Tags: SpecterOps/BloodHound
Tags
chore: bump vulnerable go dependencies (crypto, sys, chi) BED-8591 (#… …2876) Resolves Docker Scout HIGH/CRITICAL/MEDIUM/LOW findings: - golang.org/x/crypto v0.50.0 -> v0.52.0 (7 CRITICAL, 2 HIGH, 4 MEDIUM) - golang.org/x/sys v0.43.0 -> v0.45.0 (1 LOW; >= v0.44.0 fix, required by crypto) - github.com/go-chi/chi/v5 v5.2.2 -> v5.2.4 (GHSA-mqqf-5wvp-8fh8)
build: upgrade Go toolchain to 1.26.4 BED-8402 (#2867) Remediates CVE-2026-33811, CVE-2026-33814, and CVE-2026-39836 by bumping the Go toolchain from 1.26.2 to 1.26.4.
fix: exclude UI static assets from rate limiting BED-8327 (#2816) * fix: exclude ui static assets from rate limiting BED-8327 * Update cmd/api/src/api/registration/registration.go Co-authored-by: mistahj67 <26472282+mistahj67@users.noreply.github.com> --------- Co-authored-by: John Hopper <jhopper@specterops.io> Co-authored-by: mistahj67 <26472282+mistahj67@users.noreply.github.com>
PreviousNext