Skip to content

chore(deps): bump go to 1.24.11#399

Merged
kp2099 merged 1 commit intomainfrom
chore(deps)/bump-go
Dec 9, 2025
Merged

chore(deps): bump go to 1.24.11#399
kp2099 merged 1 commit intomainfrom
chore(deps)/bump-go

Conversation

@tenthirtyam
Copy link
Copy Markdown
Collaborator

Description

Addresses GO-2025-4175 in Go stdlib@1.24.10.

Resolved Issues

Rollback Plan

Revert commit.

Changes to Security Controls

None.

Addresses GO-2025-4175 in Go stdlib@1.24.10.

Signed-off-by: Ryan Johnson <ryan.johnson@broadcom.com>
@tenthirtyam tenthirtyam added this to the v2.0.0 milestone Dec 9, 2025
@tenthirtyam tenthirtyam requested a review from kp2099 December 9, 2025 14:20
@tenthirtyam tenthirtyam self-assigned this Dec 9, 2025
@tenthirtyam tenthirtyam requested a review from a team as a code owner December 9, 2025 14:20
@tenthirtyam tenthirtyam added dependencies Dependencies chore Chore go labels Dec 9, 2025
Copilot AI review requested due to automatic review settings December 9, 2025 14:20
Copy link
Copy Markdown

Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

This PR updates the Go version from 1.24.10 to 1.24.11 to address a security vulnerability (GO-2025-4175) in the Go standard library.

  • Updates Go version across all relevant configuration and documentation files
  • Addresses security scanning alerts 94 and 95 in the repository
  • Maintains consistency across go.mod, README.md, and .go-version files

Reviewed changes

Copilot reviewed 3 out of 3 changed files in this pull request and generated no comments.

File Description
go.mod Updates the Go directive to version 1.24.11
README.md Updates documentation to reflect the new required Go version
.go-version Updates the version file to specify Go 1.24.11

💡 Add Copilot custom instructions for smarter, more guided reviews. Learn how to get started.

@kp2099 kp2099 merged commit 66b8f6d into main Dec 9, 2025
20 checks passed
@kp2099 kp2099 deleted the chore(deps)/bump-go branch December 9, 2025 15:00
@github-actions
Copy link
Copy Markdown

I'm going to lock this pull request because it has been closed for 30 days. This helps our maintainers find and focus on the active issues.

If you have found a problem that seems related to this change, please open a new issue and complete the issue template so we can capture all the details necessary to investigate further.

@github-actions github-actions bot locked as resolved and limited conversation to collaborators Jan 29, 2026
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

chore Chore dependencies Dependencies

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants