Skip to content

build(deps): bump golang.org/x/crypto to v0.55.0 (CVE-2026-56854) - #283

Merged
crazywoola merged 1 commit into
langgenius:mainfrom
camerono:fix/bump-x-crypto-cve-2026-56854
Sep 3, 2026
Merged

crazywoola merged 1 commit into
langgenius:mainfrom
camerono:fix/bump-x-crypto-cve-2026-56854

Conversation

@camerono

@camerono camerono commented Sep 3, 2026

Copy link
Copy Markdown
Contributor

Bumps indirect golang.org/x/crypto to v0.55.0 to remediate CVE-2026-56854 (CRITICAL) present in the prebuilt langgenius/dify-sandbox image. Only go.mod/go.sum change. Part of langgenius/dify#41709.

@crazywoola
crazywoola merged commit 487de6b into langgenius:main Sep 3, 2026
2 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants