We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
The Zerolog vendor lib uses golang.org/x/crypto within its logic.
Security flaw information: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-9283
How to fix? Upgrade golang.org/x/crypto to version 0.0.0-20200220183623-bac4c82f6975 or higher.
The text was updated successfully, but these errors were encountered:
This part of the dependency is not used but feel free to send a PR to update it.
Sorry, something went wrong.
Okay no worries. PR Created #387
Please let me know if there is any further actions to get this resolved.
Thanks for the quick reply!
PR merged! Keen to get a fresh tag if possible so we can pull the changes within our projects 🤞
No branches or pull requests
The Zerolog vendor lib uses golang.org/x/crypto within its logic.
Security flaw information:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-9283
How to fix?
Upgrade golang.org/x/crypto to version 0.0.0-20200220183623-bac4c82f6975 or higher.
The text was updated successfully, but these errors were encountered: