Skip to content

Bump Kubernetes modules to v0.26.10#23627

Open
GarethRoper wants to merge 3 commits into
hashicorp:mainfrom
Nordix:main
Open

Bump Kubernetes modules to v0.26.10#23627
GarethRoper wants to merge 3 commits into
hashicorp:mainfrom
Nordix:main

Conversation

@GarethRoper

@GarethRoper GarethRoper commented Jun 3, 2026

Copy link
Copy Markdown

Description

This updates the Kubernetes Go modules from v0.26.2 to v0.26.10:

  • k8s.io/api
  • k8s.io/apimachinery
  • k8s.io/client-go

This will remediate CVE-2023-44487, with just a minor line update. Further details in Links section below.

Testing & Reproduction steps

'go mod tidy' run.
'make dev' run.
Consul executable generated successfully.

Links

Snyk Security Advisory:
https://security.snyk.io/vuln/SNYK-GOLANG-K8SIOAPIMACHINERYPKGUTILRUNTIME-8367153

CVE NVD Page:
https://nvd.nist.gov/vuln/detail/cve-2023-44487

Signed-off-by: garethroper <gareth.roper@est.tech>
@GarethRoper GarethRoper requested review from a team as code owners June 3, 2026 10:20
@hashicorp-cla-app

hashicorp-cla-app Bot commented Jun 3, 2026

Copy link
Copy Markdown

CLA assistant check
All committers have signed the CLA.

@hashicorp-cla-app

Copy link
Copy Markdown

CLA assistant check

Thank you for your submission! We require that all contributors sign our Contributor License Agreement ("CLA") before we can accept the contribution. Read and sign the agreement

Learn more about why HashiCorp requires a CLA and what the CLA includes

Have you signed the CLA already but the status is still pending? Recheck it.

@github-actions github-actions Bot added the pr/dependencies PR specifically updates dependencies of project label Jun 3, 2026
@santoshpulluri santoshpulluri added the backport/all Apply backports for all active releases per .release/versions.hcl label Jun 3, 2026
@santoshpulluri

Copy link
Copy Markdown
Collaborator

@paras-gupta2 Please ensure the PR is backported to all the release branches across CE and ENT (2+4 = 6)

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

backport/all Apply backports for all active releases per .release/versions.hcl pr/dependencies PR specifically updates dependencies of project

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants