You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
reacted with thumbs up emoji reacted with thumbs down emoji reacted with laugh emoji reacted with hooray emoji reacted with confused emoji reacted with heart emoji reacted with rocket emoji reacted with eyes emoji
Uh oh!
There was an error while loading. Please reload this page.
-
We’ve identified several Go security vulnerabilities that affect the current kubernetes-sigs/external-dns v0.20.0 image and dependencies:
🔐 Security Advisories
Go (golang.org/x/crypto) Security Update – GHSA-f6x5-jh6r-wrfv
Go (golang.org/x/crypto) Security Update – GHSA-j5w8-q4qc-rx2x
Go (stdlib) Security Update – GO-2025-4155
Go (stdlib) Security Update – GO-2025-4175
These advisories include fixes for issues in:
golang.org/x/crypto (SSH message size validation and GSSAPI parsing limitations), and
Go standard library (crypto/x509) certificate handling and memory usage.
Could you please:
Update dependencies and build environment to include the above security fixes
Publish a new release of external-dns with those fixes included
Beta Was this translation helpful? Give feedback.
All reactions