Skip to content

Instantly share code, notes, and snippets.

@hectorj2f
Last active June 12, 2024 17:51
Show Gist options
  • Select an option

  • Save hectorj2f/9e07d37d3f3d537e6c4027df005a07d0 to your computer and use it in GitHub Desktop.

Select an option

Save hectorj2f/9e07d37d3f3d537e6c4027df005a07d0 to your computer and use it in GitHub Desktop.
[
{
"CVEID": "GHSA-wr6v-9f75-vh2g",
"RepositoryTag": "v0.48.0",
"RepositoryURL": "https://github.com/open-policy-agent/conftest",
"WantDeps": [
"github.com/moby/buildkit@v0.12.5"
],
"GotDeps": [
"github.com/moby/buildkit@v0.12.5"
],
"PullRequestID": "1692",
"NumCommits": 1,
"Result": true
},
{
"CVEID": "GHSA-5pf6-2qwx-pxm2",
"RepositoryTag": "v1.28.5",
"RepositoryURL": "https://github.com/influxdata/telegraf",
"WantDeps": [
"github.com/cloudevents/sdk-go/v2@v2.15.2"
],
"GotDeps": [
"github.com/cloudevents/sdk-go/v2@v2.15.2"
],
"PullRequestID": "14374",
"NumCommits": 1,
"Result": true
},
{
"CVEID": "GHSA-8r3f-844c-mc37",
"RepositoryTag": "v1.5.2",
"RepositoryURL": "https://github.com/jet/kube-webhook-certgen",
"WantDeps": [
"google.golang.org/protobuf@v1.33.0"
],
"GotDeps": [
"google.golang.org/protobuf@v1.33.0"
],
"PullRequestID": "15276",
"NumCommits": 1,
"Result": true
},
{
"CVEID": "GHSA-9763-4f94-gfch",
"RepositoryTag": "v1.2.3",
"RepositoryURL": "https://github.com/fluxcd/notification-controller",
"WantDeps": [
"github.com/cloudflare/circl@v1.3.7"
],
"GotDeps": [
"github.com/cloudflare/circl@v1.3.7"
],
"PullRequestID": "10951",
"NumCommits": 1,
"Result": true
},
{
"CVEID": "GHSA-c5q2-7r4c-mv6g",
"RepositoryTag": "v1.2.4",
"RepositoryURL": "https://github.com/fluxcd/source-controller",
"WantDeps": [
"github.com/go-jose/go-jose/v3@v3.0.3",
"gopkg.in/go-jose/go-jose.v2@v2.6.3"
],
"GotDeps": [
"github.com/go-jose/go-jose/v3@v3.0.3",
"github.com/go-jose/go-jose/v4@4.0.1",
"gopkg.in/go-jose/go-jose.v2@v2.6.3"
],
"PullRequestID": "14325",
"NumCommits": 1,
"Result": false
},
{
"CVEID": "GHSA-8pgv-569h-w5rw",
"RepositoryTag": "v1.29.0",
"RepositoryURL": "https://github.com/kubernetes-sigs/cri-tools",
"WantDeps": [
"go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc@v0.46.0",
"go.opentelemetry.io/otel/sdk@v1.20.0"
],
"GotDeps": [
"go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc@v0.46.0"
],
"PullRequestID": "11347",
"NumCommits": 2,
"Result": false
},
{
"CVEID": "GHSA-r53h-jv2g-vpx6",
"RepositoryTag": "v0.37.4",
"RepositoryURL": "https://github.com/fluxcd/helm-controller",
"WantDeps": [
"helm.sh/helm/v3@v3.14.2"
],
"GotDeps": [
"helm.sh/helm/v3@v3.14.2"
],
"PullRequestID": "13624",
"NumCommits": 1,
"Result": true
},
{
"CVEID": "GHSA-4v7x-pqxf-cx7m",
"RepositoryTag": "v1.17.4",
"RepositoryURL": "https://github.com/hashicorp/consul",
"WantDeps": [
"crypto@v0.17 golang.org/x/net@v0.23.0"
],
"GotDeps": [
"golang.org/x/net@v0.23.0 golang.org/x/net/http2@v0.23.0 net/http@v1.22.2"
],
"PullRequestID": "3554",
"NumCommits": 2,
"Result": false
},
{
"CVEID": "GHSA-c5q2-7r4c-mv6g",
"RepositoryTag": "1.19.7",
"RepositoryURL": "https://github.com/istio/istio",
"WantDeps": [
"github.com/go-jose/go-jose/v3@v3.0.3"
],
"GotDeps": [
"github.com/go-jose/go-jose/v3@v3.0.3",
"github.com/go-jose/go-jose/v4@v4.0.1",
"gopkg.in/go-jose/go-jose.v2@v2.6.3"
],
"PullRequestID": "14411",
"NumCommits": 1,
"Result": false
},
{
"CVEID": "GHSA-hj3v-m684-v259",
"RepositoryTag": "v0.9.13",
"RepositoryURL": "https://github.com/external-secrets/external-secrets",
"WantDeps": [
"github.com/lestrrat-go/jwx/v2@v2.0.21"
],
"GotDeps": [
"github.com/lestrrat-go/jwx/v2@v2.0.21"
],
"PullRequestID": "14491",
"NumCommits": 1,
"Result": true
},
{
"CVEID": "GHSA-jq35-85cj-fj4p",
"RepositoryTag": "v3.5.4",
"RepositoryURL": "https://github.com/argoproj/argo-workflows",
"WantDeps": [
"github.com/docker/docker@v24.0.7"
],
"GotDeps": [
"github.com/docker/docker@24.0.7"
],
"PullRequestID": "11284",
"NumCommits": 1,
"Result": true
},
{
"CVEID": "GHSA-r53h-jv2g-vpx6",
"RepositoryTag": "v0.3.27",
"RepositoryURL": "https://github.com/k8sgpt-ai/k8sgpt",
"WantDeps": [
"helm.sh/helm/v3@v3.14.2 ithub.com/mittwald/go-helm-client@v0.12.7"
],
"GotDeps": [
"helm.sh/helm/v3@v3.14.2"
],
"PullRequestID": "13674",
"NumCommits": 1,
"Result": false
},
{
"CVEID": "GHSA-4v7x-pqxf-cx7m",
"RepositoryTag": "v1.18.0",
"RepositoryURL": "https://github.com/temporalio/tctl",
"WantDeps": [
"go.temporal.io/server@v1.20.0",
"google.golang.org/grpc@v1.56.3"
],
"GotDeps": [
"golang.org/x/net@v0.23.0"
],
"PullRequestID": "3426",
"NumCommits": 2,
"Result": false
},
{
"CVEID": "GHSA-8r3f-844c-mc37",
"RepositoryTag": "v2.8.0",
"RepositoryURL": "https://github.com/kubernetes-csi/node-driver-registrar",
"WantDeps": [
"github.com/golang/protobuf@v1.5.4",
"google.golang.org/protobuf@v1.33.0"
],
"GotDeps": [
"google.golang.org/protobuf@v1.33.0"
],
"PullRequestID": "2484",
"NumCommits": 2,
"Result": false
},
{
"CVEID": "GHSA-c5q2-7r4c-mv6g",
"RepositoryTag": "v2.9.7",
"RepositoryURL": "https://github.com/argoproj/argo-cd",
"WantDeps": [
"github.com/chainguard-dev/git-urls@v0.0.1",
"github.com/go-jose/go-jose/v3@v3.0.3"
],
"GotDeps": [
"github.com/go-jose/go-jose/v3@v3.0.3",
"github.com/go-jose/go-jose/v4@v4.0.1",
"gopkg.in/go-jose/go-jose.v2@v2.6.3"
],
"PullRequestID": "14342",
"NumCommits": 1,
"Result": false
},
{
"CVEID": "GHSA-xwh9-gc39-5298",
"RepositoryTag": "v2.49.0",
"RepositoryURL": "https://github.com/prometheus/prometheus",
"WantDeps": [
"github.com/go-resty/resty/v2@v2.11.0"
],
"GotDeps": [
"github.com/go-resty/resty/v2@v2.11.0"
],
"PullRequestID": "11185",
"NumCommits": 1,
"Result": true
},
{
"CVEID": "GHSA-2c7c-3mj9-8fqh",
"RepositoryTag": "1.20.4",
"RepositoryURL": "https://github.com/bank-vaults/bank-vaults",
"WantDeps": [
"github.com/go-jose/go-jose/v3@v3.0.1"
],
"GotDeps": [
"github.com/go-jose/go-jose/v3@v3.0.1",
"github.com/square/go-jose@v2.6.2"
],
"PullRequestID": "1851",
"NumCommits": 1,
"Result": false
},
{
"CVEID": "GHSA-4v7x-pqxf-cx7m",
"RepositoryTag": "v1.9.4",
"RepositoryURL": "https://github.com/kubernetes-csi/external-resizer",
"WantDeps": [
"golang.org/x/net@v0.23.0"
],
"GotDeps": [
"golang.org/x/net@v0.23.0"
],
"PullRequestID": "3392",
"NumCommits": 1,
"Result": true
},
{
"CVEID": "GHSA-4v7x-pqxf-cx7m",
"RepositoryTag": "v1.5.7",
"RepositoryURL": "https://github.com/hashicorp/terraform",
"WantDeps": [
"golang.org/x/net@v0.23.0"
],
"GotDeps": [
"golang.org/x/net@v0.23.0"
],
"PullRequestID": "17266",
"NumCommits": 3,
"Result": true
},
{
"CVEID": "GHSA-69ch-w2m2-3vjp",
"RepositoryTag": "v8.18.2",
"RepositoryURL": "https://github.com/gitleaks/gitleaks",
"WantDeps": [
"golang.org/x/text@v0.3.8"
],
"GotDeps": [
"golang.org/x/text@v0.3.8"
],
"PullRequestID": "15680",
"NumCommits": 1,
"Result": true
},
{
"CVEID": "GHSA-7ww5-4wqc-m92c",
"RepositoryTag": "v1.21.0",
"RepositoryURL": "https://github.com/GoogleContainerTools/kaniko",
"WantDeps": [
"github.com/containerd/containerd@v1.7.11",
"github.com/opencontainers/runc@v1.1.12"
],
"GotDeps": [
"github.com/containerd/containerd@v1.7.11"
],
"PullRequestID": "13924",
"NumCommits": 2,
"Result": false
},
{
"CVEID": "GHSA-c5pj-mqfh-rvc3",
"RepositoryTag": "1.43.2",
"RepositoryURL": "https://github.com/newrelic/infrastructure-agent",
"WantDeps": [
"github.com/opencontainers/runc@v1.2.0"
],
"GotDeps": [
"github.com/opencontainers/runc@v1.2.0-rc.1"
],
"PullRequestID": "4004",
"NumCommits": 1,
"Result": false
},
{
"CVEID": "GHSA-mq39-4gv4-mvpx",
"RepositoryTag": "v3.0.0",
"RepositoryURL": "https://github.com/grafana/loki",
"WantDeps": [
"github.com/docker/docker@v25.0.5 go.etcd.io/bbolt@v1.3.6"
],
"GotDeps": [
"github.com/docker/docker@25.0.5"
],
"PullRequestID": "16522",
"NumCommits": 2,
"Result": false
},
{
"CVEID": "GHSA-qppj-fm5r-hxr3",
"RepositoryTag": "v2.11.0",
"RepositoryURL": "https://github.com/kubernetes-csi/livenessprobe",
"WantDeps": [
"google.golang.org/grpc@v1.58.3"
],
"GotDeps": [
"google.golang.org/grpc@v1.58.3",
"golang.org/x/net@v0.17.0"
],
"PullRequestID": "1842",
"NumCommits": 1,
"Result": false
},
{
"CVEID": "GHSA-8r3f-844c-mc37",
"RepositoryTag": "spark-operator-chart-1.1.27",
"RepositoryURL": "https://github.com/GoogleCloudPlatform/spark-on-k8s-operator",
"WantDeps": [
"google.golang.org/protobuf@v1.33.0"
],
"GotDeps": [
"google.golang.org/protobuf@v1.28.0"
],
"PullRequestID": "15041",
"NumCommits": 1,
"Result": false
},
{
"CVEID": "GHSA-pxhw-596r-rwq5",
"RepositoryTag": "1.23.0",
"RepositoryURL": "https://github.com/kubernetes/dns",
"WantDeps": [
"k8s.io/kubernetes@v1.27.13"
],
"GotDeps": [
"k8s.io/kubernetes@v1.27.13"
],
"PullRequestID": "17590",
"NumCommits": 1,
"Result": true
},
{
"CVEID": "GHSA-xr7r-f8xq-vfvv",
"RepositoryTag": "controller-v1.9.5",
"RepositoryURL": "https://github.com/kubernetes/ingress-nginx",
"WantDeps": [
"github.com/opencontainers/runc@v1.1.12"
],
"GotDeps": [
"github.com/opencontainers/runc@v1.1.12"
],
"PullRequestID": "1698",
"NumCommits": 1,
"Result": true
},
{
"CVEID": "GHSA-4v7x-pqxf-cx7m",
"RepositoryTag": "v4.2",
"RepositoryURL": "https://github.com/uswitch/kiam",
"WantDeps": [
"golang.org/x/net@v0.23.0"
],
"GotDeps": [
"golang.org/x/net@v0.23.0"
],
"PullRequestID": "3406",
"NumCommits": 2,
"Result": true
},
{
"CVEID": "GHSA-mrww-27vc-gghv",
"RepositoryTag": "v1.14.10",
"RepositoryURL": "https://github.com/hashicorp/vault",
"WantDeps": [
"github.com/cockroachdb/cockroach-go@v2.0.1",
"github.com/jackc/pgx/v4@v4.18.2"
],
"GotDeps": [
"github.com/jackc/pgx/v4@4.18.2",
"github.com/jackc/pgx@4.18.2",
"github.com/jackc/pgproto3/v2@v2.3.3"
],
"PullRequestID": "14180",
"NumCommits": 3,
"Result": false
},
{
"CVEID": "GHSA-c5q2-7r4c-mv6g",
"RepositoryTag": "v0.15.3",
"RepositoryURL": "https://github.com/wolfi-dev/wolfictl",
"WantDeps": [
"gopkg.in/go-jose/go-jose.v2@v2.6.3"
],
"GotDeps": [
"github.com/go-jose/go-jose/v3@v3.0.3",
"github.com/go-jose/go-jose/v4@4.0.1",
"gopkg.in/go-jose/go-jose.v2@v2.6.3"
],
"PullRequestID": "14379",
"NumCommits": 1,
"Result": false
},
{
"CVEID": "GHSA-v86x-5fm3-5p7j",
"RepositoryTag": "v0.31.0",
"RepositoryURL": "https://github.com/thanos-io/thanos",
"WantDeps": [
"github.com/prometheus/alertmanager@v0.25.1"
],
"GotDeps": [
"github.com/prometheus/alertmanager@v0.25.1"
],
"PullRequestID": "10952",
"NumCommits": 1,
"Result": true
},
{
"CVEID": "GHSA-xw73-rw38-6vjc",
"RepositoryTag": "v2.1.22",
"RepositoryURL": "https://github.com/GoogleCloudPlatform/docker-credential-gcr",
"WantDeps": [
"github.com/docker/docker@v24.0.9"
],
"GotDeps": [
"github.com/docker/cli@v24.0.9",
"github.com/docker/docker@v24.0.9"
],
"PullRequestID": "15606",
"NumCommits": 1,
"Result": false
},
{
"CVEID": "GHSA-8r3f-844c-mc37",
"RepositoryTag": "v1.0.1",
"RepositoryURL": "https://github.com/fluxcd/kustomize-controller",
"WantDeps": [
"google.golang.org/protobuf@v1.33.0"
],
"GotDeps": [
"google.golang.org/protobuf@v1.33.0"
],
"PullRequestID": "2447",
"NumCommits": 1,
"Result": true
},
{
"CVEID": "GHSA-v53g-5gjp-272r",
"RepositoryTag": "v0.16.1",
"RepositoryURL": "https://github.com/helm/chartmuseum",
"WantDeps": [
"helm.sh/helm/v3@v3.14.1",
"oras.land/oras-go@v1.2.4"
],
"GotDeps": [
"helm.sh/helm/v3@v3.14.1"
],
"PullRequestID": "13146",
"NumCommits": 2,
"Result": false
},
{
"CVEID": "GHSA-8r3f-844c-mc37",
"RepositoryTag": "v1.0.9",
"RepositoryURL": "https://github.com/kubernetes-sigs/dashboard-metrics-scraper",
"WantDeps": [
"google.golang.org/protobuf@v1.33.0"
],
"GotDeps": [
"google.golang.org/protobuf@v1.33.0"
],
"PullRequestID": "2575",
"NumCommits": 1,
"Result": true
},
{
"CVEID": "GHSA-x84c-p2g9-rqv9",
"RepositoryTag": "v0.11.1",
"RepositoryURL": "https://github.com/dagger/dagger",
"WantDeps": [
"github.com/docker/docker@v26.0.2"
],
"GotDeps": [
"github.com/docker/docker@v26.0.2"
],
"PullRequestID": "17166",
"NumCommits": 1,
"Result": true
},
{
"CVEID": "GHSA-45x7-px36-x8w8",
"RepositoryTag": "v1.28.15",
"RepositoryURL": "https://github.com/tigera/operator",
"WantDeps": [
"golang.org/x/crypto@v0.17.0"
],
"GotDeps": [
"golang.org/x/crypto@v0.17.0"
],
"PullRequestID": "1848",
"NumCommits": 1,
"Result": true
},
{
"CVEID": "GHSA-4v7x-pqxf-cx7m",
"RepositoryTag": "v1.18.0",
"RepositoryURL": "https://github.com/kubernetes-sigs/aws-ebs-csi-driver",
"WantDeps": [
"golang.org/x/net@v0.23.0"
],
"GotDeps": [
"golang.org/x/net@v0.23.0"
],
"PullRequestID": "3445",
"NumCommits": 2,
"Result": true
},
{
"CVEID": "GHSA-c33x-xqrf-c478",
"RepositoryTag": "v0.27.0",
"RepositoryURL": "https://github.com/ipfs/kubo",
"WantDeps": [
"github.com/libp2p/go-libp2p@v0.33.2",
"github.com/quic-go/quic-go@v0.42.0"
],
"GotDeps": [
"github.com/quic-go/quic-go@v0.42.0"
],
"PullRequestID": "16227",
"NumCommits": 2,
"Result": false
},
{
"CVEID": "GHSA-8r3f-844c-mc37",
"RepositoryTag": "v0.37.0",
"RepositoryURL": "https://github.com/fluxcd/flux2",
"WantDeps": [
"google.golang.org/protobuf@v1.33.0"
],
"GotDeps": [
"google.golang.org/protobuf@v1.33.0"
],
"PullRequestID": "2448",
"NumCommits": 1,
"Result": true
},
{
"CVEID": "GHSA-hj3v-m684-v259",
"RepositoryTag": "RELEASE.2023-12-20T07-14-22Z",
"RepositoryURL": "https://github.com/minio/mc",
"WantDeps": [
"github.com/lestrrat-go/jwx@v1.2.2"
],
"GotDeps": [
"github.com/lestrrat-go/jwx@v1.2.29",
"github.com/lestrrat-go/jwx/v2@v2.0.21"
],
"PullRequestID": "14632",
"NumCommits": 1,
"Result": false
},
{
"CVEID": "GHSA-ppxx-5m9h-6vxf",
"RepositoryTag": "v1.11.1",
"RepositoryURL": "https://github.com/coredns/coredns",
"WantDeps": [
"github.com/quic-go/quic-go@v0.37.7"
],
"GotDeps": [
"github.com/quic-go/quic-go@v0.40.1",
"github.com/quic-go/quic-go@v0.39.4",
"github.com/quic-go/quic-go@v0.38.2",
"github.com/quic-go/quic-go@v0.37.7"
],
"PullRequestID": "11001",
"NumCommits": 1,
"Result": false
},
{
"CVEID": "GHSA-95pr-fxf5-86gv",
"RepositoryTag": "v0.20.1",
"RepositoryURL": "https://github.com/tektoncd/chains",
"WantDeps": [
"github.com/sigstore/cosign/v2@v2.2.4"
],
"GotDeps": [
"github.com/sigstore/cosign/v2@v2.2.4"
],
"PullRequestID": "3270",
"NumCommits": 1,
"Result": true
},
{
"CVEID": "GHSA-8pgv-569h-w5rw",
"RepositoryTag": "v0.11.3",
"RepositoryURL": "https://github.com/k3s-io/kine",
"WantDeps": [
"go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc@v0.46.0",
"go.opentelemetry.io/otel/sdk@v1.21.0"
],
"GotDeps": [
"go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc@v0.46.0"
],
"PullRequestID": "10976",
"NumCommits": 3,
"Result": false
},
{
"CVEID": "GHSA-pvcr-v8j8-j5q3",
"RepositoryTag": "v1.8.7",
"RepositoryURL": "https://github.com/spiffe/spire",
"WantDeps": [
"github.com/lestrrat-go/jwx/v2@v2.0.19"
],
"GotDeps": [
"github.com/lestrrat-go/jwx/v2@v2.0.19"
],
"PullRequestID": "11688",
"NumCommits": 1,
"Result": true
},
{
"CVEID": "GHSA-q64h-39hv-4cf7",
"RepositoryTag": "v0.32.4",
"RepositoryURL": "https://github.com/derailed/k9s",
"WantDeps": [
"github.com/anchore/archiver/v3@v3.5.2",
"github.com/hashicorp/go-getter@v1.7.4"
],
"GotDeps": [
"github.com/hashicorp/go-getter@v1.7.4"
],
"PullRequestID": "18561",
"NumCommits": 2,
"Result": false
},
{
"CVEID": "GHSA-4v7x-pqxf-cx7m",
"RepositoryTag": "v1.15.0",
"RepositoryURL": "https://github.com/pulumi/pulumi-kubernetes-operator.git",
"WantDeps": [
"golang.org/x/net@v0.23.0"
],
"GotDeps": [
"golang.org/x/net@v0.23.0"
],
"PullRequestID": "17406",
"NumCommits": 1,
"Result": true
},
{
"CVEID": "GHSA-4v7x-pqxf-cx7m",
"RepositoryTag": "v0.7.0",
"RepositoryURL": "https://github.com/jwilder/dockerize",
"WantDeps": [
"golang.org/x/net@v0.23.0"
],
"GotDeps": [
"golang.org/x/net@v0.23.0"
],
"PullRequestID": "3535",
"NumCommits": 1,
"Result": true
},
{
"CVEID": "GHSA-8r3f-844c-mc37",
"RepositoryTag": "v1.5.2",
"RepositoryURL": "https://github.com/kyverno/policy-reporter-kyverno-plugin",
"WantDeps": [
"google.golang.org/protobuf@v1.33.0"
],
"GotDeps": [
"google.golang.org/protobuf@v1.33.0"
],
"PullRequestID": "2463",
"NumCommits": 1,
"Result": true
},
{
"CVEID": "GHSA-ppxx-5m9h-6vxf",
"RepositoryTag": "v3.1.5",
"RepositoryURL": "https://github.com/projectdiscovery/nuclei",
"WantDeps": [
"github.com/quic-go/quic-go@v0.40.1"
],
"GotDeps": [
"github.com/quic-go/quic-go@v0.40.1",
"github.com/quic-go/quic-go@v0.39.4",
"github.com/quic-go/quic-go@v0.38.2",
"github.com/quic-go/quic-go@v0.37.7"
],
"PullRequestID": "10987",
"NumCommits": 2,
"Result": false
}
]
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment