Skip to content

Package upgrade to resolve CVEs(CVE-2025-61729 & CVE-2025-47913) #2551

@dboeser

Description

@dboeser

We need a couple of HIGH vulnerabilities remediated through some upgrades. Specifically the following:

  • golang/golang.org/x/crypto@0.41.0 --> 0.45.0+
  • golang/stdlib@1.25.4 --> 1.25.5+
    • I think this is coming from the version being used to build the image, here

We are in our final crunch for FedRAMP, so any help with this would be greatly appreciated.

Metadata

Metadata

Assignees

Labels

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions