Skip to content

Stretchr/testify v1.4.0 has a security problem (CVE 6.5) #60

@nieuwsma

Description

@nieuwsma

✗ Medium severity vulnerability found in gopkg.in/yaml.v2 (CVE 6.5)
Description: Denial of Service (DoS)
Info: https://snyk.io/vuln/SNYK-GOLANG-GOPKGINYAMLV2-1083943
Introduced through: github.com/stretchr/testify/mock@1.4.0
From: github.com/stretchr/testify/mock@1.4.0 > github.com/stretchr/testify/assert@1.4.0 > gopkg.in/yaml.v2@2.2.2
Fixed in: 2.2.8

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions