🧱 Update dependabot commit messages (#711) #110
Annotations
2 errors and 9 warnings
|
Check dependency licenses:
clang/go.mod#L0
Transitive dependency: 'github.com/juju/loggo' ('v0.0.0-20190526231331-6e530bcce5d8') 'LGPL-3.0-only' license is in the prohibited licenses list with project license 'Apache-2.0'
|
|
Hardcoded passwords:
.github/workflows/mirror.yml#L30
Hardcoded password detected by "Password in URL" default rule
|
|
Check dependency licenses:
clang/go.mod#L0
Transitive dependency: 'github.com/bmizerany/assert' ('v0.0.0-20160611221934-b7ed37b82869') licenses cannot be recognized
|
|
Check dependency licenses:
clang/go.mod#L0
Transitive dependency: 'github.com/juju/loggo' ('v0.0.0-20190526231331-6e530bcce5d8') 'LGPL-3.0-linking-exception' is not in the allowed or the prohibited licenses lists with project license 'Apache-2.0'
|
|
Vulnerable declared dependency:
cmd/go.mod#L119
Dependency go:golang.org/x/crypto:v0.41.0 is vulnerable , safe version v0.44.1-0.20251119192837-e79546e28b85
* [CVE-2025-47913](https://www.mend.io/vulnerability-database/CVE-2025-47913?utm_source=Jetbrains) 7.5 Insufficient Information
* [CVE-2025-58181](https://www.mend.io/vulnerability-database/CVE-2025-58181?utm_source=Jetbrains) 5.3 Insufficient Information
* [CVE-2025-47914](https://www.mend.io/vulnerability-database/CVE-2025-47914?utm_source=Jetbrains) 5.3 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
core/go.mod#L104
Dependency go:golang.org/x/crypto:v0.41.0 is vulnerable , safe version v0.44.1-0.20251119192837-e79546e28b85
* [CVE-2025-47913](https://www.mend.io/vulnerability-database/CVE-2025-47913?utm_source=Jetbrains) 7.5 Insufficient Information
* [CVE-2025-58181](https://www.mend.io/vulnerability-database/CVE-2025-58181?utm_source=Jetbrains) 5.3 Insufficient Information
* [CVE-2025-47914](https://www.mend.io/vulnerability-database/CVE-2025-47914?utm_source=Jetbrains) 5.3 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
cli/go.mod#L120
Dependency go:golang.org/x/crypto:v0.41.0 is vulnerable , safe version v0.44.1-0.20251119192837-e79546e28b85
* [CVE-2025-47913](https://www.mend.io/vulnerability-database/CVE-2025-47913?utm_source=Jetbrains) 7.5 Insufficient Information
* [CVE-2025-58181](https://www.mend.io/vulnerability-database/CVE-2025-58181?utm_source=Jetbrains) 5.3 Insufficient Information
* [CVE-2025-47914](https://www.mend.io/vulnerability-database/CVE-2025-47914?utm_source=Jetbrains) 5.3 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
clang/go.mod#L122
Dependency go:golang.org/x/crypto:v0.41.0 is vulnerable , safe version v0.44.1-0.20251119192837-e79546e28b85
* [CVE-2025-47913](https://www.mend.io/vulnerability-database/CVE-2025-47913?utm_source=Jetbrains) 7.5 Insufficient Information
* [CVE-2025-58181](https://www.mend.io/vulnerability-database/CVE-2025-58181?utm_source=Jetbrains) 5.3 Insufficient Information
* [CVE-2025-47914](https://www.mend.io/vulnerability-database/CVE-2025-47914?utm_source=Jetbrains) 5.3 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
tooling/go.mod#L40
Dependency go:golang.org/x/crypto:v0.41.0 is vulnerable , safe version v0.44.1-0.20251119192837-e79546e28b85
* [CVE-2025-47913](https://www.mend.io/vulnerability-database/CVE-2025-47913?utm_source=Jetbrains) 7.5 Insufficient Information
* [CVE-2025-58181](https://www.mend.io/vulnerability-database/CVE-2025-58181?utm_source=Jetbrains) 5.3 Insufficient Information
* [CVE-2025-47914](https://www.mend.io/vulnerability-database/CVE-2025-47914?utm_source=Jetbrains) 5.3 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
platform/go.mod#L108
Dependency go:golang.org/x/crypto:v0.41.0 is vulnerable , safe version v0.44.1-0.20251119192837-e79546e28b85
* [CVE-2025-47913](https://www.mend.io/vulnerability-database/CVE-2025-47913?utm_source=Jetbrains) 7.5 Insufficient Information
* [CVE-2025-58181](https://www.mend.io/vulnerability-database/CVE-2025-58181?utm_source=Jetbrains) 5.3 Insufficient Information
* [CVE-2025-47914](https://www.mend.io/vulnerability-database/CVE-2025-47914?utm_source=Jetbrains) 5.3 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
|
Vulnerable declared dependency:
cdnet/go.mod#L119
Dependency go:golang.org/x/crypto:v0.41.0 is vulnerable , safe version v0.44.1-0.20251119192837-e79546e28b85
* [CVE-2025-47913](https://www.mend.io/vulnerability-database/CVE-2025-47913?utm_source=Jetbrains) 7.5 Insufficient Information
* [CVE-2025-58181](https://www.mend.io/vulnerability-database/CVE-2025-58181?utm_source=Jetbrains) 5.3 Insufficient Information
* [CVE-2025-47914](https://www.mend.io/vulnerability-database/CVE-2025-47914?utm_source=Jetbrains) 5.3 Insufficient Information
Results powered by [Mend.io](https://www.mend.io/jetbrains-lp/?utm_source=JetBrains)
|
Artifacts
Produced during runtime
| Name | Size | Digest | |
|---|---|---|---|
|
JetBrains~qodana-cli~WJANEY.dockerbuild
|
122 KB |
sha256:624ad50403e6851e456202a485760f29a34c7a0816f4b09b7027bcd4f09a13da
|
|