Release Request: Stable tagged version including pgx ≥ v5.9.1 #1064
hardikjoshi-scout
started this conversation in
General
Replies: 2 comments
|
Sure, I'll update deps and cut a release within an hour (or at least end of day today). |
0 replies
|
Alright, there should be a new tag now |
0 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Uh oh!
There was an error while loading. Please reload this page.
Hi team 👋
First, thank you for merging the pgx update into
main— we really appreciate the quick turnaround on this!We noticed that the pgx v5.9.1+ update (which addresses a critical CVE) has landed in the
mainbranch but has not yet been included in a tagged stable release.We are currently pinned to a pseudo-version (main branch commit) as a temporary workaround to unblock our CI and resolve the CVE flagged by our security scans. However, we would like to move to a stable, tagged release as soon as possible to avoid long-term reliance on an untagged commit in production.
Could you share:
We are monitoring the releases page closely and will upgrade our dependent services as soon as a stable version is available.
Thanks again for maintaining this project! 🙏
All reactions