validator icon indicating copy to clipboard operation
validator copied to clipboard

bump golang.or/x/text for CVE-2022-32149

Open ProvoK opened this issue 2 years ago • 2 comments

Fixes Or Enhances

Hi there 👋 As per title, would be nice to bump the dependency for fixing that vulnerability.

@go-playground/validator-maintainers

ProvoK avatar Dec 02 '22 16:12 ProvoK

Coverage Status

Coverage remained the same at 74.182% when pulling a0cd8605eca6d839608c4514074d9907c5dd1ae0 on ProvoK:patch-1 into c7e0172e0fd176bdc521afb5186818a7db6b77ac on go-playground:master.

coveralls avatar Dec 02 '22 16:12 coveralls

Pinging @deankarn to try to get this merged and released ASAP.

FYI: VS Code released a new version today that includes auto govulncheck scanning, so expect a lot more folks pinging you about this (sorry 😞):

Screen Shot 2022-12-19 at 11 18 51 AM

twelvelabs avatar Dec 19 '22 17:12 twelvelabs

@ProvoK this is a dup of #1015

bnevis-i avatar Jan 04 '23 20:01 bnevis-i

@bnevis-i I didn't see that, gonna close it in favor of #1015 then, sorry for the noise

ProvoK avatar Jan 04 '23 21:01 ProvoK

@ProvoK No problem. I'm in the same situation as you, checking to see whether or not the other one got merged yet. There seems to be something wrong with the github actions in the project that is preventing PR's from going green.

bnevis-i avatar Jan 04 '23 21:01 bnevis-i