The gopkg.in/yaml.v2 package has a potential crash when parsing malicious input. Although we only use the yaml package to parse trusted configuration, update to v3 anyway. |
||
|---|---|---|
| .. | ||
| blocked.go | ||
| blocked_test.go | ||
| good_key.go | ||
| good_key_test.go | ||
| weak.go | ||
| weak_test.go | ||