Skip to content

Commit d5c29b8

Browse files
authored
Merge pull request #5449 from snyk/fix/CVE-2024-6257
fix: upgrade go-getter to 1.7.5
2 parents b50372a + 8ab4433 commit d5c29b8

File tree

5 files changed

+114
-111
lines changed

5 files changed

+114
-111
lines changed

cliv2/go.mod

+28-27
Original file line numberDiff line numberDiff line change
@@ -27,10 +27,12 @@ require (
2727
)
2828

2929
require (
30-
cloud.google.com/go v0.112.0 // indirect
31-
cloud.google.com/go/compute/metadata v0.3.0 // indirect
32-
cloud.google.com/go/iam v1.1.6 // indirect
33-
cloud.google.com/go/storage v1.36.0 // indirect
30+
cloud.google.com/go v0.115.1 // indirect
31+
cloud.google.com/go/auth v0.9.1 // indirect
32+
cloud.google.com/go/auth/oauth2adapt v0.2.4 // indirect
33+
cloud.google.com/go/compute/metadata v0.5.0 // indirect
34+
cloud.google.com/go/iam v1.2.0 // indirect
35+
cloud.google.com/go/storage v1.43.0 // indirect
3436
dario.cat/mergo v1.0.1 // indirect
3537
github.com/Microsoft/go-winio v0.6.2 // indirect
3638
github.com/OneOfOne/xxhash v1.2.8 // indirect
@@ -45,7 +47,7 @@ require (
4547
github.com/apparentlymart/go-textseg/v13 v13.0.0 // indirect
4648
github.com/apparentlymart/go-versions v1.0.1 // indirect
4749
github.com/atotto/clipboard v0.1.4 // indirect
48-
github.com/aws/aws-sdk-go v1.45.6 // indirect
50+
github.com/aws/aws-sdk-go v1.55.5 // indirect
4951
github.com/aymanbagabas/go-osc52/v2 v2.0.1 // indirect
5052
github.com/bgentry/go-netrc v0.0.0-20140422174119-9fd32a8b3d3d // indirect
5153
github.com/bmatcuk/doublestar v1.3.4 // indirect
@@ -75,29 +77,28 @@ require (
7577
github.com/go-git/gcfg v1.5.1-0.20230307220236-3a3c6141e376 // indirect
7678
github.com/go-git/go-billy/v5 v5.5.0 // indirect
7779
github.com/go-git/go-git/v5 v5.12.0 // indirect
78-
github.com/go-logr/logr v1.4.1 // indirect
80+
github.com/go-logr/logr v1.4.2 // indirect
7981
github.com/go-logr/stdr v1.2.2 // indirect
8082
github.com/go-ole/go-ole v1.3.0 // indirect
8183
github.com/go-openapi/jsonpointer v0.21.0 // indirect
8284
github.com/go-openapi/swag v0.23.0 // indirect
8385
github.com/gobwas/glob v0.2.3 // indirect
8486
github.com/golang/groupcache v0.0.0-20210331224755-41bb18bfe9da // indirect
85-
github.com/golang/protobuf v1.5.4 // indirect
8687
github.com/gomarkdown/markdown v0.0.0-20240730141124-034f12af3bf6 // indirect
8788
github.com/google/go-cmp v0.6.0 // indirect
8889
github.com/google/go-querystring v1.1.0 // indirect
89-
github.com/google/s2a-go v0.1.7 // indirect
90-
github.com/googleapis/enterprise-certificate-proxy v0.3.2 // indirect
91-
github.com/googleapis/gax-go/v2 v2.12.0 // indirect
90+
github.com/google/s2a-go v0.1.8 // indirect
91+
github.com/googleapis/enterprise-certificate-proxy v0.3.3 // indirect
92+
github.com/googleapis/gax-go/v2 v2.13.0 // indirect
9293
github.com/hashicorp/errwrap v1.1.0 // indirect
9394
github.com/hashicorp/go-cleanhttp v0.5.2 // indirect
94-
github.com/hashicorp/go-getter v1.7.4 // indirect
95+
github.com/hashicorp/go-getter v1.7.5 // indirect
9596
github.com/hashicorp/go-hclog v1.5.0 // indirect
9697
github.com/hashicorp/go-multierror v1.1.1 // indirect
9798
github.com/hashicorp/go-retryablehttp v0.7.1 // indirect
9899
github.com/hashicorp/go-safetemp v1.0.0 // indirect
99100
github.com/hashicorp/go-uuid v1.0.3 // indirect
100-
github.com/hashicorp/go-version v1.6.0 // indirect
101+
github.com/hashicorp/go-version v1.7.0 // indirect
101102
github.com/hashicorp/hcl v1.0.0 // indirect
102103
github.com/hashicorp/hcl/v2 v2.16.0 // indirect
103104
github.com/hashicorp/logutils v1.0.0 // indirect
@@ -116,7 +117,7 @@ require (
116117
github.com/jmespath/go-jmespath v0.4.0 // indirect
117118
github.com/josharian/intern v1.0.0 // indirect
118119
github.com/kevinburke/ssh_config v1.2.0 // indirect
119-
github.com/klauspost/compress v1.17.7 // indirect
120+
github.com/klauspost/compress v1.17.9 // indirect
120121
github.com/lucasb-eyer/go-colorful v1.2.0 // indirect
121122
github.com/magiconair/properties v1.8.7 // indirect
122123
github.com/mailru/easyjson v0.7.7 // indirect
@@ -167,7 +168,7 @@ require (
167168
github.com/tchap/go-patricia/v2 v2.3.1 // indirect
168169
github.com/tklauser/go-sysconf v0.3.14 // indirect
169170
github.com/tklauser/numcpus v0.8.0 // indirect
170-
github.com/ulikunitz/xz v0.5.11 // indirect
171+
github.com/ulikunitz/xz v0.5.12 // indirect
171172
github.com/vincent-petithory/dataurl v1.0.0 // indirect
172173
github.com/xanzy/ssh-agent v0.3.3 // indirect
173174
github.com/xeipuuv/gojsonpointer v0.0.0-20190905194746-02993c407bfb // indirect
@@ -180,29 +181,29 @@ require (
180181
github.com/zclconf/go-cty-yaml v1.0.2 // indirect
181182
go.lsp.dev/uri v0.3.0 // indirect
182183
go.opencensus.io v0.24.0 // indirect
183-
go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc v0.47.0 // indirect
184-
go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp v0.47.0 // indirect
185-
go.opentelemetry.io/otel v1.22.0 // indirect
186-
go.opentelemetry.io/otel/metric v1.22.0 // indirect
187-
go.opentelemetry.io/otel/trace v1.22.0 // indirect
184+
go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc v0.54.0 // indirect
185+
go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp v0.54.0 // indirect
186+
go.opentelemetry.io/otel v1.29.0 // indirect
187+
go.opentelemetry.io/otel/metric v1.29.0 // indirect
188+
go.opentelemetry.io/otel/trace v1.29.0 // indirect
188189
go.uber.org/multierr v1.11.0 // indirect
189190
golang.org/x/crypto v0.26.0 // indirect
190191
golang.org/x/exp v0.0.0-20240808152545-0cdaa3abc0fa // indirect
191192
golang.org/x/mod v0.20.0 // indirect
192193
golang.org/x/net v0.28.0 // indirect
193194
golang.org/x/oauth2 v0.22.0 // indirect
194195
golang.org/x/sync v0.8.0 // indirect
195-
golang.org/x/sys v0.23.0 // indirect
196+
golang.org/x/sys v0.24.0 // indirect
196197
golang.org/x/term v0.23.0 // indirect
197198
golang.org/x/text v0.17.0 // indirect
198-
golang.org/x/time v0.5.0 // indirect
199+
golang.org/x/time v0.6.0 // indirect
199200
golang.org/x/tools v0.24.0 // indirect
200-
google.golang.org/api v0.160.0 // indirect
201-
google.golang.org/genproto v0.0.0-20240227224415-6ceb2ff114de // indirect
202-
google.golang.org/genproto/googleapis/api v0.0.0-20240227224415-6ceb2ff114de // indirect
203-
google.golang.org/genproto/googleapis/rpc v0.0.0-20240227224415-6ceb2ff114de // indirect
204-
google.golang.org/grpc v1.63.2 // indirect
205-
google.golang.org/protobuf v1.33.0 // indirect
201+
google.golang.org/api v0.195.0 // indirect
202+
google.golang.org/genproto v0.0.0-20240827150818-7e3bb234dfed // indirect
203+
google.golang.org/genproto/googleapis/api v0.0.0-20240827150818-7e3bb234dfed // indirect
204+
google.golang.org/genproto/googleapis/rpc v0.0.0-20240827150818-7e3bb234dfed // indirect
205+
google.golang.org/grpc v1.66.0 // indirect
206+
google.golang.org/protobuf v1.34.2 // indirect
206207
gopkg.in/ini.v1 v1.67.0 // indirect
207208
gopkg.in/warnings.v0 v0.1.2 // indirect
208209
gopkg.in/yaml.v2 v2.4.0 // indirect

0 commit comments

Comments
 (0)