aws / aws-lambda-runtime-interface-emulator

Apache License 2.0
915 stars 95 forks source link

CVEs found in latest RIE release #129

Closed github-actions[bot] closed 2 months ago

github-actions[bot] commented 2 months ago

CVEs found in latest RIE release

product  version  cve_number      severity  paths
go       1.22.3   CVE-2024-24789  MEDIUM    aws-lambda-rie
go       1.22.3   CVE-2024-24790  CRITICAL  aws-lambda-rie

Are these resolved by building with the latest patch version of Go (go1.22.4)?:

Yes

valerena commented 2 months ago

New version released using Go 1.22.4 (RIE 1.20)