Bump the prod-minor-updates group across 1 directory with 11 updates #558

Closed
opened 2026-04-05 17:19:29 +02:00 by MrUnknownDE · 0 comments
Owner

Originally created by @dependabot[bot] on 12/5/2025

Bumps the prod-minor-updates group with 10 updates in the / directory:

Package From To
@aws-sdk/client-s3 3.922.0 3.943.0
cookie 1.0.2 1.1.1
drizzle-orm 0.44.7 0.45.0
express 5.1.0 5.2.1
lucide-react 0.552.0 0.555.0
next-intl 4.4.0 4.5.8
posthog-node 5.11.2 5.17.2
react-hook-form 7.66.0 7.68.0
resend 6.4.2 6.5.2
tailwind-merge 3.3.1 3.4.0

Updates @aws-sdk/client-s3 from 3.922.0 to 3.943.0

Release notes

Sourced from @​aws-sdk/client-s3's releases.

v3.943.0

3.943.0(2025-12-02)

Chores
  • core/protocols: dynamodb serde performance adjustments (#7536) (ae3e73d8)
New Features
  • clients: update client endpoints as of 2025-12-02 (2f1ed327)
  • client-s3-control: Add support for S3 Storage Lens Advanced Performance Metrics, Expanded Prefixes metrics report, and export to S3 Tables. (a8737778)
  • client-observabilityadmin: CloudWatch Observability Admin adds pipelines configuration for third party log ingestion and transformation of all logs ingested, integration of CloudWatch logs with S3 Tables, and AWS account or organization level enablement for 7 AWS services. (1e20b0fe)
  • client-fsx: S3 Access Points support for FSx for NetApp ONTAP (cb2d0f30)
  • client-datazone: Amazon DataZone now supports exporting Catalog datasets as Amazon S3 tables, and provides automatic business glossary term suggestions for data assets. (f82c5bd4)
  • client-sagemaker: Added support for serverless MLflow Apps. (99cda6cb)
  • client-securityhub: ITSM enhancements: DRYRUN mode for testing ticket creation, ServiceNow now uses AWS Secrets Manager for credentials, ConnectorRegistrationsV2 renamed to RegisterConnectorV2, added ServiceQuotaExceededException error, and ConnectorStatus visibility in CreateConnectorV2. (45c4bd14)
  • client-bedrock-agentcore-control: Supports AgentCore Evaluations, Policy, Episodic Memory Strategy, Resource Based Policy for Runtime and Gateway APIs, API Gateway Rest API Targets and enhances JWT authorizer. (072c9ff2)
  • client-bedrock-runtime: Adds support for Audio Blocks and Streaming Image Output plus new Stop Reasons of malformed_model_output and malformed_tool_use. (57bdac08)
  • client-nova-act: Initial release of Nova Act SDK. The Nova Act service enables customers to build and manage fleets of agents for automating production UI workflows with high reliability, fastest time-to-value, and ease of implementation at scale. (f0544c31)
  • client-opensearch: GPU-acceleration helps you build large-scale vector databases faster and more efficiently. You can enable this feature on new OpenSearch domains and OpenSearch Serverless collections. This feature uses GPU-acceleration to reduce the time needed to index data into vector indexes. (263dd4ca)
  • client-cloudwatch-logs: CloudWatch Logs adds managed S3 Tables integration to access logs using other analytical tools, as well as facets and field indexing to simplify log analytics in CloudWatch Logs Insights. (f3383c4e)
  • client-bedrock: Adds the audioDataDeliveryEnabled boolean field to the Model Invocation Logging Configuration. (c3ccd65d)
  • client-guardduty: Adding support for extended threat detection for Amazon EC2 and Amazon ECS. Adding support for wild card suppression rules. (d338e8aa)
  • client-s3: New S3 Storage Class FSX_ONTAP (56ffa40a)
  • client-bedrock-agentcore: Support for AgentCore Evaluations and Episodic memory strategy for AgentCore Memory. (ff3003b7)
  • client-savingsplans: Added support for Amazon Database Savings Plans (d93e9c41)
  • client-opensearchserverless: GPU-acceleration helps you build large-scale vector databases faster and more efficiently. You can enable this feature on new OpenSearch domains and OpenSearch Serverless collections. This feature uses GPU-acceleration to reduce the time needed to index data into vector indexes. (ae1f36f7)
  • client-cost-explorer: This release updates existing Savings Plans Purchase Analyzer and Recommendations APIs to support Database Savings Plans. (4dd5ecaa)
  • client-lambda: Launching Lambda durable functions - a new feature to build reliable multi-step applications and AI workflows natively within the Lambda developer experience. (01476cf7)
  • client-s3vectors: Amazon S3 Vectors provides cost-effective, elastic, and durable vector storage for queries based on semantic meaning and similarity. (b9835814)
  • client-s3tables: Add storage class, replication, and table record expiration features to S3 Tables. (f73480a7)
  • client-rds: RDS Oracle and SQL Server: Add support for adding, modifying, and removing additional storage volumes, offering up to 256TiB storage; RDS SQL Server: Support Developer Edition via custom engine versions for development and testing purposes; M7i/R7i instances with Optimize CPU for cost savings. (0fc234af)
Tests
  • core/protocols: add Query error deserialization unit test (#7535) (88074553)

For list of updated packages, view updated-packages.md in assets-3.943.0.zip

v3.942.0

3.942.0(2025-12-01)

Chores
New Features

... (truncated)

Changelog

Sourced from @​aws-sdk/client-s3's changelog.

3.943.0 (2025-12-02)

Features

  • client-s3: New S3 Storage Class FSX_ONTAP (56ffa40)

3.940.0 (2025-11-25)

Note: Version bump only for package @​aws-sdk/client-s3

3.939.0 (2025-11-24)

Note: Version bump only for package @​aws-sdk/client-s3

3.937.0 (2025-11-20)

Features

  • client-s3: Enable / Disable ABAC on a general purpose bucket. (9816b26)

3.936.0 (2025-11-19)

Note: Version bump only for package @​aws-sdk/client-s3

3.935.0 (2025-11-19)

Features

... (truncated)

Commits
  • 6900953 Publish v3.943.0
  • 56ffa40 feat(client-s3): New S3 Storage Class FSX_ONTAP
  • e9962f1 Publish v3.940.0
  • 1592379 Publish v3.939.0
  • 9981cbc Publish v3.937.0
  • 9816b26 feat(client-s3): Enable / Disable ABAC on a general purpose bucket.
  • a180cc7 Publish v3.936.0
  • c31b14b Publish v3.935.0
  • cee2e72 feat(client-s3): Adds support for blocking SSE-C writes to general purpose bu...
  • ac2be51 chore(codegen): update for smithy/core serde fixes (#7511)
  • Additional commits viewable in compare view

Updates cookie from 1.0.2 to 1.1.1

Release notes

Sourced from cookie's releases.

v1.1.1

Fixed

  • Overwrite value in passed in options (#253) c66147c
    • When value was provided in serialize(key, value, { value }) the value in options was used instead of the value passed as an argument

https://github.com/jshttp/cookie/compare/v1.1.0...v1.1.1

v1.1.0

Added:

  • Add stringifyCookie and parseSetCookie methods (#244, #214)
  • Rename existing methods for clarity (old method names remain for backward compatibility)
    • parseparseCookie
    • serializestringifySetCookie
  • Add side effects field (#245) 00b0327

https://github.com/jshttp/cookie/compare/v1.0.2...v1.1.0

Commits

Updates drizzle-orm from 0.44.7 to 0.45.0

Release notes

Sourced from drizzle-orm's releases.

0.45.0

  • Fixed pg-native Pool detection in node-postgres transactions
  • Allowed subqueries in select fields
  • Updated typo algorythm => algorithm
  • Fixed $onUpdate not handling SQL values (fixes #2388, tests implemented by L-Mario564 in #2911)
  • Fixed pg mappers not handling Date instances in bun-sql:postgresql driver responses for date, timestamp types (fixes #4493)
Commits
  • c445637 Merge pull request #5095 from drizzle-team/main-workflows
  • e7b3aaa Merge branch 'main' into main-workflows
  • 0d885a5 refactor: Update condition for run-feature job to improve clarity and functio...
  • 45a1ffb Merge pull request #5087 from drizzle-team/main-workflows
  • 6357645 chore: Comment out NEON_HTTP_CONNECTION_STRING requirement in release workflows
  • 53dec98 refactor: Simplify release router workflow by removing unnecessary switch job...
  • ce88a18 Merge remote-tracking branch 'origin/ext-deps-kit' into main-workflows
  • 5c8a4c5 +
  • 73e2ea4 feat: Add release router workflow to manage feature and latest releases
  • 378b043 Merge pull request #5002 from drizzle-team/main-next-pack
  • Additional commits viewable in compare view
Maintainer changes

This version was pushed to npm by [GitHub Actions](https://www.npmjs.com/~GitHub Actions), a new releaser for drizzle-orm since your current version.


Updates express from 5.1.0 to 5.2.1

Release notes

Sourced from express's releases.

v5.2.1

What's Changed

[!IMPORTANT]
The prior release (5.2.0) included an erroneous breaking change related to the extended query parser. There is no actual security vulnerability associated with this behavior (CVE-2024-51999 has been rejected). The change has been fully reverted in this release.

Full Changelog: https://github.com/expressjs/express/compare/v5.2.0...v5.2.1

v5.2.0

Important: Security

What's Changed

... (truncated)

Changelog

Sourced from express's changelog.

5.2.1 / 2025-12-01

5.2.0 / 2025-12-01

  • Security fix for CVE-2024-51999 (GHSA-pj86-cfqh-vqx6)
  • deps: body-parser@^2.2.1
  • A deprecation warning was added when using res.redirect with undefined arguments, Express now emits a warning to help detect calls that pass undefined as the status or URL and make them easier to fix.
Commits

Updates lucide-react from 0.552.0 to 0.555.0

Release notes

Sourced from lucide-react's releases.

Version 0.555.0

What's Changed

Full Changelog: https://github.com/lucide-icons/lucide/compare/0.554.0...0.555.0

Version 0.554.0

What's Changed

Breaking change

For lucide-react and lucide-solid, imports for Fingerprint icon are changed to FingerprintPattern.

Lucide React

- import { Fingerprint } from "lucide-react";
+ import { FingerprintPattern } from "lucide-react";

Lucide Solid

- import { Fingerprint } from "lucide/solid";
+ import { FingerprintPattern } from "lucide/solid";

// Or

  • import Fingerprint from "lucide/solid/icons/fingerprint";
  • import FingerprintPattern from "lucide/solid/icons/fingerprint-pattern";

New Contributors

Full Changelog: https://github.com/lucide-icons/lucide/compare/0.553.0...0.554.0

Version 0.553.0

What's Changed

... (truncated)

Commits

Updates next from 15.5.6 to 15.5.7

Release notes

Sourced from next's releases.

v15.5.7

Please see CVE-2025-66478 for additional details about this release.

Commits

Updates next-intl from 4.4.0 to 4.5.8

Release notes

Sourced from next-intl's releases.

v4.5.8

4.5.8 (2025-12-03)

Bug fixes for useExtracted

v4.5.7

4.5.7 (2025-12-01)

Bug Fixes

v4.5.6

4.5.6 (2025-11-27)

Bug fixes for useExtracted

v4.5.5

4.5.5 (2025-11-19)

Bug Fixes

v4.5.4

4.5.4 (2025-11-19)

Bug Fixes

v4.5.3

4.5.3 (2025-11-13)

... (truncated)

Changelog

Sourced from next-intl's changelog.

4.5.8 (2025-12-03)

Bug Fixes

4.5.7 (2025-12-01)

Bug Fixes

4.5.6 (2025-11-27)

Bug Fixes

4.5.5 (2025-11-19)

Bug Fixes

4.5.4 (2025-11-19)

Bug Fixes

4.5.3 (2025-11-13)

Bug Fixes

4.5.2 (2025-11-12)

Bug Fixes

4.5.1 (2025-11-11)

Bug Fixes

4.5.0 (2025-11-07)

... (truncated)

Commits

Updates posthog-node from 5.11.2 to 5.17.2

Release notes

Sourced from posthog-node's releases.

posthog-node@5.17.2

5.17.2

Patch Changes

  • #2678 ca4436e Thanks @​haacked! - Local evaluation polling sends If-None-Match header with latest etag to reduce bandwidth when no flags have changed. (2025-12-04)

posthog-node@5.17.1

5.17.1

Patch Changes

  • #2690 e9c00fd Thanks @​robbie-c! - Related to https://www.wiz.io/blog/critical-vulnerability-in-react-cve-2025-55182

    We didn't include any of the vulnerable deps in any of our packages, however we did have them as dev / test / example project dependencies.

    There was no way that any of these vulnerable packages were included in any of our published packages.

    We've now patched out those dependencies.

    Out of an abundance of caution, let's create a new release of all of our packages. (2025-12-04)

  • Updated dependencies [e9c00fd]:

    • @​posthog/core@​1.7.1

posthog-node@5.17.0

5.17.0

Minor Changes

posthog-node@5.16.0

5.16.0

Minor Changes

  • #2603 e1617d9 Thanks @​dmarticus! - add $feature_flag_evaluated_at properties to $feature_flag_called events (2025-12-03)

Patch Changes

posthog-node@5.15.0

5.15.0

... (truncated)

Changelog

Sourced from posthog-node's changelog.

5.17.2

Patch Changes

  • #2678 ca4436e Thanks @​haacked! - Local evaluation polling sends If-None-Match header with latest etag to reduce bandwidth when no flags have changed. (2025-12-04)

5.17.1

Patch Changes

  • #2690 e9c00fd Thanks @​robbie-c! - Related to https://www.wiz.io/blog/critical-vulnerability-in-react-cve-2025-55182

    We didn't include any of the vulnerable deps in any of our packages, however we did have them as dev / test / example project dependencies.

    There was no way that any of these vulnerable packages were included in any of our published packages.

    We've now patched out those dependencies.

    Out of an abundance of caution, let's create a new release of all of our packages. (2025-12-04)

  • Updated dependencies [e9c00fd]:

    • @​posthog/core@​1.7.1

5.17.0

Minor Changes

5.16.0

Minor Changes

  • #2603 e1617d9 Thanks @​dmarticus! - add $feature_flag_evaluated_at properties to $feature_flag_called events (2025-12-03)

Patch Changes

5.15.0

Minor Changes

... (truncated)

Commits
Maintainer changes

This version was pushed to npm by [GitHub Actions](https://www.npmjs.com/~GitHub Actions), a new releaser for posthog-node since your current version.


Updates react-hook-form from 7.66.0 to 7.68.0

Release notes

Sourced from react-hook-form's releases.

Version 7.68.0

🎧 feat: <FormStateSubscribe /> component (#13142)

import { useForm, FormStateSubscribe } from 'react-hook-form';

const App = () => {
const { register, control } = useForm();

return (
<div>
<form>
<input {...register('foo')} />
<input {...register('bar')} />
</form>
{/* re-render only when formState of foo changes */}
<FormStateSubscribe
control={control}
name={"foo"}
render={({errors}) => <span>{errors.foo?.message}</span>}
/>
</div>
);
};

🐞 fix: clear validation errors synchronously in reset() to fix Next.js 16 Server Actions issue (#13139) Revert " fix(types): allow undefined value with async defaultValues in Contr…" (#13171)

thanks to @​xiangnuans, @​abnud11, @​ntatoud & @​ap0nia

Version 7.67.0

🎯 feat: add exact to useController props (#13154)

useForm({
  defaultValues: {
    user: {
      name: ''
    }
  }
})

<Controller control={control} name="user" exact={false} /> // subscribe to all user object

fix(types): allow undefined value with async defaultValues in Controller (#13160) 🐞 fix(types): correct PathValueImpl type inference (#13150)

... (truncated)

Commits
  • b84595e 7.68.0
  • f51aaa8 🧹 chore: clean up imports in deep-equal (#13174)
  • baa0733 Revert " fix(types): allow undefined value with async defaultValues in Contr...
  • e82e05e 🐞 fix: clear validation errors synchronously in reset() to fix Next.js 16 Ser...
  • 175cbb9 🪖 chore: upgrade eslint react hooks (#13168)
  • 43bcf05 🎧 feat: <FormStateSubscribe /> component (#13142)
  • 6f39b1e 7.67.0
  • 90d19ad 🎯 feat: add exact to useController props (#13154)
  • ceb0b8f fix(types): allow undefined value with async defaultValues in Contr… (#13160)
  • a42f198 🐞 fix(types): correct PathValueImpl type inference (#13150)
  • Additional commits viewable in compare view

Updates resend from 6.4.2 to 6.5.2

Release notes

Sourced from resend's releases.

v6.5.2

What's Changed

Full Changelog: https://github.com/resend/resend-node/compare/v6.5.1...v6.5.2

v6.5.1

What's Changed

*Originally created by @dependabot[bot] on 12/5/2025* Bumps the prod-minor-updates group with 10 updates in the / directory: | Package | From | To | | --- | --- | --- | | [@aws-sdk/client-s3](https://github.com/aws/aws-sdk-js-v3/tree/HEAD/clients/client-s3) | `3.922.0` | `3.943.0` | | [cookie](https://github.com/jshttp/cookie) | `1.0.2` | `1.1.1` | | [drizzle-orm](https://github.com/drizzle-team/drizzle-orm) | `0.44.7` | `0.45.0` | | [express](https://github.com/expressjs/express) | `5.1.0` | `5.2.1` | | [lucide-react](https://github.com/lucide-icons/lucide/tree/HEAD/packages/lucide-react) | `0.552.0` | `0.555.0` | | [next-intl](https://github.com/amannn/next-intl) | `4.4.0` | `4.5.8` | | [posthog-node](https://github.com/PostHog/posthog-js/tree/HEAD/packages/node) | `5.11.2` | `5.17.2` | | [react-hook-form](https://github.com/react-hook-form/react-hook-form) | `7.66.0` | `7.68.0` | | [resend](https://github.com/resend/resend-node) | `6.4.2` | `6.5.2` | | [tailwind-merge](https://github.com/dcastil/tailwind-merge) | `3.3.1` | `3.4.0` | Updates `@aws-sdk/client-s3` from 3.922.0 to 3.943.0 <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/aws/aws-sdk-js-v3/releases"><code>@​aws-sdk/client-s3</code>'s releases</a>.</em></p> <blockquote> <h2>v3.943.0</h2> <h4>3.943.0(2025-12-02)</h4> <h5>Chores</h5> <ul> <li><strong>core/protocols:</strong> dynamodb serde performance adjustments (<a href="https://redirect.github.com/aws/aws-sdk-js-v3/pull/7536">#7536</a>) (<a href="https://github.com/aws/aws-sdk-js-v3/commit/ae3e73d857c8e5f279001fc55aa608a2b64dd391">ae3e73d8</a>)</li> </ul> <h5>New Features</h5> <ul> <li><strong>clients:</strong> update client endpoints as of 2025-12-02 (<a href="https://github.com/aws/aws-sdk-js-v3/commit/2f1ed327f3f2b793e65a2bf911ad9743febca017">2f1ed327</a>)</li> <li><strong>client-s3-control:</strong> Add support for S3 Storage Lens Advanced Performance Metrics, Expanded Prefixes metrics report, and export to S3 Tables. (<a href="https://github.com/aws/aws-sdk-js-v3/commit/a87377781e7cb316ce2c7335fa637ec3124f2f6d">a8737778</a>)</li> <li><strong>client-observabilityadmin:</strong> CloudWatch Observability Admin adds pipelines configuration for third party log ingestion and transformation of all logs ingested, integration of CloudWatch logs with S3 Tables, and AWS account or organization level enablement for 7 AWS services. (<a href="https://github.com/aws/aws-sdk-js-v3/commit/1e20b0fe47ec2588b3a1693d7f6d025689abb7e2">1e20b0fe</a>)</li> <li><strong>client-fsx:</strong> S3 Access Points support for FSx for NetApp ONTAP (<a href="https://github.com/aws/aws-sdk-js-v3/commit/cb2d0f30c873641e3371490d80ec7422f6ea2ae2">cb2d0f30</a>)</li> <li><strong>client-datazone:</strong> Amazon DataZone now supports exporting Catalog datasets as Amazon S3 tables, and provides automatic business glossary term suggestions for data assets. (<a href="https://github.com/aws/aws-sdk-js-v3/commit/f82c5bd4e30e9dc3fafb4529b524b5c36ff8bf39">f82c5bd4</a>)</li> <li><strong>client-sagemaker:</strong> Added support for serverless MLflow Apps. (<a href="https://github.com/aws/aws-sdk-js-v3/commit/99cda6cb9d944e23c7980371bbfb2ddddfa4afc4">99cda6cb</a>)</li> <li><strong>client-securityhub:</strong> ITSM enhancements: DRYRUN mode for testing ticket creation, ServiceNow now uses AWS Secrets Manager for credentials, ConnectorRegistrationsV2 renamed to RegisterConnectorV2, added ServiceQuotaExceededException error, and ConnectorStatus visibility in CreateConnectorV2. (<a href="https://github.com/aws/aws-sdk-js-v3/commit/45c4bd145565a45e1aa5a5200ae1730825547ad2">45c4bd14</a>)</li> <li><strong>client-bedrock-agentcore-control:</strong> Supports AgentCore Evaluations, Policy, Episodic Memory Strategy, Resource Based Policy for Runtime and Gateway APIs, API Gateway Rest API Targets and enhances JWT authorizer. (<a href="https://github.com/aws/aws-sdk-js-v3/commit/072c9ff20c902c54c7c2b69bc6df9379098e35f1">072c9ff2</a>)</li> <li><strong>client-bedrock-runtime:</strong> Adds support for Audio Blocks and Streaming Image Output plus new Stop Reasons of malformed_model_output and malformed_tool_use. (<a href="https://github.com/aws/aws-sdk-js-v3/commit/57bdac089bd21e477fe1f2cf6cf0c2e8c8a0c0a3">57bdac08</a>)</li> <li><strong>client-nova-act:</strong> Initial release of Nova Act SDK. The Nova Act service enables customers to build and manage fleets of agents for automating production UI workflows with high reliability, fastest time-to-value, and ease of implementation at scale. (<a href="https://github.com/aws/aws-sdk-js-v3/commit/f0544c319eb2877311c59c595065f6150cd12dd4">f0544c31</a>)</li> <li><strong>client-opensearch:</strong> GPU-acceleration helps you build large-scale vector databases faster and more efficiently. You can enable this feature on new OpenSearch domains and OpenSearch Serverless collections. This feature uses GPU-acceleration to reduce the time needed to index data into vector indexes. (<a href="https://github.com/aws/aws-sdk-js-v3/commit/263dd4ca4eb49a1e5bdf9cf6b7bd080c1030bfef">263dd4ca</a>)</li> <li><strong>client-cloudwatch-logs:</strong> CloudWatch Logs adds managed S3 Tables integration to access logs using other analytical tools, as well as facets and field indexing to simplify log analytics in CloudWatch Logs Insights. (<a href="https://github.com/aws/aws-sdk-js-v3/commit/f3383c4ebdc9dab96f3393d49a2da03a056379b3">f3383c4e</a>)</li> <li><strong>client-bedrock:</strong> Adds the audioDataDeliveryEnabled boolean field to the Model Invocation Logging Configuration. (<a href="https://github.com/aws/aws-sdk-js-v3/commit/c3ccd65d3bd4d3004af7d6462a995f6b6fda8a3d">c3ccd65d</a>)</li> <li><strong>client-guardduty:</strong> Adding support for extended threat detection for Amazon EC2 and Amazon ECS. Adding support for wild card suppression rules. (<a href="https://github.com/aws/aws-sdk-js-v3/commit/d338e8aaf2cda0a46aa14460ce2d9ca226a4f86f">d338e8aa</a>)</li> <li><strong>client-s3:</strong> New S3 Storage Class FSX_ONTAP (<a href="https://github.com/aws/aws-sdk-js-v3/commit/56ffa40ae180847a5e8d2e37d96356e6eaf38c72">56ffa40a</a>)</li> <li><strong>client-bedrock-agentcore:</strong> Support for AgentCore Evaluations and Episodic memory strategy for AgentCore Memory. (<a href="https://github.com/aws/aws-sdk-js-v3/commit/ff3003b7ef9054a894526b766faf78556a41786f">ff3003b7</a>)</li> <li><strong>client-savingsplans:</strong> Added support for Amazon Database Savings Plans (<a href="https://github.com/aws/aws-sdk-js-v3/commit/d93e9c4162e4864ba44a2f5235b07fffda90d188">d93e9c41</a>)</li> <li><strong>client-opensearchserverless:</strong> GPU-acceleration helps you build large-scale vector databases faster and more efficiently. You can enable this feature on new OpenSearch domains and OpenSearch Serverless collections. This feature uses GPU-acceleration to reduce the time needed to index data into vector indexes. (<a href="https://github.com/aws/aws-sdk-js-v3/commit/ae1f36f702add0ce767089e1acc5ae970def596f">ae1f36f7</a>)</li> <li><strong>client-cost-explorer:</strong> This release updates existing Savings Plans Purchase Analyzer and Recommendations APIs to support Database Savings Plans. (<a href="https://github.com/aws/aws-sdk-js-v3/commit/4dd5ecaaff72f048e7e08f3994d9b66a26529316">4dd5ecaa</a>)</li> <li><strong>client-lambda:</strong> Launching Lambda durable functions - a new feature to build reliable multi-step applications and AI workflows natively within the Lambda developer experience. (<a href="https://github.com/aws/aws-sdk-js-v3/commit/01476cf7a303a04f994968d03d16f6fffb372ad8">01476cf7</a>)</li> <li><strong>client-s3vectors:</strong> Amazon S3 Vectors provides cost-effective, elastic, and durable vector storage for queries based on semantic meaning and similarity. (<a href="https://github.com/aws/aws-sdk-js-v3/commit/b98358147a07e99335571bd49d0c094c7340cc16">b9835814</a>)</li> <li><strong>client-s3tables:</strong> Add storage class, replication, and table record expiration features to S3 Tables. (<a href="https://github.com/aws/aws-sdk-js-v3/commit/f73480a7b322942493f5008ce09ca98d0014c539">f73480a7</a>)</li> <li><strong>client-rds:</strong> RDS Oracle and SQL Server: Add support for adding, modifying, and removing additional storage volumes, offering up to 256TiB storage; RDS SQL Server: Support Developer Edition via custom engine versions for development and testing purposes; M7i/R7i instances with Optimize CPU for cost savings. (<a href="https://github.com/aws/aws-sdk-js-v3/commit/0fc234af2dea6e5b8d12287c0ab5aaa5a267fa4a">0fc234af</a>)</li> </ul> <h5>Tests</h5> <ul> <li><strong>core/protocols:</strong> add Query error deserialization unit test (<a href="https://redirect.github.com/aws/aws-sdk-js-v3/pull/7535">#7535</a>) (<a href="https://github.com/aws/aws-sdk-js-v3/commit/880745539a56064d90ac1607da11d26c22de732e">88074553</a>)</li> </ul> <hr /> <p>For list of updated packages, view <strong>updated-packages.md</strong> in <strong>assets-3.943.0.zip</strong></p> <h2>v3.942.0</h2> <h4>3.942.0(2025-12-01)</h4> <h5>Chores</h5> <ul> <li><strong>codegen:</strong> normalize enum generation (<a href="https://redirect.github.com/aws/aws-sdk-js-v3/pull/7528">#7528</a>) (<a href="https://github.com/aws/aws-sdk-js-v3/commit/0ed8618512238c804725a7d1cac2d3c2a41317ac">0ed86185</a>)</li> </ul> <h5>New Features</h5> <!-- raw HTML omitted --> </blockquote> <p>... (truncated)</p> </details> <details> <summary>Changelog</summary> <p><em>Sourced from <a href="https://github.com/aws/aws-sdk-js-v3/blob/main/clients/client-s3/CHANGELOG.md"><code>@​aws-sdk/client-s3</code>'s changelog</a>.</em></p> <blockquote> <h1><a href="https://github.com/aws/aws-sdk-js-v3/compare/v3.942.0...v3.943.0">3.943.0</a> (2025-12-02)</h1> <h3>Features</h3> <ul> <li><strong>client-s3:</strong> New S3 Storage Class FSX_ONTAP (<a href="https://github.com/aws/aws-sdk-js-v3/commit/56ffa40ae180847a5e8d2e37d96356e6eaf38c72">56ffa40</a>)</li> </ul> <h1><a href="https://github.com/aws/aws-sdk-js-v3/compare/v3.939.0...v3.940.0">3.940.0</a> (2025-11-25)</h1> <p><strong>Note:</strong> Version bump only for package <code>@​aws-sdk/client-s3</code></p> <h1><a href="https://github.com/aws/aws-sdk-js-v3/compare/v3.938.0...v3.939.0">3.939.0</a> (2025-11-24)</h1> <p><strong>Note:</strong> Version bump only for package <code>@​aws-sdk/client-s3</code></p> <h1><a href="https://github.com/aws/aws-sdk-js-v3/compare/v3.936.0...v3.937.0">3.937.0</a> (2025-11-20)</h1> <h3>Features</h3> <ul> <li><strong>client-s3:</strong> Enable / Disable ABAC on a general purpose bucket. (<a href="https://github.com/aws/aws-sdk-js-v3/commit/9816b260680314d8883fc56e59e015fdd906f8b8">9816b26</a>)</li> </ul> <h1><a href="https://github.com/aws/aws-sdk-js-v3/compare/v3.935.0...v3.936.0">3.936.0</a> (2025-11-19)</h1> <p><strong>Note:</strong> Version bump only for package <code>@​aws-sdk/client-s3</code></p> <h1><a href="https://github.com/aws/aws-sdk-js-v3/compare/v3.934.0...v3.935.0">3.935.0</a> (2025-11-19)</h1> <h3>Features</h3> <!-- raw HTML omitted --> </blockquote> <p>... (truncated)</p> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/aws/aws-sdk-js-v3/commit/690095356aead615038b55b759355ac84ea9b23c"><code>6900953</code></a> Publish v3.943.0</li> <li><a href="https://github.com/aws/aws-sdk-js-v3/commit/56ffa40ae180847a5e8d2e37d96356e6eaf38c72"><code>56ffa40</code></a> feat(client-s3): New S3 Storage Class FSX_ONTAP</li> <li><a href="https://github.com/aws/aws-sdk-js-v3/commit/e9962f1c4512d6ea969ca621754b3db01ac54aa9"><code>e9962f1</code></a> Publish v3.940.0</li> <li><a href="https://github.com/aws/aws-sdk-js-v3/commit/15923791acb0f527cf323c58aecd5d4bea7fff29"><code>1592379</code></a> Publish v3.939.0</li> <li><a href="https://github.com/aws/aws-sdk-js-v3/commit/9981cbc71ff75ed458b62ecb18220a0a1f692f1a"><code>9981cbc</code></a> Publish v3.937.0</li> <li><a href="https://github.com/aws/aws-sdk-js-v3/commit/9816b260680314d8883fc56e59e015fdd906f8b8"><code>9816b26</code></a> feat(client-s3): Enable / Disable ABAC on a general purpose bucket.</li> <li><a href="https://github.com/aws/aws-sdk-js-v3/commit/a180cc700f630c07711ca0c823b668fe50e5123e"><code>a180cc7</code></a> Publish v3.936.0</li> <li><a href="https://github.com/aws/aws-sdk-js-v3/commit/c31b14b70eb5750573dedf0de1ccb9c8136c84f9"><code>c31b14b</code></a> Publish v3.935.0</li> <li><a href="https://github.com/aws/aws-sdk-js-v3/commit/cee2e72ffbcafb34a5283c9f4779c58c02a0be59"><code>cee2e72</code></a> feat(client-s3): Adds support for blocking SSE-C writes to general purpose bu...</li> <li><a href="https://github.com/aws/aws-sdk-js-v3/commit/ac2be518aa22bbc0c1899580073b433c0d3836ac"><code>ac2be51</code></a> chore(codegen): update for smithy/core serde fixes (<a href="https://github.com/aws/aws-sdk-js-v3/tree/HEAD/clients/client-s3/issues/7511">#7511</a>)</li> <li>Additional commits viewable in <a href="https://github.com/aws/aws-sdk-js-v3/commits/v3.943.0/clients/client-s3">compare view</a></li> </ul> </details> <br /> Updates `cookie` from 1.0.2 to 1.1.1 <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/jshttp/cookie/releases">cookie's releases</a>.</em></p> <blockquote> <h2>v1.1.1</h2> <p><strong>Fixed</strong></p> <ul> <li>Overwrite value in passed in options (<a href="https://redirect.github.com/jshttp/cookie/issues/253">#253</a>) c66147c <ul> <li>When <code>value</code> was provided in <code>serialize(key, value, { value })</code> the value in <code>options</code> was used instead of the value passed as an argument</li> </ul> </li> </ul> <hr /> <p><a href="https://github.com/jshttp/cookie/compare/v1.1.0...v1.1.1">https://github.com/jshttp/cookie/compare/v1.1.0...v1.1.1</a></p> <h2>v1.1.0</h2> <p><strong>Added:</strong></p> <ul> <li>Add <code>stringifyCookie</code> and <code>parseSetCookie</code> methods (<a href="https://redirect.github.com/jshttp/cookie/issues/244">#244</a>, <a href="https://redirect.github.com/jshttp/cookie/issues/214">#214</a>)</li> <li>Rename existing methods for clarity (old method names remain for backward compatibility) <ul> <li><code>parse</code> → <code>parseCookie</code></li> <li><code>serialize</code> → <code>stringifySetCookie</code></li> </ul> </li> <li>Add side effects field (<a href="https://redirect.github.com/jshttp/cookie/issues/245">#245</a>) 00b0327</li> </ul> <hr /> <p><a href="https://github.com/jshttp/cookie/compare/v1.0.2...v1.1.0">https://github.com/jshttp/cookie/compare/v1.0.2...v1.1.0</a></p> </blockquote> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/jshttp/cookie/commit/1b89eec4e33256ac31962f4c0d6e711fff478803"><code>1b89eec</code></a> 1.1.1</li> <li><a href="https://github.com/jshttp/cookie/commit/c66147c053c74b256287aa7c0a4e63082d786fb2"><code>c66147c</code></a> Overwrite value in passed in options (<a href="https://redirect.github.com/jshttp/cookie/issues/253">#253</a>)</li> <li><a href="https://github.com/jshttp/cookie/commit/09cec9fd32aa777ddbf51a115c53f30728eccfbc"><code>09cec9f</code></a> 1.1.0</li> <li><a href="https://github.com/jshttp/cookie/commit/05ebd34fd5a1cdad950f68fc7429cade7dfd6997"><code>05ebd34</code></a> Add tests for parsing top sites (<a href="https://redirect.github.com/jshttp/cookie/issues/249">#249</a>)</li> <li><a href="https://github.com/jshttp/cookie/commit/6214eaf968d60681f3f7fe76797270332c3569c9"><code>6214eaf</code></a> Add benchmark for <code>parseSetCookie</code> (<a href="https://redirect.github.com/jshttp/cookie/issues/247">#247</a>)</li> <li><a href="https://github.com/jshttp/cookie/commit/71798d72650df42288f74e5ab49b65ec44df74fe"><code>71798d7</code></a> Fix skip over of boolean attributes (<a href="https://redirect.github.com/jshttp/cookie/issues/248">#248</a>)</li> <li><a href="https://github.com/jshttp/cookie/commit/9e41cf10c88b45893141f2ee2dc98b23bdb57f24"><code>9e41cf1</code></a> build(deps): bump the npm_and_yarn group across 1 directory with 4 updates (#...</li> <li><a href="https://github.com/jshttp/cookie/commit/6fea50679a97f65b5d6e3d291b2dad5816fcfddc"><code>6fea506</code></a> Add parse method for <code>set-cookie</code> (<a href="https://redirect.github.com/jshttp/cookie/issues/244">#244</a>)</li> <li><a href="https://github.com/jshttp/cookie/commit/00b032721c4dc9aeb7d3814ce790eadb4ebde59b"><code>00b0327</code></a> Add side effects field (<a href="https://redirect.github.com/jshttp/cookie/issues/245">#245</a>)</li> <li><a href="https://github.com/jshttp/cookie/commit/94586de038f16960cd5eb91ee499313734b02ab7"><code>94586de</code></a> feat: remove dependabot from repo (<a href="https://redirect.github.com/jshttp/cookie/issues/242">#242</a>)</li> <li>Additional commits viewable in <a href="https://github.com/jshttp/cookie/compare/v1.0.2...v1.1.1">compare view</a></li> </ul> </details> <br /> Updates `drizzle-orm` from 0.44.7 to 0.45.0 <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/drizzle-team/drizzle-orm/releases">drizzle-orm's releases</a>.</em></p> <blockquote> <h2>0.45.0</h2> <ul> <li>Fixed pg-native Pool detection in node-postgres transactions</li> <li>Allowed subqueries in select fields</li> <li>Updated typo algorythm =&gt; algorithm</li> <li>Fixed <code>$onUpdate</code> not handling <code>SQL</code> values (fixes <a href="https://redirect.github.com/drizzle-team/drizzle-orm/issues/2388">#2388</a>, tests implemented by <a href="https://github.com/L-Mario564">L-Mario564</a> in <a href="https://redirect.github.com/drizzle-team/drizzle-orm/pull/2911">#2911</a>)</li> <li>Fixed <code>pg</code> mappers not handling <code>Date</code> instances in <code>bun-sql:postgresql</code> driver responses for <code>date</code>, <code>timestamp</code> types (fixes <a href="https://redirect.github.com/drizzle-team/drizzle-orm/issues/4493">#4493</a>)</li> </ul> </blockquote> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/drizzle-team/drizzle-orm/commit/c445637df39366bcf47b12601896ce851771c1c2"><code>c445637</code></a> Merge pull request <a href="https://redirect.github.com/drizzle-team/drizzle-orm/issues/5095">#5095</a> from drizzle-team/main-workflows</li> <li><a href="https://github.com/drizzle-team/drizzle-orm/commit/e7b3aaa26456b88cd23a7843ebc95b3bddde1ba4"><code>e7b3aaa</code></a> Merge branch 'main' into main-workflows</li> <li><a href="https://github.com/drizzle-team/drizzle-orm/commit/0d885a54ddafd8717f8610cf3d2899f3eef61e65"><code>0d885a5</code></a> refactor: Update condition for run-feature job to improve clarity and functio...</li> <li><a href="https://github.com/drizzle-team/drizzle-orm/commit/45a1ffbcbfdd96772d0aba7d9e43744db2dce471"><code>45a1ffb</code></a> Merge pull request <a href="https://redirect.github.com/drizzle-team/drizzle-orm/issues/5087">#5087</a> from drizzle-team/main-workflows</li> <li><a href="https://github.com/drizzle-team/drizzle-orm/commit/6357645bd33b1f444e1d081769dd4b71c3de31f8"><code>6357645</code></a> chore: Comment out NEON_HTTP_CONNECTION_STRING requirement in release workflows</li> <li><a href="https://github.com/drizzle-team/drizzle-orm/commit/53dec98a936f549d0cc2e668f19db3a2df842f51"><code>53dec98</code></a> refactor: Simplify release router workflow by removing unnecessary switch job...</li> <li><a href="https://github.com/drizzle-team/drizzle-orm/commit/ce88a181e03d8b9b3fd0b62c93cc1faa05b0e000"><code>ce88a18</code></a> Merge remote-tracking branch 'origin/ext-deps-kit' into main-workflows</li> <li><a href="https://github.com/drizzle-team/drizzle-orm/commit/5c8a4c508b36813599e6de891166a6888720a307"><code>5c8a4c5</code></a> +</li> <li><a href="https://github.com/drizzle-team/drizzle-orm/commit/73e2ea486f6781bc7bfd2c287590d9c96e319b51"><code>73e2ea4</code></a> feat: Add release router workflow to manage feature and latest releases</li> <li><a href="https://github.com/drizzle-team/drizzle-orm/commit/378b0432d549441fa61de200589a790f1171b6fe"><code>378b043</code></a> Merge pull request <a href="https://redirect.github.com/drizzle-team/drizzle-orm/issues/5002">#5002</a> from drizzle-team/main-next-pack</li> <li>Additional commits viewable in <a href="https://github.com/drizzle-team/drizzle-orm/compare/0.44.7...0.45.0">compare view</a></li> </ul> </details> <details> <summary>Maintainer changes</summary> <p>This version was pushed to npm by [GitHub Actions](<a href="https://www.npmjs.com/~GitHub">https://www.npmjs.com/~GitHub</a> Actions), a new releaser for drizzle-orm since your current version.</p> </details> <br /> Updates `express` from 5.1.0 to 5.2.1 <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/expressjs/express/releases">express's releases</a>.</em></p> <blockquote> <h2>v5.2.1</h2> <h2>What's Changed</h2> <blockquote> <p>[!IMPORTANT]<br /> The prior release (5.2.0) included an erroneous breaking change related to the extended query parser. There is no actual security vulnerability associated with this behavior (CVE-2024-51999 has been rejected). The change has been fully reverted in this release.</p> </blockquote> <ul> <li>Release: 5.2.1 by <a href="https://github.com/UlisesGascon"><code>@​UlisesGascon</code></a> in <a href="https://redirect.github.com/expressjs/express/pull/6933">expressjs/express#6933</a></li> </ul> <p><strong>Full Changelog</strong>: <a href="https://github.com/expressjs/express/compare/v5.2.0...v5.2.1">https://github.com/expressjs/express/compare/v5.2.0...v5.2.1</a></p> <h2>v5.2.0</h2> <h2>Important: Security</h2> <ul> <li>Security fix for <a href="https://www.cve.org/CVERecord?id=CVE-2024-51999">CVE-2024-51999</a> (<a href="https://github.com/expressjs/express/security/advisories/GHSA-pj86-cfqh-vqx6">GHSA-pj86-cfqh-vqx6</a>)</li> </ul> <h2>What's Changed</h2> <ul> <li>build(deps): bump github/codeql-action from 3.28.11 to 3.28.13 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot] in <a href="https://redirect.github.com/expressjs/express/pull/6429">expressjs/express#6429</a></li> <li>Refactor: simplify <code>acceptsLanguages</code> implementation using spread operator by <a href="https://github.com/Ayoub-Mabrouk"><code>@​Ayoub-Mabrouk</code></a> in <a href="https://redirect.github.com/expressjs/express/pull/6137">expressjs/express#6137</a></li> <li>increased code coverage of utils.js file by <a href="https://github.com/ashish3011"><code>@​ashish3011</code></a> in <a href="https://redirect.github.com/expressjs/express/pull/6386">expressjs/express#6386</a></li> <li>chore: remove duplicate word by <a href="https://github.com/dufucun"><code>@​dufucun</code></a> in <a href="https://redirect.github.com/expressjs/express/pull/6456">expressjs/express#6456</a></li> <li>build(deps): bump github/codeql-action from 3.28.13 to 3.28.16 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot] in <a href="https://redirect.github.com/expressjs/express/pull/6498">expressjs/express#6498</a></li> <li>build(deps): bump actions/setup-node from 4.3.0 to 4.4.0 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot] in <a href="https://redirect.github.com/expressjs/express/pull/6497">expressjs/express#6497</a></li> <li>build(deps): bump actions/download-artifact from 4.2.1 to 4.3.0 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot] in <a href="https://redirect.github.com/expressjs/express/pull/6496">expressjs/express#6496</a></li> <li>ci: add node.js 24 to test matrix by <a href="https://github.com/Phillip9587"><code>@​Phillip9587</code></a> in <a href="https://redirect.github.com/expressjs/express/pull/6504">expressjs/express#6504</a></li> <li>ci: update codeql config by <a href="https://github.com/Phillip9587"><code>@​Phillip9587</code></a> in <a href="https://redirect.github.com/expressjs/express/pull/6488">expressjs/express#6488</a></li> <li>chore: wider range for query test skip by <a href="https://github.com/jonchurch"><code>@​jonchurch</code></a> in <a href="https://redirect.github.com/expressjs/express/pull/6512">expressjs/express#6512</a></li> <li>chore: fix typos in test by <a href="https://github.com/noritaka1166"><code>@​noritaka1166</code></a> in <a href="https://redirect.github.com/expressjs/express/pull/6535">expressjs/express#6535</a></li> <li>ci: disable credential persistence for checkout actions by <a href="https://github.com/mertssmnoglu"><code>@​mertssmnoglu</code></a> in <a href="https://redirect.github.com/expressjs/express/pull/6522">expressjs/express#6522</a></li> <li>ci: allow manual triggering of workflow by <a href="https://github.com/shivarm"><code>@​shivarm</code></a> in <a href="https://redirect.github.com/expressjs/express/pull/6515">expressjs/express#6515</a></li> <li>test: add coverage for app.listen() variants by <a href="https://github.com/kgarg1"><code>@​kgarg1</code></a> in <a href="https://redirect.github.com/expressjs/express/pull/6476">expressjs/express#6476</a></li> <li>docs: move documentation and charters to the discussions and .github … by <a href="https://github.com/bjohansebas"><code>@​bjohansebas</code></a> in <a href="https://redirect.github.com/expressjs/express/pull/6427">expressjs/express#6427</a></li> <li>build(deps): bump github/codeql-action from 3.28.16 to 3.28.18 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot] in <a href="https://redirect.github.com/expressjs/express/pull/6549">expressjs/express#6549</a></li> <li>build(deps): bump ossf/scorecard-action from 2.4.1 to 2.4.2 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot] in <a href="https://redirect.github.com/expressjs/express/pull/6548">expressjs/express#6548</a></li> <li>chore: enforce explicit <code>Buffer</code> import and add lint rule by <a href="https://github.com/shivarm"><code>@​shivarm</code></a> in <a href="https://redirect.github.com/expressjs/express/pull/6525">expressjs/express#6525</a></li> <li>chore: use node protocol for querystring by <a href="https://github.com/shivarm"><code>@​shivarm</code></a> in <a href="https://redirect.github.com/expressjs/express/pull/6520">expressjs/express#6520</a></li> <li>chore: fix typo by <a href="https://github.com/mountdisk"><code>@​mountdisk</code></a> in <a href="https://redirect.github.com/expressjs/express/pull/6609">expressjs/express#6609</a></li> <li>build(deps): bump github/codeql-action from 3.28.18 to 3.29.2 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot] in <a href="https://redirect.github.com/expressjs/express/pull/6618">expressjs/express#6618</a></li> <li>add deprecation warnings for redirect arguments undefined by <a href="https://github.com/bjohansebas"><code>@​bjohansebas</code></a> in <a href="https://redirect.github.com/expressjs/express/pull/6405">expressjs/express#6405</a></li> <li>ci: run CI when the markdown changes by <a href="https://github.com/bjohansebas"><code>@​bjohansebas</code></a> in <a href="https://redirect.github.com/expressjs/express/pull/6632">expressjs/express#6632</a></li> <li>doc: fix CONTRIBUTING link by <a href="https://github.com/jonchurch"><code>@​jonchurch</code></a> in <a href="https://redirect.github.com/expressjs/express/pull/6653">expressjs/express#6653</a></li> <li>doc: update contributing guidelines and code of conduct links by <a href="https://github.com/ShubhamOulkar"><code>@​ShubhamOulkar</code></a> in <a href="https://redirect.github.com/expressjs/express/pull/6601">expressjs/express#6601</a></li> <li>build(deps-dev): bump morgan from 1.10.0 to 1.10.1 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot] in <a href="https://redirect.github.com/expressjs/express/pull/6679">expressjs/express#6679</a></li> <li>build(deps-dev): bump cookie-session from 2.1.0 to 2.1.1 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot] in <a href="https://redirect.github.com/expressjs/express/pull/6678">expressjs/express#6678</a></li> <li>lint: add --fix flag to automatic fix linting issue by <a href="https://github.com/shivarm"><code>@​shivarm</code></a> in <a href="https://redirect.github.com/expressjs/express/pull/6644">expressjs/express#6644</a></li> <li>chore: ignore yarn.lock file and update example by <a href="https://github.com/shivarm"><code>@​shivarm</code></a> in <a href="https://redirect.github.com/expressjs/express/pull/6588">expressjs/express#6588</a></li> <li>lib: use req.socket over deprecated req.connection by <a href="https://github.com/bjohansebas"><code>@​bjohansebas</code></a> in <a href="https://redirect.github.com/expressjs/express/pull/6705">expressjs/express#6705</a></li> <li>doc: update express app example by <a href="https://github.com/shivarm"><code>@​shivarm</code></a> in <a href="https://redirect.github.com/expressjs/express/pull/6718">expressjs/express#6718</a></li> <li>build(deps): bump github/codeql-action from 3.29.2 to 3.29.5 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot] in <a href="https://redirect.github.com/expressjs/express/pull/6675">expressjs/express#6675</a></li> <li>Remove history.md from being packaged on publish by <a href="https://github.com/sheplu"><code>@​sheplu</code></a> in <a href="https://redirect.github.com/expressjs/express/pull/6780">expressjs/express#6780</a></li> </ul> <!-- raw HTML omitted --> </blockquote> <p>... (truncated)</p> </details> <details> <summary>Changelog</summary> <p><em>Sourced from <a href="https://github.com/expressjs/express/blob/master/History.md">express's changelog</a>.</em></p> <blockquote> <h1>5.2.1 / 2025-12-01</h1> <ul> <li>Revert security fix for <a href="https://www.cve.org/CVERecord?id=CVE-2024-51999">CVE-2024-51999</a> (<a href="https://github.com/expressjs/express/security/advisories/GHSA-pj86-cfqh-vqx6">GHSA-pj86-cfqh-vqx6</a>)</li> </ul> <h1>5.2.0 / 2025-12-01</h1> <ul> <li>Security fix for <a href="https://www.cve.org/CVERecord?id=CVE-2024-51999">CVE-2024-51999</a> (<a href="https://github.com/expressjs/express/security/advisories/GHSA-pj86-cfqh-vqx6">GHSA-pj86-cfqh-vqx6</a>)</li> <li>deps: <code>body-parser@^2.2.1</code></li> <li>A deprecation warning was added when using <code>res.redirect</code> with undefined arguments, Express now emits a warning to help detect calls that pass undefined as the status or URL and make them easier to fix.</li> </ul> </blockquote> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/expressjs/express/commit/dbac741a49a5a64336b70c06e85c2e2706e36336"><code>dbac741</code></a> 5.2.1</li> <li><a href="https://github.com/expressjs/express/commit/697547cde621d8b0a47b4fff6e98b29337f8c980"><code>697547c</code></a> Revert &quot;sec: security patch for CVE-2024-51999&quot;</li> <li><a href="https://github.com/expressjs/express/commit/4007ad103ba29f6426b2ec9eccfb1ceb792682a8"><code>4007ad1</code></a> Release: 5.2.0 (<a href="https://redirect.github.com/expressjs/express/issues/6920">#6920</a>)</li> <li><a href="https://github.com/expressjs/express/commit/2f64f68c37c64ae333e41ff38032d21860f22255"><code>2f64f68</code></a> sec: security patch for CVE-2024-51999</li> <li><a href="https://github.com/expressjs/express/commit/ed0ba3f1dc905d6b62eabf23bd383abcae4901ba"><code>ed0ba3f</code></a> build(deps): bump actions/checkout from 5.0.0 to 6.0.0 (<a href="https://redirect.github.com/expressjs/express/issues/6928">#6928</a>)</li> <li><a href="https://github.com/expressjs/express/commit/8eace4603cb2547608578a4fbb259dc984216f71"><code>8eace46</code></a> build(deps): bump github/codeql-action from 4.31.2 to 4.31.6 (<a href="https://redirect.github.com/expressjs/express/issues/6929">#6929</a>)</li> <li><a href="https://github.com/expressjs/express/commit/30bae810279b2ea162bed5b14ce6c35a110a87f5"><code>30bae81</code></a> build(deps): bump coverallsapp/github-action from 2.3.6 to 2.3.7 (<a href="https://redirect.github.com/expressjs/express/issues/6930">#6930</a>)</li> <li><a href="https://github.com/expressjs/express/commit/758d4355d45322b4c8cd347ebcefbf3b154c7e7f"><code>758d435</code></a> deps: body-parser@^2.2.1 (<a href="https://redirect.github.com/expressjs/express/issues/6922">#6922</a>)</li> <li><a href="https://github.com/expressjs/express/commit/77bcd5274a87047e5b3fe2f17f6c342db3909c53"><code>77bcd52</code></a> docs: update emeritus triagers (<a href="https://redirect.github.com/expressjs/express/issues/6890">#6890</a>)</li> <li><a href="https://github.com/expressjs/express/commit/f33caf1f89a028f0ea98ff5a156a68e65a2eabdd"><code>f33caf1</code></a> Nominate to <a href="https://github.com/efekrskl"><code>@​efekrskl</code></a> for triage team (<a href="https://redirect.github.com/expressjs/express/issues/6888">#6888</a>)</li> <li>Additional commits viewable in <a href="https://github.com/expressjs/express/compare/v5.1.0...v5.2.1">compare view</a></li> </ul> </details> <br /> Updates `lucide-react` from 0.552.0 to 0.555.0 <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/lucide-icons/lucide/releases">lucide-react's releases</a>.</em></p> <blockquote> <h2>Version 0.555.0</h2> <h2>What's Changed</h2> <ul> <li>fix(icons): changed <code>calendars</code> icon by <a href="https://github.com/jguddas"><code>@​jguddas</code></a> in <a href="https://redirect.github.com/lucide-icons/lucide/pull/3795">lucide-icons/lucide#3795</a></li> <li>fix(docs): correct package name and description for Flutter and Lustre package (<a href="https://github.com/lucide-icons/lucide/tree/HEAD/packages/lucide-react/issues/3701">#3701</a>) by <a href="https://github.com/epifaniofrancisco"><code>@​epifaniofrancisco</code></a> in <a href="https://redirect.github.com/lucide-icons/lucide/pull/3703">lucide-icons/lucide#3703</a></li> <li>feat(angular): Angular V21 Support by <a href="https://github.com/JeevanMahesha"><code>@​JeevanMahesha</code></a> in <a href="https://redirect.github.com/lucide-icons/lucide/pull/3807">lucide-icons/lucide#3807</a></li> <li>chore(metadata): Adjust navigation category by <a href="https://github.com/ericfennis"><code>@​ericfennis</code></a> in <a href="https://redirect.github.com/lucide-icons/lucide/pull/3461">lucide-icons/lucide#3461</a></li> <li>feat(icons): Add <code>waves-arrow-up</code> and <code>waves-arrow-down</code> by <a href="https://github.com/ericfennis"><code>@​ericfennis</code></a> in <a href="https://redirect.github.com/lucide-icons/lucide/pull/3463">lucide-icons/lucide#3463</a></li> <li>fix(icons): changed <code>scale</code> icon by <a href="https://github.com/jamiemlaw"><code>@​jamiemlaw</code></a> in <a href="https://redirect.github.com/lucide-icons/lucide/pull/3800">lucide-icons/lucide#3800</a></li> <li>feat(icons): added <code>form</code> icon by <a href="https://github.com/jguddas"><code>@​jguddas</code></a> in <a href="https://redirect.github.com/lucide-icons/lucide/pull/3558">lucide-icons/lucide#3558</a></li> </ul> <p><strong>Full Changelog</strong>: <a href="https://github.com/lucide-icons/lucide/compare/0.554.0...0.555.0">https://github.com/lucide-icons/lucide/compare/0.554.0...0.555.0</a></p> <h2>Version 0.554.0</h2> <h2>What's Changed</h2> <ul> <li>fix(icons): Rename fingerprint icon to fingerprint-pattern by <a href="https://github.com/ericfennis"><code>@​ericfennis</code></a> in <a href="https://redirect.github.com/lucide-icons/lucide/pull/3767">lucide-icons/lucide#3767</a></li> <li>feat(docs): added lucide-rails third-party package by <a href="https://github.com/theiereman"><code>@​theiereman</code></a> in <a href="https://redirect.github.com/lucide-icons/lucide/pull/3769">lucide-icons/lucide#3769</a></li> <li>fix(icons): changed <code>ampersand</code> icon by <a href="https://github.com/jguddas"><code>@​jguddas</code></a> in <a href="https://redirect.github.com/lucide-icons/lucide/pull/3771">lucide-icons/lucide#3771</a></li> <li>fix(icons): changed <code>folder-git-2</code> icon by <a href="https://github.com/jguddas"><code>@​jguddas</code></a> in <a href="https://redirect.github.com/lucide-icons/lucide/pull/3790">lucide-icons/lucide#3790</a></li> <li>fix(icons): update <code>anchor</code> icon by <a href="https://github.com/jamiemlaw"><code>@​jamiemlaw</code></a> in <a href="https://redirect.github.com/lucide-icons/lucide/pull/2523">lucide-icons/lucide#2523</a></li> <li>feat(icons): added <code>calendars</code> icon by <a href="https://github.com/jguddas"><code>@​jguddas</code></a> in <a href="https://redirect.github.com/lucide-icons/lucide/pull/3788">lucide-icons/lucide#3788</a></li> </ul> <h2>Breaking change</h2> <p>For <code>lucide-react</code> and <code>lucide-solid</code>, imports for <code>Fingerprint</code> icon are changed to <code>FingerprintPattern</code>.</p> <h3>Lucide React</h3> <pre lang="diff"><code>- import { Fingerprint } from &quot;lucide-react&quot;; + import { FingerprintPattern } from &quot;lucide-react&quot;; </code></pre> <h3>Lucide Solid</h3> <pre lang="diff"><code>- import { Fingerprint } from &quot;lucide/solid&quot;; + import { FingerprintPattern } from &quot;lucide/solid&quot;; <p>// Or</p> <ul> <li>import Fingerprint from &quot;lucide/solid/icons/fingerprint&quot;;</li> </ul> <ul> <li>import FingerprintPattern from &quot;lucide/solid/icons/fingerprint-pattern&quot;;<br /> </code></pre></li> </ul> <h2>New Contributors</h2> <ul> <li><a href="https://github.com/theiereman"><code>@​theiereman</code></a> made their first contribution in <a href="https://redirect.github.com/lucide-icons/lucide/pull/3769">lucide-icons/lucide#3769</a></li> </ul> <p><strong>Full Changelog</strong>: <a href="https://github.com/lucide-icons/lucide/compare/0.553.0...0.554.0">https://github.com/lucide-icons/lucide/compare/0.553.0...0.554.0</a></p> <h2>Version 0.553.0</h2> <h2>What's Changed</h2> <ul> <li>feat(icons): added <code>mouse-pointer-2-off</code> icon by <a href="https://github.com/domingasp"><code>@​domingasp</code></a> in <a href="https://redirect.github.com/lucide-icons/lucide/pull/3570">lucide-icons/lucide#3570</a></li> </ul> <!-- raw HTML omitted --> </blockquote> <p>... (truncated)</p> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/lucide-icons/lucide/commit/80d6f737e0a02c3c11af8d87cb986e33a4ef08d8"><code>80d6f73</code></a> fix(icons): Rename fingerprint icon to fingerprint-pattern (<a href="https://github.com/lucide-icons/lucide/tree/HEAD/packages/lucide-react/issues/3767">#3767</a>)</li> <li>See full diff in <a href="https://github.com/lucide-icons/lucide/commits/0.555.0/packages/lucide-react">compare view</a></li> </ul> </details> <br /> Updates `next` from 15.5.6 to 15.5.7 <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/vercel/next.js/releases">next's releases</a>.</em></p> <blockquote> <h2>v15.5.7</h2> <p>Please see <a href="https://nextjs.org/blog/CVE-2025-66478">CVE-2025-66478</a> for additional details about this release.</p> </blockquote> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/vercel/next.js/commit/3eaf68b09b2b6b8c0c8e080a9713e131a78dc529"><code>3eaf68b</code></a> v15.5.7</li> <li><a href="https://github.com/vercel/next.js/commit/8367ce592ad0190ec941dac1ce6d0b5a44606593"><code>8367ce5</code></a> update version script</li> <li><a href="https://github.com/vercel/next.js/commit/9115040008baf255499136933a50084b76f4bfd8"><code>9115040</code></a> Update React Version for Next.js 15.5.7 (<a href="https://redirect.github.com/vercel/next.js/issues/10">#10</a>)</li> <li><a href="https://github.com/vercel/next.js/commit/96f699902a5c57293e312591f843080a4d68ee1b"><code>96f6999</code></a> update tag</li> <li>See full diff in <a href="https://github.com/vercel/next.js/compare/v15.5.6...v15.5.7">compare view</a></li> </ul> </details> <br /> Updates `next-intl` from 4.4.0 to 4.5.8 <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/amannn/next-intl/releases">next-intl's releases</a>.</em></p> <blockquote> <h2>v4.5.8</h2> <h2>4.5.8 (2025-12-03)</h2> <h3>Bug fixes for <code>useExtracted</code></h3> <ul> <li>Append newline with <code>.json</code> formatter for <code>useExtracted</code> (<a href="https://redirect.github.com/amannn/next-intl/pull/2148">amannn/next-intl#2148</a> by <a href="https://github.com/amannn"><code>@​amannn</code></a>)</li> <li>Handle multiple calls to <code>useExtracted</code> &amp; <code>getExtracted</code> (<a href="https://redirect.github.com/amannn/next-intl/pull/2149">amannn/next-intl#2149</a> by <a href="https://github.com/amannn"><code>@​amannn</code></a>)</li> <li>Avoid conflict with existing <code>useTranslations</code> import for <code>useExtracted</code> (<a href="https://redirect.github.com/amannn/next-intl/pull/2150">amannn/next-intl#2150</a> by <a href="https://github.com/amannn"><code>@​amannn</code></a>)</li> </ul> <h2>v4.5.7</h2> <h2>4.5.7 (2025-12-01)</h2> <h3>Bug Fixes</h3> <ul> <li>Skip <code>accept-language</code> parsing when locale cookie is already present (<a href="https://redirect.github.com/amannn/next-intl/issues/2143">#2143</a>) (<a href="https://github.com/amannn/next-intl/commit/0d1331b4bc0cd1da5a24bdda10977c353f3133cf">0d1331b</a>), closes <a href="https://redirect.github.com/amannn/next-intl/issues/2116">#2116</a> – by <a href="https://github.com/lxup"><code>@​lxup</code></a></li> </ul> <h2>v4.5.6</h2> <h2>4.5.6 (2025-11-27)</h2> <h3>Bug fixes for <code>useExtracted</code></h3> <ul> <li>Handle race condition when detecting locale changes which could lead to reset of messages with <code>useExtracted</code> (<a href="https://redirect.github.com/amannn/next-intl/pull/2131">amannn/next-intl#2131</a> – by <a href="https://github.com/amannn"><code>@​amannn</code></a>)</li> <li>Don't depend on environment locale for sorting of keys with <code>useExtracted</code> (<a href="https://redirect.github.com/amannn/next-intl/pull/2134">amannn/next-intl#2134</a> – by <a href="https://github.com/amannn"><code>@​amannn</code></a>)</li> <li>Retain .po flags for <code>useExtracted</code> and update <code>po-parser</code> to fix encoding (<a href="https://redirect.github.com/amannn/next-intl/pull/2128">amannn/next-intl#2128</a> – by <a href="https://github.com/amannn"><code>@​amannn</code></a>)</li> </ul> <h2>v4.5.5</h2> <h2>4.5.5 (2025-11-19)</h2> <h3>Bug Fixes</h3> <ul> <li>Move SWC cache to <code>node_modules</code> (<a href="https://redirect.github.com/amannn/next-intl/issues/2120">#2120</a>) (<a href="https://github.com/amannn/next-intl/commit/0ba91054df2f40eae69eb4f4fa7e7455b3c8d9f2">0ba9105</a>) – by <a href="https://github.com/amannn"><code>@​amannn</code></a></li> </ul> <h2>v4.5.4</h2> <h2>4.5.4 (2025-11-19)</h2> <h3>Bug Fixes</h3> <ul> <li>Move AST transformer of <code>useExtracted</code> to SWC plugin &amp; handle source maps (<a href="https://redirect.github.com/amannn/next-intl/issues/2114">#2114</a>) (<a href="https://github.com/amannn/next-intl/commit/e63fbc5951b538a3ca1d0ae77c93d5bddcf1e47e">e63fbc5</a>) – by <a href="https://github.com/kdy1"><code>@​kdy1</code></a> &amp; <a href="https://github.com/amannn"><code>@​amannn</code></a></li> </ul> <h2>v4.5.3</h2> <h2>4.5.3 (2025-11-13)</h2> <!-- raw HTML omitted --> </blockquote> <p>... (truncated)</p> </details> <details> <summary>Changelog</summary> <p><em>Sourced from <a href="https://github.com/amannn/next-intl/blob/main/CHANGELOG.md">next-intl's changelog</a>.</em></p> <blockquote> <h2>4.5.8 (2025-12-03)</h2> <h3>Bug Fixes</h3> <ul> <li>Improvements for <code>useExtracted</code> (<a href="https://redirect.github.com/amannn/next-intl/issues/2152">#2152</a>) (<a href="https://github.com/amannn/next-intl/commit/9b7c9fe73af2cccf20b25ad009a835db432df1df">9b7c9fe</a>) – by <a href="https://github.com/amannn"><code>@​amannn</code></a></li> </ul> <h2>4.5.7 (2025-12-01)</h2> <h3>Bug Fixes</h3> <ul> <li>Skip <code>accept-language</code> parsing when locale cookie is already present (<a href="https://redirect.github.com/amannn/next-intl/issues/2143">#2143</a>) (<a href="https://github.com/amannn/next-intl/commit/0d1331b4bc0cd1da5a24bdda10977c353f3133cf">0d1331b</a>), closes <a href="https://redirect.github.com/amannn/next-intl/issues/2116">#2116</a> – by <a href="https://github.com/lxup"><code>@​lxup</code></a></li> </ul> <h2>4.5.6 (2025-11-27)</h2> <h3>Bug Fixes</h3> <ul> <li>Improvements for <code>useExtracted</code> (<a href="https://redirect.github.com/amannn/next-intl/issues/2133">#2133</a>) (<a href="https://github.com/amannn/next-intl/commit/5397c49bc886fb2c8e44ac2f0e417d8a6f78811e">5397c49</a>) – by <a href="https://github.com/amannn"><code>@​amannn</code></a></li> </ul> <h2>4.5.5 (2025-11-19)</h2> <h3>Bug Fixes</h3> <ul> <li>Move SWC cache to <code>node_modules</code> (<a href="https://redirect.github.com/amannn/next-intl/issues/2120">#2120</a>) (<a href="https://github.com/amannn/next-intl/commit/0ba91054df2f40eae69eb4f4fa7e7455b3c8d9f2">0ba9105</a>) – by <a href="https://github.com/amannn"><code>@​amannn</code></a></li> </ul> <h2>4.5.4 (2025-11-19)</h2> <h3>Bug Fixes</h3> <ul> <li>Move AST transformer of <code>useExtracted</code> to SWC plugin &amp; handle source maps (<a href="https://redirect.github.com/amannn/next-intl/issues/2114">#2114</a>) (<a href="https://github.com/amannn/next-intl/commit/e63fbc5951b538a3ca1d0ae77c93d5bddcf1e47e">e63fbc5</a>) – by <a href="https://github.com/amannn"><code>@​amannn</code></a></li> </ul> <h2>4.5.3 (2025-11-13)</h2> <h3>Bug Fixes</h3> <ul> <li>Fix inconsistent ordering of messages for <code>useExtracted</code> pt. 2 (<a href="https://redirect.github.com/amannn/next-intl/issues/2103">#2103</a>) (<a href="https://github.com/amannn/next-intl/commit/5cbd5daceb62d26656f89ac66f587a56a34c3cd5">5cbd5da</a>) – by <a href="https://github.com/amannn"><code>@​amannn</code></a></li> </ul> <h2>4.5.2 (2025-11-12)</h2> <h3>Bug Fixes</h3> <ul> <li>Bug fixes for <code>useExtracted</code> (<a href="https://redirect.github.com/amannn/next-intl/issues/2099">#2099</a>) (<a href="https://github.com/amannn/next-intl/commit/b1ff1fa34573b6b7e7cb408528cf4e6fe276be15">b1ff1fa</a>) – by <a href="https://github.com/amannn"><code>@​amannn</code></a></li> </ul> <h2>4.5.1 (2025-11-11)</h2> <h3>Bug Fixes</h3> <ul> <li>Avoid partial matches in overlapping localized pathnames (<a href="https://redirect.github.com/amannn/next-intl/issues/2090">#2090</a>) (<a href="https://github.com/amannn/next-intl/commit/c276c807b433288c995755f000e69db240f8f80f">c276c80</a>), closes <a href="https://redirect.github.com/amannn/next-intl/issues/2089">#2089</a> <a href="https://redirect.github.com/amannn/next-intl/issues/2089">#2089</a> – by <a href="https://github.com/amannn"><code>@​amannn</code></a></li> </ul> <h2>4.5.0 (2025-11-07)</h2> <!-- raw HTML omitted --> </blockquote> <p>... (truncated)</p> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/amannn/next-intl/commit/a0e97c1c84f7bb787ec3397fcd79a6dfe9a9bbd1"><code>a0e97c1</code></a> v4.5.8</li> <li><a href="https://github.com/amannn/next-intl/commit/9b7c9fe73af2cccf20b25ad009a835db432df1df"><code>9b7c9fe</code></a> fix: Improvements for <code>useExtracted</code> (<a href="https://redirect.github.com/amannn/next-intl/issues/2152">#2152</a>)</li> <li><a href="https://github.com/amannn/next-intl/commit/224c25e64fe418e8464c4f4005b5a25361974afb"><code>224c25e</code></a> Canary (<a href="https://redirect.github.com/amannn/next-intl/issues/2147">#2147</a>)</li> <li><a href="https://github.com/amannn/next-intl/commit/c25067677d79b28ba4d3b140521d5cbe6aa0362d"><code>c250676</code></a> docs: Remove BF banner</li> <li><a href="https://github.com/amannn/next-intl/commit/e9e062168cf65ddd67b5e61f5f7d6c55e13ec35b"><code>e9e0621</code></a> docs: Fix plurality of other gender (<a href="https://redirect.github.com/amannn/next-intl/issues/2145">#2145</a>)</li> <li><a href="https://github.com/amannn/next-intl/commit/2ccc147b68227b32ea451935718c3eb5e73d6e2f"><code>2ccc147</code></a> v4.5.7</li> <li><a href="https://github.com/amannn/next-intl/commit/0d1331b4bc0cd1da5a24bdda10977c353f3133cf"><code>0d1331b</code></a> fix: Skip <code>accept-language</code> parsing when locale cookie is already present (<a href="https://redirect.github.com/amannn/next-intl/issues/2">#2</a>...</li> <li><a href="https://github.com/amannn/next-intl/commit/9306d165a0e7926092e48173d007e09c2d7c28ca"><code>9306d16</code></a> docs: BF discount banner</li> <li><a href="https://github.com/amannn/next-intl/commit/812d5e73688cebd1d1377a727dd2208796bcb670"><code>812d5e7</code></a> v4.5.6</li> <li><a href="https://github.com/amannn/next-intl/commit/5397c49bc886fb2c8e44ac2f0e417d8a6f78811e"><code>5397c49</code></a> fix: Improvements for <code>useExtracted</code> (<a href="https://redirect.github.com/amannn/next-intl/issues/2133">#2133</a>)</li> <li>Additional commits viewable in <a href="https://github.com/amannn/next-intl/compare/v4.4.0...v4.5.8">compare view</a></li> </ul> </details> <br /> Updates `posthog-node` from 5.11.2 to 5.17.2 <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/PostHog/posthog-js/releases">posthog-node's releases</a>.</em></p> <blockquote> <h2>posthog-node@5.17.2</h2> <h2>5.17.2</h2> <h3>Patch Changes</h3> <ul> <li><a href="https://redirect.github.com/PostHog/posthog-js/pull/2678">#2678</a> <a href="https://github.com/PostHog/posthog-js/commit/ca4436ecdca2412b1d068bcd3d5fcaf60bd2b114"><code>ca4436e</code></a> Thanks <a href="https://github.com/haacked"><code>@​haacked</code></a>! - Local evaluation polling sends If-None-Match header with latest etag to reduce bandwidth when no flags have changed. (2025-12-04)</li> </ul> <h2>posthog-node@5.17.1</h2> <h2>5.17.1</h2> <h3>Patch Changes</h3> <ul> <li> <p><a href="https://redirect.github.com/PostHog/posthog-js/pull/2690">#2690</a> <a href="https://github.com/PostHog/posthog-js/commit/e9c00fd451f6ee648ff40dcad538d38bfd5f3ff4"><code>e9c00fd</code></a> Thanks <a href="https://github.com/robbie-c"><code>@​robbie-c</code></a>! - Related to <a href="https://www.wiz.io/blog/critical-vulnerability-in-react-cve-2025-55182">https://www.wiz.io/blog/critical-vulnerability-in-react-cve-2025-55182</a></p> <p>We didn't include any of the vulnerable deps in any of our packages, however we did have them as dev / test / example project dependencies.</p> <p>There was no way that any of these vulnerable packages were included in any of our published packages.</p> <p>We've now patched out those dependencies.</p> <p>Out of an abundance of caution, let's create a new release of all of our packages. (2025-12-04)</p> </li> <li> <p>Updated dependencies [<a href="https://github.com/PostHog/posthog-js/commit/e9c00fd451f6ee648ff40dcad538d38bfd5f3ff4"><code>e9c00fd</code></a>]:</p> <ul> <li><code>@​posthog/core</code><a href="https://github.com/1"><code>@​1</code></a>.7.1</li> </ul> </li> </ul> <h2>posthog-node@5.17.0</h2> <h2>5.17.0</h2> <h3>Minor Changes</h3> <ul> <li><a href="https://redirect.github.com/PostHog/posthog-js/pull/2671">#2671</a> <a href="https://github.com/PostHog/posthog-js/commit/a1dde5c443292f0c290ecad9042912e56101f82d"><code>a1dde5c</code></a> Thanks <a href="https://github.com/ablaszkiewicz"><code>@​ablaszkiewicz</code></a>! - make contexts inherit by default (2025-12-03)</li> </ul> <h2>posthog-node@5.16.0</h2> <h2>5.16.0</h2> <h3>Minor Changes</h3> <ul> <li><a href="https://redirect.github.com/PostHog/posthog-js/pull/2603">#2603</a> <a href="https://github.com/PostHog/posthog-js/commit/e1617d91255b23dc39b1dcb15b05ae64c735d9d0"><code>e1617d9</code></a> Thanks <a href="https://github.com/dmarticus"><code>@​dmarticus</code></a>! - add $feature_flag_evaluated_at properties to $feature_flag_called events (2025-12-03)</li> </ul> <h3>Patch Changes</h3> <ul> <li>Updated dependencies [<a href="https://github.com/PostHog/posthog-js/commit/e1617d91255b23dc39b1dcb15b05ae64c735d9d0"><code>e1617d9</code></a>]: <ul> <li><code>@​posthog/core</code><a href="https://github.com/1"><code>@​1</code></a>.7.0</li> </ul> </li> </ul> <h2>posthog-node@5.15.0</h2> <h2>5.15.0</h2> <!-- raw HTML omitted --> </blockquote> <p>... (truncated)</p> </details> <details> <summary>Changelog</summary> <p><em>Sourced from <a href="https://github.com/PostHog/posthog-js/blob/main/packages/node/CHANGELOG.md">posthog-node's changelog</a>.</em></p> <blockquote> <h2>5.17.2</h2> <h3>Patch Changes</h3> <ul> <li><a href="https://redirect.github.com/PostHog/posthog-js/pull/2678">#2678</a> <a href="https://github.com/PostHog/posthog-js/commit/ca4436ecdca2412b1d068bcd3d5fcaf60bd2b114"><code>ca4436e</code></a> Thanks <a href="https://github.com/haacked"><code>@​haacked</code></a>! - Local evaluation polling sends If-None-Match header with latest etag to reduce bandwidth when no flags have changed. (2025-12-04)</li> </ul> <h2>5.17.1</h2> <h3>Patch Changes</h3> <ul> <li> <p><a href="https://redirect.github.com/PostHog/posthog-js/pull/2690">#2690</a> <a href="https://github.com/PostHog/posthog-js/commit/e9c00fd451f6ee648ff40dcad538d38bfd5f3ff4"><code>e9c00fd</code></a> Thanks <a href="https://github.com/robbie-c"><code>@​robbie-c</code></a>! - Related to <a href="https://www.wiz.io/blog/critical-vulnerability-in-react-cve-2025-55182">https://www.wiz.io/blog/critical-vulnerability-in-react-cve-2025-55182</a></p> <p>We didn't include any of the vulnerable deps in any of our packages, however we did have them as dev / test / example project dependencies.</p> <p>There was no way that any of these vulnerable packages were included in any of our published packages.</p> <p>We've now patched out those dependencies.</p> <p>Out of an abundance of caution, let's create a new release of all of our packages. (2025-12-04)</p> </li> <li> <p>Updated dependencies [<a href="https://github.com/PostHog/posthog-js/commit/e9c00fd451f6ee648ff40dcad538d38bfd5f3ff4"><code>e9c00fd</code></a>]:</p> <ul> <li><code>@​posthog/core</code><a href="https://github.com/1"><code>@​1</code></a>.7.1</li> </ul> </li> </ul> <h2>5.17.0</h2> <h3>Minor Changes</h3> <ul> <li><a href="https://redirect.github.com/PostHog/posthog-js/pull/2671">#2671</a> <a href="https://github.com/PostHog/posthog-js/commit/a1dde5c443292f0c290ecad9042912e56101f82d"><code>a1dde5c</code></a> Thanks <a href="https://github.com/ablaszkiewicz"><code>@​ablaszkiewicz</code></a>! - make contexts inherit by default (2025-12-03)</li> </ul> <h2>5.16.0</h2> <h3>Minor Changes</h3> <ul> <li><a href="https://redirect.github.com/PostHog/posthog-js/pull/2603">#2603</a> <a href="https://github.com/PostHog/posthog-js/commit/e1617d91255b23dc39b1dcb15b05ae64c735d9d0"><code>e1617d9</code></a> Thanks <a href="https://github.com/dmarticus"><code>@​dmarticus</code></a>! - add $feature_flag_evaluated_at properties to $feature_flag_called events (2025-12-03)</li> </ul> <h3>Patch Changes</h3> <ul> <li>Updated dependencies [<a href="https://github.com/PostHog/posthog-js/commit/e1617d91255b23dc39b1dcb15b05ae64c735d9d0"><code>e1617d9</code></a>]: <ul> <li><code>@​posthog/core</code><a href="https://github.com/1"><code>@​1</code></a>.7.0</li> </ul> </li> </ul> <h2>5.15.0</h2> <h3>Minor Changes</h3> <ul> <li><a href="https://redirect.github.com/PostHog/posthog-js/pull/2614">#2614</a> <a href="https://github.com/PostHog/posthog-js/commit/2be0eb34da5c910230c08e2d88c1219ecb0d2556"><code>2be0eb3</code></a> Thanks <a href="https://github.com/dustinbyrne"><code>@​dustinbyrne</code></a>! - fix: Improve cache initialization performance (2025-12-01)</li> </ul> <!-- raw HTML omitted --> </blockquote> <p>... (truncated)</p> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/PostHog/posthog-js/commit/320f8293ff0dbf163897a11c69425962b6aa1465"><code>320f829</code></a> update versions and lockfile (<a href="https://github.com/PostHog/posthog-js/tree/HEAD/packages/node/issues/2692">#2692</a>)</li> <li><a href="https://github.com/PostHog/posthog-js/commit/ca4436ecdca2412b1d068bcd3d5fcaf60bd2b114"><code>ca4436e</code></a> feat(flags): Add ETag support for local evaluation polling (<a href="https://github.com/PostHog/posthog-js/tree/HEAD/packages/node/issues/2678">#2678</a>)</li> <li><a href="https://github.com/PostHog/posthog-js/commit/7fc7dc0c2a2463d82c203d69700eaedd3eee9d93"><code>7fc7dc0</code></a> update versions and lockfile (<a href="https://github.com/PostHog/posthog-js/tree/HEAD/packages/node/issues/2691">#2691</a>)</li> <li><a href="https://github.com/PostHog/posthog-js/commit/300af1b5de445ab656f08ec9ad489e5caed62027"><code>300af1b</code></a> update versions and lockfile (<a href="https://github.com/PostHog/posthog-js/tree/HEAD/packages/node/issues/2682">#2682</a>)</li> <li><a href="https://github.com/PostHog/posthog-js/commit/a1dde5c443292f0c290ecad9042912e56101f82d"><code>a1dde5c</code></a> feat: make contexts inherit by default (<a href="https://github.com/PostHog/posthog-js/tree/HEAD/packages/node/issues/2671">#2671</a>)</li> <li><a href="https://github.com/PostHog/posthog-js/commit/49b4590e29fc0b8cabbb20dfec6471bdf60b40a1"><code>49b4590</code></a> update versions and lockfile (<a href="https://github.com/PostHog/posthog-js/tree/HEAD/packages/node/issues/2680">#2680</a>)</li> <li><a href="https://github.com/PostHog/posthog-js/commit/e1617d91255b23dc39b1dcb15b05ae64c735d9d0"><code>e1617d9</code></a> feat(flags): add <code>$feature_flag_evaluated_at</code> properties to `$feature_flag_ca...</li> <li><a href="https://github.com/PostHog/posthog-js/commit/d4da42bbff606e79bef0c6c40227884cced4ac7f"><code>d4da42b</code></a> fix: release workflow (<a href="https://github.com/PostHog/posthog-js/tree/HEAD/packages/node/issues/2669">#2669</a>)</li> <li><a href="https://github.com/PostHog/posthog-js/commit/39d44292b02314b98c396f2ed8522be7b1695c72"><code>39d4429</code></a> update versions and lockfile (<a href="https://github.com/PostHog/posthog-js/tree/HEAD/packages/node/issues/2667">#2667</a>)</li> <li><a href="https://github.com/PostHog/posthog-js/commit/2be0eb34da5c910230c08e2d88c1219ecb0d2556"><code>2be0eb3</code></a> fix(node): Improve cache initialization performance (<a href="https://github.com/PostHog/posthog-js/tree/HEAD/packages/node/issues/2614">#2614</a>)</li> <li>Additional commits viewable in <a href="https://github.com/PostHog/posthog-js/commits/posthog-node@5.17.2/packages/node">compare view</a></li> </ul> </details> <details> <summary>Maintainer changes</summary> <p>This version was pushed to npm by [GitHub Actions](<a href="https://www.npmjs.com/~GitHub">https://www.npmjs.com/~GitHub</a> Actions), a new releaser for posthog-node since your current version.</p> </details> <br /> Updates `react-hook-form` from 7.66.0 to 7.68.0 <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/react-hook-form/react-hook-form/releases">react-hook-form's releases</a>.</em></p> <blockquote> <h2>Version 7.68.0</h2> <p>🎧 feat: <code>&lt;FormStateSubscribe /&gt;</code> component (<a href="https://redirect.github.com/react-hook-form/react-hook-form/issues/13142">#13142</a>)</p> <pre lang="tsx"><code>import { useForm, FormStateSubscribe } from 'react-hook-form'; <p>const App = () =&gt; {<br /> const { register, control } = useForm();</p> <p>return (<br /> &lt;div&gt;<br /> &lt;form&gt;<br /> &lt;input {...register('foo')} /&gt;<br /> &lt;input {...register('bar')} /&gt;<br /> &lt;/form&gt;<br /> {/* re-render only when formState of <code>foo</code> changes */}<br /> &lt;FormStateSubscribe<br /> control={control}<br /> name={&quot;foo&quot;}<br /> render={({errors}) =&gt; &lt;span&gt;{errors.foo?.message}&lt;/span&gt;}<br /> /&gt;<br /> &lt;/div&gt;<br /> );<br /> };<br /> </code></pre></p> <p>🐞 fix: clear validation errors synchronously in reset() to fix Next.js 16 Server Actions issue (<a href="https://redirect.github.com/react-hook-form/react-hook-form/issues/13139">#13139</a>) Revert &quot;✨ fix(types): allow undefined value with async defaultValues in Contr…&quot; (<a href="https://redirect.github.com/react-hook-form/react-hook-form/issues/13171">#13171</a>)</p> <p>thanks to <a href="https://github.com/xiangnuans"><code>@​xiangnuans</code></a>, <a href="https://github.com/abnud11"><code>@​abnud11</code></a>, <a href="https://github.com/ntatoud"><code>@​ntatoud</code></a> &amp; <a href="https://github.com/ap0nia"><code>@​ap0nia</code></a></p> <h2>Version 7.67.0</h2> <p>🎯 feat: add exact to useController props (<a href="https://redirect.github.com/react-hook-form/react-hook-form/issues/13154">#13154</a>)</p> <pre lang="tsx"><code>useForm({ defaultValues: { user: { name: '' } } }) <p>&lt;Controller control={control} name=&quot;user&quot; exact={false} /&gt; // subscribe to all user object<br /> </code></pre></p> <p>✨ fix(types): allow undefined value with async defaultValues in Controller (<a href="https://redirect.github.com/react-hook-form/react-hook-form/issues/13160">#13160</a>) 🐞 fix(types): correct PathValueImpl type inference (<a href="https://redirect.github.com/react-hook-form/react-hook-form/issues/13150">#13150</a>)</p> <!-- raw HTML omitted --> </blockquote> <p>... (truncated)</p> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/react-hook-form/react-hook-form/commit/b84595e77a9f5413f937035269d2f3d86ca2e7b4"><code>b84595e</code></a> 7.68.0</li> <li><a href="https://github.com/react-hook-form/react-hook-form/commit/f51aaa8e0b07f3c33b9f72f61b358106ceeea16c"><code>f51aaa8</code></a> 🧹 chore: clean up imports in deep-equal (<a href="https://redirect.github.com/react-hook-form/react-hook-form/issues/13174">#13174</a>)</li> <li><a href="https://github.com/react-hook-form/react-hook-form/commit/baa0733c104cb8a4e5f62bf11854866a1251877a"><code>baa0733</code></a> Revert &quot;✨ fix(types): allow undefined value with async defaultValues in Contr...</li> <li><a href="https://github.com/react-hook-form/react-hook-form/commit/e82e05ebc8a7d9ebdc7f0490d7342566ba00d563"><code>e82e05e</code></a> 🐞 fix: clear validation errors synchronously in reset() to fix Next.js 16 Ser...</li> <li><a href="https://github.com/react-hook-form/react-hook-form/commit/175cbb9999a3c3326fdca36f001c92d36430306d"><code>175cbb9</code></a> 🪖 chore: upgrade eslint react hooks (<a href="https://redirect.github.com/react-hook-form/react-hook-form/issues/13168">#13168</a>)</li> <li><a href="https://github.com/react-hook-form/react-hook-form/commit/43bcf0565f3b94b32bd7661bce4cf5eff8b8cd4c"><code>43bcf05</code></a> 🎧 feat: &lt;FormStateSubscribe /&gt; component (<a href="https://redirect.github.com/react-hook-form/react-hook-form/issues/13142">#13142</a>)</li> <li><a href="https://github.com/react-hook-form/react-hook-form/commit/6f39b1e3b7714850882b034706e754de3247aafb"><code>6f39b1e</code></a> 7.67.0</li> <li><a href="https://github.com/react-hook-form/react-hook-form/commit/90d19ad86dd3381916fbd888fbeab5811f38179e"><code>90d19ad</code></a> 🎯 feat: add exact to useController props (<a href="https://redirect.github.com/react-hook-form/react-hook-form/issues/13154">#13154</a>)</li> <li><a href="https://github.com/react-hook-form/react-hook-form/commit/ceb0b8f163e5e4101923b703da45b68c451db94f"><code>ceb0b8f</code></a> ✨ fix(types): allow undefined value with async defaultValues in Contr… (<a href="https://redirect.github.com/react-hook-form/react-hook-form/issues/13160">#13160</a>)</li> <li><a href="https://github.com/react-hook-form/react-hook-form/commit/a42f1980f3d64afe48832e65c14f072d12357cef"><code>a42f198</code></a> 🐞 fix(types): correct PathValueImpl type inference (<a href="https://redirect.github.com/react-hook-form/react-hook-form/issues/13150">#13150</a>)</li> <li>Additional commits viewable in <a href="https://github.com/react-hook-form/react-hook-form/compare/v7.66.0...v7.68.0">compare view</a></li> </ul> </details> <br /> Updates `resend` from 6.4.2 to 6.5.2 <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/resend/resend-node/releases">resend's releases</a>.</em></p> <blockquote> <h2>v6.5.2</h2> <h2>What's Changed</h2> <ul> <li>refactor: remove unused files and status code to error names map by <a href="https://github.com/gabrielmfern"><code>@​gabrielmfern</code></a> in <a href="https://redirect.github.com/resend/resend-node/pull/754">resend/resend-node#754</a></li> <li>fix: type issues in tests by <a href="https://github.com/gabrielmfern"><code>@​gabrielmfern</code></a> in <a href="https://redirect.github.com/resend/resend-node/pull/755">resend/resend-node#755</a></li> <li>fix(contacts): types for first_name and last_name in update and get by <a href="https://github.com/gabrielmfern"><code>@​gabrielmfern</code></a> in <a href="https://redirect.github.com/resend/resend-node/pull/757">resend/resend-node#757</a></li> </ul> <p><strong>Full Changelog</strong>: <a href="https://github.com/resend/resend-node/compare/v6.5.1...v6.5.2">https://github.com/resend/resend-node/compare/v6.5.1...v6.5.2</a></p> <h2>v6.5.1</h2> <h2>What's Changed</h2> <ul> <li>fix: devEngines syntax by <a href="https://github.com/gabrielmfern"><code>@​gabrielmfern</code></a> in <a href="https://redirect.github.com/resend/resend-node/pull/750">resend/resend-node#750</a></li> <li>fix: main and types in package.json (bumping as a patch) by <a href="https://github.com/gabrielmfern"><code>@​gabrielmfern</code></a> in <a href="https://redirect.github.com/resend/resend-node/pull/752">resend/resend-node#752</a></li> <li>chore: stan... _Description has been truncated_
MrUnknownDE added the dependenciesjavascriptdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesdependenciesjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascriptjavascript labels 2026-04-05 17:19:43 +02:00
Sign in to join this conversation.
No Label dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies dependencies javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript javascript
1 Participants
Notifications
Due Date
No due date set.
Dependencies

No dependencies set.

Reference: github/pangolin#558