Fix gosec linter issues and upgrade go.step.sm/crypto to v0.76.2
#1789
ci.yml
on: pull_request
ci
/
...
/
set-go-matrix
2s
ci
/
...
/
set-go-matrix
3s
ci
/
actionlint
8s
ci
/
...
/
lint
27s
ci
/
...
/
govulncheck
43s
Matrix: ci / codeql / CodeQL Analyze
Matrix: ci / build / build
Matrix: ci / test / test
Annotations
10 errors
|
ci / govulncheck / govulncheck
actions.prettyPrint calls protojson.Marshal, which eventually calls cert.RawNebulaCertificate.ProtoReflect
|
|
ci / govulncheck / govulncheck
oauth.oauth.DoDeviceAuthorization calls fmt.Fprintln, which eventually calls cert.RawNebulaArgon2Parameters.String
|
|
ci / govulncheck / govulncheck
actions.prettyPrint calls protojson.Marshal, which eventually calls cert.RawNebulaArgon2Parameters.ProtoReflect
|
|
ci / govulncheck / govulncheck
provisioner.caConfigClient.UpdateProvisioner calls authority.Authority.UpdateProvisioner, which eventually calls cert.NewCAPoolFromBytes
|
|
ci / govulncheck / govulncheck
token.WithNebulaCert calls cert.NebulaCertificate.VerifyPrivateKey
|
|
ci / govulncheck / govulncheck
cautils.OfflineCA.SSHRekey calls authority.Authority.Authorize, which eventually calls cert.NebulaCertificate.Verify
|
|
ci / govulncheck / govulncheck
oauth.oauth.DoDeviceAuthorization calls fmt.Fprintln, which eventually calls cert.NebulaCertificate.String
|
|
ci / govulncheck / govulncheck
provisioner.readNebulaRoots calls cert.NebulaCertificate.MarshalToPEM
|
|
ci / govulncheck / govulncheck
oauth.oauth.DoDeviceAuthorization calls fmt.Fprintln, which eventually calls cert.Curve.String
|
|
ci / govulncheck / govulncheck
provisioner.caConfigClient.UpdateProvisioner calls authority.Authority.UpdateProvisioner, which eventually calls cert.Curve.Descriptor
|