Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

New release for CVE-2024-24790 #635

Closed
Thor77 opened this issue Jun 27, 2024 · 4 comments
Closed

New release for CVE-2024-24790 #635

Thor77 opened this issue Jun 27, 2024 · 4 comments

Comments

@Thor77
Copy link

Thor77 commented Jun 27, 2024

The currently released version is still vulnerable to CVE-2024-24790 (at least according to security scanners, probably not really because it's not using the vulnerable code).
Are there plans to create a new release in the near future so security scanners are happy again as well?

@giovannirco
Copy link

Im also facing the same issue, my daily image build pipelines started failing today because helm-diff, I would prefer to get a new release instead of ignoring the CVE if possible. I appreciate if we could have a new release updating the stdlib dependency from 1.22.2 to 1.22.4

@yxxhero
Copy link
Collaborator

yxxhero commented Jun 28, 2024

PR is welcome.

@lr1980
Copy link
Contributor

lr1980 commented Jun 28, 2024

#636

@yxxhero
Copy link
Collaborator

yxxhero commented Jun 30, 2024

v3.9.9 released.

@yxxhero yxxhero closed this as completed Jun 30, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

4 participants