-
Notifications
You must be signed in to change notification settings - Fork 4.9k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
mod: update github.com/lestrrat-go/jwx version #37799
Conversation
Pinging @elastic/security-service-integrations (Team:Security-Service Integrations) |
Proposed commit message says
That was fixed in 2.0.18. This upgrade to 2.0.19 also fixes CVE-2024-21664. |
Co-authored-by: Andrew Kroh <[email protected]>
@chrisberkhout Thanks. Updated to
|
/test |
❕ Build Aborted
Expand to view the summary
Build stats
🤖 GitHub commentsExpand to view the GitHub comments
To re-run your PR in the CI, just comment with:
|
💚 Build Succeeded
Expand to view the summary
Build stats
Test stats 🧪
💚 Flaky test reportTests succeeded. 🤖 GitHub commentsExpand to view the GitHub comments
To re-run your PR in the CI, just comment with:
|
Addresses CVE-2023-49290 and CVE-2024-21664 risk. (cherry picked from commit 11f298c) # Conflicts: # go.sum
#37812) * mod: update github.com/lestrrat-go/jwx version (#37799) Addresses CVE-2023-49290 and CVE-2024-21664 risk. (cherry picked from commit 11f298c) # Conflicts: # go.sum * resolve conflicts --------- Co-authored-by: Dan Kortschak <[email protected]> Co-authored-by: Dan Kortschak <[email protected]>
Proposed commit message
Addresses CVE-2023-49290 and CVE-2024-21664 risk.
Checklist
CHANGELOG.next.asciidoc
orCHANGELOG-developer.next.asciidoc
.Author's Checklist
How to test this PR locally
Related issues
Use cases
Screenshots
Logs