Indirect dependency library `golang.org/x/textv0.3.0` has a security issue
fool-derek opened this issue · comments
Indirect dependency golang.org/x/textv0.3.0
has a security issue, please found this dependency library at: https://github.com/mdlayher/arp/blob/master/go.sum#L13
CVE link: https://nvd.nist.gov/vuln/detail/CVE-2020-14040
Could you consider to upgrade this library to version v0.3.7?