-
Notifications
You must be signed in to change notification settings - Fork 425
Closed
Description
A scan with the tool Trivy of one of our Docker images using dockerize v0.9.3 found one potential vulnerability CVE-2025-22874 (https://avd.aquasec.com/nvd/2025/cve-2025-22874/) in GO, more specifically in crypto/x509 (golang/go#73612).
As I understand it, the issue is fixed in GO 1.24.4 and 1.25.0.
Can the GO version be bumped accordingly for a new release of dockerize?
Thank you!
jdreesen, moicalcob and codyjohnsonfb
Metadata
Metadata
Assignees
Labels
No labels