diff options
| author | Jonathan Amsterdam <jba@google.com> | 2021-09-07 07:13:38 -0400 |
|---|---|---|
| committer | Jonathan Amsterdam <jba@google.com> | 2021-09-07 15:12:27 +0000 |
| commit | c07f491e8ed87ec8d6fd1e683554010b2aae5fc9 (patch) | |
| tree | 042d5d36cf355ce9d5194b7aa9183d52f0327641 /go.mod | |
| parent | f3da34a449bba5e9ee82f8111c7ed13daeb57824 (diff) | |
| download | go-x-pkgsite-c07f491e8ed87ec8d6fd1e683554010b2aae5fc9.tar.xz | |
internal/frontend: display vulnerabilities on package page
Under an experiment, look up and display a package's vulnerabilities
on its main page using the client provided by the golang.org/x/vulndb
module.
For golang/go#48223
Change-Id: I310440db16f8ad5fe582fc8ab42999e874f3ca88
Reviewed-on: https://go-review.googlesource.com/c/pkgsite/+/347949
Trust: Jonathan Amsterdam <jba@google.com>
Run-TryBot: Jonathan Amsterdam <jba@google.com>
Reviewed-by: Jamal Carvalho <jamal@golang.org>
Reviewed-by: Julie Qiu <julie@golang.org>
Diffstat (limited to 'go.mod')
| -rw-r--r-- | go.mod | 5 |
1 files changed, 3 insertions, 2 deletions
@@ -24,7 +24,7 @@ require ( github.com/golang-migrate/migrate/v4 v4.6.2 github.com/golang/protobuf v1.4.2 github.com/gomodule/redigo v2.0.0+incompatible // indirect - github.com/google/go-cmp v0.5.2 + github.com/google/go-cmp v0.5.4 github.com/google/go-replayers/httpreplay v0.1.0 github.com/google/licensecheck v0.3.1 github.com/google/safehtml v0.0.2 @@ -40,11 +40,12 @@ require ( github.com/yuin/gopher-lua v0.0.0-20200816102855-ee81675732da // indirect go.opencensus.io v0.22.4 golang.org/x/crypto v0.0.0-20210711020723-a769d52b0f97 // indirect - golang.org/x/mod v0.3.1-0.20200828183125-ce943fd02449 + golang.org/x/mod v0.4.1 golang.org/x/net v0.0.0-20210226172049-e18ecbb05110 golang.org/x/sync v0.0.0-20200625203802-6e8e738ad208 golang.org/x/text v0.3.6 golang.org/x/tools v0.0.0-20200915173823-2db8f0ff891c + golang.org/x/vulndb v0.0.0-20210812203154-5d84be3c9e14 google.golang.org/api v0.32.0 google.golang.org/genproto v0.0.0-20200923140941-5646d36feee1 google.golang.org/grpc v1.32.0 |
