Skip to content

chore: Add new litmuschaos-server releases#737

Open
observability-noctua-bot wants to merge 1 commit intocanonical:mainfrom
observability-noctua-bot:update-1768696933
Open

chore: Add new litmuschaos-server releases#737
observability-noctua-bot wants to merge 1 commit intocanonical:mainfrom
observability-noctua-bot:update-1768696933

Conversation

@observability-noctua-bot
Copy link
Contributor

This is an automatic PR opened by the Observability Noctua bot.

@zhijie-yang
Copy link
Collaborator

@canonical/observability Please find the vulnerability report in the workflow run summary, and address it accordingly.

@PietroPasotti
Copy link
Contributor

@zhijie-yang where exactly? this looks like the tool crashed
image

@lucabello
Copy link
Collaborator

lucabello commented Jan 20, 2026

Vulnerability is here, specifically:

ID Target Severity Package
CVE-2025-66626 /usr/bin/server HIGH github.com/argoproj/argo-workflows/v3

@PietroPasotti
Copy link
Contributor

got it thanks, looks legit
image

@PietroPasotti
Copy link
Contributor

upstream is already working on a fix, unsure if they'll backport it to this tag litmuschaos/litmus#5394
if not, I guess that means we need to skip this version?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants