Skip to content

Conversation

@kumahq
Copy link
Contributor

@kumahq kumahq bot commented Dec 10, 2025

Scan output:

Before update:

OSV URL CVSS ECOSYSTEM PACKAGE VERSION SOURCE
https://osv.dev/GO-2025-4222 6.6 Go github.com/containernetworking/plugins 1.6.2 go.mod
https://osv.dev/GHSA-jv3w-x3r3-g6rm

After update:

If a package is showing up in the scan but the script is not trying to update it then it might be because there is no fixed version yet.

@kumahq kumahq bot added dependencies Pull requests that update a dependency file release-2.10 labels Dec 10, 2025
@kumahq kumahq bot requested a review from a team as a code owner December 10, 2025 03:36
@kumahq kumahq bot added dependencies Pull requests that update a dependency file release-2.10 labels Dec 10, 2025
@kumahq kumahq bot requested review from Automaat and slonka December 10, 2025 03:36
Signed-off-by: kumahq[bot] <110050114+kumahq[bot]@users.noreply.github.com>
@kumahq kumahq bot force-pushed the chore/security-updates-release-2.10 branch from 9ad29d8 to e26d3f5 Compare December 12, 2025 03:36
@slonka slonka merged commit cb72333 into release-2.10 Jan 7, 2026
14 checks passed
@slonka slonka deleted the chore/security-updates-release-2.10 branch January 7, 2026 09:06
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file release-2.10

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants