Express brokers. This release adds SaslScram authentication with TLS encryption, enhanced consumer offset synchronization, and customer log forwarding for troubleshooting. (543ff571)
- client-bedrock-agentcore-control: Supporting listingMode for AgentCore Gateway MCP server targets (23d06d56)
- core: replace Object.entries with for-in loops in shape serde (#7940) (785e3b28)
-
3.1032.0 - 2026-04-17
- client-neptune: Improving Documentation for Neptune (e27d9cd0)
- clients: update client endpoints as of 2026-04-17 (1fd8c265)
- client-connect: Fixes in SDK for customers using TestCase APIs (bd88a7ec)
- client-imagebuilder: ImportDiskImage API adds registerImageOptions for Secure Boot control and custom UEFI data. It adds windowsConfiguration for selecting a specific edition from multi-image .wim files during ISO import. (d211b308)
- client-quicksight: Public release of dashboard customization summary, S3 Tables data source type, Athena cross-account connector, custom sorting for controls, and AI-powered analysis generation. (da327c47)
- client-sagemaker: Adds support for providing NetworkInterface for efa enabled instances and Simplified cluster creation for Slurm-orchestrated clusters with optional Lifecycle Script (LCS) configuration. (ffcb883d)
- client-cleanrooms: This release adds support for configurable spark properties for Cleanrooms PySpark workloads. (c5de5506)
- client-groundstation: Adds support for updating contacts, listing antennas, and listing ground station reservations. New API operations - UpdateContact, ListContactVersions, DescribeContactVersion, ListAntennas, and ListGroundStationReservations. (360c3817)
- client-sts: The STS client now supports configuring SigV4a through the auth scheme preference setting. SigV4a uses asymmetric cryptography, enabling customers using long-term IAM credentials to continue making STS API calls even when a region is isolated from the partition leader. (c5755466)
- client-connectcampaignsv2: This release adds support for campaign entry limits configuration and hourly refresh frequency in Amazon Connect Outbound Campaigns. (4ee31aed)
- core: reduce object allocations in protocol serde (#7939) (d0c9af06)
-
3.1031.0 - 2026-04-16
- upgrade smithy to 1.69.0 (#7932) (560d9878)
- derestrict commit message linting (#7929) (a296c406)
- codegen: sync for retry attempt count api (#7927) (b742fb8b)
- client-cloudwatch: Update documentation of alarm mute rules start and end date fields (3b2342bc)
- clients: update client endpoints as of 2026-04-16 (68ae10a1)
- client-appstream: Add content redirection to Update Stack (1bde7c78)
- client-connect: This release updates the Amazon Connect Rules CRUD APIs to support a new EventSourceName - OnEmailAnalysisAvailable. Use this event source to trigger rules when conversational analytics results are available for email contacts. (7abcd2c7)
- client-rds: Adds a new DescribeServerlessV2PlatformVersions API to describe platform version properties for Aurora Serverless v2. Also introduces a new valid maintenance action value for serverless platform version updates. (b72b175a)
- client-drs: Updating regex for identification of AWS Regions. (9405d283)
- client-mediaconvert: Adds support for Elemental Inference powered smart crop feature, enabling video verticalization (c82e5cac)
- client-auto-scaling: This release adds support for specifying Availability Zone IDs as an alternative to Availability Zone names when creating or updating Auto Scaling groups. (40e2faa7)
- client-bedrock-agentcore: Introducing NamespacePath in AgentCore Memory to support hierarchical prefix based memory record retrieval. (91aeaedc)
- client-devops-agent: Deprecate the userId from the Chat operations. This update also removes support of AllowVendedLogDeliveryForResource API from AWS SDKs. (39729e01)
- client-connectcases: Added error handling for service quota limits (658cb4b3)
- client-customer-profiles: Amazon Connect Customer Profiles adds RecommenderSchema CRUD APIs for custom ML training columns. CreateRecommender and CreateRecommenderFilter now accept optional RecommenderSchemaName. (be0aa8b0)
- client-cognito-identity-provider: Adds support for passkey-based multi-factor authentication in Cognito User Pools. Users can authenticate securely using FIDO2-compliant passkeys with user verification, enabling passwordless MFA flows while maintaining backward compatibility with password-based authentication (4995e67c)
- client-cloudwatch-logs: Endpoint update for CloudWatch Logs Streaming APIs. (6b28a142)
- client-datazone: Launching SMUS IAM domain SDK support (60bff8a7)
- client-dynamodb: performance improvements in JSON serialization (#7933) (c647598d)
- eventstream-handler-node: use static credentials in event signing streams (#7930) (c5af293d)
- tests: resolve lerna.json from monorepo root and let rollup use UMD output format (#7928) (a1313f90)
- private: preview endpoint bdd for mock clients (#7938) (0b44cb70)
- util-endpoints: remove bail option on endpoint tests (#7934) (768782ff)
-
3.1030.0 - 2026-04-13
- client-glue: AWS Glue now defaults to Glue version 5.1 for newly created jobs if the Glue version is not specified in the request, and UpdateJob now preserves the existing Glue version of a job when the Glue version is not specified in the update request. (3f133ce0)
- clients: update client endpoints as of 2026-04-13 (c2fd223d)
- client-macie2: This release adds an optional expectedBucketOwner field to the Macie S3 export configuration, allowing customers to verify bucket ownership before Macie writes results to the destination bucket. (4ce1dadc)
- client-securityhub: Provide organizational unit scoping capability for GetFindingsV2, GetFindingStatisticsV2, GetResourcesV2, GetResourcesStatisticsV2 APIs. (7dbb49e2)
- client-deadline: Adds GetMonitorSettings and UpdateMonitorSettings APIs to Deadline Cloud. Enables reading and writing monitor settings as key-value pairs (up to 64 keys per monitor). UpdateMonitorSettings supports upsert and delete (via empty value) semantics and is idempotent. (c21faa84)
- client-customer-profiles: This release introduces changes to SegmentDefinition APIs to support sorting by attributes. (c5c51968)
- client-interconnect: Initial release of AWS Interconnect -- a managed private connectivity service that enables you to create high-speed network connections between your AWS Virtual Private Clouds (VPCs) and your VPCs on other public clouds or your on-premise networks. (209d3633)
from @aws-sdk/client-ecr GitHub release notes3.1039.0(2026-04-29)
Chores
Documentation Changes
New Features
Bug Fixes
Tests
For list of updated packages, view updated-packages.md in assets-3.1039.0.zip
3.1038.0(2026-04-27)
Chores
Documentation Changes
New Features
Bug Fixes
For list of updated packages, view updated-packages.md in assets-3.1038.0.zip
3.1037.0(2026-04-24)
New Features
Bug Fixes
For list of updated packages, view updated-packages.md in assets-3.1037.0.zip
3.1036.0(2026-04-23)
Chores
Documentation Changes
New Features
Tests
For list of updated packages, view updated-packages.md in assets-3.1036.0.zip
3.1035.0(2026-04-22)
New Features
Bug Fixes
Tests
For list of updated packages, view updated-packages.md in assets-3.1035.0.zip
3.1034.0(2026-04-21)
Chores
New Features
Bug Fixes
For list of updated packages, view updated-packages.md in assets-3.1034.0.zip
3.1033.0(2026-04-20)
Documentation Changes
New Features
Bug Fixes
For list of updated packages, view updated-packages.md in assets-3.1033.0.zip
3.1032.0(2026-04-17)
Documentation Changes
New Features
Bug Fixes
For list of updated packages, view updated-packages.md in assets-3.1032.0.zip
3.1031.0(2026-04-16)
Chores
Documentation Changes
New Features
Bug Fixes
Tests
For list of updated packages, view updated-packages.md in assets-3.1031.0.zip
3.1030.0(2026-04-13)
Documentation Changes
New Features
For list of updated packages, view updated-packages.md in assets-3.1030.0.zip
Important
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.
For more information: