File tree 2 files changed +16
-1
lines changed
2 files changed +16
-1
lines changed Original file line number Diff line number Diff line change 33
33
- name : Install govulncheck
34
34
run : go install golang.org/x/vuln/cmd/govulncheck@latest
35
35
36
+ - name : Install jq
37
+ run : sudo apt-get update && sudo apt-get install -y jq
38
+
36
39
- name : Check for vulnerabilities
37
- run : $HOME/go/bin/govulncheck ./...
40
+ run : |
41
+ $HOME/go/bin/govulncheck -format json ./...|jq -r .finding.osv|grep -v null|sort -u >/tmp/vuln-cves
42
+ CVES="$(cat .govulncheck-ignorecves .govulncheck-ignorecves /tmp/vuln-cves|sort|uniq -u)"
43
+ if [ -n "$CVES" ]; then
44
+ echo >&2
45
+ echo "***" govulncheck CVES that are not ignored: $CVES "***" >&2
46
+ echo >&2
47
+ set -x
48
+ $HOME/go/bin/govulncheck -show verbose ./...
49
+ fi
38
50
39
51
- name : Build Source
40
52
run : go build ./...
Original file line number Diff line number Diff line change
1
+ GO-2025-3373
2
+ #comment one at first as a test
3
+ #GO-2025-3420
You can’t perform that action at this time.
0 commit comments