Skip to content

Conversation

theboringstuff
Copy link
Collaborator

@theboringstuff theboringstuff commented Jun 26, 2025

Description

Need to update helm to fix vulnerability https://nvd.nist.gov/vuln/detail/CVE-2025-22871

Our helm version is affected, because it uses go 1.23.7.

Solution

  • Update to helm v3.18.3, which uses go 1.24 where this vulnerability is fixed

Copy link

github-actions bot commented Jun 26, 2025

All contributors have signed the CLA ✍️ ✅
Posted by the CLA Assistant Lite bot.

@theboringstuff
Copy link
Collaborator Author

I have read the CLA Document and I hereby sign the CLA

@theboringstuff theboringstuff changed the title fix vulnerabilities Helm vulnerability fix Jun 26, 2025
@theboringstuff theboringstuff marked this pull request as ready for review June 26, 2025 10:43
@DmitriiRabenok DmitriiRabenok merged commit af1505f into main Jun 26, 2025
37 checks passed
@github-actions github-actions bot locked and limited conversation to collaborators Jun 26, 2025
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants