Skip to content

Conversation

@mostafa
Copy link
Member

@mostafa mostafa commented Jul 12, 2024

Ticket(s)

N/A

Description

Update SDK and deps.

Related PRs

Closes #570
Closes #572
Closes #573
Closes #574
Closes #575

Development Checklist

  • I have added a descriptive title to this PR.
  • I have squashed related commits together.
  • I have rebased my branch on top of the latest main branch.
  • I have performed a self-review of my own code.
  • I have commented on my code, particularly in hard-to-understand areas.
  • I have added docstring(s) to my code.
  • I have made corresponding changes to the documentation (docs).
  • I have updated docs using make gen-docs command.
  • I have added tests for my changes.
  • I have signed all the commits.

Legal Checklist

Replace yaml.v2 with yaml.v3
@github-actions
Copy link

Overview

Image reference ghcr.io/gatewayd-io/gatewayd:caddb65 gatewaydio/gatewayd:latest
- digest 402b065f42a9 93100deaec5d
- tag caddb65 latest
- provenance f70e428
- vulnerabilities critical: 1 high: 0 medium: 0 low: 0 critical: 2 high: 1 medium: 3 low: 1 unspecified: 1
- platform linux/amd64 linux/amd64
- size 19 MB 17 MB (-2.1 MB)
- packages 133 128 (-5)
Base Image alpine:3
also known as:
3.20
3.20.1
latest
alpine:3.20
also known as:
3
latest
- vulnerabilities critical: 1 high: 0 medium: 0 low: 0 critical: 1 high: 0 medium: 2 low: 0 unspecified: 1
Packages and Vulnerabilities (34 package changes and 2 vulnerability changes)
  • ➕ 1 packages added
  • ➖ 5 packages removed
  • ♾️ 28 packages changed
  • 97 packages unchanged
  • ❗ 2 vulnerabilities added
Changes for packages of type apk (8 changes)
Package Version
ghcr.io/gatewayd-io/gatewayd:caddb65
Version
gatewaydio/gatewayd:latest
♾️ busybox 1.36.1-r29 1.36.1-r28
♾️ busybox-binsh 1.36.1-r29 1.36.1-r28
ca-certificates 20240226-r0
♾️ libcrypto3 3.3.1-r0 3.3.0-r2
♾️ libssl3 3.3.1-r0 3.3.0-r2
critical: 1 high: 0 medium: 0 low: 0
Added vulnerabilities (1):
  • critical : CVE--2024--5535
openssl 3.3.1-r0
critical: 1 high: 0 medium: 0 low: 0
Removed vulnerabilities (1):
  • critical : CVE--2024--5535
pax-utils 1.3.7-r2
♾️ ssl_client 1.36.1-r29 1.36.1-r28
Changes for packages of type golang (26 changes)
Package Version
ghcr.io/gatewayd-io/gatewayd:caddb65
Version
gatewaydio/gatewayd:latest
♾️ github.com/gatewayd-io/gatewayd (devel) 0.9.6
♾️ github.com/gatewayd-io/gatewayd-plugin-sdk 0.3.0 0.2.15
♾️ github.com/getsentry/sentry-go 0.28.0 0.27.0
♾️ github.com/go-logr/logr 1.4.2 1.4.1
github.com/munnerz/goautoneg 0.0.0-20191010083416-a7dc8b61c822
♾️ github.com/prometheus/common 0.55.0 0.53.0
♾️ github.com/prometheus/procfs 0.15.1 0.15.0
♾️ github.com/redis/go-redis/v9 9.5.4 9.5.1
♾️ github.com/spf13/cobra 1.8.1 1.8.0
♾️ github.com/wasilibs/go-pgquery 0.0.0-20240606042535-c0843d6592cc 0.0.0-20240510022537-eb0917feddeb
github.com/wasilibs/wazero-helpers 0.0.0-20240604052452-61d7981e9a38
♾️ go.opentelemetry.io/otel 1.27.0 1.26.0
♾️ go.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracegrpc 1.27.0 1.26.0
♾️ go.opentelemetry.io/otel/metric 1.27.0 1.26.0
♾️ go.opentelemetry.io/otel/sdk 1.27.0 1.26.0
♾️ go.opentelemetry.io/otel/trace 1.27.0 1.26.0
♾️ golang.org/x/crypto 0.25.0 0.23.0
♾️ golang.org/x/net 0.27.0 0.25.0
♾️ golang.org/x/oauth2 0.21.0 0.20.0
♾️ golang.org/x/sys 0.22.0 0.20.0
♾️ golang.org/x/text 0.16.0 0.15.0
♾️ google.golang.org/genproto/googleapis/rpc 0.0.0-20240711142825-46eb208f015d 0.0.0-20240528184218-531527333157
♾️ google.golang.org/grpc 1.65.0 1.64.0
♾️ google.golang.org/protobuf 1.34.2 1.34.1
gopkg.in/yaml.v2 2.4.0
♾️ stdlib go1.22.5 1.22.3
critical: 1 high: 1 medium: 0 low: 0
Added vulnerabilities (2):
  • critical : CVE--2024--24790
  • high : CVE--2024--24791

@mostafa mostafa merged commit 18ae198 into main Jul 12, 2024
@mostafa mostafa deleted the update-deps branch July 12, 2024 11:41
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants