Bump pgx/v5 for memory-safety CVE#387
Conversation
|
Updates to Preview Branch (work/pgx-bump-cve) ↗︎
Tasks are run on every commit but only new migration files are pushed.
View logs for this Workflow Run ↗︎. |
|
No actionable comments were generated in the recent review. 🎉 ℹ️ Recent review info⚙️ Run configurationConfiguration used: Path: .coderabbit.yaml Review profile: CHILL Plan: Pro Plus Run ID: ⛔ Files ignored due to path filters (1)
📒 Files selected for processing (2)
✅ Files skipped from review due to trivial changes (1)
🚧 Files skipped from review as they are similar to previous changes (1)
📝 WalkthroughWalkthroughUpdated ChangesDependency Version Maintenance
Estimated code review effort🎯 1 (Trivial) | ⏱️ ~2 minutes Possibly related PRs
Poem
🚥 Pre-merge checks | ✅ 5✅ Passed checks (5 passed)
✏️ Tip: You can configure your own custom pre-merge checks in the settings. ✨ Finishing Touches🧪 Generate unit tests (beta)
Comment |
Release VersionsApp patch: ChangelogSecurity
|
Codecov Report✅ All modified and coverable lines are covered by tests. 📢 Thoughts on this report? Let us know! |
|
🐝 Review App Deployed Homepage: https://hover-pr-387.fly.dev |
1 similar comment
|
🐝 Review App Deployed Homepage: https://hover-pr-387.fly.dev |
Bump pgx/v5 for memory-safety CVE
Summary
github.com/jackc/pgx/v5from v5.7.6 → v5.9.2 to resolve Dependabot alert #54 (Critical, memory-safety).webflow-designer-extension-cli(not shipped to production) and should be snoozed.Test plan
go build ./...cleango test ./...all packages greenNeed help on this PR? Tag
@codesmithwith what you need.Summary by CodeRabbit
Security
Chores
Documentation