Skip to content

chore(deps): bump github.com/golang-jwt/jwt/v5 to v5.3.1#13847

Draft
thaJeztah wants to merge 3 commits into
docker:mainfrom
thaJeztah:bump_jwt
Draft

chore(deps): bump github.com/golang-jwt/jwt/v5 to v5.3.1#13847
thaJeztah wants to merge 3 commits into
docker:mainfrom
thaJeztah:bump_jwt

Conversation

@thaJeztah

Copy link
Copy Markdown
Member

full diff: golang-jwt/jwt@v5.3.0...v5.3.1

What I did

Related issue

(not mandatory) A picture of a cute animal, if possible in relation to what you did

@thaJeztah

Copy link
Copy Markdown
Member Author

OK same error here;

=== Failed
=== FAIL: pkg/e2e TestPublishChecks/detect_sensitive_data (0.08s)
    publish_test.go:152: assertion failed: expression is false: strings.Contains(output, "JSON Web Token\n\"\": ***"+"eyJzdWIiOiIxMjM0NTY3ODkwIiwibmFtZSI6IkpvaG4gRG9lIiwiaWF0IjoxNTE2MjM5MDIyfQ.SflKxwRJSMeKKF2QT4fwpMeJf36POk6yJV_adQssw"): you are about to publish sensitive data within your OCI artifact.
        please double check that you are not leaking sensitive data
        AWS Client ID
        "services.serviceA.environment.AWS_ACCESS_KEY_ID": A3TX1234567890ABCDEF
        AWS Secret Key
        "services.serviceA.environment.AWS_SECRET_ACCESS_KEY": aws"12345+67890/abcdefghijklm+NOPQRSTUVWXYZ+"
        Keyword Detector
        "secrets.mysecret.file": /home/runner/work/compose/compose/pkg/e2e/fixtures/publish/secret.txt
        Github authentication
        "GITHUB_TOKEN": ***
        Private Key
        "": -----BEGIN DSA PRIVATE KEY-----
        wxyz+ABC=
        -----END DSA PRIVATE KEY-----
        Are you ok to publish these sensitive data?
        
    --- FAIL: TestPublishChecks/detect_sensitive_data (0.08s)

Signed-off-by: Sebastiaan van Stijn <github@gone.nl>
full diff: golang-jwt/jwt@v5.3.0...v5.3.1

Signed-off-by: Sebastiaan van Stijn <github@gone.nl>
This reverts commit a142729.

Signed-off-by: Sebastiaan van Stijn <github@gone.nl>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant