Skip to content

Wiz: Upgrade multiple dependencies (resolves 22 findings) - #21

Open
wiz-betterup[bot] wants to merge 1 commit into
mainfrom
wiz-remediation-2025-12-10-7ede84d2b474
Open

Wiz: Upgrade multiple dependencies (resolves 22 findings)#21
wiz-betterup[bot] wants to merge 1 commit into
mainfrom
wiz-remediation-2025-12-10-7ede84d2b474

Conversation

@wiz-betterup

Copy link
Copy Markdown

Wiz Remediation Pull Request Banner

Wiz has created this PR to fix 22 findings detected in this project

Changes were made to the following file(s):

  • /go.mod

Vulnerabilities:

ComponentFindingsLocations
github.com/containerd/containerd
1.7.0 → 1.7.29
HighCVE-2024-25621
HighCVE-2024-40635
MediumGHSA-7ww5-4wqc-m92c
MediumCVE-2025-64329
/go.mod
github.com/docker/docker
20.10.24+incompatible → 28.0.0
HighCVE-2024-24557
HighCVE-2024-29018
MediumCVE-2025-54410
MediumGHSA-jq35-85cj-fj4p
/go.mod
golang.org/x/crypto
0.5.0 → 0.45.0
CriticalCVE-2024-45337
HighCVE-2025-22869
MediumCVE-2025-58181
MediumCVE-2023-48795
MediumCVE-2025-47914
/go.mod
golang.org/x/net
0.8.0 → 0.38.0
HighCVE-2023-44487
HighCVE-2023-45288
HighCVE-2023-39325
MediumCVE-2025-22870
MediumCVE-2023-3978
MediumCVE-2025-22872
/go.mod
golang.org/x/oauth2
0.4.0 → 0.27.0
HighCVE-2025-22868/go.mod
google.golang.org/grpc
1.53.0 → 1.56.3
HighGHSA-m425-mq94-257g/go.mod
google.golang.org/protobuf
1.28.1 → 1.33.0
HighCVE-2024-24786/go.mod

To detect these findings earlier in the dev lifecycle, try using Wiz Code VS Code Extension.

Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants