Skip to content

chore(sdk): Upgrade protobuf to 6.33.5#12879

Open
cmdevoto wants to merge 1 commit intokubeflow:release-kfp-sdk-1.8.24from
cmdevoto:upgrade-protobuf-v1
Open

chore(sdk): Upgrade protobuf to 6.33.5#12879
cmdevoto wants to merge 1 commit intokubeflow:release-kfp-sdk-1.8.24from
cmdevoto:upgrade-protobuf-v1

Conversation

@cmdevoto
Copy link
Contributor

Signed-off-by: Caroline DeVoto cmdevoto@users.noreply.github.com

Description of your changes:
There is a vulnerability in protobuf versions >= 6.30.0rc1 and <= 6.33.4 (see details here. This PR resolves this vulnerability in the V1 SDK in the same pattern as the 1.8.23 KFP release.

Please note that this PR is not merging anything into master, only the release-kfp-sdk-1.8.24 branch created from release-kfp-sdk-1.8.23.

Checklist:

Signed-off-by: Caroline DeVoto <cmdevoto@users.noreply.github.com>
@google-oss-prow
Copy link

[APPROVALNOTIFIER] This PR is NOT APPROVED

This pull-request has been approved by:
Once this PR has been reviewed and has the lgtm label, please assign connor-mccarthy for approval. For more information see the Kubernetes Code Review Process.

The full list of commands accepted by this bot can be found here.

Details Needs approval from an approver in each of these files:

Approvers can indicate their approval by writing /approve in a comment
Approvers can cancel approval by writing /approve cancel in a comment

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant