Skip to content

Wiz: Upgrade multiple dependencies (resolves 38 findings)#53

Closed
wiz-betterup[bot] wants to merge 1 commit into
masterfrom
wiz-auto-remediation-bd43d465e60e9b70
Closed

Wiz: Upgrade multiple dependencies (resolves 38 findings)#53
wiz-betterup[bot] wants to merge 1 commit into
masterfrom
wiz-auto-remediation-bd43d465e60e9b70

Conversation

@wiz-betterup

@wiz-betterup wiz-betterup Bot commented Jun 19, 2026

Copy link
Copy Markdown

Wiz Remediation Pull Request Banner

Wiz has created this PR to fix 38 findings detected in this project

Changes were made to the following file(s):

  • go.mod

Vulnerabilities:

Component Findings Locations
filippo.io/age
1.0.0 → 1.2.1
Medium GHSA-32gq-x56h-299c /go.mod
github.com/golang-jwt/jwt/v4
4.5.0 → 4.5.2
High CVE-2025-30204
Low CVE-2024-51744
/go.mod
github.com/hashicorp/go-retryablehttp
0.7.0 → 0.7.7
Medium CVE-2024-6104 /go.mod
github.com/opencontainers/runc
1.1.0 → 1.2.8
High CVE-2022-29162
High CVE-2025-52565
High CVE-2024-21626
High CVE-2025-31133
High CVE-2023-27561
High CVE-2023-28642
High CVE-2025-52881
Medium CVE-2023-25809
Low CVE-2024-45310
/go.mod
golang.org/x/crypto
0.0.0-20220411220226-7b82a4e95df4 → 0.52.0
Critical CVE-2026-46595
Critical CVE-2026-39834
Critical CVE-2026-42508
Critical CVE-2026-39833
Critical CVE-2026-39831
Critical CVE-2024-45337
Critical CVE-2026-39830
Critical CVE-2026-39832
High CVE-2025-47913
High CVE-2025-22869
Medium CVE-2025-58181
Medium CVE-2023-48795
Medium CVE-2025-47914
/go.mod
golang.org/x/net
0.10.0 → 0.55.0
Critical CVE-2026-39821
High CVE-2023-45288
High CVE-2023-44487
High CVE-2023-39325
Medium CVE-2025-22872
Medium CVE-2025-22870
Medium CVE-2023-3978
/go.mod
golang.org/x/oauth2
0.0.0-20220411215720-9780585627b5 → 0.27.0
High CVE-2025-22868 /go.mod
google.golang.org/grpc
1.45.0 → 1.79.3
Critical CVE-2026-33186
High CVE-2023-44487
/go.mod
google.golang.org/protobuf
1.28.0 → 1.33.0
High CVE-2024-24786 /go.mod
gopkg.in/yaml.v3
3.0.0-20210107192922-496545a6307b → 3.0.0-20220521103104-8f96da9f5d5e
High CVE-2022-28948 /go.mod

To detect these findings earlier in the dev lifecycle, try using Wiz Code VS Code Extension.

@wiz-betterup wiz-betterup Bot closed this Jun 22, 2026
@wiz-betterup wiz-betterup Bot deleted the wiz-auto-remediation-bd43d465e60e9b70 branch June 22, 2026 03:35
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants