Skip to content

Conversation

dependency-envoy[bot]
Copy link
Contributor

@dependency-envoy dependency-envoy bot commented Sep 30, 2025

Resolve a couple of CVEs (CVE-2025-27817, CVE-2025-27818) that most likely dont affect us but are showing up in our scanner

Signed-off-by: dependency-envoy[bot] <148525496+dependency-envoy[bot]@users.noreply.github.com>

@repokitteh-read-only repokitteh-read-only bot added the deps Approval required for changes to Envoy's external dependencies label Sep 30, 2025
@repokitteh-read-only
Copy link

CC @envoyproxy/dependency-shepherds: Your approval is needed for changes made to (bazel/.*repos.*\.bzl)|(bazel/dependency_imports\.bzl)|(api/bazel/.*\.bzl)|(.*/requirements\.txt)|(.*\.patch).
envoyproxy/dependency-shepherds assignee is @moderation

🐱

Caused by: #41286 was opened by dependency-envoy[bot].

see: more, trace.

Signed-off-by: dependency-envoy[bot] <148525496+dependency-envoy[bot]@users.noreply.github.com>
@phlax phlax force-pushed the dependency/bazel/kafka_source/4.1.0 branch from 13e4d7b to 70e509f Compare September 30, 2025 13:32
@phlax phlax changed the title deps: Bump kafka_source -> 4.1.0 deps: Bump kafka_source (+kafka_server_binary) -> 4.1.0 Sep 30, 2025
@phlax
Copy link
Member

phlax commented Sep 30, 2025

cc @adamkotwasinski

@phlax
Copy link
Member

phlax commented Sep 30, 2025

closing in favour of #41287 to avoid dealing with protocol changes

@phlax phlax closed this Sep 30, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

deps Approval required for changes to Envoy's external dependencies

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants