From f2634d40fa2d2e0d9a5a873ed2a65c0d50b01a04 Mon Sep 17 00:00:00 2001 From: Ludovic Fernandez Date: Sun, 29 May 2022 14:27:59 +0200 Subject: [PATCH] fix: codeQL scanning (#2882) --- .nancy-ignore | 9 +++++++++ 1 file changed, 9 insertions(+) diff --git a/.nancy-ignore b/.nancy-ignore index 08b33ca2192f..b0046f8dea36 100644 --- a/.nancy-ignore +++ b/.nancy-ignore @@ -8,3 +8,12 @@ CVE-2021-3121 # Skip for indirect dependency github.com/dgrijalva/jwt-go@3.2.0 CVE-2020-26160 + +# Skip for indirect dependencies: +# golang/github.com/hashicorp/consul/api@v1.12.0 +# golang/github.com/hashicorp/consul/sdk@v0.8.0 +CVE-2022-29153 +CVE-2022-24687 + +# Skip for indirect dependencies golang/github.com/valyala/fasthttp@v1.30.0 +CVE-2022-21221