-
Notifications
You must be signed in to change notification settings - Fork 2.4k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Audit finding: https://rustsec.org/advisories/RUSTSEC-2023-0081 #36616
Comments
Can be addressed with this patch, which also applies to our 0.3.1 version. |
I'd prefer not to patch this, can we ignore this and wait for a bump to lol_html? This is only used by speedreader |
I don't think it's urgent. The main issue is being insensitive to any security issues found in the unmaintained library between ignoring the warning and actually bumping lol_html. |
This crate is unmaintained. Ignore the warning until lol_html (our only path to the dependency) publishes an update removing it. Resolves brave/brave-browser#36616
Audit failed on nightly/v1.65.66 due to https://rustsec.org/advisories/RUSTSEC-2023-0081. |
Audit failed on beta/v1.64.98 due to https://rustsec.org/advisories/RUSTSEC-2023-0081. |
Audit failed on release/v1.63.171 due to https://rustsec.org/advisories/RUSTSEC-2023-0081. |
This crate is unmaintained. Ignore the warning until lol_html (our only path to the dependency) publishes an update removing it. Resolves brave/brave-browser#36616
Greetings human!
Bad news. Audit failed on nightly/v1.65.65 due to https://rustsec.org/advisories/RUSTSEC-2023-0081.
The text was updated successfully, but these errors were encountered: