Skip to content

Bump to Go 1.25.2 / 1.24.8 #20771

@ivanvc

Description

@ivanvc

What would you like to be added?

Go 1.25.2 and 1.24.8 were released today, which include fixes for CVE-2025-61725, CVE-2025-58187, CVE-2025-58189, CVE-2025-61723, CVE-2025-47912, CVE-2025-58185, CVE-2025-58186, CVE-2025-58188, CVE-2025-58183, and CVE-2025-61724. According to our Dependency management documentation, we want to stay on the latest patch version. This means updating our stable branches to 1.24.8 and main to 1.25.2.

Progress track:

Please review the previous issues and their corresponding pull requests, such as #20602 and #20126.

Why is this needed?

To keep up with Go versions and to address CVE-2025-61725, CVE-2025-58187, CVE-2025-58189, CVE-2025-61723, CVE-2025-47912, CVE-2025-58185, CVE-2025-58186, CVE-2025-58188, CVE-2025-58183, and CVE-2025-61724.

Metadata

Metadata

Assignees

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions