Skip to content

Commit e27469e

Browse files
authored
Fix High vulnerabilities (#264)
1 parent e2b9da4 commit e27469e

File tree

2 files changed

+258
-267
lines changed

2 files changed

+258
-267
lines changed

go.mod

Lines changed: 79 additions & 72 deletions
Original file line numberDiff line numberDiff line change
@@ -7,16 +7,16 @@ toolchain go1.22.6
77
require (
88
github.com/iancoleman/strcase v0.3.0
99
github.com/mitchellh/go-homedir v1.1.0
10-
github.com/mittwald/go-helm-client v0.11.5
10+
github.com/mittwald/go-helm-client v0.12.9
1111
github.com/turbot/go-kit v0.10.0-rc.0
1212
github.com/turbot/steampipe-plugin-sdk/v5 v5.10.4
13-
golang.org/x/text v0.15.0
13+
golang.org/x/text v0.17.0
1414
gopkg.in/yaml.v3 v3.0.1
15-
helm.sh/helm/v3 v3.13.3
16-
k8s.io/api v0.28.4
17-
k8s.io/apiextensions-apiserver v0.28.4
18-
k8s.io/apimachinery v0.28.4
19-
k8s.io/client-go v0.28.4
15+
helm.sh/helm/v3 v3.14.2
16+
k8s.io/api v0.31.1
17+
k8s.io/apiextensions-apiserver v0.31.1
18+
k8s.io/apimachinery v0.31.1
19+
k8s.io/client-go v0.31.1
2020

2121
)
2222

@@ -27,58 +27,62 @@ require (
2727
cloud.google.com/go/compute/metadata v0.3.0 // indirect
2828
cloud.google.com/go/iam v1.1.8 // indirect
2929
cloud.google.com/go/storage v1.41.0 // indirect
30+
dario.cat/mergo v1.0.1 // indirect
3031
github.com/AdaLogics/go-fuzz-headers v0.0.0-20230811130428-ced1acdcaa24 // indirect
31-
github.com/Azure/go-ansiterm v0.0.0-20210617225240-d185dfc1b5a1 // indirect
32+
github.com/Azure/go-ansiterm v0.0.0-20230124172434-306776ec8161 // indirect
3233
github.com/BurntSushi/toml v1.3.2 // indirect
3334
github.com/MakeNowJust/heredoc v1.0.0 // indirect
3435
github.com/Masterminds/goutils v1.1.1 // indirect
35-
github.com/Masterminds/semver/v3 v3.2.1 // indirect
36-
github.com/Masterminds/sprig/v3 v3.2.3 // indirect
36+
github.com/Masterminds/semver/v3 v3.3.0 // indirect
37+
github.com/Masterminds/sprig/v3 v3.3.0 // indirect
3738
github.com/Masterminds/squirrel v1.5.4 // indirect
38-
github.com/Microsoft/hcsshim v0.11.0 // indirect
39+
github.com/Microsoft/hcsshim v0.11.4 // indirect
3940
github.com/acarl005/stripansi v0.0.0-20180116102854-5a71ef0e047d // indirect
4041
github.com/agext/levenshtein v1.2.3 // indirect
4142
github.com/allegro/bigcache/v3 v3.1.0 // indirect
4243
github.com/apparentlymart/go-textseg/v15 v15.0.0 // indirect
43-
github.com/asaskevich/govalidator v0.0.0-20210307081110-f21760c49a8d // indirect
44+
github.com/asaskevich/govalidator v0.0.0-20230301143203-a9d515a09cc2 // indirect
4445
github.com/aws/aws-sdk-go v1.53.10 // indirect
4546
github.com/beorn7/perks v1.0.1 // indirect
4647
github.com/bgentry/go-netrc v0.0.0-20140422174119-9fd32a8b3d3d // indirect
48+
github.com/blang/semver/v4 v4.0.0 // indirect
4749
github.com/btubbs/datetime v0.1.1 // indirect
4850
github.com/cenkalti/backoff/v4 v4.3.0 // indirect
4951
github.com/cespare/xxhash/v2 v2.3.0 // indirect
5052
github.com/chai2010/gettext-go v1.0.2 // indirect
51-
github.com/containerd/containerd v1.7.6 // indirect
52-
github.com/cyphar/filepath-securejoin v0.2.4 // indirect
53+
github.com/containerd/containerd v1.7.12 // indirect
54+
github.com/containerd/log v0.1.0 // indirect
55+
github.com/cyphar/filepath-securejoin v0.3.1 // indirect
5356
github.com/danwakefield/fnmatch v0.0.0-20160403171240-cbb64ac3d964 // indirect
54-
github.com/davecgh/go-spew v1.1.1 // indirect
57+
github.com/davecgh/go-spew v1.1.2-0.20180830191138-d8f796af33cc // indirect
5558
github.com/dgraph-io/ristretto v0.1.1 // indirect
56-
github.com/docker/cli v24.0.6+incompatible // indirect
57-
github.com/docker/distribution v2.8.2+incompatible // indirect
58-
github.com/docker/docker v24.0.7+incompatible // indirect
59-
github.com/docker/docker-credential-helpers v0.7.0 // indirect
60-
github.com/docker/go-connections v0.4.0 // indirect
59+
github.com/distribution/reference v0.5.0 // indirect
60+
github.com/docker/cli v25.0.1+incompatible // indirect
61+
github.com/docker/distribution v2.8.3+incompatible // indirect
62+
github.com/docker/docker v25.0.6+incompatible // indirect
63+
github.com/docker/docker-credential-helpers v0.8.0 // indirect
64+
github.com/docker/go-connections v0.5.0 // indirect
6165
github.com/docker/go-metrics v0.0.1 // indirect
62-
github.com/docker/go-units v0.5.0 // indirect
6366
github.com/dustin/go-humanize v1.0.1 // indirect
6467
github.com/eko/gocache/lib/v4 v4.1.6 // indirect
6568
github.com/eko/gocache/store/bigcache/v4 v4.2.1 // indirect
6669
github.com/eko/gocache/store/ristretto/v4 v4.2.1 // indirect
67-
github.com/emicklei/go-restful/v3 v3.10.1 // indirect
68-
github.com/evanphx/json-patch v5.6.0+incompatible // indirect
70+
github.com/emicklei/go-restful/v3 v3.11.1 // indirect
71+
github.com/evanphx/json-patch v5.9.0+incompatible // indirect
6972
github.com/exponent-io/jsonpath v0.0.0-20210407135951-1de76d718b3f // indirect
7073
github.com/fatih/color v1.17.0 // indirect
7174
github.com/felixge/httpsnoop v1.0.4 // indirect
7275
github.com/fsnotify/fsnotify v1.7.0 // indirect
76+
github.com/fxamacker/cbor/v2 v2.7.0 // indirect
7377
github.com/gertd/go-pluralize v0.2.1 // indirect
7478
github.com/ghodss/yaml v1.0.0 // indirect
75-
github.com/go-errors/errors v1.4.2 // indirect
79+
github.com/go-errors/errors v1.5.1 // indirect
7680
github.com/go-gorp/gorp/v3 v3.1.0 // indirect
7781
github.com/go-logr/logr v1.4.2 // indirect
7882
github.com/go-logr/stdr v1.2.2 // indirect
79-
github.com/go-openapi/jsonpointer v0.19.6 // indirect
80-
github.com/go-openapi/jsonreference v0.20.2 // indirect
81-
github.com/go-openapi/swag v0.22.3 // indirect
83+
github.com/go-openapi/jsonpointer v0.20.2 // indirect
84+
github.com/go-openapi/jsonreference v0.20.4 // indirect
85+
github.com/go-openapi/swag v0.22.7 // indirect
8286
github.com/gobwas/glob v0.2.3 // indirect
8387
github.com/gogo/protobuf v1.3.2 // indirect
8488
github.com/golang/glog v1.2.1 // indirect
@@ -94,7 +98,8 @@ require (
9498
github.com/google/uuid v1.6.0 // indirect
9599
github.com/googleapis/enterprise-certificate-proxy v0.3.2 // indirect
96100
github.com/googleapis/gax-go/v2 v2.12.4 // indirect
97-
github.com/gorilla/mux v1.8.0 // indirect
101+
github.com/gorilla/mux v1.8.1 // indirect
102+
github.com/gorilla/websocket v1.5.1 // indirect
98103
github.com/gosuri/uitable v0.0.4 // indirect
99104
github.com/gregjones/httpcache v0.0.0-20190611155906-901d90724c79 // indirect
100105
github.com/grpc-ecosystem/grpc-gateway/v2 v2.20.0 // indirect
@@ -108,11 +113,11 @@ require (
108113
github.com/hashicorp/go-version v1.7.0 // indirect
109114
github.com/hashicorp/hcl/v2 v2.20.1 // indirect
110115
github.com/hashicorp/yamux v0.1.1 // indirect
111-
github.com/huandu/xstrings v1.4.0 // indirect
112-
github.com/imdario/mergo v0.3.13 // indirect
116+
github.com/huandu/xstrings v1.5.0 // indirect
117+
github.com/imdario/mergo v0.3.16 // indirect
113118
github.com/inconshreveable/mousetrap v1.1.0 // indirect
114119
github.com/jmespath/go-jmespath v0.4.0 // indirect
115-
github.com/jmoiron/sqlx v1.3.5 // indirect
120+
github.com/jmoiron/sqlx v1.4.0 // indirect
116121
github.com/josharian/intern v1.0.0 // indirect
117122
github.com/json-iterator/go v1.1.12 // indirect
118123
github.com/klauspost/compress v1.17.8 // indirect
@@ -130,82 +135,84 @@ require (
130135
github.com/mitchellh/mapstructure v1.5.0 // indirect
131136
github.com/mitchellh/reflectwalk v1.0.2 // indirect
132137
github.com/moby/locker v1.0.1 // indirect
133-
github.com/moby/spdystream v0.2.0 // indirect
138+
github.com/moby/spdystream v0.4.0 // indirect
134139
github.com/moby/term v0.5.0 // indirect
135140
github.com/modern-go/concurrent v0.0.0-20180306012644-bacd9c7ef1dd // indirect
136141
github.com/modern-go/reflect2 v1.0.2 // indirect
137142
github.com/monochromegane/go-gitignore v0.0.0-20200626010858-205db1a8cc00 // indirect
138-
github.com/morikuni/aec v1.0.0 // indirect
139143
github.com/munnerz/goautoneg v0.0.0-20191010083416-a7dc8b61c822 // indirect
144+
github.com/mxk/go-flowrate v0.0.0-20140419014527-cca7078d478f // indirect
140145
github.com/oklog/run v1.1.0 // indirect
141146
github.com/olekukonko/tablewriter v0.0.5 // indirect
142147
github.com/opencontainers/go-digest v1.0.0 // indirect
143-
github.com/opencontainers/image-spec v1.1.0-rc5 // indirect
148+
github.com/opencontainers/image-spec v1.1.0 // indirect
144149
github.com/peterbourgon/diskv v2.0.1+incompatible // indirect
145150
github.com/pkg/errors v0.9.1 // indirect
146151
github.com/prometheus/client_golang v1.19.1 // indirect
147152
github.com/prometheus/client_model v0.6.1 // indirect
148-
github.com/prometheus/common v0.53.0 // indirect
149-
github.com/prometheus/procfs v0.15.0 // indirect
153+
github.com/prometheus/common v0.55.0 // indirect
154+
github.com/prometheus/procfs v0.15.1 // indirect
150155
github.com/rivo/uniseg v0.4.7 // indirect
151-
github.com/rubenv/sql-migrate v1.5.2 // indirect
156+
github.com/rubenv/sql-migrate v1.7.0 // indirect
152157
github.com/russross/blackfriday/v2 v2.1.0 // indirect
153158
github.com/sethvargo/go-retry v0.2.4 // indirect
154-
github.com/shopspring/decimal v1.3.1 // indirect
159+
github.com/shopspring/decimal v1.4.0 // indirect
155160
github.com/sirupsen/logrus v1.9.3 // indirect
156-
github.com/spf13/cast v1.5.0 // indirect
157-
github.com/spf13/cobra v1.7.0 // indirect
161+
github.com/spf13/cast v1.7.0 // indirect
162+
github.com/spf13/cobra v1.8.1 // indirect
158163
github.com/spf13/pflag v1.0.5 // indirect
159164
github.com/stevenle/topsort v0.2.0 // indirect
160165
github.com/tkrajina/go-reflector v0.5.6 // indirect
161166
github.com/ulikunitz/xz v0.5.12 // indirect
167+
github.com/x448/float16 v0.8.4 // indirect
162168
github.com/xeipuuv/gojsonpointer v0.0.0-20190905194746-02993c407bfb // indirect
163169
github.com/xeipuuv/gojsonreference v0.0.0-20180127040603-bd5ef7bd5415 // indirect
164170
github.com/xeipuuv/gojsonschema v1.2.0 // indirect
165171
github.com/xlab/treeprint v1.2.0 // indirect
166172
github.com/zclconf/go-cty v1.14.4 // indirect
167173
go.opencensus.io v0.24.0 // indirect
168-
go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc v0.52.0 // indirect
169-
go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp v0.52.0 // indirect
170-
go.opentelemetry.io/otel v1.27.0 // indirect
174+
go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc v0.53.0 // indirect
175+
go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp v0.53.0 // indirect
176+
go.opentelemetry.io/otel v1.28.0 // indirect
171177
go.opentelemetry.io/otel/exporters/otlp/otlpmetric/otlpmetricgrpc v1.27.0 // indirect
172-
go.opentelemetry.io/otel/exporters/otlp/otlptrace v1.27.0 // indirect
178+
go.opentelemetry.io/otel/exporters/otlp/otlptrace v1.28.0 // indirect
173179
go.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracegrpc v1.27.0 // indirect
174-
go.opentelemetry.io/otel/metric v1.27.0 // indirect
175-
go.opentelemetry.io/otel/sdk v1.27.0 // indirect
180+
go.opentelemetry.io/otel/metric v1.28.0 // indirect
181+
go.opentelemetry.io/otel/sdk v1.28.0 // indirect
176182
go.opentelemetry.io/otel/sdk/metric v1.27.0 // indirect
177-
go.opentelemetry.io/otel/trace v1.27.0 // indirect
178-
go.opentelemetry.io/proto/otlp v1.2.0 // indirect
179-
go.starlark.net v0.0.0-20230525235612-a134d8f9ddca // indirect
180-
golang.org/x/crypto v0.23.0 // indirect
183+
go.opentelemetry.io/otel/trace v1.28.0 // indirect
184+
go.opentelemetry.io/proto/otlp v1.3.1 // indirect
185+
go.starlark.net v0.0.0-20231121155337-90ade8b19d09 // indirect
186+
golang.org/x/crypto v0.26.0 // indirect
181187
golang.org/x/exp v0.0.0-20240525044651-4c93da0ed11d // indirect
182188
golang.org/x/mod v0.17.0 // indirect
183-
golang.org/x/net v0.25.0 // indirect
184-
golang.org/x/oauth2 v0.20.0 // indirect
185-
golang.org/x/sync v0.7.0 // indirect
186-
golang.org/x/sys v0.20.0 // indirect
187-
golang.org/x/term v0.20.0 // indirect
189+
golang.org/x/net v0.26.0 // indirect
190+
golang.org/x/oauth2 v0.21.0 // indirect
191+
golang.org/x/sync v0.8.0 // indirect
192+
golang.org/x/sys v0.23.0 // indirect
193+
golang.org/x/term v0.23.0 // indirect
188194
golang.org/x/time v0.5.0 // indirect
189-
golang.org/x/tools v0.21.0 // indirect
195+
golang.org/x/tools v0.21.1-0.20240508182429-e35e4ccd0d2d // indirect
190196
google.golang.org/api v0.181.0 // indirect
191197
google.golang.org/genproto v0.0.0-20240521202816-d264139d666e // indirect
192-
google.golang.org/genproto/googleapis/api v0.0.0-20240521202816-d264139d666e // indirect
193-
google.golang.org/genproto/googleapis/rpc v0.0.0-20240521202816-d264139d666e // indirect
194-
google.golang.org/grpc v1.64.0 // indirect
195-
google.golang.org/protobuf v1.34.1 // indirect
198+
google.golang.org/genproto/googleapis/api v0.0.0-20240528184218-531527333157 // indirect
199+
google.golang.org/genproto/googleapis/rpc v0.0.0-20240701130421-f6361c86f094 // indirect
200+
google.golang.org/grpc v1.65.0 // indirect
201+
google.golang.org/protobuf v1.34.2 // indirect
202+
gopkg.in/evanphx/json-patch.v4 v4.12.0 // indirect
196203
gopkg.in/inf.v0 v0.9.1 // indirect
197204
gopkg.in/yaml.v2 v2.4.0 // indirect
198-
k8s.io/apiserver v0.28.4 // indirect
199-
k8s.io/cli-runtime v0.28.4 // indirect
200-
k8s.io/component-base v0.28.4 // indirect
201-
k8s.io/klog/v2 v2.100.1 // indirect
202-
k8s.io/kube-openapi v0.0.0-20230717233707-2695361300d9 // indirect
203-
k8s.io/kubectl v0.28.4 // indirect
204-
k8s.io/utils v0.0.0-20230406110748-d93618cff8a2 // indirect
205-
oras.land/oras-go v1.2.4 // indirect
205+
k8s.io/apiserver v0.31.1 // indirect
206+
k8s.io/cli-runtime v0.31.1 // indirect
207+
k8s.io/component-base v0.31.1 // indirect
208+
k8s.io/klog/v2 v2.130.1 // indirect
209+
k8s.io/kube-openapi v0.0.0-20240228011516-70dd3763d340 // indirect
210+
k8s.io/kubectl v0.31.0 // indirect
211+
k8s.io/utils v0.0.0-20240711033017-18e509b52bc8 // indirect
212+
oras.land/oras-go v1.2.5 // indirect
206213
sigs.k8s.io/json v0.0.0-20221116044647-bc3834ca7abd // indirect
207-
sigs.k8s.io/kustomize/api v0.13.5-0.20230601165947-6ce0bf390ce3 // indirect
208-
sigs.k8s.io/kustomize/kyaml v0.14.3-0.20230601165947-6ce0bf390ce3 // indirect
209-
sigs.k8s.io/structured-merge-diff/v4 v4.2.3 // indirect
210-
sigs.k8s.io/yaml v1.3.0 // indirect
214+
sigs.k8s.io/kustomize/api v0.17.2 // indirect
215+
sigs.k8s.io/kustomize/kyaml v0.17.1 // indirect
216+
sigs.k8s.io/structured-merge-diff/v4 v4.4.1 // indirect
217+
sigs.k8s.io/yaml v1.4.0 // indirect
211218
)

0 commit comments

Comments
 (0)