[Snyk] Security upgrade golang from 1.25.2-alpine3.22 to 1.26.3-alpine3.22#6756
[Snyk] Security upgrade golang from 1.25.2-alpine3.22 to 1.26.3-alpine3.22#6756khanhtc1202 wants to merge 1 commit into
Conversation
The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-ALPINE322-OPENSSL-15993393 - https://snyk.io/vuln/SNYK-ALPINE322-OPENSSL-15993393 - https://snyk.io/vuln/SNYK-ALPINE322-OPENSSL-15121226 - https://snyk.io/vuln/SNYK-ALPINE322-OPENSSL-15993397 - https://snyk.io/vuln/SNYK-ALPINE322-OPENSSL-15993398
Codecov Report✅ All modified and coverable lines are covered by tests. Additional details and impacted files@@ Coverage Diff @@
## master #6756 +/- ##
=======================================
Coverage 29.33% 29.33%
=======================================
Files 598 598
Lines 63902 63902
=======================================
Hits 18744 18744
Misses 43711 43711
Partials 1447 1447
Flags with carried forward coverage won't be shown. Click here to find out more. ☔ View full report in Codecov by Harness. 🚀 New features to boost your workflow:
|
|
@khanhtc1202 commit sign off missing. |
|
This PR is stale because it has been open 30 days with no activity. Remove stale label or comment or this will be closed in 7 days. |
|
@khanhtc1202 is this still being worked on? |
|
Oh missed it, this pr had been created by Snyx bot, not me. But let keep going with this 👍 |
Alright no problem. There is merge conflict and DCO sign off |
✅ This PR has been automatically closedThe security issues addressed by this pull request are no longer present in the latest project scan. All vulnerabilities this PR was created to fix have been resolved through other means (e.g., dependency updates, direct fixes, or changes in vulnerability data). Resolved Issues
What should I do?No action is required. If you believe this PR was closed in error, you can reopen it and contact Snyk support. This action was performed automatically by Snyk. |
Snyk has created this PR to fix 4 vulnerabilities in the dockerfile dependencies of this project.
Keeping your Docker base image up-to-date means you’ll benefit from security fixes in the latest version of your chosen image.
Snyk changed the following file(s):
tool/actions-gh-release/DockerfileWe recommend upgrading to
golang:1.26.3-alpine3.22, as this image has only 0 known vulnerabilities. To do this, merge this pull request, then verify your application still works as expected.Vulnerabilities that will be fixed with an upgrade:
SNYK-ALPINE322-OPENSSL-15993393
SNYK-ALPINE322-OPENSSL-15993393
SNYK-ALPINE322-OPENSSL-15121226
SNYK-ALPINE322-OPENSSL-15993397
SNYK-ALPINE322-OPENSSL-15993398
Important
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:
🧐 View latest project report
📜 Customise PR templates
🛠 Adjust project settings
📚 Read about Snyk's upgrade logic
Learn how to fix vulnerabilities with free interactive lessons:
🦉 Learn about vulnerability in an interactive lesson of Snyk Learn.