This update for gh fixes the following issues:
Changes in gh:
Update to version 2.98.0:
CVE-2026-39821: golang.org/x/net/idna: failure to reject ASCII-only Punycode-encoded labels allows for validation bypass and privilege escalation (bsc#1266618).
Update to version 2.97.0, fixing four security issues (CVE-2026-64654, bsc#1276662, CVE-2026-64653, bsc#1276664, CVE-2026-64652, bsc#1276663, CVE-2026-64655, bsc#1276661):