Skip to content

Commit b8f257d

Browse files
authored
Upgrade jwt to fix CVE-2024-51744 (#206)
Signed-off-by: Sameer Shaikh <sameer.shaikh@ibm.com>
1 parent 1aec869 commit b8f257d

File tree

4 files changed

+24
-25
lines changed

4 files changed

+24
-25
lines changed

go.mod

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -51,7 +51,7 @@ require (
5151
github.com/gofrs/uuid v4.4.0+incompatible // indirect
5252
github.com/gogo/protobuf v1.3.2 // indirect
5353
github.com/golang-jwt/jwt v3.2.2+incompatible // indirect
54-
github.com/golang-jwt/jwt/v4 v4.5.0 // indirect
54+
github.com/golang-jwt/jwt/v4 v4.5.1 // indirect
5555
github.com/golang/groupcache v0.0.0-20210331224755-41bb18bfe9da // indirect
5656
github.com/golang/protobuf v1.5.4 // indirect
5757
github.com/google/gnostic-models v0.6.8 // indirect

go.sum

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -87,8 +87,8 @@ github.com/gogo/protobuf v1.3.2 h1:Ov1cvc58UF3b5XjBnZv7+opcTcQFZebYjWzi34vdm4Q=
8787
github.com/gogo/protobuf v1.3.2/go.mod h1:P1XiOD3dCwIKUDQYPy72D8LYyHL2YPYrpS2s69NZV8Q=
8888
github.com/golang-jwt/jwt v3.2.2+incompatible h1:IfV12K8xAKAnZqdXVzCZ+TOjboZ2keLg81eXfW3O+oY=
8989
github.com/golang-jwt/jwt v3.2.2+incompatible/go.mod h1:8pz2t5EyA70fFQQSrl6XZXzqecmYZeUEB8OUGHkxJ+I=
90-
github.com/golang-jwt/jwt/v4 v4.5.0 h1:7cYmW1XlMY7h7ii7UhUyChSgS5wUJEnm9uZVTGqOWzg=
91-
github.com/golang-jwt/jwt/v4 v4.5.0/go.mod h1:m21LjoU+eqJr34lmDMbreY2eSTRJ1cv77w39/MY0Ch0=
90+
github.com/golang-jwt/jwt/v4 v4.5.1 h1:JdqV9zKUdtaa9gdPlywC3aeoEsR681PlKC+4F5gQgeo=
91+
github.com/golang-jwt/jwt/v4 v4.5.1/go.mod h1:m21LjoU+eqJr34lmDMbreY2eSTRJ1cv77w39/MY0Ch0=
9292
github.com/golang/glog v0.0.0-20160126235308-23def4e6c14b/go.mod h1:SBH7ygxi8pfUlaOkMMuAQtPIUF8ecWP5IEl/CR7VP2Q=
9393
github.com/golang/glog v1.2.1 h1:OptwRhECazUx5ix5TTWC3EZhsZEHWcYWY4FQHTIubm4=
9494
github.com/golang/glog v1.2.1/go.mod h1:6AhwSGph0fcJtXVM/PEHPqZlFeoLxhs7/t5UDAwmO+w=

vendor/github.com/golang-jwt/jwt/v4/parser.go

Lines changed: 20 additions & 21 deletions
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.

vendor/modules.txt

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -135,7 +135,7 @@ github.com/gogo/protobuf/sortkeys
135135
# github.com/golang-jwt/jwt v3.2.2+incompatible
136136
## explicit
137137
github.com/golang-jwt/jwt
138-
# github.com/golang-jwt/jwt/v4 v4.5.0
138+
# github.com/golang-jwt/jwt/v4 v4.5.1
139139
## explicit; go 1.16
140140
github.com/golang-jwt/jwt/v4
141141
# github.com/golang/glog v1.2.1

0 commit comments

Comments
 (0)