Skip to content

fix(deps): bump grpc-go to v1.83.2 to resolve HIGH CVE-2026-84445 - #83

Merged
srm6867 merged 1 commit into
masterfrom
fix/grpc-cve-2026-84445
Sep 11, 2026
Merged

srm6867 merged 1 commit into
masterfrom
fix/grpc-cve-2026-84445

Conversation

@srm6867

@srm6867 srm6867 commented Sep 11, 2026

Copy link
Copy Markdown

google.golang.org/grpc v1.83.1 is vulnerable to CVE-2026-84445 (xDS servers DoS via missing :authority/Host headers), flagged by the Trivy Security Scan. Bump across all three modules (root, api/v2, examples).

google.golang.org/grpc v1.83.1 is vulnerable to CVE-2026-84445 (xDS
servers DoS via missing :authority/Host headers), flagged by the
Trivy Security Scan. Bump across all three modules (root, api/v2,
examples).

Co-Authored-By: Claude Sonnet 5 <noreply@anthropic.com>
@mridulgain mridulgain assigned mridulgain and srm6867 and unassigned mridulgain Sep 11, 2026
@srm6867
srm6867 merged commit e5be5fc into master Sep 11, 2026
11 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants