From 4aa2a0fa19e611553d595dd210615edadd32120c Mon Sep 17 00:00:00 2001 From: Kevin Seiter Date: Thu, 6 Aug 2026 09:25:55 -0400 Subject: [PATCH] =?UTF-8?q?fix(security):=20[Project=20Darkstar]=20remedia?= =?UTF-8?q?te=20Go=20stdlib=20CVEs=20=E2=80=94=20add=20toolchain=20go1.26.?= =?UTF-8?q?5?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit Addresses CVE-2026-39822 (CVSS 7.5) and CVE-2026-42505 (CVSS 5.3). Adds Go toolchain directive go1.26.5 to go.mod. Ref: ROSAENG-63302 Project Darkstar — automated CVE remediation (contact: Kevin Seiter) --- go.mod | 2 ++ 1 file changed, 2 insertions(+) diff --git a/go.mod b/go.mod index a622470a..35fec1fe 100644 --- a/go.mod +++ b/go.mod @@ -2,6 +2,8 @@ module github.com/openshift/managed-cluster-validating-webhooks go 1.26.0 +toolchain go1.26.5 + require ( github.com/evanphx/json-patch v5.9.11+incompatible github.com/ghodss/yaml v1.0.1-0.20220118164431-d8423dcdf344