Skip to content

chore(deps): bump golang.org/x/crypto from 0.40.0 to 0.45.0

bb17d8b
Select commit
Loading
Failed to load commit list.
Open

chore(deps): bump golang.org/x/crypto from 0.40.0 to 0.45.0 #713

chore(deps): bump golang.org/x/crypto from 0.40.0 to 0.45.0
bb17d8b
Select commit
Loading
Failed to load commit list.
Kusari Inspector / Kusari Inspector succeeded Nov 20, 2025 in 58s

Security Analysis Passed

No security issues found

Details

Kusari Inspector

Kusari Analysis Results:

Proceed with these changes

✅ No Flagged Issues Detected
All values appear to be within acceptable risk parameters.

Both dependency and code security analyses unanimously support proceeding with this PR. This is a beneficial security update that fixes CVE-2025-47913 in golang.org/x/crypto (updating from vulnerable version 0.40.0 to patched version 0.45.0), which addresses a denial of service vulnerability in SSH agent functionality. The comprehensive code analysis found zero security issues across all categories, confirming no new risks are introduced. This standard Dependabot update improves the security posture by resolving a known vulnerability while maintaining clean security hygiene.

Note

View full detailed analysis result for more information on the output and the checks that were run.


@kusari-inspector rerun - Trigger a re-analysis of this PR
@kusari-inspector feedback [your message] - Send feedback to our AI and team
See Kusari's documentation for setup and configuration.
Commit: bb17d8b, performed at: 2025-11-20T02:41:27Z