Fixed in commit c08aa8a. Root cause was apps/api/go.mod pinning Go 1.26.1, which caused govulncheck to flag standard library vulnerabilities fixed in go1.26.2. Verified with: go test ./... and go run golang.org/x/vuln/cmd/govulncheck@latest ./... (no vulnerabilities found).
Fixed in commit c08aa8a. Root cause was apps/api/go.mod pinning Go 1.26.1, which caused govulncheck to flag standard library vulnerabilities fixed in go1.26.2. Verified with: go test ./... and go run golang.org/x/vuln/cmd/govulncheck@latest ./... (no vulnerabilities found).
---
GitHub 来源:https://github.com/xixu-me/xdrop/issues/14#issuecomment-4234897774
作者:xixu-me · 创建时间:2026-04-13T08:21:49Z
<!-- github-archive:4234897774 -->
Blocking a user prevents them from interacting with repositories, such as opening or commenting on pull requests or issues. Learn more about blocking a user.
One or more scheduled security audit jobs failed.
0005fce998GitHub 来源:https://github.com/xixu-me/xdrop/issues/14
作者:github-actions[bot] · 创建时间:2026-04-13T03:54:44Z
Fixed in commit
c08aa8a. Root cause was apps/api/go.mod pinning Go 1.26.1, which caused govulncheck to flag standard library vulnerabilities fixed in go1.26.2. Verified with: go test ./... and go run golang.org/x/vuln/cmd/govulncheck@latest ./... (no vulnerabilities found).GitHub 来源:https://github.com/xixu-me/xdrop/issues/14#issuecomment-4234897774
作者:xixu-me · 创建时间:2026-04-13T08:21:49Z