Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
25.0.1+8.0.LTS→25.0.2+10.0.LTS5.4.8→5.5.03.216.0→3.218.03.14.2→3.14.31.92.0→1.93.01.12.0→1.12.11.3.9→1.14.40.9.26→0.9.29Release Notes
lua/lua (lua)
v5.5.0: Lua 5.5.0Compare Source
Lua 5.5.0
pulumi/pulumi (pulumi)
v3.218.0Compare Source
Features
OnErrorresource hookBug Fixes
[cli] Allow positional arguments to be passed to
convertagain[cli/install] Correctly include git forge organizations as schema namespaces when generating SDKs
#21579
[cli/{install,package}] Correctly grab package names for Python & NodeJS
#21577
v3.217.1Compare Source
Features
OnErrorresource hook#21515
Bug Fixes
[cli/install] Copy files when linking to be robust to copying across file partitions
#21549
[cli/install] Do not double install plugins with explicit parameterizations
#21548
[cli/install] Copy files when linking instead of renaming
#21549
Full Changelog: pulumi/pulumi@v3.217.0...v3.217.1
v3.217.0Compare Source
Features
OnErrorresource hook#21515
Bug Fixes
[cli/install] Copy files when linking to be robust to copying across file partitions
#21549
[cli/install] Do not double install plugins with explicit parameterizations
#21548
[cli/install] Copy files when linking instead of renaming
#21549
Full Changelog: pulumi/pulumi@v3.217.0...v3.217.1
python/cpython (python)
v3.14.3Compare Source
rust-lang/rust (rust)
v1.93.0Compare Source
==========================
Language
vector-related target features and theis_s390x_feature_detected!macrosystemABIcfgpredicateasm_cfgconstitems that contain mutable references tostatic(which is very unsafe, but not always UB)const_item_interior_mutationslint to warn against calls which mutate interior mutableconstitemsfunction_casts_as_integerlintCompiler
-Cjump-tables=bool. The flag was previously called-Zno-jump-tables.Platform Support
riscv64a23-unknown-linux-gnuto Tier 2 (without host tools)Refer to Rust's platform support page
for more information on Rust's tiered platform support.
Libraries
specializationon theCopytrait as it is unsound in the presence of lifetime dependentCopyimplementations. This may result in some performance regressions as some standard library APIs may now callClone::cloneinstead of performing bitwise copiesstd::thread::current()BTree::appendnot update existing keys when appending an entry which already existsT: RefUnwindSafeforvec::IntoIter<T>: UnwindSafeStabilized APIs
<[MaybeUninit<T>]>::assume_init_drop<[MaybeUninit<T>]>::assume_init_ref<[MaybeUninit<T>]>::assume_init_mut<[MaybeUninit<T>]>::write_copy_of_slice<[MaybeUninit<T>]>::write_clone_of_sliceString::into_raw_partsVec::into_raw_parts<iN>::unchecked_neg<iN>::unchecked_shl<iN>::unchecked_shr<uN>::unchecked_shl<uN>::unchecked_shr<[T]>::as_array<[T]>::as_mut_array<*const [T]>::as_array<*mut [T]>::as_mut_arrayVecDeque::pop_front_ifVecDeque::pop_back_ifDuration::from_nanos_u128char::MAX_LEN_UTF8char::MAX_LEN_UTF16std::fmt::from_fnstd::fmt::FromFnCargo
cargo tree, support long forms for--formatvariables--workspacetocargo cleanRustdoc
#![doc(document_private_items)]importhtml_favicon_url,html_logo_url,html_playground_url,issue_tracker_base_url, orhtml_no_sourceeither has a missing value, an unexpected value, or a value of the wrong type, rustdoc will emit the deny-by-default lintrustdoc::invalid_doc_attributes.Compatibility Notes
pin_v2into the builtin attributes namespacepanic=unwindwas changed from the JS exception handling ABI to the wasm exception handling ABI. If linking C/C++ object files with Rust objects,-fwasm-exceptionsmust be passed to the linker now. On nightly Rust, it is possible to get the old behavior with-Zwasm-emscripten-eh=false -Zbuild-std, but it will be removed in a future release.#[test]attribute, used to define tests, was previously ignored in various places where it had no meaning (e.g on trait methods or types). Putting the#[test]attribute in these places is no longer ignored, and will now result in an error; this may also result in errors when generating rustdoc. Error whentestattribute is applied to structsCARGO_CFG_DEBUG_ASSERTIONSenvironment variable in more situations. This will cause crates depending onstatic-initversions 1.0.1 to 1.0.3 to fail compilation with "failed to resolve: use of unresolved module or unlinked crateparking_lot". See the linked issue for details.offset_of!macro are now checked to be well formed.cargo publishno longer emits.cratefiles as a final artifact for user access when thebuild.build-dirconfig is unsetderef_nullptrlint from warn-by-default to deny-by-default...function parameters without a pattern outside ofexternblocksrepr(C)enums whose discriminant values do not fit into ac_intorc_uintrepr(C)types as part ofrepr(transparent)sbt/sbt (sbt)
v1.12.1: 1.12.1Compare Source
bug fixes
sbt --client newcombination by @MkDev11 in #8512sbt newargument parsing on Windows by @MkDev11 in #8509-Xsupport on Windows batch runner by @GlobalStar117 in #8566projectdirectory on--addPluginSbtFilecommand by @azdrojowa123 in #8583updatecache across commands when dependencies change by @calm329 in #8593behind the scenes
Full Changelog: sbt/sbt@v1.12.0...v1.12.1
hashicorp/terraform (terraform)
v1.14.4Compare Source
1.14.4 (January 28, 2026)
BUG FIXES:
backend: Fix nil pointer dereference crash during
terraform initwhen the destination backend returns an error (#38027)Fixes an issue where any warning diagnostics generated during terraform query execution failed to render in the cloud backend session (#38040)
actions in modules without instances failed the plan graph (#38089)
v1.14.3Compare Source
1.14.3 (December 17, 2025)
BUG FIXES:
v1.14.2Compare Source
1.14.2 (December 11, 2025)
ENHANCEMENTS:
BUG FIXES:
stacks: surface runtime issues with local values to user during plan (#37980)
resource instance apply failures should not cause the resource instance state to be empty. (#37981)
v1.14.1Compare Source
1.14.1 (December 3, 2025)
BUG FIXES:
test: allow ephemeral outputs in root modules (#37813)
Combinations of replace_triggered_by and -replace could result in some instances not being replaced (#37833)
providers lock: include providers required by terraform test (#37851)
Set state information in the proto request for the
GenerateResourceConfigRPC (#37896)actions: make after_create & after_update actions run after the resource has applied (#37936)
v1.14.0Compare Source
1.14.0 (November 19, 2025)
NEW FEATURES:
List Resources: List resources can be defined in
*.tfquery.hclfiles and allow querying and filterting existing infrastructure.A new Terraform command
terraform query: Executes list operations against existing infrastructure and displays the results. The command can optionally generate configuration for importing results into Terraform.A new GenerateResourceConfiguration RPC allows providers to create more precise configuration values during import. (#37515)
New top-level Actions block: Actions are provider defined and meant to codify use cases outside the normal CRUD model in your Terraform configuration. Providers can define Actions like
aws_lambda_invokeoraws_cloudfront_create_invalidationthat do something imparative outside of Terraforms normal CRUD model. You can configure such a side-effect with an action block and have actions triggered through the lifecycle of a resource or through passing the-invokeCLI flag. (#37553)ENHANCEMENTS:
terraform test: expected diagnostics will be included in test output when running in verbose mode" (#37362)
terraform test: ignore prevent_destroy attribute during when cleaning up tests" (#37364)
terraform stackscommand support for-helpflag (#37645)query: support offline validation of query files via -query flag in the validate command (#37671)
Updates to support the AWS European Sovereign Cloud (#37721)
BUG FIXES:
Retrieve all workspace variables while doing a
terraform import, include variables inherited from variable sets but not overwritten by the workspace. (#37241)Fix OSS backend proxy support by adding a proxy layer for OSS backend operations. Resolves #36897. (#36897)
console and test: return explicit diagnostics when referencing resources that were not included in the most recent operation. (#37663)
query: generate unique resource identifiers for results of expanded list resources (#37681)
The CLI now summarizes the number of actions invoked during
terraform apply, matching the plan output. (#37689)Allow filesystem functions to return inconsistent results when evaluated within provider configuration (#37854)
query: improve error handling for missing identity schemas (#37863)
UPGRADE NOTES:
The parallelism of Terraform operations within container runtimes may be reduced depending on the CPU bandwidth limit setting. (#37436)
Building Terraform 1.14 requires macOS Monterey or later (due to being built on Go 1.25 which imposes these requirements) (#37436)
Previous Releases
For information on prior major and minor releases, refer to their changelogs:
v1.13.5Compare Source
1.13.5 (November 5, 2025)
BUG FIXES:
impure functions could cause templatefile to incorrectly fail consistency checks (#37807)
Allow filesystem functions to return inconsistent results when evaluated within provider configuration (#37854)
v1.13.4Compare Source
1.13.4 (October 15, 2025)
BUG FIXES:
v1.13.3Compare Source
1.13.3 (September 17, 2025)
BUG FIXES:
v1.13.2Compare Source
1.13.2 (September 10, 2025)
BUG FIXES:
test: Fix the order of execution of cleanup nodes (#37546)
apply: hide sensitive inputs when values have changed between plan and apply (#37582)
v1.13.1Compare Source
1.13.1 (August 27, 2025)
BUG FIXES:
Fix regression that caused
terraform testwith zero tests to return a non-zero exit code. (#37477)terraform test: prevent panic when resolving incomplete references (#37484)
v1.13.0Compare Source
1.13.0 (August 20, 2025)
NEW FEATURES:
terraform stacksexposes some stack operations through the cli. Useterraform stacks -usageto see available commands. (#36931)ENHANCEMENTS:
Filesystem functions are now checked for consistent results to catch invalid data during apply (#37001)
Allow successful init when provider constraint matches at least one valid version (#37137)
Performance fix for evaluating high cardinality resources (#37154)
TF Test: Allow parallel execution of teardown operations (#37169)
terraform test: Test authors can now specify definitions for external variables that are referenced within test files directly within the test file itself. (#37195)terraform test: File-level variable blocks can now reference run outputs and other variables." (#37205)skip redundant comparisons when comparing planned set changes (#37280)
type checking: improve error message on type mismatches. (#37298)
BUG FIXES:
Added a missing warning diagnostic that alerts users when child module contains an ignored
cloudblock. (#37180)Nested module outputs could lose sensitivity, even when marked as such in the configuration (#37212)
workspace: Updated validation to reject workspaces named "" (#37267)
workspace: Updated the
workspace deletecommand to reject""as an invalid workspace name (#37275)plan: truncate invalid or dynamic references in the relevant attributes (#37290)
Test run Parallelism of 1 should not result in deadlock (#37292)
static validation: detect invalid static references via indexes on objects. (#37298)
Fixes resource identity being dropped from state in certain cases (#37396)
NOTES:
terraform rpcapiis now generally available. It is not intended for public consumption, but exposes certain Terraform operations through an RPC interface compatible with go-plugin. (#37067)UPGRADE NOTES:
terraform test: External variables referenced within test files should now be accompanied by avariabledefinition block within the test file. This is optional, but users with complex external variables may see error diagnostics without the additional variable definition. (#37195)Previous Releases
For information on prior major and minor releases, refer to their changelogs:
v1.12.2Compare Source
1.12.2 (June 11, 2025)
BUG FIXES:
v1.12.1Compare Source
1.12.1 (May 21, 2025)
BUG FIXES:
Include resource identity in import apply UI output (#37044)
Fix regression during provider installation by reverting back to not sending HEAD requests. (#36998)
Avoid crash on test failure in comparison in function call (#37071)
v1.12.0Compare Source
1.12.0 (May 14, 2025)
NEW FEATURES:
ENHANCEMENTS:
Terraform Test command now accepts a -parallelism=n option, which sets the number of parallel operations in a test run's plan/apply operation. (#34237)
Logical binary operators can now short-circuit (#36224)
Terraform Test: Runs can now be annotated for possible parallel execution. (#34180)
Allow terraform init when tests are present but no configuration files are directly inside the current directory (#35040)
Terraform Test: Continue subsequent test execution when an expected failure is not encountered. (#34969)
Produce detailed diagnostic objects when test run assertions fail (#34428)
backend/oss: Supports more standard environment variables to keep same with provider setting (#36581)
Improved elapsed time display in UI Hook to show minutes and seconds in
mm:ssformat. (#36368)Update legacy term used in error messages. (Terraform Cloud agent => HCP Terraform Agent) (#36706)
importblocks: Now support importing a resource via a new identity attribute. This is mutually exclusive with theidattribute (#36703)BUG FIXES:
Refreshed state was not used in the plan for orphaned resource instances (#36394)
Fixes malformed Terraform version error when the remote backend reads a remote workspace that specifies a Terraform version constraint. (#36356)
Changes to the order of sensitive attributes in the state format would erroneously indicate a plan contained changes when there were none. (#36465)
Avoid reporting duplicate attribute-associated diagnostics, such as "Available Write-only Attribute Alternative" (#36579)
for_each expressions in import blocks should not be able to reference the import target (#36801)
UPGRADE NOTES:
Previous Releases
For information on prior major and minor releases, refer to their changelogs:
v1.11.4Compare Source
1.11.4 (April 9, 2025)
BUG FIXES:
disable X25519Kyber768Draft00 in TLS to prevent timouts with some AWS network firewalls (#36791)
write-only attributes: internal providers should set write-only attributes to null (#36824)
v1.11.3Compare Source
1.11.3 (March 26, 2025)
BUG FIXES:
Fixes unintended exit of CLI when using the remote backend and applying with post-plan tasks configured in HCP Terraform (#36686)
Modules with zero instances that contain ephemeral resources could produce an error during apply (#36719)
v1.11.2Compare Source
1.11.2 (March 12, 2025)
ENHANCEMENTS:
oidc_request_url,oidc_request_tokenand (the new)ado_pipeline_service_connection_id. (#36458)BUG FIXES:
Return error when the templatestring function contains only a single interpolation that evaluates to a null value (#36652)
Backend/azure:
subscription_idbe optional & skip unnecessary management plane API call in some setup (#36595)NOTES:
v1.11.1Compare Source
1.11.1 (March 5, 2025)
BUG FIXES:
Temporarily revert updated Windows symlink handling until we can account for known existing configurations using non-symlink junctions. (#36575)
terraform test: Fix crash when a run block attempts to cleanup after a non-applyable plan. (#36582)Updated dependency golang.org/x/oauth2 from v0.23.0 => v0.27.0 to integrate latest changes (fix for CVE-2025-22868) (#36584)
lang/funcs/transpose: Avoid crash due to map with null values (#36611)
Combining ephemeral and sensitive marks could fail when serializing planned changes (#36619)
v1.11.0Compare Source
1.11.0 (February 27, 2025)
NEW FEATURES:
Add write-only attributes to resources. Providers can specify that certain attributes are write-only. They are not persisted in state. You can use ephemeral values in write-only attributes. (#36031)
terraform test: The-junit-xmloption for the terraform test command is now generally available. This option allows the command to create a test report in JUnit XML format. Feedback during the experimental phase helped map terraform test concepts to the JUnit XML format, and new additons may happen in future releases. (#36324)S3 native state locking is now generally available. The
use_lockfileargument enables users to adopt the S3-native mechanism for state locking. As part of this change, we've deprecated the DynamoDB-related arguments in favor of this new locking mechanism. While you can still use DynamoDB alongside S3-native state locking for migration purposes, we encourage migrating to the new state locking mechanism. (#36338)ENHANCEMENTS:
init: Provider installation will utilise credentials configured in a.netrcfile for the download and shasum URLs returned by provider registries. (#35843)terraform test: Test runs now support using mocked or overridden values during unit test runs (e.g., with command = "plan"). Setoverride_during = planin the test configuration to use the overridden values during the plan phase. The default value isoverride_during = apply. (#36227)terraform test: Add newstate_keyattribute forrunblocks, allowing test authors control over which internal state file should be used for the current test run. (#36185)Updates the azure backend authentication to match the terraform-provider-azurermprovider authentication, in several ways:
(#36258)
Include
ca-certificatespackage in our official Docker image to help with certificate handling by downstream (#36486)BUG FIXES:
ephemeral values: correct error message when ephemeral values are included in provisioner output (#36427)
Attempting to override a variable during
applyviaTF_VAR_environment variable will now yield warning instead of misleading error. (#36435)backends: Fix crash when interrupting during interactive prompt for values (#36448)
Fixes hanging behavior seen when applying a saved plan with -auto-approve using the cloud backend (#36453)
Previous Releases
For information on prior major and minor releases, refer to their changelogs:
v1.10.5Compare Source
1.10.5 (January 22, 2025)
BUG FIXES:
element(...): no longer crashes when asked for a negative index into a tuple. (#36376)
Updated dependency
github.com/hashicorp/go-slugv0.16.0=>v0.16.3to integrate latest changes (fix for CVE-2025-0377) (#36273)jsondecode(...): improved error message when objects contain duplicate keys (#36376)
v1.10.4Compare Source
1.10.4 (January 8, 2025)
BUG FIXES:
type conversion: Empty map conversions now return correct type information (#36262)
terraform console: Fix crash when printing ephemeral values (#36267)v1.10.3Compare Source
1.10.3 (December 18, 2024)
BUG FIXES:
v1.10.2Compare Source
1.10.2 (December 11, 2024)
BUG FIXES:
v1.10.1Compare Source
1.10.1 (December 4, 2024)
BUG FIXES:
templatefilewould panic if given and entirely unknown map of variables (#36118)templatefilewould panic if the variables map contains marked values (#36127)for_each(#36119)v1.10.0Compare Source
1.10.0 (November 27, 2024)
NEW FEATURES:
ephemeralasnullfunction: a function takes a value of any type and returns a similar value of the same type with any ephemeral values replaced with non-ephemeral null values and all non-ephemeral values preserved.BUG FIXES:
secret_suffixin thekubernetesbackend now includes validation to prevent errors when thesecret_suffixends with a number (#35666).error_messagevalues to pass the core validate step, so variable validation can be completed later during plan(#35537)
selfwith many instances could encounter an error during evaluation (#35895)plantimestamp()function would return an invalid date during validation (#35902)plan -generate-config-out) for string attributes that contain primitive types (e.g. numbers or booleans) (#35984)issensitivecould incorrectly assert that an unknown value was not sensitive during plan, but later became sensitive during apply, causing failures where changes did not match the planned result (#36012)ENHANCEMENTS:
elementfunction now accepts negative indices (#35501)terraform validate(#35543)plan,apply, andrefreshcommands now produce a deprecated warning when using the-stateflag. Instead use thepathattribute within thelocalbackend to modify the state file. (#35660)UPGRADE NOTES:
assume_roleblock (#35721)moved: Moved blocks now respect reserved keywords when parsing resource addresses. Configurations that reference resources with type names that match top level blocks and keywords frommovedblocks will need to prepend theresource.identifier to these references. (#35850)Previous Releases
For information on prior major and minor releases, refer to their changelogs:
v1.9.8Compare Source
1.9.8 (October 16, 2024)
BUG FIXES:
provider_metablocks with invalid names (#35842)v1.9.7[Compare Source](https://re
Configuration
📅 Schedule: Branch creation - Between 12:00 AM and 03:59 AM ( * 0-3 * * * ) (UTC), Automerge - At any time (no schedule defined).
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.
This PR has been generated by Renovate Bot.