Open rujutaghanekar opened 4 months ago
gPRC-go module is already updated to 1.65. And http/1.1 vuln doesn't impact grpc, so it's irrelevant.
Currently, we are also using the grpc-health-probe
tool in our project, and we encountered a failed security scan due to the mentioned vulnerability.
If possible, we would appreciate an update as soon as possible.
Thank you.
Facing vulnerability with
stdlib
packageFacing vulnerability with
google.golang.org/grpc
We use
grpc-health-probe
in our project. Our scans are failing because of mentioned vulnerabilities. Please update package and golang versions.