You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Security scanners have started complaining about quic-go (https://osv.dev/vulnerability/GO-2024-3302) and it needs to be bumped to v0.48.2. This is already bumped in this repository but there is no tag/release for this yet.
I want to open PRs on dependant projects to fix this but it's better if there is a release to bump to (bumping to arbitrary commits from master might not get those PRs accepted)
Thank you for submitting your first issue to this repository! A maintainer will be here shortly to triage and review.
In the meantime, please double-check that you have provided all the necessary information to make this process easy! Any information that can help save additional round trips is useful! We currently aim to give initial feedback within two business days. If this does not happen, feel free to leave a comment.
Please keep an eye on how this issue will be labeled, as labels give an overview of priorities, assignments and additional actions requested by the maintainers:
"Priority" labels will show how urgent this is for the team.
"Status" labels will show if this is ready to be worked on, blocked, or in progress.
"Need" labels will indicate if additional input or analysis is required.
Security scanners have started complaining about quic-go (https://osv.dev/vulnerability/GO-2024-3302) and it needs to be bumped to
v0.48.2
. This is already bumped in this repository but there is no tag/release for this yet.I want to open PRs on dependant projects to fix this but it's better if there is a release to bump to (bumping to arbitrary commits from master might not get those PRs accepted)
e.g. this project needs the bump
Background: our Kairos pipelines are failing security scans: https://github.com/kairos-io/kairos/actions/runs/12194383948/job/34018136463?pr=3055
The text was updated successfully, but these errors were encountered: