Skip to content

Conversation

genslein
Copy link

@genslein genslein commented Oct 12, 2023

Greetings all,

We're trying to help patch the http2 zero-day exploit and would ask a patch release be made to the exporter.

https://security.snyk.io/vuln/SNYK-GOLANG-GOLANGORGXNETHTTP2-5953327

Related dependabot change #936

Please feel free to make changes but prioritize the security fix.

Signed-off-by: Gabe Enslein <[email protected]>
Signed-off-by: Gabriel Enslein <[email protected]>
@SuperQ
Copy link
Contributor

SuperQ commented Oct 16, 2023

Fixed by dependabot. #936

@SuperQ SuperQ closed this Oct 16, 2023
@genslein genslein deleted the fix/http2-zero-day branch October 16, 2023 14:32
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants