Krakend include library golang.org/x/oauth2/jws @v0.22.0 which has security vulnerability. Need upgrade to v0.27.0 This is full description of vulnerability High severity vulnerability found in golang.org/x/oauth2/jws Description: Allocation of Resources Without Limits or Throttling Info: https://security.snyk.io/vuln/SNYK-GOLANG-GOLANGORGXOAUTH2JWS-8749594 Introduced through: golang.org/x/oauth2/jws@v0.22.0 From: golang.org/x/oauth2/jws@v0.22.0 Fixed in: 0.27.0