From 6c1d16e8c21a664f4179d3c49ee78ef0e496eb8f Mon Sep 17 00:00:00 2001 From: Chun-Hung Tseng <henrybear327@gmail.com> Date: Thu, 4 Apr 2024 10:27:26 +0200 Subject: [PATCH] Bump go toolchain version to address CVE-2023-45288 Changes: - Bump toolchain version to 1.22.2 due to CVE-2023-45288 Reference: - PR #17703 Signed-off-by: Chun-Hung Tseng <henrybear327@gmail.com> --- .go-version | 2 +- go.mod | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/.go-version b/.go-version index 6245beecd..6fee2fedb 100644 --- a/.go-version +++ b/.go-version @@ -1 +1 @@ -1.22.1 +1.22.2 diff --git a/go.mod b/go.mod index 09ada5727..a81c4d9f6 100644 --- a/go.mod +++ b/go.mod @@ -2,7 +2,7 @@ module go.etcd.io/bbolt go 1.22 -toolchain go1.22.1 +toolchain go1.22.2 require ( github.com/spf13/cobra v1.8.0