pinkforest(she/her)
pinkforest(she/her)
Thanks team - I've got a nudge going here: https://github.com/rustsec/advisory-db/pull/1372 If anyone comes up additional possible alternative(s) - I've also added yansi to the list by @SergioBenitez
SInce both we cannot address this is in advisory-db today and there is now compherensive tooling issue under rustsec/rustsec We'll close this one in favor of consolidating the attention to:...
I think we have nothing to action here so closing this old issue :) Re-open if there was anything we need to raise advisory about.
We've established precedent since this crate is not published we can't refer to it. Re-open if the crate appears in crates.io on which we publish advisories that can be tracked...
@Kixunil would you like to try to send us advisory on this still ? I know it's been like a year but :woman_shrugging: ought to ask first
@Kixunil Monday is fine if you got time :) Help would be most appreciated. Thanks
Would be keen to get this ticket and https://github.com/rustsec/advisory-db/issues/913 dealt with I've pinged the maintainer and asked if the crate should be used here - https://github.com/pie-flavor/hexchat-rs/issues/2
@SoniEx2 would you like to send informational = "unmaintained" PR and describe these soundness issues alongside It should deal with both this and #913 but we could just flag one...
@amousset - Seems interledger is not maintained and doesn't seem to be able to publish patched - https://github.com/interledger-rs/interledger-rs/issues/745#issuecomment-1211808112 You were across the username stuff.. does it have any vector or...
Seems @RustyYato merged your fix :+1: https://github.com/RustyYato/cell-project/pull/4#issuecomment-1208108266 @RustyYato I assume there is new version in crates.io soon ? Probably might be good to yank the old versions if it is...