Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Medium Risk Material Change - Dependency severity is now medium + 1 more #41

Open
barapiiro opened this issue May 4, 2024 · 0 comments

Comments

@barapiiro
Copy link

Overall dependency risk changed:

Package risk is now Critical

Due to vulnerabilities: GHSA-449p-3h89-pw88,CVE-2023-49569

Package name: github.com/go-git/go-git/v5, version: 5.2.0

View in Apiiro

Package risk is now Critical

Due to vulnerabilities: GHSA-449p-3h89-pw88,CVE-2023-49569

Package name: github.com/go-git/go-git/v5, version: 5.2.0

View in Apiiro

Package risk is now High

Due to vulnerabilities: GHSA-vvpx-j8f3-3w6h,CVE-2022-41723,GHSA-69cg-p879-7622,CVE-2022-27664,GHSA-83g2-8m93-v3w7,CVE-2021-33194,GHSA-fxg5-wq6x-vr4w,CVE-2022-41721,GHSA-4374-p667-p6c8,CVE-2023-39325

Package name: golang.org/x/net, version: 0.0.0-20210226172049-e18ecbb05110

View in Apiiro

Package risk is now Medium

Due to vulnerabilities: GHSA-p782-xgp4-8hr8,CVE-2022-29526

Package name: golang.org/x/sys, version: 0.0.0-20210305230114-8fe3ee5dd75b

View in Apiiro

Affected repository: gitreefs

Provided by Dependabot

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant