Bump fast-xml-parser and @aws-sdk/client-cloudwatch in /aws/cloudformation/standalone/gen_ai_curriculum/monitoring by dependabot[bot] · Pull Request #71535 · code-dot-org/code-dot-org
Bumps fast-xml-parser to 5.5.8 and updates ancestor dependency @aws-sdk/client-cloudwatch. These dependencies need to be updated together.
Updates fast-xml-parser from 4.4.1 to 5.5.8
Release notes
Sourced from fast-xml-parser's releases.
fix entity expansion and incorrect replacement and performance
Full Changelog: NaturalIntelligence/fast-xml-parser@v5.5.5...v5.5.6
support onDangerousProperty
Full Changelog: NaturalIntelligence/fast-xml-parser@v5.5.3...v5.5.5
update dependecies to fix typings
Full Changelog: NaturalIntelligence/fast-xml-parser@v5.5.1...v5.5.2
integrate path-expression-matcher
- support path-expression-matcher
- fix: stopNode should not be parsed
- performance improvement for stopNode checking
Separate Builder
XML Builder was the part of fast-xml-parser for years. But considering that any bug in builder may false-alarm the users who are only using parser and vice-versa, we have decided to split it into a separate package.
Migration
To migrate to fast-xml-builder;
From
import { XMLBuilder } from "fast-xml-parser";To
import XMLBuilder from "fast-xml-builder";XMLBuilder will be removed from current package in any next major version of this library. So better to migrate.
support strictReservedNames
Full Changelog: NaturalIntelligence/fast-xml-parser@v5.3.9...v5.3.9
handle non-array input for XML builder && support maxNestedTags
- support maxNestedTags
- handle non-array input for XML builder when preserveOrder is true (By Angelo Coetzee)
- save use of js properies Full Changelog: NaturalIntelligence/fast-xml-parser@v5.3.7...v5.3.8
CJS typing fix
What's Changed
- Unexport
X2jOptionsat declaration site by@Drarig29in NaturalIntelligence/fast-xml-parser#787New Contributors
@Drarig29made their first contribution in NaturalIntelligence/fast-xml-parser#787
... (truncated)
Changelog
Sourced from fast-xml-parser's changelog.
Note: If you find missing information about particular minor version, that version must have been changed without any functional change in this library.
Note: Due to some last quick changes on v4, detail of v4.5.3 & v4.5.4 are not updated here. v4.5.4x is the last tag of v4 in github repository. I'm extremely sorry for the confusion
5.5.8 / 2026-03-20
- pass read only matcher in callback
5.5.7 / 2026-03-19
- fix: entity expansion limits
- update strnum package to 2.2.0
5.5.6 / 2026-03-16
- update builder dependency
- fix incorrect regex to replace . in entity name
- fix check for entitiy expansion for lastEntities and html entities too
5.5.5 / 2026-03-13
- sanitize dangerous tag or attribute name
- error on critical property name
- support onDangerousProperty option
5.5.4 / 2026-03-13
- declare Matcher & Expression as unknown so user is not forced to install path-expression-matcher
5.5.3 / 2026-03-11
- upgrade builder
5.5.2 / 2026-03-11
- update dependency to fix typings
5.5.1 / 2026-03-10
- fix dependency
5.5.0 / 2026-03-10
- support path-expression-matcher
- fix: stopNode should not be parsed
- performance improvement for stopNode checking
5.4.2 / 2026-03-03
- support maxEntityCount option
5.4.1 / 2026-02-25
- fix (#785) unpairedTag node should not have tag content
5.4.0 / 2026-02-25
- migrate to fast-xml-builder
5.3.9 / 2026-02-25
- support strictReservedNames
... (truncated)
Commits
a92a665pass read only matcher in call backa21c441update package detail239b64acheck for min value for entity exapantion options61cb666restrict more properties to be unsafe41abd66performance improvement of reading DOCTYPE3dfcd20refactor: performance improvement870043eupdate release info6df401eupdate builder dependencybd26122check for entitiy expansion for lastEntities and html entities too7e70dd8fix incorrect regex to replace . in entity name- Additional commits viewable in compare view
Updates @aws-sdk/client-cloudwatch from 3.675.0 to 3.1014.0
Release notes
Sourced from @aws-sdk/client-cloudwatch's releases.
v3.1014.0
3.1014.0(2026-03-20)
Chores
Documentation Changes
- client-backup: Fix Typo for S3Backup Options ( S3BackupACLs to BackupACLs) (4d912214)
New Features
- clients: update client endpoints as of 2026-03-20 (6450a12d)
- client-verifiedpermissions: Adds support for Policy Store Aliases, Policy Names, and Policy Template Names. These are customizable identifiers that can be used in place of Policy Store ids, Policy ids, and Policy Template ids respectively in Amazon Verified Permissions APIs. (c8fe1858)
- client-opensearch: Added support for Amazon Managed Service for Prometheus (AMP) as a connected data source in OpenSearch UI. Now users can analyze Prometheus metrics in OpenSearch UI without data copy. (c9bdbb54)
- client-dynamodb: Adding ReplicaArn to ReplicaDescription of a global table replica (51c2c17a)
Tests
For list of updated packages, view updated-packages.md in assets-3.1014.0.zip
v3.1013.0
3.1013.0(2026-03-19)
Chores
New Features
- clients: update client endpoints as of 2026-03-19 (485aa086)
- client-batch: AWS Batch now supports quota management, enabling administrators to allocate shared compute resources across teams and projects through quota shares with capacity limits, resource-sharing strategies, and priority-based preemption - currently available for SageMaker Training job queues. (3e695b9a)
- client-bedrock-agentcore-control: Adds support for the following new features. 1. Enterprise Policies support for AgentCore Browser Tool. 2. Root CA Configuration support for AgentCore Browser Tool and Code Interpreter. (d286f51f)
- client-bedrock-agentcore: This release includes SDK support for the following new features on AgentCore Built In Tools. 1. Enterprise Policies for AgentCore Browser Tool. 2. Root CA Configuration Support for AgentCore Browser Tool and Code Interpreter. 3. API changes to AgentCore Browser Profile APIs (088f0580)
- client-polly: Added bi-directional streaming functionality through a new API, StartSpeechSynthesisStream. This API allows streaming input text through inbound events and receiving audio as part of an output stream simultaneously. (581bf849)
- client-ec2: Amazon EC2 Fleet instant mode now supports launching instances into Interruptible Capacity Reservations, enabling customers to use spare capacity shared by Capacity Reservation owners within their AWS Organization. (5ae4a552)
- client-observabilityadmin: Adding a new field in the CreateCentralizationRuleForOrganization, UpdateCentralizationRuleForOrganization API and updating the GetCentralizationRuleForOrganization API response to include the new field (f8dcb3a1)
Bug Fixes
... (truncated)
Changelog
Sourced from @aws-sdk/client-cloudwatch's changelog.
3.1014.0 (2026-03-20)
Note: Version bump only for package
@aws-sdk/client-cloudwatch3.1013.0 (2026-03-19)
Note: Version bump only for package
@aws-sdk/client-cloudwatch3.1012.0 (2026-03-18)
Note: Version bump only for package
@aws-sdk/client-cloudwatch3.1011.0 (2026-03-17)
Note: Version bump only for package
@aws-sdk/client-cloudwatch3.1010.0 (2026-03-16)
Note: Version bump only for package
@aws-sdk/client-cloudwatch3.1009.0 (2026-03-13)
Note: Version bump only for package
@aws-sdk/client-cloudwatch3.1008.0 (2026-03-12)
... (truncated)
Commits
577a874Publish v3.1014.0414aa0dchore: bump smithy versions19ca473Publish v3.1013.07f54759Publish v3.1012.0950b0c2chore(codegen): smithy-aws-typescript-codegen 0.47.0 (#7854)e171694Publish v3.1011.02297feddocs(clients): fix protocol listings in readme files (#7850)2aa1e6cPublish v3.1010.07888030Publish v3.1009.07bf8888chore(codegen): sync for retry strategy lifecycle fix (#7842)- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
You can disable automated security fix PRs for this repo from the Security Alerts page.