-
Notifications
You must be signed in to change notification settings - Fork 64
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Update dependencies to fix security vulnerability CVE-2023-32731 #1180
Comments
All PRs for this issue are created with the vulnerability patch and are ready for review. |
Blocked due to the direct dependency not patching this yet: devfile/registry-operator#44 (comment) |
This commit which is currently under kubernetes staging should provide a patch for this: kubernetes/kubernetes@a045fed |
Direct dependencies now have patches so will unblock this issue. |
Revising PRs for review next sprint. |
No updates as of late due to focus on other tasks. |
Continuing in Sprint 245 due to vacation leave. |
After consideration on this issue, I have decided to defer this to be part of #1237 and will close this item. |
Which area/kind this issue is related to?
/area library
/area registry
Issue Description
There is a recent reported high level security vulnerability CVE-2023-32731 which effects gRPC.
The following modules should have the dependency
google.golang.org/grpc
updated:Target Date: TBA
The text was updated successfully, but these errors were encountered: