itchyny / gojq

Pure Go implementation of jq
MIT License
3.26k stars 118 forks source link

New release for latest Go versions #267

Closed GROwen closed 1 week ago

GROwen commented 1 week ago

As a gojq user I would like to use a release compiled using the latest version of go to reduce the number of open CVEs affecting the program.

Just wondering if there's a release planned for the near future? I can see this commit has made it into the main branch. 🙏

itchyny commented 1 week ago

I will cut a release when I have free time. If there is a security issue in gojq, please let me know soon.

GROwen commented 1 week ago

Thanks for the quick response @itchyny , my report looks like our scanning workflow returning a false positive.

I've just run govulncheck over v0.12.16 and no vulnerabilities have been identified.

Thanks again.