Update ktrysmt/go-bitbucket to v0.9.88#181
Conversation
|
All contributors have signed the CLA ✍️ ✅ |
cdf6aea to
1f04e08
Compare
📗 Scan Summary
📦 Vulnerable Dependencies
🔖 Details[ CVE-2025-47913 ] golang.org/x/crypto v0.41.0Vulnerability DetailsUnhandled data type in crypto/ssh may result in client denial of service when connecting to untrusted SSH agents 🔬 JFrog Research DetailsDescription: An example of a vulnerable client: [ CVE-2025-58181 ] golang.org/x/crypto v0.41.0Vulnerability Details
SSH servers parsing GSSAPI authentication requests do not validate the number of mechanisms specified in the request, allowing an attacker to cause unbounded memory consumption. [ CVE-2025-47914 ] golang.org/x/crypto v0.41.0Vulnerability Details
SSH Agent servers do not validate the size of messages when processing new identity requests, which may cause the program to panic if the message is malformed due to an out of bounds read. |



go fmt ./...for formatting the code before submitting the pull request.