go-sdk icon indicating copy to clipboard operation
go-sdk copied to clipboard

Outdated modules that contains volunerabilities

Open IzhakJakov opened this issue 3 years ago • 1 comments

Found vulnerability (SNYK-GOLANG-GITHUBCOMDGRIJALVAJWTGO-596515)

github.com/spf13/cobra v1.1.1 uses github.com/dgrijalva/jwt-go which is affected by a known vulnerability and is no longer maintaned so it should probably be upgraded to a newer version.

IzhakJakov avatar Jan 11 '22 21:01 IzhakJakov

Found another vulnerability (SNYK-GOLANG-GITHUBCOMMIEKGDNS-537825)

〉ggdh 'github.com/miekg/dns'
                     github.com/grokify/go-aha
                                ⬇
                github.com/grokify/[email protected]
                                ⬇
               github.com/blend/[email protected]
                                ⬇
                   github.com/spf13/[email protected]
                                ⬇
                   github.com/spf13/[email protected]
                                ⬇
  github.com/bketelsen/[email protected]
                                ⬇
              github.com/hashicorp/consul/[email protected]
                                ⬇
                 github.com/hashicorp/[email protected]
                                ⬇
                 github.com/hashicorp/[email protected]
                                ⬇
                   github.com/miekg/[email protected]

IzhakJakov avatar Jan 12 '22 17:01 IzhakJakov