tektoncd / triggers

Event triggering with Tekton!
Apache License 2.0
546 stars 416 forks source link

[v0.24.x] Bump golang.org/x/net from 0.11.0 to 0.17.0 #1654

Closed khrm closed 9 months ago

khrm commented 9 months ago

This is done to address CVE-2023-44487.

Changes

Submitter Checklist

As the author of this PR, please check off the items in this checklist:

Release Notes

NONE
khrm commented 9 months ago

/kind bug /kind security

khrm commented 9 months ago

@vdemeester Let's merge this also.

savitaashture commented 9 months ago

@khrm can you mention CVE issue in the PR description instead of just saying CVE address

vdemeester commented 9 months ago

/lgtm

khrm commented 9 months ago

/test pull-tekton-triggers-integration-tests

khrm commented 9 months ago

/test pull-tekton-triggers-integration-tests

khrm commented 9 months ago

@savitaashture Let's merge this for releasing v0.24.x

khrm commented 9 months ago

@vdemeester Let's merge this also. @dibyom

tekton-robot commented 9 months ago

[APPROVALNOTIFIER] This PR is APPROVED

This pull-request has been approved by: savitaashture

The full list of commands accepted by this bot can be found here.

The pull request process is described here

Needs approval from an approver in each of these files: - ~~[OWNERS](https://github.com/tektoncd/triggers/blob/release-v0.24.x/OWNERS)~~ [savitaashture] Approvers can indicate their approval by writing `/approve` in a comment Approvers can cancel approval by writing `/approve cancel` in a comment