canonical / chisel

GNU Affero General Public License v3.0
270 stars 42 forks source link

security: Upgrade golang.org/x/crypto to remediate CVEs #126

Closed bpanesar closed 6 months ago

bpanesar commented 7 months ago

Chisel is being reported as containing High Risk Vulnerabilities do to the version of golang.org/x/crypto used in release v0.9.0.

image

golang.org/x/crypto v0.0.0-20190308221718-c2843e01d9a2 Chisel v0.9.0

Can this please be updated and published as a new release of Chisel?

rebornplusplus commented 6 months ago

Raised #130. Thanks for reporting!