lifecycle
lifecycle copied to clipboard
CVE(s) found in v0.19.0
Latest lifecycle release v0.19.0 triggered CVE(s) from Grype. For further details, see: https://github.com/buildpacks/lifecycle/actions/runs/8320238462 json: { "id": "GHSA-8r3f-844c-mc37", "severity": "Medium", "description": "Golang protojson.Unmarshal function infinite loop when unmarshaling certain forms of invalid JSON" }