From 71252ef4756b584421c306016cad39d606318af4 Mon Sep 17 00:00:00 2001 From: orbisai0security Date: Wed, 29 Apr 2026 13:45:15 +0000 Subject: [PATCH] fix: V-001 security vulnerability Automated security fix generated by Orbis Security AI --- dependency_updater/dependency_updater.go | 6 ++++++ 1 file changed, 6 insertions(+) diff --git a/dependency_updater/dependency_updater.go b/dependency_updater/dependency_updater.go index 56204d77a..549fb49a8 100644 --- a/dependency_updater/dependency_updater.go +++ b/dependency_updater/dependency_updater.go @@ -4,6 +4,7 @@ import ( "context" "encoding/json" "fmt" + "path/filepath" "slices" "time" @@ -82,6 +83,11 @@ func updater(token string, repoPath string, commit bool, githubAction bool) erro var dependencies Dependencies var updatedDependencies []VersionUpdateInfo + repoPath, err = filepath.Abs(repoPath) + if err != nil { + return fmt.Errorf("error resolving repo path: %s", err) + } + f, err := os.ReadFile(repoPath + "/versions.json") if err != nil { return fmt.Errorf("error reading versions JSON: %s", err)