-
Notifications
You must be signed in to change notification settings - Fork 15
Closed
Description
Hello, I recently built a docker image with this git repo and noticed it has a couple high risk vulnerabilities tied to [email protected]. I am referencing v2.2.0 of cmctl. Would it be possible to get this updated to avoid pulling these vulnerabilities in? Thank you!
Line 181 in b222de3
| oras.land/oras-go v1.2.5 // indirect |
CVE-2023-44487 golang.org/x/net 0.10.0 High 0.17.0 /go/pkg/mod/oras.land/[email protected]/go.mod
CVE-2023-44487 google.golang.org/grpc 1.53.0 High 1.56.3 /go/pkg/mod/oras.land/[email protected]/go.mod
Metadata
Metadata
Assignees
Labels
No labels