Skip to content

Update hairyhenderson/gomplate from 3.11.6 to 3.11.7

Ghost User requested to merge deps/b90d90e-1333eca into master

The following dependencies have been updated by deps:

  • hairyhenderson/gomplate from 3.11.6 to 3.11.7

Release Notes

[3.11.x] Update go-git dependency by @hairyhenderson

Back-porting #1962, to the 3.11.x branch, for GHSA-449p-3h89-pw88 (CVE-2023-49569). This is purely to quiet scanners, gomplate is not vulnerable since it only uses an in-memory filesystem when interacting with remote git servers.

https://github.com/hairyhenderson/gomplate/pull/1968

Relates https://gitlab.com/gitlab-org/build/CNG/-/issues/1895

Edited by Clemens Beck

Merge request reports