oauth2 icon indicating copy to clipboard operation
oauth2 copied to clipboard

Updated Go Mod Dependencies Version to avoid security vulnerability

Open NeilJain56 opened this issue 4 years ago • 0 comments

Gjson, a dependency of this package has a major security vulnerability which can be avoided if we update the version to anything above 1.6.5. In this pull request I have updated it to the latest, there is no performance issues or changes needed otherwise. https://nvd.nist.gov/vuln/detail/CVE-2020-36067, https://nvd.nist.gov/vuln/detail/CVE-2020-35380, https://nvd.nist.gov/vuln/detail/CVE-2020-36066. These are links to the vulnerability call out

NeilJain56 avatar Jul 01 '21 17:07 NeilJain56