Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Medium Risk Material Change - Dependency severity is no longer medium #1252

Open
urikalma opened this issue Nov 17, 2024 · 0 comments
Open

Comments

@urikalma
Copy link
Contributor

Overall dependency risk changed:

Package name: crossbeam-deque, version: 0.7.3

Resolved vulnerabilities: GHSA-pqqp-xmhj-wgcw,CVE-2021-32810

Package name: smallvec, version: 0.6.13

Resolved vulnerabilities: GHSA-43w2-9j62-hq99,CVE-2021-25900

Package name: hyper, version: 0.9.18

Resolved vulnerability: GHSA-f67m-9j94-qv9j

Package name: cookie, version: 0.2.5

Resolved vulnerabilities: GHSA-vjrq-cg9x-rfjp,CVE-2017-18589

Package name: crossbeam-utils, version: 0.7.2

Resolved vulnerabilities: GHSA-qc84-gqf4-9926,CVE-2022-23639

Package name: regex, version: 0.1.80

Resolved vulnerabilities: GHSA-m5pq-gvj9-9vr8,CVE-2022-24713

Package name: thread_local, version: 0.2.7

Resolved vulnerability: GHSA-9hpw-r23r-xgm5

Package name: tokio, version: 0.1.22

Resolved vulnerabilities: GHSA-fg7r-2g4j-5cgr,CVE-2021-45710

Package name: hyper, version: 0.12.35

Resolved vulnerabilities: GHSA-6hfq-h8hq-87mf,CVE-2021-21299

Affected repository: 0303

Provided by Dependabot

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant