chore(deps): update module golang.org/x/text to v0.39.0 [security]#2165
chore(deps): update module golang.org/x/text to v0.39.0 [security]#2165renovate[bot] wants to merge 1 commit into
Conversation
ℹ️ Artifact update noticeFile name: go.modIn order to perform the update(s) described in the table above, Renovate ran the
Details:
|
|
|
1 similar comment
|
|
Codecov Report✅ All modified and coverable lines are covered by tests. Additional details and impacted files@@ Coverage Diff @@
## main #2165 +/- ##
=======================================
Coverage 35.95% 35.95%
=======================================
Files 82 82
Lines 7827 7827
=======================================
Hits 2814 2814
Misses 4748 4748
Partials 265 265 ☔ View full report in Codecov by Harness. 🚀 New features to boost your workflow:
|
Signed-off-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
aacf8fa to
67e8ce0
Compare
This PR contains the following updates:
v0.38.0→v0.39.0Infinite loop on invalid input in golang.org/x/text
CVE-2026-56852 / GO-2026-5970
More information
Details
A norm.Iter can enter an infinite loop when handling input containing invalid UTF-8 bytes.
Severity
Unknown
References
This data is provided by OSV and the Go Vulnerability Database (CC-BY 4.0).
Configuration
📅 Schedule: (UTC)
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR was generated by Mend Renovate. View the repository job log.