Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Trivy Scan CVE-2022-1996 for github.com/emicklei/go-restful/v3 v3.8.0 #238

Open
rshelby5 opened this issue Aug 18, 2022 · 1 comment

Comments

@rshelby5
Copy link

rshelby5 commented Aug 18, 2022

Trivy Scan CVE-2022-1996 for github.com/emicklei/go-restful/v3 v3.8.0. Needs to be updated

kubefwd/go.sum

Line 127 in 7f75429

github.com/emicklei/go-restful v2.9.5+incompatible/go.mod h1:otzb+WCGbkyDHkqmQmT5YD2WR4BBwUdeQoFo8l/7tVs=
to kubernetes/kubernetes#110518 v3.8.0

@cjimti
Copy link
Member

cjimti commented Aug 20, 2022

$ go mod why github.com/emicklei/go-restful
# github.com/emicklei/go-restful
(main module does not need package github.com/emicklei/go-restful)
$ go mod graph | grep github.com/emicklei/go-restful
k8s.io/kube-openapi@v0.0.0-20211115234752-e816edb12b65 github.com/emicklei/go-restful@v0.0.0-20170410110728-ff4f55a20633
k8s.io/kube-openapi@v0.0.0-20210421082810-95288971da7e github.com/emicklei/go-restful@v0.0.0-20170410110728-ff4f55a20633
k8s.io/code-generator@v0.23.5 github.com/emicklei/go-restful@v2.9.5+incompatible

@rshelby5 can you please explain how this CVE is affects kubefwd?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants