Skip to content

chore: bump golang.org/x dependencies to fix 21 CVEs#370

Merged
britaniar merged 1 commit into
mainfrom
copilot/address-cves-member-net-controller-manager
Jun 24, 2026
Merged

chore: bump golang.org/x dependencies to fix 21 CVEs#370
britaniar merged 1 commit into
mainfrom
copilot/address-cves-member-net-controller-manager

Conversation

Copilot AI commented Jun 24, 2026

Copy link
Copy Markdown
Contributor

21 CVEs (15 HIGH, 5 MEDIUM, 1 UNKNOWN) in golang.org/x/crypto, golang.org/x/net, and golang.org/x/sys affecting member-net-controller-manager.

Dependency updates

Package Old New Severity
golang.org/x/crypto v0.45.0 v0.52.0 8×HIGH, 5×MEDIUM
golang.org/x/net v0.47.0 v0.55.0 7×HIGH
golang.org/x/sys v0.38.0 v0.45.0 1×UNKNOWN

golang.org/x/sys is bumped to v0.45.0 (CVE fix threshold: v0.44.0) to satisfy transitive requirements from the updated crypto and net versions. go mod tidy also updated x/sync, x/term, x/text, and x/tools accordingly.

@codecov

codecov Bot commented Jun 24, 2026

Copy link
Copy Markdown

Codecov Report

✅ All modified and coverable lines are covered by tests.
✅ Project coverage is 67.35%. Comparing base (4fcffcf) to head (62f80e7).

Additional details and impacted files
@@            Coverage Diff             @@
##             main     #370      +/-   ##
==========================================
+ Coverage   66.90%   67.35%   +0.44%     
==========================================
  Files          33       33              
  Lines        3783     3783              
==========================================
+ Hits         2531     2548      +17     
+ Misses       1077     1062      -15     
+ Partials      175      173       -2     

☔ View full report in Codecov by Harness.
📢 Have feedback on the report? Share it here.

🚀 New features to boost your workflow:
  • ❄️ Test Analytics: Detect flaky tests, report on failures, and find test suite problems.

@britaniar britaniar marked this pull request as ready for review June 24, 2026 17:02
@britaniar britaniar merged commit b09ca18 into main Jun 24, 2026
10 checks passed
@britaniar britaniar deleted the copilot/address-cves-member-net-controller-manager branch June 24, 2026 18:09
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants