Skip to content

Bump expr-lang/expr#13440

Merged
brandond merged 1 commit intok3s-io:mainfrom
brandond:bump-expr
Jan 8, 2026
Merged

Bump expr-lang/expr#13440
brandond merged 1 commit intok3s-io:mainfrom
brandond:bump-expr

Conversation

@brandond
Copy link
Copy Markdown
Member

@brandond brandond commented Jan 7, 2026

Proposed Changes

Fixes HIGH CVE-2025-68156. This is an indirect dep from github.com/nats-io/jsm.go but it appears they have not yet bumped it either.

Types of Changes

version bump

Verification

check go.mod and trivvy scans

Testing

Linked Issues

User-Facing Change


Further Comments

Fixes HIGH CVE-2025-68156. This is an indirect dep from github.com/nats-io/jsm.go but it appears they have not yet bumped it either

Signed-off-by: Brad Davidson <brad.davidson@rancher.com>
@brandond brandond requested a review from a team as a code owner January 7, 2026 19:11
@codecov
Copy link
Copy Markdown

codecov bot commented Jan 7, 2026

Codecov Report

✅ All modified and coverable lines are covered by tests.
✅ Project coverage is 21.59%. Comparing base (2ef2865) to head (dec2a8d).
⚠️ Report is 7 commits behind head on main.

Additional details and impacted files
@@            Coverage Diff             @@
##             main   #13440      +/-   ##
==========================================
- Coverage   21.60%   21.59%   -0.01%     
==========================================
  Files         189      189              
  Lines       15382    15382              
==========================================
- Hits         3323     3322       -1     
- Misses      11606    11607       +1     
  Partials      453      453              
Flag Coverage Δ
unittests 21.59% <ø> (-0.01%) ⬇️

Flags with carried forward coverage won't be shown. Click here to find out more.

☔ View full report in Codecov by Sentry.
📢 Have feedback on the report? Share it here.

🚀 New features to boost your workflow:
  • ❄️ Test Analytics: Detect flaky tests, report on failures, and find test suite problems.

@brandond brandond merged commit e4f6784 into k3s-io:main Jan 8, 2026
106 of 112 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants