From 1dbc8122ee779990f1d6e76f3d4e14d0453fc5f9 Mon Sep 17 00:00:00 2001 From: rohitagg2020 <55523204+rohitagg2020@users.noreply.github.com> Date: Tue, 14 May 2024 15:20:28 +0530 Subject: [PATCH] [0.57.x] Fixing CVE (#953) * [0.57.x] Fixing CVE Signed-off-by: Rohit Aggarwal * Bump go version to 1.22.3 in v0.57.x line Signed-off-by: Rohit Aggarwal --------- Signed-off-by: Rohit Aggarwal Co-authored-by: Rohit Aggarwal --- .github/workflows/golangci-lint.yml | 2 +- .github/workflows/release.yml | 2 +- .github/workflows/test-gh-k8s-1.16.yml | 2 +- .github/workflows/test-gh.yml | 2 +- .github/workflows/trivy-scan.yml | 2 +- go.mod | 2 ++ 6 files changed, 7 insertions(+), 5 deletions(-) diff --git a/.github/workflows/golangci-lint.yml b/.github/workflows/golangci-lint.yml index f90c0914d..f92a54eb9 100644 --- a/.github/workflows/golangci-lint.yml +++ b/.github/workflows/golangci-lint.yml @@ -15,7 +15,7 @@ jobs: - name: Set up Go uses: actions/setup-go@v2 with: - go-version: 1.22.2 + go-version: 1.22.3 - uses: actions/checkout@v2 with: fetch-depth: '0' diff --git a/.github/workflows/release.yml b/.github/workflows/release.yml index daeb59572..3b7469d2c 100644 --- a/.github/workflows/release.yml +++ b/.github/workflows/release.yml @@ -21,7 +21,7 @@ jobs: - name: Set up Go uses: actions/setup-go@v2 with: - go-version: 1.22.2 + go-version: 1.22.3 - name: Retrieve version run: | echo "TAG_NAME=$(echo ${{ github.ref }} | grep -Eo 'v[0-9].*')" >> $GITHUB_OUTPUT diff --git a/.github/workflows/test-gh-k8s-1.16.yml b/.github/workflows/test-gh-k8s-1.16.yml index 759a2b5c8..5e3d7cba8 100644 --- a/.github/workflows/test-gh-k8s-1.16.yml +++ b/.github/workflows/test-gh-k8s-1.16.yml @@ -13,7 +13,7 @@ jobs: - name: Set up Go uses: actions/setup-go@v2 with: - go-version: 1.22.2 + go-version: 1.22.3 - name: Check out code into the Go module directory uses: actions/checkout@v2 with: diff --git a/.github/workflows/test-gh.yml b/.github/workflows/test-gh.yml index 76326d3a4..90e7a880d 100644 --- a/.github/workflows/test-gh.yml +++ b/.github/workflows/test-gh.yml @@ -13,7 +13,7 @@ jobs: - name: Set up Go uses: actions/setup-go@v2 with: - go-version: 1.22.2 + go-version: 1.22.3 - name: Check out code into the Go module directory uses: actions/checkout@v2 with: diff --git a/.github/workflows/trivy-scan.yml b/.github/workflows/trivy-scan.yml index d11e5c1ee..7579048eb 100644 --- a/.github/workflows/trivy-scan.yml +++ b/.github/workflows/trivy-scan.yml @@ -10,7 +10,7 @@ jobs: with: repo: carvel-dev/kapp tool: kapp - goVersion: 1.22.2 + goVersion: 1.22.3 secrets: githubToken: ${{ secrets.GITHUB_TOKEN }} slackWebhookURL: ${{ secrets.SLACK_WEBHOOK_URL }} diff --git a/go.mod b/go.mod index 669577409..5b7b47136 100644 --- a/go.mod +++ b/go.mod @@ -2,6 +2,8 @@ module github.com/vmware-tanzu/carvel-kapp go 1.22 +toolchain go1.22.3 + require ( github.com/cppforlife/cobrautil v0.0.0-20221130162803-acdfead391ef github.com/cppforlife/color v1.9.1-0.20200716202919-6706ac40b835