Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

github.com/emicklei/go-restful: CVE-2022-1996 #2486

Closed
github-actions bot opened this issue Jul 10, 2022 · 4 comments · Fixed by #2499
Closed

github.com/emicklei/go-restful: CVE-2022-1996 #2486

github-actions bot opened this issue Jul 10, 2022 · 4 comments · Fixed by #2499
Assignees
Labels
kind/security Categorizes issue or PR as related to Trivy's own security or internal vulnerabilities.

Comments

@github-actions github-actions bot added the kind/security Categorizes issue or PR as related to Trivy's own security or internal vulnerabilities. label Jul 10, 2022
@afdesk
Copy link
Contributor

afdesk commented Jul 10, 2022

just for information:

$ go mod why github.com/emicklei/go-restful
# github.com/emicklei/go-restful
github.com/aquasecurity/trivy/pkg/k8s/commands
github.com/aquasecurity/trivy-kubernetes/pkg/k8s
k8s.io/cli-runtime/pkg/genericclioptions
k8s.io/client-go/discovery
k8s.io/client-go/openapi
k8s.io/kube-openapi/pkg/handler3
k8s.io/kube-openapi/pkg/common
github.com/emicklei/go-restful

@knqyf263
Copy link
Collaborator

@DmitriyLewen Could you look into it?

@jadechip
Copy link

Has this been fixed in version 0.30.0?

@knqyf263
Copy link
Collaborator

We're waiting for this PR.
aquasecurity/trivy-kubernetes#57

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
kind/security Categorizes issue or PR as related to Trivy's own security or internal vulnerabilities.
Projects
None yet
Development

Successfully merging a pull request may close this issue.

4 participants