Movatterモバイル変換


[0]ホーム

URL:


Skip to content

Navigation Menu

Sign in
Appearance settings

Search code, repositories, users, issues, pull requests...

Provide feedback

We read every piece of feedback, and take your input very seriously.

Saved searches

Use saved searches to filter your results more quickly

Sign up
Appearance settings

fix(deps): Update module golang.org/x/net to v0.38.0 [SECURITY]#287

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to ourterms of service andprivacy statement. We’ll occasionally send you account related emails.

Already on GitHub?Sign in to your account

Open
renovate wants to merge1 commit intomain
base:main
Choose a base branch
Loading
fromrenovate/go-golang.org-x-net-vulnerability

Conversation

@renovate
Copy link
Contributor

@renovaterenovatebot commentedMar 12, 2025
edited
Loading

This PR contains the following updates:

PackageChangeAgeConfidence
golang.org/x/netv0.34.0 ->v0.38.0ageconfidence

GitHub Vulnerability Alerts

CVE-2025-22870

Matching of hosts against proxy patterns can improperly treat an IPv6 zone ID as a hostname component. For example, when the NO_PROXY environment variable is set to "*.example.com", a request to "[::1%25.example.com]:80` will incorrectly match and not be proxied.

CVE-2025-22872

The tokenizer incorrectly interprets tags with unquoted attribute values that end with a solidus character (/) as self-closing. When directly using Tokenizer, this can result in such tags incorrectly being marked as self-closing, and when using the Parse functions, this can result in content following such tags as being placed in the wrong scope during DOM construction, but only when tags are in foreign content (e.g. , , etc contexts).


Configuration

📅Schedule: Branch creation - "" (UTC), Automerge - At any time (no schedule defined).

🚦Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

🔕Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR was generated byMend Renovate. View therepository job log.

@renovaterenovatebot requested a review froma team as acode ownerMarch 12, 2025 22:27
@renovate
Copy link
ContributorAuthor

renovatebot commentedMar 12, 2025
edited
Loading

ℹ Artifact update notice

File name: modules/project_cleanup/function_source/go.mod

In order to perform the update(s) described in the table above, Renovate ran thego get command, which resulted in the following additional change(s):

  • 4 additional dependencies were updated
  • Thego directive was updated for compatibility reasons

Details:

PackageChange
go1.22.7 ->1.23.0
go (toolchain)1.23.6 ->1.24.9
golang.org/x/cryptov0.32.0 ->v0.36.0
golang.org/x/syncv0.10.0 ->v0.12.0
golang.org/x/sysv0.29.0 ->v0.31.0
golang.org/x/textv0.21.0 ->v0.23.0

@dpebot
Copy link
Collaborator

/gcbrun

@renovaterenovatebotforce-pushed therenovate/go-golang.org-x-net-vulnerability branch from6e87f11 toa603b18CompareApril 16, 2025 19:44
@renovaterenovatebot changed the titlefix(deps): Update module golang.org/x/net to v0.36.0 [SECURITY]fix(deps): Update module golang.org/x/net to v0.38.0 [SECURITY]Apr 16, 2025
@dpebot
Copy link
Collaborator

/gcbrun

@renovaterenovatebotforce-pushed therenovate/go-golang.org-x-net-vulnerability branch froma603b18 to1e489e6CompareAugust 10, 2025 14:43
@dpebot
Copy link
Collaborator

/gcbrun

@renovaterenovatebotforce-pushed therenovate/go-golang.org-x-net-vulnerability branch from1e489e6 tob38b97eCompareAugust 22, 2025 17:24
@dpebot
Copy link
Collaborator

/gcbrun

@renovaterenovatebotforce-pushed therenovate/go-golang.org-x-net-vulnerability branch fromb38b97e to1bc9eb5CompareAugust 22, 2025 17:37
@dpebot
Copy link
Collaborator

/gcbrun

@renovaterenovatebotforce-pushed therenovate/go-golang.org-x-net-vulnerability branch from1bc9eb5 to88ce5fdCompareSeptember 11, 2025 01:43
@dpebot
Copy link
Collaborator

/gcbrun

@renovaterenovatebotforce-pushed therenovate/go-golang.org-x-net-vulnerability branch from88ce5fd todcd09ceCompareSeptember 11, 2025 04:33
@dpebot
Copy link
Collaborator

/gcbrun

@renovaterenovatebotforce-pushed therenovate/go-golang.org-x-net-vulnerability branch fromdcd09ce to2363bd7CompareSeptember 11, 2025 10:51
@dpebot
Copy link
Collaborator

/gcbrun

@renovaterenovatebotforce-pushed therenovate/go-golang.org-x-net-vulnerability branch from2363bd7 toba45936CompareSeptember 11, 2025 13:33
@dpebot
Copy link
Collaborator

/gcbrun

@renovaterenovatebotforce-pushed therenovate/go-golang.org-x-net-vulnerability branch fromba45936 to4e79170CompareSeptember 11, 2025 20:59
@dpebot
Copy link
Collaborator

/gcbrun

@renovaterenovatebotforce-pushed therenovate/go-golang.org-x-net-vulnerability branch from4e79170 to0f1d308CompareSeptember 11, 2025 21:21
@dpebot
Copy link
Collaborator

/gcbrun

@renovaterenovatebotforce-pushed therenovate/go-golang.org-x-net-vulnerability branch from0f1d308 to32c3d81CompareSeptember 11, 2025 22:03
@dpebot
Copy link
Collaborator

/gcbrun

@renovaterenovatebotforce-pushed therenovate/go-golang.org-x-net-vulnerability branch from32c3d81 to38d2d0eCompareSeptember 11, 2025 22:22
@dpebot
Copy link
Collaborator

/gcbrun

@renovaterenovatebotforce-pushed therenovate/go-golang.org-x-net-vulnerability branch from38d2d0e tob38ee87CompareSeptember 12, 2025 04:32
@dpebot
Copy link
Collaborator

/gcbrun

@renovaterenovatebotforce-pushed therenovate/go-golang.org-x-net-vulnerability branch fromb38ee87 to5a1aa13CompareSeptember 15, 2025 17:01
@dpebot
Copy link
Collaborator

/gcbrun

@renovaterenovatebotforce-pushed therenovate/go-golang.org-x-net-vulnerability branch from5a1aa13 to5efddf5CompareSeptember 15, 2025 20:12
@dpebot
Copy link
Collaborator

/gcbrun

@renovaterenovatebotforce-pushed therenovate/go-golang.org-x-net-vulnerability branch from5efddf5 to24b5950CompareSeptember 16, 2025 20:09
@dpebot
Copy link
Collaborator

/gcbrun

@renovaterenovatebot changed the titlefix(deps): Update module golang.org/x/net to v0.38.0 [SECURITY]fix(deps): Update module golang.org/x/net to v0.38.0 [SECURITY] - autoclosedOct 2, 2025
@renovaterenovatebot closed thisOct 2, 2025
@renovaterenovatebot deleted the renovate/go-golang.org-x-net-vulnerability branchOctober 2, 2025 05:46
@renovaterenovatebot changed the titlefix(deps): Update module golang.org/x/net to v0.38.0 [SECURITY] - autoclosedfix(deps): Update module golang.org/x/net to v0.38.0 [SECURITY]Oct 2, 2025
@renovaterenovatebot reopened thisOct 2, 2025
@renovaterenovatebotforce-pushed therenovate/go-golang.org-x-net-vulnerability branch fromdfab821 to24b5950CompareOctober 2, 2025 08:34
@dpebot
Copy link
Collaborator

/gcbrun

@renovaterenovatebotforce-pushed therenovate/go-golang.org-x-net-vulnerability branch from24b5950 toa69d3f2CompareOctober 9, 2025 09:38
@dpebot
Copy link
Collaborator

/gcbrun

@renovaterenovatebotforce-pushed therenovate/go-golang.org-x-net-vulnerability branch froma69d3f2 to7d8d308CompareOctober 28, 2025 16:38
@dpebot
Copy link
Collaborator

/gcbrun

@renovaterenovatebotforce-pushed therenovate/go-golang.org-x-net-vulnerability branch from7d8d308 tobe4f4bbCompareOctober 28, 2025 18:24
@dpebot
Copy link
Collaborator

/gcbrun

Sign up for freeto join this conversation on GitHub. Already have an account?Sign in to comment

Reviewers

No reviews

Assignees

No one assigned

Projects

None yet

Milestone

No milestone

Development

Successfully merging this pull request may close these issues.

2 participants

@dpebot

[8]ページ先頭

©2009-2025 Movatter.jp