zalando / go-keyring

Cross-platform keyring interface for Go
MIT License
881 stars 86 forks source link

Update gopkg.in/yaml.v2 #72

Closed mikkeloscar closed 2 years ago

mikkeloscar commented 2 years ago

Update require gopkg.in/yaml.v2 to address security alert about CVE-2019-11254.

It's not clear that this is a vulnerability affecting go-keyring, but should not hurt to update the library.

image

szuecs commented 2 years ago

:+1:

mikkeloscar commented 2 years ago

:+1: