Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

High vulnerability in golang library #175

Closed
LuckyDucky583 opened this issue Apr 12, 2024 · 1 comment
Closed

High vulnerability in golang library #175

LuckyDucky583 opened this issue Apr 12, 2024 · 1 comment

Comments

@LuckyDucky583
Copy link
Contributor

LuckyDucky583 commented Apr 12, 2024

Our scans show a high vulnerability in one of the golang libraries used in tfmigrate, which can be fixed through a version update from v0.0.0-20220624214902-1bab6f366d9e to 0.0.0-20220906165146-f3363e06e74c:

│ golang.org/x/net │ CVE-2022-27664 │ HIGH │ fixed │ golang: net/http: handle server errors after sending GOAWAY

[edit]

I've created a pull request for this issue as well, kindly check if that suits you.

@minamijoyo
Copy link
Owner

Fixed in v0.3.22 by #176.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants