Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Updating go version to fix vulnerability #582

Merged
merged 28 commits into from
Sep 22, 2023
Merged

Conversation

igorlombacx
Copy link
Contributor

@igorlombacx igorlombacx commented Sep 20, 2023

By submitting a PR to this repository, you agree to the terms within the Checkmarx Code of Conduct. Please see the contributing guidelines for how to create and submit a high-quality PR for this repo.

References

https://checkmarx.atlassian.net/browse/AST-29912?atlOrigin=eyJpIjoiYjdlZGFjYTQxMWJkNGU0MGE4NTU5OThjY2E0YWIzYTYiLCJwIjoiaiJ9

Testing

#583 govulncheck tested

Checklist

  • I have added documentation for new/changed functionality in this PR (if applicable).
  • I have updated the CLI help for new/changed functionality in this PR (if applicable).
  • All active GitHub checks for tests, formatting, and security are passing
  • The correct base branch is being used

@pedrompflopes pedrompflopes requested review from a team, margaritalm and diogopcx and removed request for a team September 20, 2023 20:39
@github-actions github-actions bot added the bug Something isn't working label Sep 20, 2023
@github-actions
Copy link

github-actions bot commented Sep 20, 2023

Logo
Checkmarx One – Scan Summary & Detailsb90030ee-4920-4c3f-9f0b-f4fc6a5f6572

Fixed Issues

Severity Issue Source File / Package
MEDIUM CVE-2022-41727 Go-golang.org/x/image-v0.0.0-20190802002840-cff245a6509b
MEDIUM CVE-2023-29407 Go-golang.org/x/image-v0.0.0-20190802002840-cff245a6509b
MEDIUM CVE-2023-29408 Go-golang.org/x/image-v0.0.0-20190802002840-cff245a6509b

@igorlombacx igorlombacx changed the title go mod updates Updating go version to vulnerability fix Sep 20, 2023
@igorlombacx igorlombacx changed the title Updating go version to vulnerability fix Updating go version to fix vulnerability Sep 20, 2023
@igorlombacx igorlombacx marked this pull request as ready for review September 21, 2023 00:19
@pedrompflopes pedrompflopes requested a review from a team September 21, 2023 00:19
diogopcx
diogopcx previously approved these changes Sep 21, 2023
@pedrompflopes pedrompflopes merged commit 58ba135 into main Sep 22, 2023
7 checks passed
@pedrompflopes pedrompflopes deleted the BUG/AST-29912-GO-MOD-VULN branch September 22, 2023 13:36
igorlombacx added a commit that referenced this pull request Oct 20, 2023
* go mod updates
ittaigilat-cx pushed a commit that referenced this pull request Jan 4, 2024
* go mod updates
thtri pushed a commit to thtri/ast-cli that referenced this pull request Apr 19, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
bug Something isn't working
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants