k8snetworkplumbingwg / ovs-cni

Open vSwitch CNI plugin
Apache License 2.0
224 stars 71 forks source link

CWE-476: Bump gopkg.in/yaml.v3 #295

Closed oshoval closed 1 year ago

oshoval commented 1 year ago

What this PR does / why we need it: CWE-476, CWE-400

https://security.snyk.io/vuln/SNYK-GOLANG-GOPKGINYAMLV3-2952714 https://security.snyk.io/vuln/SNYK-GOLANG-GOPKGINYAMLV3-2841557

Special notes for your reviewer:

Release note:

None
oshoval commented 1 year ago

failurs were ovs mirror failures but pushed code clean up that isnt related to it

phoracek commented 1 year ago

/lgtm /approve

kubevirt-bot commented 1 year ago

[APPROVALNOTIFIER] This PR is APPROVED

This pull-request has been approved by: oshoval, phoracek

The full list of commands accepted by this bot can be found here.

The pull request process is described here

Needs approval from an approver in each of these files: - ~~[OWNERS](https://github.com/k8snetworkplumbingwg/ovs-cni/blob/main/OWNERS)~~ [phoracek] Approvers can indicate their approval by writing `/approve` in a comment Approvers can cancel approval by writing `/approve cancel` in a comment