4.3
CVSS CVSS_V3
Status
Impact
This vulnerability has recently updated the list of affected packages. Unfortunately the new affected package 'gopkg.in/square/go-jose.v2' is currently used by many indirect dependencies to this package which makes impossible to fix it without upstream code changes.
Status
Status
Fixed version
1.108.0-r2Status