go.mod: Update vulnerable dependencies (#20388)
This change updates vulnerable dependencies with a direct fix path. Updated: * github.com/prometheus/prometheus@v0.311.3 - Direct dependency addressing https://pkg.go.dev/vuln/GO-2026-5710 and https://pkg.go.dev/vuln/GO-2026-5662 * github.com/go-openapi/swag@v0.27.0 - Needed to fix mutal dependency on github.com/go-openapi/testify after prometheus update * github.com/go-git/go-git/v5@v5.19.1 - Addresses https://pkg.go.dev/vuln/GO-2026-5496 * helm.sh/helm/v3@v3.21.1 - Root update to address most containerd CVEs * github.com/containerd/containerd@v1.7.33 - Addresses remaining container CVEs, in total: https://pkg.go.dev/vuln/GO-2026-5758 https://pkg.go.dev/vuln/GO-2026-5475 https://pkg.go.dev/vuln/GO-2026-5378 Updates #cleanup Signed-off-by: Mike Jensen <mikej@tailscale.com>
This commit is contained in:
+2
-2
@@ -4,7 +4,7 @@
|
||||
"sri": "sha256-TwIaPmGVHO9ZwdaO/jDStgWGQtKa4smS3er1i5aTNTw="
|
||||
},
|
||||
"vendor": {
|
||||
"goModSum": "sha256-1C3GH7D6NixMWoopaIIPm/LSkRB7JQJZOhWJhjyJnMc=",
|
||||
"sri": "sha256-sWU4abv9Oz7P21ivL5zgdYNGiJSXamnQR0VmRGKoIrI="
|
||||
"goModSum": "sha256-oT5vCkW7a28PnVTeD8zfYbPe54uGvvfpiicrZFx8p+Y=",
|
||||
"sri": "sha256-PnzuJF0Rz2gG7Ki9KDOlHi2dhGysqLZTKjIaGWGNPjk="
|
||||
}
|
||||
}
|
||||
|
||||
Reference in New Issue
Block a user