An open index of dependabot pull requests across open source projects.

aws-cdk-lib

Ecosystem:
npm
Package URL:
pkg:npm/aws-cdk-lib
Total PRs:
3,898 Dependabot PRs
Latest PR:
6 days ago
Unique Repositories:
716 repositories
Unique Repos (30 days):
23 repositories
Security Advisories
AWS Cloud Development Kit (AWS CDK) IAM OIDC custom resource allows connection to unauthorized OIDC provider
GHSA-v4mq-x674-ff73 CVE-2025-23206 LOW published over 1 year ago • updated 6 days ago
### Impact Users who use IAM OIDC custom resource provider package will download CA Thumbprints as part of the custom resource workflow, https://gi...
AWS CDK CodePipeline: trusted entities are too broad
GHSA-5pq3-h73f-66hr LOW published about 1 year ago • updated 2 months ago
### Summary The [AWS Cloud Development Kit (CDK)](https://aws.amazon.com/cdk/) is an open-source framework for defining cloud infrastructure using...
aws-cdk-lib's aspect order change causes different Permissions Boundary assigned to Role
GHSA-qc59-cxj2-c2w4 LOW published about 1 year ago • updated 2 months ago
### Summary The [AWS Cloud Development Kit (AWS CDK)](https://aws.amazon.com/cdk/) is an open-source software development framework for defining c...
aws-cdk-lib has Insertion of Sensitive Information into Log File vulnerability when using Cognito UserPoolClient Construct
GHSA-qq4x-c6h6-rfxh MODERATE published about 1 year ago • updated 2 months ago
### Summary The [AWS Cloud Development Kit (CDK)](https://aws.amazon.com/cdk/) is an open-source framework for defining cloud infrastructure using ...
AWS CDK EKS overly permissive trust policies
GHSA-rx28-r23p-2qc3 CVE-2023-35165 MODERATE published almost 3 years ago • updated 1 day ago
If you are using the `eks.Cluster` or `eks.FargateCluster` construct we need you to take action. Other users are not affected and can stop reading....
Recent PRs
Package Details
Name: aws-cdk-lib
Ecosystem: npm
PURL Type: npm
Package URL: pkg:npm/aws-cdk-lib
JSON API: View JSON
Security Advisories

5

Active advisories
MODERATE 2
LOW 3
View All npm Advisories
Package Information
Description:

Version 2 of the AWS Cloud Development Kit library

Repository: https://github.com/aws/aws-cdk
Homepage: https://github.com/aws/aws-cdk
Latest Release: 2.200.0
about 1 year ago
Dependent Repos: 4,665
Dependent Packages: 2,095
Downloads: 7,689,082
Ranking: Top 0.3394% by dependent repos Top 0.1235% by downloads Top 0.0423% by dependent pkgs
PR Status
Open 1,547 (39.7%)
Merged 901 (23.1%)
Closed 1,082 (27.8%)
PR Types
Major 4 (0.1%)
Minor 3,338 (85.6%)
Patch 174 (4.5%)