b403f6c894
trivy на стенде нашёл в v0.55.0 две MEDIUM-уязвимости x/crypto/ssh (CVE-2026-56855, CVE-2026-78662) и неподдерживаемый openpgp; сам код их не вызывает (govulncheck чист), но обновление убирает находки из отчёта AppSec.
23 lines
597 B
Modula-2
23 lines
597 B
Modula-2
module glchat
|
|
|
|
go 1.26.0
|
|
|
|
require (
|
|
github.com/coder/websocket v1.8.15
|
|
github.com/danielgtaylor/huma/v2 v2.39.1
|
|
github.com/go-chi/chi/v5 v5.3.2
|
|
github.com/mattn/go-sqlite3 v1.14.52
|
|
github.com/pquerna/otp v1.5.0
|
|
github.com/pressly/goose/v3 v3.28.0
|
|
golang.org/x/crypto v0.57.0
|
|
)
|
|
|
|
require (
|
|
github.com/boombuler/barcode v1.0.1-0.20190219062509-6c824513bacc // indirect
|
|
github.com/mfridman/interpolate v0.0.2 // indirect
|
|
github.com/sethvargo/go-retry v0.4.0 // indirect
|
|
go.uber.org/multierr v1.11.0 // indirect
|
|
golang.org/x/sync v0.22.0 // indirect
|
|
golang.org/x/sys v0.48.0 // indirect
|
|
)
|