Skip to content

Conversation

@wiz-betterup
Copy link

@wiz-betterup wiz-betterup bot commented Jan 2, 2026

Wiz Remediation Pull Request Banner

Wiz has created this PR to fix 17 findings detected in this project

Changes were made to the following file(s):

  • /go.mod

Vulnerabilities:

Component Findings Locations
github.com/gomarkdown/markdown
0.0.0-20200824053859-8c8b3816f167 → 0.0.0-20240729212818-a2a9c4f76ef5
High CVE-2023-42821
Medium CVE-2024-44337
/go.mod
go.opentelemetry.io/contrib/instrumentat-
ion/net/http/otelhttp

0.20.0 → 0.44.0
High CVE-2023-45142 /go.mod
golang.org/x/crypto
0.0.0-20220315160706-3147a52a75dd → 0.45.0
Critical CVE-2024-45337
High CVE-2025-22869
Medium CVE-2023-48795
Medium CVE-2025-58181
Medium CVE-2025-47914
/go.mod
golang.org/x/net
0.8.0 → 0.38.0
High CVE-2023-39325
High CVE-2023-44487
High CVE-2023-45288
Medium CVE-2023-3978
Medium CVE-2025-22870
Medium CVE-2025-22872
/go.mod
golang.org/x/oauth2
0.0.0-20211104180415-d3ed0bb246c8 → 0.27.0
High CVE-2025-22868 /go.mod
google.golang.org/grpc
1.47.0 → 1.56.3
High GHSA-m425-mq94-257g /go.mod
google.golang.org/protobuf
1.28.0 → 1.33.0
High CVE-2024-24786 /go.mod

To detect these findings earlier in the dev lifecycle, try using Wiz Code VS Code Extension.

@snyk-io
Copy link

snyk-io bot commented Jan 2, 2026

Snyk checks have failed. 20 issues have been found so far.

Status Scanner Critical High Medium Low Total (20)
Open Source Security 5 15 0 0 20 issues

💻 Catch issues earlier using the plugins for VS Code, JetBrains IDEs, Visual Studio, and Eclipse.

@wiz-betterup wiz-betterup bot closed this Jan 2, 2026
@wiz-betterup wiz-betterup bot deleted the wiz-auto-remediation-41caff44889de3f4 branch January 2, 2026 04:29
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant