Skip to content

Conversation

samartha-pm
Copy link

  • Go version updated from 1.23.8 to 1.24.6 to address security vulnerabilities.
  • Consolidated Dependabot updates
  • Updated CODEOWNERS file to reflect the PaaS team as owners.

Validation:
Local connection validation done pointing CC to latest commit ID of chisel.
image

Pipeline Grype and Trivy scans recently reported HIGH severity vulnerabilities.
After bumping the Go version, these vulnerabilities are now resolved (verified via local Grype and Trivy image scans — see attached image for reference).

image

@samartha-pm samartha-pm requested a review from a team as a code owner August 13, 2025 13:34
@cssecautomation
Copy link

cssecautomation commented Aug 13, 2025

🎉 Snyk checks have passed. No issues have been found so far.

security/snyk check is complete. No issues have been found. (View Details)

license/snyk check is complete. No issues have been found. (View Details)

code/snyk check is complete. No issues have been found. (View Details)

@samartha-pm samartha-pm merged commit 8f39b91 into master Aug 14, 2025
6 checks passed
@samartha-pm samartha-pm deleted the RDODCP-236 branch August 14, 2025 09:48
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants