From 54773e6d8e4cc006dced98260cc56b870fd13bdf Mon Sep 17 00:00:00 2001 From: Willy Guggenheim Date: Sat, 7 Feb 2026 01:43:12 +0000 Subject: [PATCH] fix: bump go directive to 1.25.7 to resolve stdlib CVEs Go 1.25.0 is affected by CVE-2025-58183 and other Go stdlib vulnerabilities. Bumping to 1.25.7 ensures release binaries are compiled with a patched toolchain. --- go.mod | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/go.mod b/go.mod index 4e5db248..bf0fbe66 100644 --- a/go.mod +++ b/go.mod @@ -1,6 +1,6 @@ module github.com/databus23/helm-diff/v3 -go 1.25.0 +go 1.25.7 require ( github.com/Masterminds/semver/v3 v3.4.0