Details
-
Improvement
-
Status: Closed
-
Critical
-
Resolution: Fixed
-
None
Description
golang.org/x/crypto v0.16.0 is used but it has CVE-2023-48795 (orĀ GO-2023-2402) and we should upgrade to the latest before the release.
While we are upgrading that one we should also update the others:
- golang.org/x/net v0.20.0
- golang.org/x/sys v0.16.0
- golang.org/x/text v0.14.0
- golang.org/x/tools v0.17.0