Skip to content

Fix security alert on Githubs#258

Merged
locnguyen1986 merged 1 commit intomainfrom
feat/security-fix
Nov 24, 2025
Merged

Fix security alert on Githubs#258
locnguyen1986 merged 1 commit intomainfrom
feat/security-fix

Conversation

@locnguyen1986
Copy link
Collaborator

@locnguyen1986 locnguyen1986 commented Nov 24, 2025

Key Changes:

  • Updated golang-jwt/jwt/v5 from various versions (5.0.0, 5.2.1) to v5.3.0 across all services
  • Upgraded golang.org/x/* packages (crypto, net, sys, text, tools, mod, sync) to newer versions
  • Updated PostgreSQL-related libraries (jackc/pgx/v5, jackc/pgservicefile) to latest versions
  • Upgraded QUIC-related packages in mcp-tools/tools/vector-store-service

The github alerts is https://github.com/janhq/jan-server/security:
image

This comment was marked as resolved.

@locnguyen1986 locnguyen1986 moved this to In Progress in Jan Nov 24, 2025
@locnguyen1986 locnguyen1986 merged commit 7e657bb into main Nov 24, 2025
12 checks passed
@github-project-automation github-project-automation bot moved this from In Progress to QA in Jan Nov 24, 2025
@locnguyen1986 locnguyen1986 deleted the feat/security-fix branch November 24, 2025 03:05
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

Status: QA

Development

Successfully merging this pull request may close these issues.

2 participants