From f5410c03d81b09ad0d384d1ba74360b00a366542 Mon Sep 17 00:00:00 2001 From: coderzc Date: Tue, 10 Feb 2026 16:49:16 +0800 Subject: [PATCH] fix: upgrade Go to 1.25.7 to fix CVE-2025-68121 Upgrade Go version from 1.25.6 to 1.25.7 to address the HIGH severity vulnerability CVE-2025-68121 in crypto/tls session resumption. Fixed versions: 1.24.13, 1.25.7, 1.26.0-rc.3 --- go.mod | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/go.mod b/go.mod index 0707e6eb..89535aef 100644 --- a/go.mod +++ b/go.mod @@ -1,6 +1,6 @@ module github.com/streamnative/pulsarctl -go 1.25.6 +go 1.25.7 require ( github.com/apache/pulsar-client-go v0.18.0-candidate-1.0.20251222030102-3bb7d4eff361