Critical vuln in google.golang.org/grpc not fixed in `protoc-gen-go-grpc`
Type: QuestionStatus: Requires Reporter Clarification
Hello! My team uses the [protoc-gen-go-grpc](https://pkg.go.dev/google.golang.org/grpc/cmd/protoc-gen-go-grpc@v1.6.1) tool. The current version is showing a Critical vuln:
<img width="885" height="585" alt="Image" src="https://github.com/user-attachments/assets/fe6de4f1-a31e-4417-b603-f1f048798e69" />
Reference: Our AWS inspector instance
---
Would it be possible to push a new version of `protoc-gen-go-grpc` with the latest version of `google.golang.org/grpc` so the critical vuln is fixed?
2 条评论