Skip to content

cves: bump golang.org/x/crypto to v0.56.0 - #22

Open
tetrate-ci wants to merge 1 commit into
release-v0.18.1from
cve/bump-xcrypto-v0.56.0
Open

cves: bump golang.org/x/crypto to v0.56.0#22
tetrate-ci wants to merge 1 commit into
release-v0.18.1from
cve/bump-xcrypto-v0.56.0

Conversation

@tetrate-ci

Copy link
Copy Markdown

CVEs addressed

Severity CVE Component Fix
MEDIUM CVE-2026-56855 golang.org/x/crypto v0.55.0 → v0.56.0
MEDIUM CVE-2026-78662 golang.org/x/crypto v0.55.0 → v0.56.0

Related to tetrateio/tetrate#34331
Related to tetrateio/tetrate#34336

Bumps golang.org/x/crypto to v0.56.0 and updates VERSION to 0.18.1-tetrate-v16.

Bumps golang.org/x/crypto v0.55.0 → v0.56.0 to fix:
- CVE-2026-56855 (MEDIUM)
- CVE-2026-78662 (MEDIUM)

Updates VERSION to 0.18.1-tetrate-v16.
@tetrate-ci

Copy link
Copy Markdown
Author

Friendly ping — CI is green ✅. This PR bumps golang.org/x/crypto from v0.55.0 → v0.56.0 to fix CVE-2026-56855 and CVE-2026-78662. Could someone please review and approve? Thanks!

@tetrate-ci

Copy link
Copy Markdown
Author

CI is all green ✅. This PR fixes CVE-2026-56855 (golang.org/x/crypto 0.55.0 → 0.56.0). Could you please review and approve? This is blocking the monorepo security PR tetrateio/tetrate#34673.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant