Skip to content

Commit bad027f

Browse files
authored
cluster-api-helm-controller: add pending-upstream-fix advisories for GHSA-5xqw-8hwv-wg92 and GHSA-4hfp-h4cw-hj8p (#21343)
1 parent c1ac744 commit bad027f

File tree

1 file changed

+8
-0
lines changed

1 file changed

+8
-0
lines changed

cluster-api-helm-controller.advisories.yaml

Lines changed: 8 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -88,6 +88,10 @@ advisories:
8888
componentType: go-module
8989
componentLocation: /usr/bin/cluster-api-helm-controller
9090
scanner: grype
91+
- timestamp: 2025-08-04T17:20:24Z
92+
type: pending-upstream-fix
93+
data:
94+
note: "Upstream needs to make code changes in order to upgrade helm.sh/helm/v3 to 3.18.4. Pending PR is inflight awaiting upstream approval: https://github.com/kubernetes-sigs/cluster-api-addon-provider-helm/pull/420"
9195
- timestamp: 2025-08-02T00:37:37Z
9296
type: pending-upstream-fix
9397
data:
@@ -132,6 +136,10 @@ advisories:
132136
componentType: go-module
133137
componentLocation: /usr/bin/cluster-api-helm-controller
134138
scanner: grype
139+
- timestamp: 2025-08-04T17:20:24Z
140+
type: pending-upstream-fix
141+
data:
142+
note: "Upstream needs to make code changes in order to upgrade helm.sh/helm/v3 to 3.18.4. Pending PR is inflight awaiting upstream approval: https://github.com/kubernetes-sigs/cluster-api-addon-provider-helm/pull/420"
135143
- timestamp: 2025-08-02T00:37:37Z
136144
type: pending-upstream-fix
137145
data:

0 commit comments

Comments
 (0)