Skip to content

Bump Go version to 1.23, fix Dependabot vulnerabilities #7931

Bump Go version to 1.23, fix Dependabot vulnerabilities

Bump Go version to 1.23, fix Dependabot vulnerabilities #7931

Triggered via pull request January 8, 2025 23:31
Status Failure
Total duration 1m 28s
Artifacts

vulnerability.yml

on: pull_request
dependency-review
6s
dependency-review
govulncheck
1m 19s
govulncheck
Fit to window
Zoom out
Zoom in

Annotations

10 errors and 2 warnings
govulncheck
cannot range over seq (variable of type iter.Seq[E])
govulncheck
cannot range over seq (variable of type iter.Seq2[K, V])
govulncheck: release/cli/pkg/aws/s3/s3.go#L15
package requires newer Go version go1.23
govulncheck: release/cli/pkg/constants/constants.go#L15
package requires newer Go version go1.23
govulncheck: release/cli/pkg/util/artifacts/artifacts.go#L15
package requires newer Go version go1.23
govulncheck: release/cli/pkg/aws/ecr/ecr.go#L15
package requires newer Go version go1.23
govulncheck: release/cli/pkg/aws/ecrpublic/ecrpublic.go#L15
package requires newer Go version go1.23
govulncheck: release/cli/pkg/util/command/command.go#L15
package requires newer Go version go1.23
govulncheck: release/cli/pkg/git/git.go#L15
package requires newer Go version go1.23
govulncheck: release/cli/pkg/clients/clients.go#L15
package requires newer Go version go1.23
dependency-review
ubuntu-latest pipelines will use ubuntu-24.04 soon. For more details, see https://github.com/actions/runner-images/issues/10636
govulncheck
Both go-version and go-version-file inputs are specified, only go-version will be used