mirror of
https://github.com/ceph/ceph-csi.git
synced 2025-04-11 18:13:00 +00:00
Several packages are only used while running the e2e suite. These packages are less important to update, as the they can not influence the final executable that is part of the Ceph-CSI container-image. By moving these dependencies out of the main Ceph-CSI go.mod, it is easier to identify if a reported CVE affects Ceph-CSI, or only the testing (like most of the Kubernetes CVEs). Signed-off-by: Niels de Vos <ndevos@ibm.com>
357 B
357 B
Security Policy
Supported Versions
Version | Supported |
---|---|
v3.7.x | ✅ |
< v3.0.1 | ❌ |
Reporting a Vulnerability
Create an Issue and put the label [security]
in the title of the issue.
Valid reported security issues are expected to be solved within a week.