Skip to content

Commit

Permalink
Ignore github.com/coredns/coredns vulnerability
Browse files Browse the repository at this point in the history
Bumping to a fixed version requires bumping Go and K8s versions as
well which are problematic in a dot release.

Signed-off-by: Tom Pantelis <[email protected]>
  • Loading branch information
tpantelis committed Oct 2, 2024
1 parent 95434cd commit 8be4ac7
Showing 1 changed file with 5 additions and 0 deletions.
5 changes: 5 additions & 0 deletions .grype.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -10,3 +10,8 @@ ignore:
- vulnerability: CVE-2021-22570
package:
name: google.golang.org/protobuf
# Bumping to a fixed version requires bumping Go and K8s versions as well which
# are problematic in a dot release.
- vulnerability: GHSA-hfmw-7g3m-gj6q
package:
name: github.com/coredns/coredns

0 comments on commit 8be4ac7

Please sign in to comment.