Skip to content

[GO-2025]: Updated google-cloud-bigquerystorage to 2.40.0 #2193

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Open
wants to merge 3 commits into
base: master
Choose a base branch
from

Conversation

PrajwalKathwate
Copy link
Contributor

@PrajwalKathwate PrajwalKathwate commented May 21, 2025

Description:
Updating the com.google.cloud:google-cloud-bigquerystorage dependency to a newer version to ensure the transitive org.json library and io.grpc:grpc-protobuf is also updated, thereby addressing vulnerability CVE-2022-45688 and CVE-2023-1428

References

JIRA: https://zendesk.atlassian.net/browse/GO-2025
Risks: NA

Level: Low
Notes for Rollback: NA

Copy link
Contributor

@petern-sc petern-sc left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Please don't introduce new unused direct dependencies

@PrajwalKathwate PrajwalKathwate changed the title [GO-2025]: Updated org-json to 20231013 [GO-2025]: Updated google-cloud-bigquerystorage to 3.14.1 May 21, 2025
@PrajwalKathwate PrajwalKathwate requested a review from petern-sc May 21, 2025 07:43
@PrajwalKathwate PrajwalKathwate changed the title [GO-2025]: Updated google-cloud-bigquerystorage to 3.14.1 [GO-2025]: Updated google-cloud-bigquerystorage to 2.40.0 May 21, 2025
@aniruddha-navare aniruddha-navare requested a review from osheroff May 27, 2025 06:13
@aniruddha-navare
Copy link
Contributor

Hi @osheroff - Can you please do the review ?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants