Skip to content

[Bug] vulnerable dependancy #16

@chipitsine

Description

@chipitsine

Cloudberry Database version

currently cloudberry-go-libs depends on github.com/jackc/pgx/v4 v4.18.2
which in turn depends on non maintained and vulnerable library https://pkg.go.dev/vuln/GO-2026-4518

it would be good to address that and modernize dependancies

What happened

vulnerable dependancy https://pkg.go.dev/vuln/GO-2026-4518

What you think should happen instead

No response

How to reproduce

No response

Operating System

No response

Anything else

No response

Are you willing to submit PR?

  • Yes, I am willing to submit a PR!

Code of Conduct

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions