Skip to content

Fix cargo audit high-severity dependency vulns#97

Open
arminsabouri wants to merge 1 commit into
martinthomson:mainfrom
arminsabouri:fix-audit
Open

Fix cargo audit high-severity dependency vulns#97
arminsabouri wants to merge 1 commit into
martinthomson:mainfrom
arminsabouri:fix-audit

Conversation

@arminsabouri

Copy link
Copy Markdown

Bump aws-lc-sys, quinn-proto, bytes, and rustls-webpki via Cargo.lock updates. Replace warp's built-in TLS in ohttp-server with rustls 0.23 and tokio-rustls so we no longer pull vulnerable rustls-webpki 0.102.

Bump aws-lc-sys, quinn-proto, bytes, and rustls-webpki via Cargo.lock
updates. Replace warp's built-in TLS in ohttp-server with rustls 0.23
and tokio-rustls so we no longer pull vulnerable rustls-webpki 0.102.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant