#23626·consul

Remediate CVE-2023-44487

Author: GarethRoperCreated Jun 3, 2026Updated Aug 31, 2026

CVE-2023-44487 Present due to k8s.io/apimachinery v0.26.2

Further details: https://security.snyk.io/vuln/SNYK-GOLANG-K8SIOAPIMACHINERYPKGUTILRUNTIME-8367153 https://nvd.nist.gov/vuln/detail/cve-2023-44487

Proposed solution is to take the minor update line to v0.26.10 for each of the k8s dependencies:

k8s.io/api v0.26.10 k8s.io/apimachinery v0.26.10 k8s.io/client-go v0.26.10