crossplane-contrib / provider-keycloak

Apache License 2.0
21 stars 11 forks source link

CVE-2024-24786 - GHSA-8r3f-844c-mc37 #79

Closed AbrohamLincoln closed 5 months ago

AbrohamLincoln commented 5 months ago

A CVE with a moderate severity was published. https://github.com/advisories/GHSA-8r3f-844c-mc37

The protobuf dependency needs to be updated to v1.33.0 or newer to mitigate this CVE.

Breee commented 5 months ago

fixed with https://marketplace.upbound.io/providers/crossplane-contrib/provider-keycloak/v0.14.0