From c54c5e5992d2830012b63aa18df27b20f207dd4e Mon Sep 17 00:00:00 2001 From: Saylor Berman Date: Mon, 26 Jun 2023 13:09:05 -0600 Subject: [PATCH 1/2] Pin logex dependency to licensed version Problem: The transitive dependency 'logex' is pinned to a version that is unlicensed. Solution: Update go.mod to pin 'logex' to a licensed version with the same functionality. --- go.mod | 2 ++ go.sum | 2 +- 2 files changed, 3 insertions(+), 1 deletion(-) diff --git a/go.mod b/go.mod index 559fd88609..a1e7781ef9 100644 --- a/go.mod +++ b/go.mod @@ -2,6 +2,8 @@ module github.com/nginxinc/nginx-kubernetes-gateway go 1.20 +replace github.com/chzyer/logex v1.1.10 => github.com/chzyer/logex v1.2.0 + require ( github.com/go-logr/logr v1.2.4 github.com/google/go-cmp v0.5.9 diff --git a/go.sum b/go.sum index 998906239c..c4dcdf05d0 100644 --- a/go.sum +++ b/go.sum @@ -8,7 +8,7 @@ github.com/beorn7/perks v1.0.1/go.mod h1:G2ZrVWU2WbWT9wwq4/hrbKbnv/1ERSJQ0ibhJ6r github.com/census-instrumentation/opencensus-proto v0.2.1/go.mod h1:f6KPmirojxKA12rnyqOA5BBL4O983OfeGPqjHWSTneU= github.com/cespare/xxhash/v2 v2.2.0 h1:DC2CZ1Ep5Y4k3ZQ899DldepgrayRUGE6BBZ/cd9Cj44= github.com/cespare/xxhash/v2 v2.2.0/go.mod h1:VGX0DQ3Q6kWi7AoAeZDth3/j3BFtOZR5XLFGgcrjCOs= -github.com/chzyer/logex v1.1.10/go.mod h1:+Ywpsq7O8HXn0nuIou7OrIPyXbp3wmkHB+jjWRnGsAI= +github.com/chzyer/logex v1.2.0/go.mod h1:9+9sk7u7pGNWYMkh0hdiL++6OeibzJccyQU4p4MedaY= github.com/chzyer/readline v0.0.0-20180603132655-2972be24d48e/go.mod h1:nSuG5e5PlCu98SY8svDHJxuZscDgtXS6KTTbou5AhLI= github.com/chzyer/test v0.0.0-20180213035817-a1ea475d72b1/go.mod h1:Q3SI9o4m/ZMnBNeIyt5eFwwo7qiLfzFZmjNmxjkiQlU= github.com/client9/misspell v0.3.4/go.mod h1:qj6jICC3Q7zFZvVWo7KLAzC3yx5G7kyvSDkc90ppPyw= From 13a527e460bc234e4940666999cd1066fd584b74 Mon Sep 17 00:00:00 2001 From: Saylor Berman Date: Mon, 26 Jun 2023 13:18:27 -0600 Subject: [PATCH 2/2] Add comment --- go.mod | 1 + 1 file changed, 1 insertion(+) diff --git a/go.mod b/go.mod index a1e7781ef9..102ff95e71 100644 --- a/go.mod +++ b/go.mod @@ -2,6 +2,7 @@ module github.com/nginxinc/nginx-kubernetes-gateway go 1.20 +// Pinned to a version that is properly licensed. replace github.com/chzyer/logex v1.1.10 => github.com/chzyer/logex v1.2.0 require (