Skip to content

Need go.mod and go.sum files included to resolve go version related CVE's #367

@drushtant17

Description

@drushtant17

We are not able to target CVE's related to golang version for yudai/gotty due to unavailability of go.mod and go.sum files.
Below are the targeted CVE list :
CVE-2023-24538-critical
CVE-2022-23806-critical
CVE-2023-24540-critical
CVE-2024-24790-critical
CVE-2022-23806-critical
CVE-2023-24540-critical
CVE-2023-24538-critical
CVE-2024-24790-critical
CVE-2022-32189-high
CVE-2024-24791-high
CVE-2021-44716-high
CVE-2022-30631-high
CVE-2020-16845-high
CVE-2021-27918-high
CVE-2023-39325-high
CVE-2023-45287-high
CVE-2021-41771-high
CVE-2022-41716-high
CVE-2022-2879-high
CVE-2022-30633-high
CVE-2022-41725-high
CVE-2023-29403-high
CVE-2024-34156-high
CVE-2022-29804-high
CVE-2022-41724-high
CVE-2022-28327-high
CVE-2022-24675-high
CVE-2022-30580-high
CVE-2022-41722-high
CVE-2022-30630-high
CVE-2022-41720-high
CVE-2023-45283-high
CVE-2021-33196-high
CVE-2022-24921-high
CVE-2022-30635-high
CVE-2023-24537-high
CVE-2022-30634-high
CVE-2022-41715-high
CVE-2024-24784-high
CVE-2023-29400-high
CVE-2021-39293-high
CVE-2022-23772-high
CVE-2022-27664-high
CVE-2023-24539-high
CVE-2022-30632-high
CVE-2024-34158-high
CVE-2022-2880-high
CVE-2023-24534-high
CVE-2023-24536-high
CVE-2022-28131-high

It is observed that several issues have been raised for the same requirement earlier. can someone please provide updates on this ?

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions