Commit Graph

3 Commits

Author SHA1 Message Date
vuln-remediation-agent b984f31505 fix: [CI-23230] remediate vulnerabilities in harnesssecure/email
Bump Go builder to 1.25-alpine3.22, runtime base to alpine:3.22, and
upgrade golang.org/x/crypto to v0.52.0, golang.org/x/net to v0.55.0,
and Masterminds/goutils to v1.1.1. Resolves all 64 Trivy findings on
plugins/email:4.0.2 (2 Critical / 40 High / 20 Medium / 2 Low → 0/0/0/0)
without introducing any new CVEs.

OnDemand baseline scan: Success (Connector=harnesssecure)
OnDemand after-scan: Failed -- scheduler error (harnessdev/PROJECT) on
docker.io connector path; needs manual re-run to confirm Prisma Cloud
delta.
2026-06-24 04:20:21 +00:00
Ompragash Viswanathan 514809ac1a feat: migrate to Go 1.24 with modern dependencies and Go modules 2025-10-14 01:18:59 +05:30
Ompragash Viswanathan 6cdc129e0b Update base image version to fix sec vuln and renamed Dockerfiles for clarity 2024-11-13 16:52:46 +05:30