gatewayd-io / gatewayd

☁️ Cloud-native database gateway and framework for building data-driven applications ✨ Like API gateways, for databases ✨
https://gatewayd.io
GNU Affero General Public License v3.0
218 stars 17 forks source link

Update deps #576

Closed mostafa closed 2 months ago

mostafa commented 2 months ago

Ticket(s)

N/A

Description

Update SDK and deps.

Related PRs

Closes #570 Closes #572 Closes #573 Closes #574 Closes #575

Development Checklist

Legal Checklist

github-actions[bot] commented 2 months ago

Overview

Image reference ghcr.io/gatewayd-io/gatewayd:caddb65 gatewaydio/gatewayd:latest
- digest 402b065f42a9 93100deaec5d
- tag caddb65 latest
- provenance https://github.com/gatewayd-io/gatewayd/commit/f70e4288cab2ce0079a2a832aeebbc8db6eca41f
- vulnerabilities critical: 1 high: 0 medium: 0 low: 0 critical: 2 high: 1 medium: 3 low: 1 unspecified: 1
- platform linux/amd64 linux/amd64
- size 19 MB 17 MB (-2.1 MB)
- packages 133 128 (-5)
Base Image alpine:3
also known as:
3.20
3.20.1
latest
alpine:3.20
also known as:
3
latest
- vulnerabilities critical: 1 high: 0 medium: 0 low: 0 critical: 1 high: 0 medium: 2 low: 0 unspecified: 1
Packages and Vulnerabilities (34 package changes and 2 vulnerability changes) > * :heavy_plus_sign: 1 packages added > * :heavy_minus_sign: 5 packages removed > * :infinity: 28 packages changed > * 97 packages unchanged > * :heavy_exclamation_mark: 2 vulnerabilities added
Changes for packages of type apk (8 changes)
Package Version
ghcr.io/gatewayd-io/gatewayd:caddb65
Version
gatewaydio/gatewayd:latest
:infinity: busybox 1.36.1-r29 1.36.1-r28
:infinity: busybox-binsh 1.36.1-r29 1.36.1-r28
:heavy_minus_sign: ca-certificates 20240226-r0
:infinity: libcrypto3 3.3.1-r0 3.3.0-r2
:infinity: libssl3 3.3.1-r0 3.3.0-r2
critical: 1 high: 0 medium: 0 low: 0
Added vulnerabilities (1):
  • critical : CVE--2024--5535
:heavy_minus_sign: openssl 3.3.1-r0
critical: 1 high: 0 medium: 0 low: 0
Removed vulnerabilities (1):
  • critical : CVE--2024--5535
:heavy_minus_sign: pax-utils 1.3.7-r2
:infinity: ssl_client 1.36.1-r29 1.36.1-r28
Changes for packages of type golang (26 changes)
Package Version
ghcr.io/gatewayd-io/gatewayd:caddb65
Version
gatewaydio/gatewayd:latest
:infinity: github.com/gatewayd-io/gatewayd (devel) 0.9.6
:infinity: github.com/gatewayd-io/gatewayd-plugin-sdk 0.3.0 0.2.15
:infinity: github.com/getsentry/sentry-go 0.28.0 0.27.0
:infinity: github.com/go-logr/logr 1.4.2 1.4.1
:heavy_minus_sign: github.com/munnerz/goautoneg 0.0.0-20191010083416-a7dc8b61c822
:infinity: github.com/prometheus/common 0.55.0 0.53.0
:infinity: github.com/prometheus/procfs 0.15.1 0.15.0
:infinity: github.com/redis/go-redis/v9 9.5.4 9.5.1
:infinity: github.com/spf13/cobra 1.8.1 1.8.0
:infinity: github.com/wasilibs/go-pgquery 0.0.0-20240606042535-c0843d6592cc 0.0.0-20240510022537-eb0917feddeb
:heavy_minus_sign: github.com/wasilibs/wazero-helpers 0.0.0-20240604052452-61d7981e9a38
:infinity: go.opentelemetry.io/otel 1.27.0 1.26.0
:infinity: go.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracegrpc 1.27.0 1.26.0
:infinity: go.opentelemetry.io/otel/metric 1.27.0 1.26.0
:infinity: go.opentelemetry.io/otel/sdk 1.27.0 1.26.0
:infinity: go.opentelemetry.io/otel/trace 1.27.0 1.26.0
:infinity: golang.org/x/crypto 0.25.0 0.23.0
:infinity: golang.org/x/net 0.27.0 0.25.0
:infinity: golang.org/x/oauth2 0.21.0 0.20.0
:infinity: golang.org/x/sys 0.22.0 0.20.0
:infinity: golang.org/x/text 0.16.0 0.15.0
:infinity: google.golang.org/genproto/googleapis/rpc 0.0.0-20240711142825-46eb208f015d 0.0.0-20240528184218-531527333157
:infinity: google.golang.org/grpc 1.65.0 1.64.0
:infinity: google.golang.org/protobuf 1.34.2 1.34.1
:heavy_plus_sign: gopkg.in/yaml.v2 2.4.0
:infinity: stdlib go1.22.5 1.22.3
critical: 1 high: 1 medium: 0 low: 0
Added vulnerabilities (2):
  • critical : CVE--2024--24790
  • high : CVE--2024--24791