grpc-ecosystem / grpc-health-probe

A command-line tool to perform health-checks for gRPC applications in Kubernetes and elsewhere

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

Sec Vulnerability on package github.com/square/go-jose

mcfongtw opened this issue · comments

Our internal security scanning tool found that the latest (v0.4.22) grpc_health_probe is vulnerable to this GHSA

Feel free to suppress it as it does not impact. Fix is merged but no release yet.

Any idea on when a new release be made with this vulnerability fix?

For the record, the PR is #170.

Fixed. But seriously please tune your security scanner. These are all noisy warnings.