Skip to content

Commit 079ea68

Browse files
authored
Development (#58)
* fix: Update to go 1.22.3 remediates CVE-2024-24788 * chore: tidied up unused dependencies. Remediates CVE-2023-47108 by removing the unused dependency
1 parent 20c7439 commit 079ea68

File tree

3 files changed

+7
-667
lines changed

3 files changed

+7
-667
lines changed

.mise.toml

+1-1
Original file line numberDiff line numberDiff line change
@@ -1,5 +1,5 @@
11
[tools]
2-
go = "latest"
2+
go = "1.22.3"
33
watchexec = "latest"
44
"go:github.com/golangci/golangci-lint/cmd/golangci-lint" = "1.58.1"
55
"go:golang.org/x/tools/cmd/goimports" = "latest"

go.mod

+6-121
Original file line numberDiff line numberDiff line change
@@ -1,6 +1,6 @@
11
module github.com/madsrc/sophrosyne
22

3-
go 1.22.2
3+
go 1.22.3
44

55
require (
66
github.com/cedar-policy/cedar-go v0.0.0-20240423170804-f3d86202cb43
@@ -14,7 +14,8 @@ require (
1414
github.com/knadh/koanf/providers/file v0.1.0
1515
github.com/knadh/koanf/v2 v2.1.1
1616
github.com/stretchr/testify v1.9.0
17-
github.com/testcontainers/testcontainers-go/modules/compose v0.30.0
17+
github.com/testcontainers/testcontainers-go v0.30.0
18+
github.com/testcontainers/testcontainers-go/modules/postgres v0.30.0
1819
github.com/urfave/cli/v2 v2.27.2
1920
go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp v0.50.0
2021
go.opentelemetry.io/otel v1.25.0
@@ -26,197 +27,81 @@ require (
2627
go.opentelemetry.io/otel/sdk v1.25.0
2728
go.opentelemetry.io/otel/sdk/metric v1.25.0
2829
go.opentelemetry.io/otel/trace v1.25.0
30+
google.golang.org/grpc v1.63.0
31+
google.golang.org/protobuf v1.33.0
2932
gopkg.in/yaml.v3 v3.0.1
3033
)
3134

3235
require (
3336
dario.cat/mergo v1.0.0 // indirect
34-
github.com/AdaLogics/go-fuzz-headers v0.0.0-20230811130428-ced1acdcaa24 // indirect
35-
github.com/AlecAivazis/survey/v2 v2.3.7 // indirect
3637
github.com/Azure/go-ansiterm v0.0.0-20230124172434-306776ec8161 // indirect
37-
github.com/Masterminds/semver/v3 v3.2.1 // indirect
3838
github.com/Microsoft/go-winio v0.6.1 // indirect
3939
github.com/Microsoft/hcsshim v0.11.4 // indirect
40-
github.com/aws/aws-sdk-go-v2 v1.17.6 // indirect
41-
github.com/aws/aws-sdk-go-v2/config v1.18.16 // indirect
42-
github.com/aws/aws-sdk-go-v2/credentials v1.13.16 // indirect
43-
github.com/aws/aws-sdk-go-v2/feature/ec2/imds v1.12.24 // indirect
44-
github.com/aws/aws-sdk-go-v2/internal/configsources v1.1.30 // indirect
45-
github.com/aws/aws-sdk-go-v2/internal/endpoints/v2 v2.4.24 // indirect
46-
github.com/aws/aws-sdk-go-v2/internal/ini v1.3.31 // indirect
47-
github.com/aws/aws-sdk-go-v2/service/internal/presigned-url v1.9.24 // indirect
48-
github.com/aws/aws-sdk-go-v2/service/sso v1.12.5 // indirect
49-
github.com/aws/aws-sdk-go-v2/service/ssooidc v1.14.5 // indirect
50-
github.com/aws/aws-sdk-go-v2/service/sts v1.18.6 // indirect
51-
github.com/aws/smithy-go v1.13.5 // indirect
52-
github.com/beorn7/perks v1.0.1 // indirect
53-
github.com/buger/goterm v1.0.4 // indirect
5440
github.com/cenkalti/backoff/v4 v4.3.0 // indirect
55-
github.com/cespare/xxhash/v2 v2.2.0 // indirect
56-
github.com/compose-spec/compose-go/v2 v2.0.0-rc.8.0.20240228111658-a0507e98fe60 // indirect
57-
github.com/containerd/console v1.0.3 // indirect
5841
github.com/containerd/containerd v1.7.12 // indirect
59-
github.com/containerd/continuity v0.4.2 // indirect
6042
github.com/containerd/log v0.1.0 // indirect
61-
github.com/containerd/typeurl/v2 v2.1.1 // indirect
6243
github.com/cpuguy83/dockercfg v0.3.1 // indirect
6344
github.com/cpuguy83/go-md2man/v2 v2.0.4 // indirect
6445
github.com/davecgh/go-spew v1.1.1 // indirect
6546
github.com/distribution/reference v0.5.0 // indirect
66-
github.com/docker/buildx v0.12.0-rc2.0.20231219140829-617f538cb315 // indirect
67-
github.com/docker/cli v25.0.4-0.20240305161310-2bf4225ad269+incompatible // indirect
68-
github.com/docker/compose/v2 v2.24.7 // indirect
69-
github.com/docker/distribution v2.8.3+incompatible // indirect
7047
github.com/docker/docker v25.0.5+incompatible // indirect
71-
github.com/docker/docker-credential-helpers v0.8.0 // indirect
72-
github.com/docker/go v1.5.1-1.0.20160303222718-d30aec9fd63c // indirect
7348
github.com/docker/go-connections v0.5.0 // indirect
74-
github.com/docker/go-metrics v0.0.1 // indirect
7549
github.com/docker/go-units v0.5.0 // indirect
76-
github.com/emicklei/go-restful/v3 v3.10.1 // indirect
7750
github.com/felixge/httpsnoop v1.0.4 // indirect
78-
github.com/fsnotify/fsevents v0.1.1 // indirect
7951
github.com/fsnotify/fsnotify v1.6.0 // indirect
80-
github.com/fvbommel/sortorder v1.0.2 // indirect
8152
github.com/gabriel-vasile/mimetype v1.4.3 // indirect
8253
github.com/go-logr/logr v1.4.1 // indirect
8354
github.com/go-logr/stdr v1.2.2 // indirect
8455
github.com/go-ole/go-ole v1.2.6 // indirect
85-
github.com/go-openapi/jsonpointer v0.19.5 // indirect
86-
github.com/go-openapi/jsonreference v0.20.0 // indirect
87-
github.com/go-openapi/swag v0.19.14 // indirect
8856
github.com/go-playground/locales v0.14.1 // indirect
8957
github.com/go-playground/universal-translator v0.18.1 // indirect
9058
github.com/go-viper/mapstructure/v2 v2.0.0-alpha.1 // indirect
91-
github.com/gofrs/flock v0.8.1 // indirect
92-
github.com/gogo/googleapis v1.4.1 // indirect
9359
github.com/gogo/protobuf v1.3.2 // indirect
94-
github.com/golang/protobuf v1.5.4 // indirect
95-
github.com/google/gnostic v0.5.7-v3refs // indirect
96-
github.com/google/go-cmp v0.6.0 // indirect
97-
github.com/google/gofuzz v1.2.0 // indirect
98-
github.com/google/shlex v0.0.0-20191202100458-e7afc7fbc510 // indirect
9960
github.com/google/uuid v1.6.0 // indirect
100-
github.com/gorilla/mux v1.8.1 // indirect
101-
github.com/grpc-ecosystem/go-grpc-middleware v1.3.0 // indirect
10261
github.com/grpc-ecosystem/grpc-gateway/v2 v2.19.0 // indirect
10362
github.com/hashicorp/errwrap v1.1.0 // indirect
104-
github.com/hashicorp/go-cleanhttp v0.5.2 // indirect
10563
github.com/hashicorp/go-multierror v1.1.1 // indirect
106-
github.com/hashicorp/go-version v1.6.0 // indirect
107-
github.com/imdario/mergo v0.3.16 // indirect
108-
github.com/in-toto/in-toto-golang v0.5.0 // indirect
109-
github.com/inconshreveable/mousetrap v1.1.0 // indirect
11064
github.com/jackc/pgerrcode v0.0.0-20220416144525-469b46aa5efa // indirect
11165
github.com/jackc/pgpassfile v1.0.0 // indirect
11266
github.com/jackc/pgservicefile v0.0.0-20221227161230-091c0ba34f0a // indirect
11367
github.com/jackc/puddle/v2 v2.2.1 // indirect
114-
github.com/jonboulle/clockwork v0.4.0 // indirect
115-
github.com/josharian/intern v1.0.0 // indirect
116-
github.com/json-iterator/go v1.1.12 // indirect
117-
github.com/kballard/go-shellquote v0.0.0-20180428030007-95032a82bc51 // indirect
11868
github.com/klauspost/compress v1.17.4 // indirect
11969
github.com/knadh/koanf/maps v0.1.1 // indirect
12070
github.com/leodido/go-urn v1.4.0 // indirect
12171
github.com/lufia/plan9stats v0.0.0-20211012122336-39d0f177ccd0 // indirect
12272
github.com/magiconair/properties v1.8.7 // indirect
123-
github.com/mailru/easyjson v0.7.6 // indirect
124-
github.com/mattn/go-colorable v0.1.13 // indirect
125-
github.com/mattn/go-isatty v0.0.17 // indirect
126-
github.com/mattn/go-runewidth v0.0.15 // indirect
127-
github.com/mattn/go-shellwords v1.0.12 // indirect
128-
github.com/matttproud/golang_protobuf_extensions v1.0.4 // indirect
129-
github.com/mgutz/ansi v0.0.0-20170206155736-9520e82c474b // indirect
130-
github.com/miekg/pkcs11 v1.1.1 // indirect
13173
github.com/mitchellh/copystructure v1.2.0 // indirect
132-
github.com/mitchellh/mapstructure v1.5.0 // indirect
13374
github.com/mitchellh/reflectwalk v1.0.2 // indirect
134-
github.com/moby/buildkit v0.13.0-beta1.0.20231219135447-957cb50df991 // indirect
135-
github.com/moby/locker v1.0.1 // indirect
13675
github.com/moby/patternmatcher v0.6.0 // indirect
137-
github.com/moby/spdystream v0.2.0 // indirect
138-
github.com/moby/sys/mountinfo v0.7.1 // indirect
13976
github.com/moby/sys/sequential v0.5.0 // indirect
140-
github.com/moby/sys/signal v0.7.0 // indirect
141-
github.com/moby/sys/symlink v0.2.0 // indirect
14277
github.com/moby/sys/user v0.1.0 // indirect
14378
github.com/moby/term v0.5.0 // indirect
144-
github.com/modern-go/concurrent v0.0.0-20180306012644-bacd9c7ef1dd // indirect
145-
github.com/modern-go/reflect2 v1.0.2 // indirect
14679
github.com/morikuni/aec v1.0.0 // indirect
147-
github.com/munnerz/goautoneg v0.0.0-20191010083416-a7dc8b61c822 // indirect
14880
github.com/opencontainers/go-digest v1.0.0 // indirect
14981
github.com/opencontainers/image-spec v1.1.0 // indirect
150-
github.com/pelletier/go-toml v1.9.5 // indirect
15182
github.com/pkg/errors v0.9.1 // indirect
15283
github.com/pmezard/go-difflib v1.0.0 // indirect
15384
github.com/power-devops/perfstat v0.0.0-20210106213030-5aafc221ea8c // indirect
154-
github.com/prometheus/client_golang v1.16.0 // indirect
155-
github.com/prometheus/client_model v0.4.0 // indirect
156-
github.com/prometheus/common v0.42.0 // indirect
157-
github.com/prometheus/procfs v0.10.1 // indirect
158-
github.com/rivo/uniseg v0.2.0 // indirect
15985
github.com/russross/blackfriday/v2 v2.1.0 // indirect
160-
github.com/secure-systems-lab/go-securesystemslib v0.4.0 // indirect
161-
github.com/serialx/hashring v0.0.0-20190422032157-8b2912629002 // indirect
162-
github.com/shibumi/go-pathspec v1.3.0 // indirect
16386
github.com/shirou/gopsutil/v3 v3.23.12 // indirect
16487
github.com/shoenig/go-m1cpu v0.1.6 // indirect
16588
github.com/sirupsen/logrus v1.9.3 // indirect
166-
github.com/spf13/cobra v1.8.0 // indirect
167-
github.com/spf13/pflag v1.0.5 // indirect
168-
github.com/testcontainers/testcontainers-go v0.30.0 // indirect
169-
github.com/testcontainers/testcontainers-go/modules/postgres v0.30.0 // indirect
170-
github.com/theupdateframework/notary v0.7.0 // indirect
171-
github.com/tilt-dev/fsnotify v1.4.8-0.20220602155310-fff9c274a375 // indirect
17289
github.com/tklauser/go-sysconf v0.3.12 // indirect
17390
github.com/tklauser/numcpus v0.6.1 // indirect
174-
github.com/tonistiigi/fsutil v0.0.0-20230825212630-f09800878302 // indirect
175-
github.com/tonistiigi/units v0.0.0-20180711220420-6950e57a87ea // indirect
176-
github.com/tonistiigi/vt100 v0.0.0-20230623042737-f9a4f7ef6531 // indirect
177-
github.com/xeipuuv/gojsonpointer v0.0.0-20190905194746-02993c407bfb // indirect
178-
github.com/xeipuuv/gojsonreference v0.0.0-20180127040603-bd5ef7bd5415 // indirect
179-
github.com/xeipuuv/gojsonschema v1.2.0 // indirect
18091
github.com/xrash/smetrics v0.0.0-20240312152122-5f08fbb34913 // indirect
18192
github.com/yusufpapurcu/wmi v1.2.3 // indirect
182-
go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc v0.45.0 // indirect
183-
go.opentelemetry.io/contrib/instrumentation/net/http/httptrace/otelhttptrace v0.45.0 // indirect
184-
go.opentelemetry.io/otel/exporters/otlp/otlpmetric v0.42.0 // indirect
185-
go.opentelemetry.io/otel/exporters/otlp/otlpmetric/otlpmetricgrpc v0.42.0 // indirect
18693
go.opentelemetry.io/otel/exporters/otlp/otlptrace v1.25.0 // indirect
187-
go.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracegrpc v1.19.0 // indirect
188-
go.opentelemetry.io/otel/exporters/prometheus v0.42.0 // indirect
18994
go.opentelemetry.io/proto/otlp v1.1.0 // indirect
19095
go.uber.org/atomic v1.7.0 // indirect
191-
go.uber.org/mock v0.4.0 // indirect
19296
golang.org/x/crypto v0.21.0 // indirect
19397
golang.org/x/exp v0.0.0-20240222234643-814bf88cf225 // indirect
19498
golang.org/x/mod v0.16.0 // indirect
19599
golang.org/x/net v0.23.0 // indirect
196-
golang.org/x/oauth2 v0.17.0 // indirect
197100
golang.org/x/sync v0.6.0 // indirect
198101
golang.org/x/sys v0.18.0 // indirect
199-
golang.org/x/term v0.18.0 // indirect
200102
golang.org/x/text v0.14.0 // indirect
201-
golang.org/x/time v0.3.0 // indirect
202103
golang.org/x/tools v0.18.0 // indirect
203-
google.golang.org/appengine v1.6.8 // indirect
204-
google.golang.org/genproto v0.0.0-20240227224415-6ceb2ff114de // indirect
205104
google.golang.org/genproto/googleapis/api v0.0.0-20240227224415-6ceb2ff114de // indirect
206105
google.golang.org/genproto/googleapis/rpc v0.0.0-20240401170217-c3f982113cda // indirect
207-
google.golang.org/grpc v1.63.0 // indirect
208-
google.golang.org/protobuf v1.33.0 // indirect
209-
gopkg.in/inf.v0 v0.9.1 // indirect
210-
gopkg.in/yaml.v2 v2.4.0 // indirect
211-
k8s.io/api v0.26.7 // indirect
212-
k8s.io/apimachinery v0.26.7 // indirect
213-
k8s.io/apiserver v0.26.7 // indirect
214-
k8s.io/client-go v0.26.7 // indirect
215-
k8s.io/klog/v2 v2.90.1 // indirect
216-
k8s.io/kube-openapi v0.0.0-20221012153701-172d655c2280 // indirect
217-
k8s.io/utils v0.0.0-20230220204549-a5ecb0141aa5 // indirect
218-
sigs.k8s.io/json v0.0.0-20220713155537-f223a00ba0e2 // indirect
219-
sigs.k8s.io/structured-merge-diff/v4 v4.2.3 // indirect
220-
sigs.k8s.io/yaml v1.3.0 // indirect
221-
tags.cncf.io/container-device-interface v0.6.2 // indirect
106+
gotest.tools/v3 v3.5.1 // indirect
222107
)

0 commit comments

Comments
 (0)