Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

CVE-2022-28948: upgrade to gopkg.in/yaml.v3 #70

Closed
jhendrixMSFT opened this issue May 25, 2022 · 1 comment
Closed

CVE-2022-28948: upgrade to gopkg.in/yaml.v3 #70

jhendrixMSFT opened this issue May 25, 2022 · 1 comment

Comments

@jhendrixMSFT
Copy link

Hello! We've been getting Dependabot alerts to due usage of gopkg.in/yaml.v2. The CVE has been fixed in the latest version.

dnaeon added a commit that referenced this issue Aug 15, 2022
Also, update vendor dependencies.

See issues #70 and #71
@dnaeon
Copy link
Owner

dnaeon commented Aug 15, 2022

Fixed in:

Thanks!

@dnaeon dnaeon closed this as completed Aug 15, 2022
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants