Closed PawelWMS closed 15 hours ago
All boxes should be checked before merging the PR (just tick any boxes which don't apply to this PR)
*-static
Release
./cgmanifest.json
./toolkit/scripts/toolchain/cgmanifest.json
.github/workflows/cgmanifest.json
./SPECS/LICENSES-AND-NOTICES/data/licenses.json
./SPECS/LICENSES-AND-NOTICES/LICENSES-MAP.md
./SPECS/LICENSES-AND-NOTICES/LICENSE-EXCEPTIONS.PHOTON
*.signatures.json
sudo make go-tidy-all
sudo make go-test-coverage
Fixing critical and high CVEs in opa. The CVE-2023-45288 is taken from 2.0's #8866.
opa
No.
Merge Checklist
All boxes should be checked before merging the PR (just tick any boxes which don't apply to this PR)
*-static
subpackages, etc.) have had theirRelease
tag incremented../cgmanifest.json
,./toolkit/scripts/toolchain/cgmanifest.json
,.github/workflows/cgmanifest.json
)./SPECS/LICENSES-AND-NOTICES/data/licenses.json
,./SPECS/LICENSES-AND-NOTICES/LICENSES-MAP.md
,./SPECS/LICENSES-AND-NOTICES/LICENSE-EXCEPTIONS.PHOTON
)*.signatures.json
filessudo make go-tidy-all
andsudo make go-test-coverage
passSummary
Fixing critical and high CVEs in
opa
. The CVE-2023-45288 is taken from 2.0's #8866.Does this affect the toolchain?
No.
Associated issues
8866
Links to CVEs
Test Methodology