Join GitHub today
GitHub is home to over 31 million developers working together to host and review code, manage projects, and build software together.
Sign upUnaffected crates are still flagged as vulnerabilities #51
Comments
This comment has been minimized.
This comment has been minimized.
|
Well that's unfortunate. I'll try to get a quick fix out for this. |
This comment has been minimized.
This comment has been minimized.
|
Cracking, many thanks. |
tarcieri
closed this
in
619e07c
Dec 13, 2018
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
MF1-MS commentedDec 10, 2018
This was come across as the presence of
crossbeamv0.2.12 causescargo auditto fail, despite the only affected version being v0.4.0, see: https://github.com/RustSec/advisory-db/blob/master/crates/crossbeam/RUSTSEC-2018-0009.tomlFrom a brief look at the code it seems that
unaffected_versionsneeds to be stripped out likepatched_versionsin db.rs