Skip to content
New issue

Have a question about this project? # for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “#”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? # to your account

Update github.com/valyala/fasthttp to version >=1.34.0 #1

Closed
zroubalik opened this issue Mar 22, 2022 · 1 comment · Fixed by #4
Closed

Update github.com/valyala/fasthttp to version >=1.34.0 #1

zroubalik opened this issue Mar 22, 2022 · 1 comment · Fixed by #4
Assignees

Comments

@zroubalik
Copy link

There is a CVE on fasthttp: GHSA-fx95-883v-4q4h, github.com/valyala/fasthttp version >=1.34.0 should fix that. Please update this dependency so we can mitigate this in kedacore/keda#2775

Thanks

@JorTurFer
Copy link
Contributor

JorTurFer commented Jul 15, 2022

github.com/fasthttp/router@v1.4.4 uses github.com/valyala/fasthttp@v1.31.0 as dependency, could you bump it too?
I have crated a PR with it #6

# for free to join this conversation on GitHub. Already have an account? # to comment
Labels
None yet
Projects
None yet
Development

Successfully merging a pull request may close this issue.

3 participants