Add kubectl and gomplate to deps.io
Summary
Currently, as a distribution team member, I need to regularly check new release of kubectl and gomplate, in order to address their CVE issues, (kubectl example, gomplate example). By adding them to deps.io, the CVE issues can be addressed quicker, and also team member no longer need to manually check new release.
Acceptance criteria
-
kubctl and gomplate are added and managed by deps.io -
CVE issues mentioned in Note
are resolved by the new automation-
gomplate: !1426 (merged) -
kubectl: !1431 (merged)
-
-
Stretch: review dependence management process, so any new ones can be included when they are introduced
Note
This is also to address following SLANear Breach and SLABreached CVE issues:
Kubectl
- https://gitlab.com/gitlab-org/build/CNG/-/issues/103+
- https://gitlab.com/gitlab-org/build/CNG/-/issues/94+
- https://gitlab.com/gitlab-org/build/CNG/-/issues/58+
- https://gitlab.com/gitlab-org/build/CNG/-/issues/310+
Gomplate
Edited by Clemens Beck