Skip to content

Request: New Release with Dependabot Security Updates (Vulnerability Remediation) #207

@lgants

Description

@lgants

Summary

Several Dependabot pull requests have recently been merged that resolve major and critical-severity vulnerabilities across both the Go backend and frontend dependencies of the Snowflake Grafana Datasource plugin. A new release should be cut so that these fixes reach users who consume the built gpx_snowflake-datasource plugin artifact.

Request

Would you be able to publish a new release that includes the recent merged Dependabot updates (and any other security-related dependency changes currently on master)?

Additional Context

Some of the resolved vulnerabilities are rated Critical (CVSS 9.1+) and appear in CISA's Known Exploited Vulnerabilities catalog. Organizations running this plugin in production environments with compliance requirements will need to prioritize upgrading.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions