Commit 66f8f28
fix(cve): Fix CVE-2026-34986 (go-jose DoS)
Bump go-jose/go-jose/v4 from v4.0.5 to v4.1.4 to address CVE-2026-34986.
The vulnerability allows Denial of Service via a crafted JSON Web
Encryption (JWE) object when using key wrapping algorithms.
Jira: SRVKP-11500
Made-with: Cursor1 parent 43d2c0d commit 66f8f28
File tree
14 files changed
+277
-215
lines changed- vendor
- github.com/go-jose/go-jose/v4
- cipher
14 files changed
+277
-215
lines changed| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
44 | 44 | | |
45 | 45 | | |
46 | 46 | | |
47 | | - | |
| 47 | + | |
48 | 48 | | |
49 | 49 | | |
50 | 50 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
1765 | 1765 | | |
1766 | 1766 | | |
1767 | 1767 | | |
1768 | | - | |
1769 | | - | |
| 1768 | + | |
| 1769 | + | |
1770 | 1770 | | |
1771 | 1771 | | |
1772 | 1772 | | |
| |||
This file was deleted.
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.
0 commit comments