Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update dependencies #338

Merged
merged 2 commits into from Feb 25, 2022
Merged

Update dependencies #338

merged 2 commits into from Feb 25, 2022

Conversation

pjbgf
Copy link
Member

@pjbgf pjbgf commented Feb 25, 2022

Fixes:

✗ High severity vulnerability found in nhooyr.io/websocket
  Description: Denial of Service (DoS)
  Info: https://snyk.io/vuln/SNYK-GOLANG-NHOOYRIOWEBSOCKET-1244972
  Introduced through: github.com/containrrr/shoutrrr@0.4.4
  From: github.com/containrrr/shoutrrr@0.4.4 > github.com/containrrr/shoutrrr/pkg/router@0.4.4 > github.com/containrrr/shoutrrr/pkg/services/xmpp@0.4.4 > gosrc.io/xmpp@0.5.1 > nhooyr.io/websocket@1.8.6
  Fixed in: 1.8.7

And GHSA-h395-qcrw-5vmq

Paulo Gomes added 2 commits February 25, 2022 09:09
Signed-off-by: Paulo Gomes <paulo.gomes@weave.works>
Signed-off-by: Paulo Gomes <paulo.gomes@weave.works>
@pjbgf pjbgf marked this pull request as ready for review February 25, 2022 09:39
@stefanprodan stefanprodan added the area/ci CI related issues and pull requests label Feb 25, 2022
@stefanprodan stefanprodan merged commit d2821cc into fluxcd:main Feb 25, 2022
@pjbgf pjbgf deleted the patch-250222 branch February 25, 2022 13:27
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
area/ci CI related issues and pull requests
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

2 participants