Skip to content

Conversation

@Keralin
Copy link
Contributor

@Keralin Keralin commented Dec 5, 2025

Summary

This PR addresses security vulnerability CVE-2025-61729 (HIGH) in Go stdlib and prepares the v0.9.9 release.

Security fix:

Changes:

  • build: Upgrade Dockerfile base image golang:1.25.3 → golang:1.25.5
  • deps: Update go.mod Go version 1.25.3 → 1.25.5
  • docs: Update README.md version references to v0.9.9

Ready for release tagging after merge.

Addresses HIGH severity vulnerability in Go stdlib.
@Keralin Keralin force-pushed the fix/go-1.25.5-cve-2025-61729 branch from 0398d41 to 8e41677 Compare December 5, 2025 08:30
@Keralin Keralin changed the title fix: upgrade to Go 1.25.5 to address CVE-2025-61729 fix: upgrade to Go 1.25.5 to address CVE-2025-61729 + prepare v0.9.9 release Dec 5, 2025
@jwilder jwilder merged commit ffdb7e4 into jwilder:master Dec 5, 2025
1 check passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants