Remediate CVE-2023-44487
Author: GarethRoperCreated Jun 3, 2026Updated Aug 31, 2026
CVE-2023-44487 Present due to k8s.io/apimachinery v0.26.2
Further details: https://security.snyk.io/vuln/SNYK-GOLANG-K8SIOAPIMACHINERYPKGUTILRUNTIME-8367153 https://nvd.nist.gov/vuln/detail/cve-2023-44487
Proposed solution is to take the minor update line to v0.26.10 for each of the k8s dependencies:
k8s.io/api v0.26.10 k8s.io/apimachinery v0.26.10 k8s.io/client-go v0.26.10
Source: hashicorp/consul