Skip to content

Commit a1628a5

Browse files
committed
fix(CVE): Update jose2go to v1.7.0 to fix CVE-2025-63811
Updates github.com/dvsekhvalnov/jose2go from v1.6.0 to v1.7.0. Fixes: - CVE-2025-63811 (High) - GHSA-9mj6-hxhv-w67j SREP-3402
1 parent 005c98d commit a1628a5

2 files changed

Lines changed: 4 additions & 6 deletions

File tree

go.mod

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -16,6 +16,7 @@ require (
1616
github.com/olekukonko/tablewriter v0.0.5
1717
github.com/onsi/ginkgo/v2 v2.28.0
1818
github.com/onsi/gomega v1.39.1
19+
github.com/openshift-online/ocm-api-model/clientapi v0.0.448
1920
github.com/openshift-online/ocm-cli v1.0.10
2021
github.com/openshift-online/ocm-sdk-go v0.1.493
2122
github.com/openshift/backplane-api v0.0.0-20251117160932-490f3091533f
@@ -47,7 +48,6 @@ require (
4748
github.com/oapi-codegen/runtime v1.1.2 // indirect
4849
github.com/oasdiff/yaml v0.0.0-20250309154309-f31be36b4037 // indirect
4950
github.com/oasdiff/yaml3 v0.0.0-20250309153720-d2182401db90 // indirect
50-
github.com/openshift-online/ocm-api-model/clientapi v0.0.448 // indirect
5151
github.com/openshift-online/ocm-api-model/model v0.0.448 // indirect
5252
github.com/openshift-online/ocm-common v0.0.29 // indirect
5353
github.com/yosida95/uritemplate/v3 v3.0.2 // indirect
@@ -80,7 +80,7 @@ require (
8080
github.com/cespare/xxhash/v2 v2.3.0 // indirect
8181
github.com/danieljoos/wincred v1.2.0 // indirect
8282
github.com/davecgh/go-spew v1.1.2-0.20180830191138-d8f796af33cc // indirect
83-
github.com/dvsekhvalnov/jose2go v1.6.0 // indirect
83+
github.com/dvsekhvalnov/jose2go v1.7.0 // indirect
8484
github.com/emicklei/go-restful/v3 v3.11.0 // indirect
8585
github.com/evanphx/json-patch v4.12.0+incompatible // indirect
8686
github.com/fatih/structs v1.1.0 // indirect

go.sum

Lines changed: 2 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -121,8 +121,8 @@ github.com/davecgh/go-spew v1.1.0/go.mod h1:J7Y8YcW2NihsgmVo/mv3lAwl/skON4iLHjSs
121121
github.com/davecgh/go-spew v1.1.1/go.mod h1:J7Y8YcW2NihsgmVo/mv3lAwl/skON4iLHjSsI+c5H38=
122122
github.com/davecgh/go-spew v1.1.2-0.20180830191138-d8f796af33cc h1:U9qPSI2PIWSS1VwoXQT9A3Wy9MM3WgvqSxFWenqJduM=
123123
github.com/davecgh/go-spew v1.1.2-0.20180830191138-d8f796af33cc/go.mod h1:J7Y8YcW2NihsgmVo/mv3lAwl/skON4iLHjSsI+c5H38=
124-
github.com/dvsekhvalnov/jose2go v1.6.0 h1:Y9gnSnP4qEI0+/uQkHvFXeD2PLPJeXEL+ySMEA2EjTY=
125-
github.com/dvsekhvalnov/jose2go v1.6.0/go.mod h1:QsHjhyTlD/lAVqn/NSbVZmSCGeDehTB/mPZadG+mhXU=
124+
github.com/dvsekhvalnov/jose2go v1.7.0 h1:bnQc8+GMnidJZA8zc6lLEAb4xNrIqHwO+9TzqvtQZPo=
125+
github.com/dvsekhvalnov/jose2go v1.7.0/go.mod h1:QsHjhyTlD/lAVqn/NSbVZmSCGeDehTB/mPZadG+mhXU=
126126
github.com/emicklei/go-restful/v3 v3.11.0 h1:rAQeMHw1c7zTmncogyy8VvRZwtkmkZ4FxERmMY4rD+g=
127127
github.com/emicklei/go-restful/v3 v3.11.0/go.mod h1:6n3XBCmQQb25CM2LCACGz8ukIrRry+4bhvbpWn3mrbc=
128128
github.com/envoyproxy/go-control-plane v0.9.0/go.mod h1:YTl/9mNaCwkRvm6d1a2C3ymFceY/DCBVvsKhRF0iEA4=
@@ -403,8 +403,6 @@ github.com/openshift-online/ocm-sdk-go v0.1.493 h1:+889zmbwN0guA8LFRr5WHpH2+VJNq
403403
github.com/openshift-online/ocm-sdk-go v0.1.493/go.mod h1:ThqKHtIyvTvDA5AxGFZph80sllVr63lZ+sb4qQP57+o=
404404
github.com/openshift/api v0.0.0-20221018124113-7edcfe3c76cb h1:QsBjYe5UfHIZi/3SMzQBIjYDKnWqZxq50eQkBp9eUew=
405405
github.com/openshift/api v0.0.0-20221018124113-7edcfe3c76cb/go.mod h1:JRz+ZvTqu9u7t6suhhPTacbFl5K65Y6rJbNM7HjWA3g=
406-
github.com/openshift/backplane-api v0.0.0-20251026011953-7861d08b3674 h1:2MgXsvaOZzh2oQpyZMvWd2U6xHzpzBC5LaI9sX1rGQ8=
407-
github.com/openshift/backplane-api v0.0.0-20251026011953-7861d08b3674/go.mod h1:0+HQ/Ujo/hRKpBFePq2Zitrk6sc5viJNrDtbBTx1uh0=
408406
github.com/openshift/backplane-api v0.0.0-20251117160932-490f3091533f h1:7VGTnBRgyKpyXOitwNVtR05HsPNZARqow8rU5Qo2bGY=
409407
github.com/openshift/backplane-api v0.0.0-20251117160932-490f3091533f/go.mod h1:0+HQ/Ujo/hRKpBFePq2Zitrk6sc5viJNrDtbBTx1uh0=
410408
github.com/openshift/client-go v0.0.0-20221019143426-16aed247da5c h1:CV76yFOTXmq9VciBR3Bve5ZWzSxdft7gaMVB3kS0rwg=

0 commit comments

Comments
 (0)