From ef70d3c41b966e6304276f4183bb64a4b23b0cb5 Mon Sep 17 00:00:00 2001 From: Neil Hanlon Date: Wed, 7 Dec 2022 13:28:15 -0500 Subject: [PATCH] bump golang to 1.18.9 for several CVEs * net/http (CVE-2022-41717, CVE-2022-41720) * os (CVE-2022-41720) Signed-off-by: Neil Hanlon --- WORKSPACE | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/WORKSPACE b/WORKSPACE index b31fc7f..683e9c5 100644 --- a/WORKSPACE +++ b/WORKSPACE @@ -54,7 +54,7 @@ go_rules_dependencies() go_register_toolchains( nogo = "@peridot//:nogo", - version = "1.18.3", + version = "1.18.9", ) go_repository(