Skip to content

Bump golang.org/x/crypto from 0.41.0 to 0.45.0

5482232
Select commit
Loading
Failed to load commit list.
Open

Bump golang.org/x/crypto from 0.41.0 to 0.45.0 #20

Bump golang.org/x/crypto from 0.41.0 to 0.45.0
5482232
Select commit
Loading
Failed to load commit list.
Kusari Inspector / Kusari Inspector succeeded Nov 20, 2025 in 1m 2s

Security Analysis Passed

No security issues found

Details

Kusari Inspector

Kusari Analysis Results:

Proceed with these changes

✅ No Flagged Issues Detected
All values appear to be within acceptable risk parameters.

Both dependency and code security analyses unanimously recommend proceeding with this Pull Request. This is a beneficial security update that resolves CVE-2025-47913, a denial of service vulnerability in golang.org/x/crypto affecting SSH clients. The update from version 0.41.0 to 0.45.0 includes the security patch (fixed in 0.43.0) and introduces no new security issues. All automated security scans passed with zero vulnerabilities, no exposed secrets, and no workflow issues detected. This Dependabot-initiated crypto library update poses minimal risk while providing clear security benefits.

Note

View full detailed analysis result for more information on the output and the checks that were run.


@kusari-inspector rerun - Trigger a re-analysis of this PR
@kusari-inspector feedback [your message] - Send feedback to our AI and team
See Kusari's documentation for setup and configuration.
Commit: 5482232, performed at: 2025-11-20T02:41:42Z