v4.1.1
Security Patches
Patch release for https://rustsec.org/advisories/RUSTSEC-2026-0007
Aranya code does not directly trigger the vulnerable code path.
This patch release is a defensive measure in case any of our downstream dependencies could be impacted by the vulnerability.
What's Changed
- Cherry-picks: eccd7a0 Update bytes to resolve security vulnerability warning (#703)
- release: 4.1.1 by @gknopf-aranya in #705
- chore: allow release from release-4.1.0-base branch by @gknopf-aranya in #706
Full Changelog: v4.1.0...v4.1.1