Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

🌱 update dependencies to address cloudflare/circl vuln #1183

Merged
merged 1 commit into from Feb 26, 2024

Conversation

kranurag7
Copy link
Contributor

@kranurag7 kranurag7 commented Feb 24, 2024

Ref: https://github.com/syself/cluster-api-provider-hetzner/security/dependabot/28

  • update dependencies to address security vuln
    we were using cloudflare/circl as indirect
    dependency and dependabot alerted us about the
    same. This commit updates the dependencies to the
    latest version which has the fixes for the
    security vulnerability.

    Signed-off-by: kranurag7 anurag.kumar@syself.com

@kranurag7 kranurag7 marked this pull request as ready for review February 24, 2024 18:42
we were using cloudflare/circl as indirect
dependency and dependabot alerted us about the
same. This commit updates the dependencies to the
latest version which has the fixes for the
security vulnerability.

Signed-off-by: kranurag7 <anurag.kumar@syself.com>
@syself-bot syself-bot bot added size/M Denotes a PR that changes 50-200 lines, ignoring generated files. area/api Changes made in the api directory labels Feb 24, 2024
@kranurag7 kranurag7 changed the title 🌱 update dependencies to address security vuln 🌱 update dependencies to address cloudflare/circl vuln Feb 26, 2024
@kranurag7 kranurag7 merged commit 7007515 into main Feb 26, 2024
11 checks passed
@kranurag7 kranurag7 deleted the kr/fix-vuln branch February 26, 2024 09:15
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
area/api Changes made in the api directory size/M Denotes a PR that changes 50-200 lines, ignoring generated files.
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

2 participants