envconsul
envconsul copied to clipboard
chore: update dependencies
Fixes CVE-2023-39325
How is this repo being managed, is it scanned daily by trivy? Dependabot offered the fix 3 weeks ago, can you release a new Docker build?
Dependabot also reported this #344
Thank you for merging Dependabot, can you release a new version and build Docker images so downstream users can update?
Your build seems a bit strange, Dependabot sees go.mod 1.20 but your ci.yml uses 1.21... and then go test complains about needing go mod tidy, would be easier for everyone if you decide which version you want 😅
Your users still need a new tag and Docker build so they can fix the security bugs in v0.13.2 🙂