envoyproxy / ratelimit

Go/gRPC service designed to enable generic rate limit scenarios from different types of applications.
Apache License 2.0
2.25k stars 440 forks source link

Security issue (Trivy_vulnerability_report) #654

Closed johnzheng1975 closed 17 hours ago

johnzheng1975 commented 1 month ago

https://nvd.nist.gov/vuln/detail/CVE-2024-24790

johnzheng1975 commented 1 month ago

level is critical from report :-)

talonnguyen commented 1 month ago

hi @johnzheng1975, I'm glad seeing you are addressing the CVE. May I ask do you have the rough estimated available date? Thanks

johnzheng1975 commented 1 month ago

sorry, not got you. Available date for what? I submitted a PR to resolve this issue, in new go version, this issue is disapppeared.

github-actions[bot] commented 1 week ago

This issue has been automatically marked as stale because it has not had activity in the last 30 days. It will be closed in the next 7 days unless it is tagged "help wanted" or "no stalebot" or other activity occurs. Thank you for your contributions.

github-actions[bot] commented 17 hours ago

This issue has been automatically closed because it has not had activity in the last 37 days. If this issue is still valid, please ping a maintainer and ask them to label it as "help wanted" or "no stalebot". Thank you for your contributions.