sourcegraph/sourcegraph-public-snapshot

v5.5.160 Security approval

Closed this issue · 1 comments

Security must close this issue before releases. It is the responsibility of the Security Engineer on rotation the week the release is cut. More steps will be added in the future.

  • All feasible CVEs are closed.
  • Any open CVEs are documented in the handbook.

cc @sourcegraph/security

This looks good to me. Please consider this as approved.

I'll document CVE-2024-24790, CVE-2024-24788 as accepted vuln for this patch release and patch it before EOW.