Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

feat: (IAC-1262) Update Dependencies to Resolve Security Warnings #102

Merged
merged 1 commit into from
Jan 19, 2024

Conversation

jarpat
Copy link
Contributor

@jarpat jarpat commented Jan 12, 2024

Changes

Updates 3rd party dependencies in this project to resolve security findings from our scanning tool. Consumers of the Dockerfile will automatically have these updated dependencies installed, and users who directly run this project on this host will need to update the dependencies themselves.

Update summary:

Note: Although the versions have been bumped up, there are no breaking changes. A user could still use the same 3rd party dependencies from viya4-iac-k8s:3.x.x and not run into any issues. We will still advise users to update versions in our release notes.

Tests

Scenario Provider K8s Version Order Cadence Notes
1 OSS v1.27.9 * fast:2020
2 OSS v1.27.9 n/a n/a used deps from 3.0.0 to check compatibility

@jarpat jarpat added the enhancement New feature or request label Jan 12, 2024
@jarpat jarpat self-assigned this Jan 12, 2024
@jarpat jarpat marked this pull request as ready for review January 16, 2024 18:17
Copy link
Member

@thpang thpang left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM

@jarpat jarpat merged commit f5dc5f9 into staging Jan 19, 2024
4 checks passed
@jarpat jarpat deleted the IAC-1262 branch January 19, 2024 16:09
@jarpat jarpat mentioned this pull request Feb 14, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
enhancement New feature or request
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants