rustsec icon indicating copy to clipboard operation
rustsec copied to clipboard

RUSTSEC-2022-0048: xml-rs is Unmaintained

Open github-actions[bot] opened this issue 3 years ago • 1 comments

xml-rs is Unmaintained

Details
Status unmaintained
Package xml-rs
Version 0.8.4
URL https://github.com/netvl/xml-rs/issues
Date 2022-01-26

xml-rs is a XML parser has open issues around parsing including integer overflows / panics that may or may not be an issue with untrusted data.

Together with these open issues with Unmaintained status xml-rs may or may not be suited to parse untrusted data.

Alternatives

See advisory page for additional details.

github-actions[bot] avatar Aug 15 '22 02:08 github-actions[bot]

rustsec-admin brings this

comrak also brought it out via default-features initially

pinkforest avatar Sep 02 '22 06:09 pinkforest