Skip to content

Bump software.amazon.awscdk:aws-cdk-lib from 2.261.0 to 2.272.0 in /labs/unicorn-store/infrastructure/cdk - #1614

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/maven/labs/unicorn-store/infrastructure/cdk/software.amazon.awscdk-aws-cdk-lib-2.272.0
Open

dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/maven/labs/unicorn-store/infrastructure/cdk/software.amazon.awscdk-aws-cdk-lib-2.272.0

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Oct 5, 2026

Copy link
Copy Markdown
Contributor

Bumps software.amazon.awscdk:aws-cdk-lib from 2.261.0 to 2.272.0.

Release notes

Sourced from software.amazon.awscdk:aws-cdk-lib's releases.

v2.272.0

⚠ BREAKING CHANGES

  • ** L1 resources are automatically generated from public CloudFormation Resource Schemas. They are built to closely reflect the real state of CloudFormation. Sometimes these updates can contain changes that are incompatible with previous types, but more accurately reflect reality. In this release we have changed:

    aws-servicediscovery: AWS::ServiceDiscovery::Instance: primary identifier is now ServiceId and InstanceId, so InstanceReference now requires serviceId.

Features

Bug Fixes

  • bedrockagentcore: browser grantUse is missing ConnectBrowserAutomationStream (#38657) (aff4a2f), closes #38656
  • core: synth crashes with EISDIR on cloud-placeholder directories in cdk.out (#38672) (269052d), closes #38653 #38299
  • lambda-nodejs: local bundling fails under AllSigned PowerShell execution policy (#38447) (edd162d), closes #38439 #37412

Alpha modules (2.272.0-alpha.0)

v2.271.0

Features

Bug Fixes

  • core: upgrade CloudFormation validation to latest version (#38884) (0c5e732)
  • ecs: support digest references in TagParameterContainerImage via imageDigest option (#37868) (f482f4f), closes #37718
  • ssm secret.fromSsmParameter introduces W2001 warning (#38833) (9526219), closes #38396
  • telemetry numbers don't allow making a good model for synth time yet (#38889) (600ffc8)
  • validating CloudAssembly throws Invalid URL error (#38867) (6eb07dd)
  • cloudwatch: iqm alarms are not rendered correctly (#38834) (7f714ce), closes #28812
  • core: resolveReferences should only update references that require updates on its second pass in nested stacks (#38813) (6cf5313)
  • core: acknowledgeWarning before emit on same construct is ignored (#38821) (e840b92), closes #38820
  • core: validations.acknowledge() does not respect scopes (#38789) (2f32847), closes #38495
  • ec2: synth-time AMI lookup leads to W9010 (#38840) (0870fcf), closes #38390

Alpha modules (2.271.0-alpha.0)

v2.270.0

... (truncated)

Changelog

Sourced from software.amazon.awscdk:aws-cdk-lib's changelog.

Changelog

All notable changes to this project will be documented in this file. See standard-version for commit guidelines.

2.272.0-alpha.0 (2026-09-30)

2.271.0-alpha.0 (2026-09-25)

2.270.0-alpha.0 (2026-09-17)

2.269.0-alpha.0 (2026-09-10)

⚠ BREAKING CHANGES

  • glue-alpha: Glue job constructs now reject construct-managed and Glue-reserved arguments passed through defaultArguments. Previously, a managed argument set via defaultArguments was silently honored in SparkJob and PythonShellJob (customer value won over the construct default) and silently ignored in RayJob (construct default won). Both behaviors let a caller bypass the construct's security and observability defaults with no error. Passing any of the following through defaultArguments now throws a ValidationError at synthesis time:
  • construct-managed arguments — --enable-continuous-cloudwatch-log, --continuous-log-logGroup, --continuous-log-logStreamPrefix, --continuous-log-conversionPattern, --enable-continuous-log-filter, --enable-metrics, --enable-observability-metrics, --enable-spark-ui, --spark-event-logs-path, --job-language, --class, --extra-jars, --user-jars-first, --extra-py-files, --extra-files, library-set
  • Glue-reserved arguments — --debug, --mode, --JOB_NAME, --endpoint

A managed argument is rejected whether or not the current configuration emits it, so a disabled feature (e.g. enableMetrics: false) cannot be re-enabled through defaultArguments. Configure these through their dedicated props instead (continuousLogging, enableMetrics, enableObservabilityMetrics, sparkUI, className, extraJars, extraJarsFirst, extraPythonFiles, extraFiles). For example, replace defaultArguments: { '--enable-continuous-cloudwatch-log': 'false' } with continuousLogging: { enabled: false }. Arguments without a dedicated prop (e.g. --enable-glue-datacatalog) are unaffected and remain settable via defaultArguments.

The checkNoReservedArgs(defaultArguments?) method on the Job base class was removed. It is replaced by two protected members: setManagedArgument(key, value?), which each job class calls to declare (and, when a value is present, emit) a managed argument, and mergeDefaultArguments(defaultArguments?), which validates the caller-supplied defaultArguments against the accumulated reserved set and returns the merged map.

  • route53resolver-alpha: FirewallRuleGroupAssociation now honors the previously-ignored mutationProtection and name props. Stacks that set mutationProtection: true will enable mutation protection on redeploy (which blocks further CloudFormation update/delete until it is set back to false); stacks that set name will write it to the template, which may replace the association.
  • glue-alpha: trigger Action and Condition are no longer plain objects — use Action.job(...) / Action.crawler(...) and Condition.job(...) / Condition.crawler(...). Jobs are referenced via IJobRef and crawlers via ICrawlerRef (a CfnCrawler instance or CfnCrawler.fromCrawlerName(...)) instead of a CfnCrawler field or crawler-name string; IJob now extends the generated IJobRef. addDailyScheduledTrigger/addWeeklyScheduledTrigger/addCustomScheduledTrigger are replaced by addScheduledTrigger(id, { schedule, ... }) (use TriggerSchedule.daily()/weekly()/cron(...)). addNotifyEventTrigger is renamed addEventTrigger (NotifyEventTriggerOptions → EventTriggerOptions). All addXxxTrigger methods now return ITriggerRef instead of CfnTrigger.
  • glue-alpha: PartitionProjectionConfiguration's variant fields (integerRange, dateRange, interval, digits, format, intervalUnit, values) are no longer public; DATE projection now takes step: { interval, intervalUnit } instead of top-level interval/intervalUnit.
  • glue-alpha: ConnectionOptions no longer has subnet, vpc, or vpcSubnets; use network: ConnectionNetwork.subnet(...) or network: ConnectionNetwork.vpc(...) instead.

Features

... (truncated)

Commits
  • 6e0f342 chore(release): 2.272.0 (#38931)
  • 30cd3ee chore: update CHANGELOG.v2.md
  • d372dbc chore: update CHANGELOG.v2.md
  • d6c9c4f chore: update analytics metadata blueprints
  • 956a3e1 chore(release): 2.272.0
  • 515af44 chore(deps): bump ip-address from 10.4.0 to 10.7.2 in the npm_and_yarn group ...
  • 507d5ae chore: update cdk-generate-synthetic-examples to 0.2.58 (#38923)
  • 0317756 chore(bedrock): add Claude Sonnet 5.5, Opus 5.5 and Fable 5.1 foundation mode...
  • efa4911 docs: replace object-literal IResourceWithPolicyV2 example with named class (...
  • 269052d fix(core): synth crashes with EISDIR on cloud-placeholder directories in cdk....
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [software.amazon.awscdk:aws-cdk-lib](https://github.com/aws/aws-cdk) from 2.261.0 to 2.272.0.
- [Release notes](https://github.com/aws/aws-cdk/releases)
- [Changelog](https://github.com/aws/aws-cdk/blob/main/CHANGELOG.v2.alpha.md)
- [Commits](aws/aws-cdk@v2.261.0...v2.272.0)

---
updated-dependencies:
- dependency-name: software.amazon.awscdk:aws-cdk-lib
  dependency-version: 2.272.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file java Pull requests that update Java code labels Oct 5, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file java Pull requests that update Java code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants