chore: update module golang.org/x/oauth2 to v0.27.0 [security] - autoclosed - #93
Closed
renovate[bot] wants to merge 1 commit into
Closed
chore: update module golang.org/x/oauth2 to v0.27.0 [security] - autoclosed#93renovate[bot] wants to merge 1 commit into
renovate[bot] wants to merge 1 commit into
Conversation
✅ Deploy Preview for reearth-classic canceled.
|
renovate
Bot
force-pushed
the
renovate/go-golang.org-x-oauth2-vulnerability
branch
from
September 26, 2025 00:04
a2511e0 to
46da9ea
Compare
renovate
Bot
force-pushed
the
renovate/go-golang.org-x-oauth2-vulnerability
branch
3 times, most recently
from
November 27, 2025 08:20
40caab9 to
236b534
Compare
renovate
Bot
force-pushed
the
renovate/go-golang.org-x-oauth2-vulnerability
branch
7 times, most recently
from
December 5, 2025 06:16
9666e5f to
773db44
Compare
renovate
Bot
force-pushed
the
renovate/go-golang.org-x-oauth2-vulnerability
branch
from
December 19, 2025 01:46
773db44 to
acc60b5
Compare
renovate
Bot
deleted the
renovate/go-golang.org-x-oauth2-vulnerability
branch
December 24, 2025 05:59
renovate
Bot
force-pushed
the
renovate/go-golang.org-x-oauth2-vulnerability
branch
from
December 25, 2025 06:47
ca4b7cd to
acc60b5
Compare
Contributor
Author
ℹ️ Artifact update noticeFile name: server/go.modIn order to perform the update(s) described in the table above, Renovate ran the
Details:
|
renovate
Bot
force-pushed
the
renovate/go-golang.org-x-oauth2-vulnerability
branch
from
December 25, 2025 06:47
acc60b5 to
ca4b7cd
Compare
renovate
Bot
force-pushed
the
renovate/go-golang.org-x-oauth2-vulnerability
branch
2 times, most recently
from
January 8, 2026 01:02
b4a56ef to
505ef3f
Compare
renovate
Bot
force-pushed
the
renovate/go-golang.org-x-oauth2-vulnerability
branch
2 times, most recently
from
January 20, 2026 06:43
1f966a6 to
f8075af
Compare
renovate
Bot
force-pushed
the
renovate/go-golang.org-x-oauth2-vulnerability
branch
from
February 13, 2026 20:15
f8075af to
6e9d606
Compare
renovate
Bot
force-pushed
the
renovate/go-golang.org-x-oauth2-vulnerability
branch
from
April 7, 2026 02:16
6e9d606 to
7940c22
Compare
renovate
Bot
force-pushed
the
renovate/go-golang.org-x-oauth2-vulnerability
branch
2 times, most recently
from
May 19, 2026 06:51
3df4a92 to
0dda3e0
Compare
2 tasks
renovate
Bot
force-pushed
the
renovate/go-golang.org-x-oauth2-vulnerability
branch
from
May 19, 2026 07:22
0dda3e0 to
d9378fd
Compare
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
v0.16.0→v0.27.0golang.org/x/oauth2 Improper Validation of Syntactic Correctness of Input vulnerability
CVE-2025-22868 / GHSA-6v2p-p543-phr9
More information
Details
An attacker can pass a malicious malformed token which causes unexpected memory to be consumed during parsing.
Severity
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HReferences
This data is provided by the GitHub Advisory Database (CC-BY 4.0).
Configuration
📅 Schedule: (UTC)
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR was generated by Mend Renovate. View the repository job log.