Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Upgrade controller-runtime to v0.11.1 and docker/distribution to v2.8.0 #583

Merged
merged 2 commits into from
Feb 18, 2022

Conversation

pjbgf
Copy link
Member

@pjbgf pjbgf commented Feb 17, 2022

Upgrade controller-runtime to v0.12.1
Fix for CVE-2022-21698 by upgrading the trasient dependency github.com/prometheus/client_golang.

Upgrade docker/distribution to v2.8.0
Fixes GHSA-qq97-vm5h-rrhg.

Module versions after the changes are applied:
image

@stefanprodan stefanprodan added the area/ci CI related issues and pull requests label Feb 17, 2022
Copy link
Member

@stefanprodan stefanprodan left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM

Thanks @pjbgf

Paulo Gomes added 2 commits February 17, 2022 20:51
Fix for CVE-2022-21698 by upgrading the trasient dependency github.com/prometheus/client_golang.

Signed-off-by: Paulo Gomes <paulo.gomes@weave.works>
Fixes GHSA-qq97-vm5h-rrhg

Signed-off-by: Paulo Gomes <paulo.gomes@weave.works>
@pjbgf pjbgf merged commit b65cf9d into fluxcd:main Feb 18, 2022
@pjbgf pjbgf deleted the controller-runtime branch February 18, 2022 09:12
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
area/ci CI related issues and pull requests
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants