tulip / oplogtoredis

Publish MongoDB oplog entries to Redis
Apache License 2.0
38 stars 9 forks source link

Numerous critical/high security vulnerabilities found in Prisma scan #89

Open jeffshuberg opened 4 weeks ago

jeffshuberg commented 4 weeks ago

The following critical/high security vulnerabilities have been found when performing a Prisma scan associated with using GO 1.17:

https://github.com/advisories/GHSA-8c83-vp4v-h7fq, https://github.com/advisories/GHSA-v5qw-m6mv-3q79, https://github.com/advisories/GHSA-5wvm-rxcf-6cg8, https://github.com/advisories/GHSA-hc24-7m29-5vj7, https://github.com/advisories/GHSA-rq3x-83w4-p28c, https://github.com/advisories/GHSA-8v5j-pwr7-w5f8, https://github.com/advisories/GHSA-9f7g-gqwh-jpf5, https://github.com/advisories/GHSA-9f7g-gqwh-jpf5, https://github.com/advisories/GHSA-w4h2-22wh-m6jx, https://github.com/advisories/GHSA-3rm2-w8f7-h7rf, https://github.com/advisories/GHSA-q99m-p7hq-5v4f, https://github.com/advisories/GHSA-vjj7-39vr-35r3, https://github.com/advisories/GHSA-q42m-q8hq-53rj, https://github.com/advisories/GHSA-r654-8j96-crqx, https://github.com/advisories/GHSA-4374-p667-p6c8, https://github.com/advisories/GHSA-vvpx-j8f3-3w6h, https://github.com/advisories/GHSA-69cg-p879-7622, https://github.com/advisories/GHSA-vc3p-29h2-gpcp, https://github.com/advisories/GHSA-cg3q-j54f-5p7p, https://github.com/advisories/GHSA-33qr-2xwr-95pw, https://github.com/advisories/GHSA-89mw-w342-mqrr, https://github.com/advisories/GHSA-rxx3-4978-3cc9, https://github.com/advisories/GHSA-6685-ffxp-xm6f

Please update to use GO 1.22+ and publish a new image to address these security vulnerabilities