Skip to content

Commit

Permalink
Fix nancy issues (#116)
Browse files Browse the repository at this point in the history
  • Loading branch information
Erkan Erol authored Jul 18, 2023
1 parent 8ccfe55 commit e45b773
Showing 1 changed file with 9 additions and 20 deletions.
29 changes: 9 additions & 20 deletions .nancy-ignore
Original file line number Diff line number Diff line change
@@ -1,22 +1,11 @@
# Affects all versions of archiver which is required by vault
# Taken from: <https://github.com/giantswarm/opsctl/pull/1072/files#diff-bbe4a7fb12c43622bce7c6840c770e9995be614626a219942ca138403629cb69R1>
# pkg:golang/github.com/hashicorp/consul/[email protected]
# pkg:golang/github.com/hashicorp/consul/[email protected]
CVE-2022-29153 until=2023-09-01
CVE-2022-24687 until=2023-09-01
CVE-2021-41803 until=2023-09-01

CVE-2019-10743 until=2023-06-01
# pkg:golang/google.golang.org/[email protected]
CVE-2023-32731 until=2023-09-01

# Consul - no fix yet
CVE-2022-29153 until=2023-06-01
CVE-2022-24687 until=2023-06-01
CVE-2021-41803 until=2023-06-01


# containerd - fixed at least in v1.6.6 but this will break build process
# accept for now
CVE-2021-43816 until=2023-06-01
CVE-2022-23648 until=2023-06-01
CVE-2022-31030 until=2023-06-01

# requires apiserver update to very new version
sonatype-2022-6522 until=2023-12-30

# there is no available fix yet
CVE-2020-8561 until=2023-05-01
# pkg:golang/k8s.io/[email protected]
CVE-2020-8561 until=2023-09-01

0 comments on commit e45b773

Please sign in to comment.