-
Task
-
Resolution: Done
-
Normal
-
MCE 2.4.0, MCE 2.3.1, MCE 2.5.0, MCE 2.6.0
-
None
In order to fix CVE-2023-45288, it is required to upgrade `golang.org/x/net` to v0.23.0+ for backplane-operator repo. It should cover the releases below:
- ACM 2.11 / MCE 2.6
- ACM 2.10 / MCE 2.5
- ACM 2.9 / MCE 2.4
- ACM 2.8 / MCE 2.3
More information can be found https://redhat-internal.slack.com/archives/G010RS588CC/p1717614506464539?thread_ts=1717511402.116909&cid=G010RS588CC