Skip to content
This repository was archived by the owner on Feb 6, 2026. It is now read-only.

build(deps): bump slab to 0.4.11#7226

Merged
stack72 merged 1 commit intomainfrom
fnichol/update-slab
Sep 5, 2025
Merged

build(deps): bump slab to 0.4.11#7226
stack72 merged 1 commit intomainfrom
fnichol/update-slab

Conversation

@fnichol
Copy link
Copy Markdown
Contributor

@fnichol fnichol commented Sep 5, 2025

Updated with:

cargo update -p slab --precise 0.4.11
buck2 run support/buck2:sync-cargo-deps

References: https://github.com/systeminit/si/security/dependabot/428

Updated with:

```sh
cargo update -p slab --precise 0.4.11
buck2 run support/buck2:sync-cargo-deps
```

References: https://github.com/systeminit/si/security/dependabot/428

Signed-off-by: Fletcher Nichol <fnichol@nichol.ca>
@github-actions
Copy link
Copy Markdown

github-actions bot commented Sep 5, 2025

Dependency Review

✅ No vulnerabilities or OpenSSF Scorecard issues found.

OpenSSF Scorecard

PackageVersionScoreDetails
cargo/slab 0.4.11 🟢 5.4
Details
CheckScoreReason
Code-Review🟢 9Found 27/28 approved changesets -- score normalized to 9
Dangerous-Workflow🟢 10no dangerous workflow patterns detected
Binary-Artifacts🟢 10no binaries found in the repo
Security-Policy🟢 9security policy file detected
Maintained🟢 34 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 3
Packaging⚠️ -1packaging workflow not detected
Token-Permissions⚠️ 0detected GitHub workflow tokens with excessive permissions
Pinned-Dependencies⚠️ 0dependency not pinned by hash detected -- score normalized to 0
CII-Best-Practices⚠️ 0no effort to earn an OpenSSF best practices badge detected
Vulnerabilities🟢 100 existing vulnerabilities detected
Fuzzing⚠️ 0project is not fuzzed
License🟢 10license file detected
Branch-Protection🟢 3branch protection is not maximal on development and all release branches
Signed-Releases⚠️ -1no releases found
SAST⚠️ 0SAST tool is not run on all commits -- score normalized to 0

Scanned Files

  • Cargo.lock

nickgerace added a commit that referenced this pull request Sep 5, 2025
This change adds instructions on how to update crates to the dev docs.
It is based on PR #7226.

Signed-off-by: Nick Gerace <nick@systeminit.com>
@stack72 stack72 added this pull request to the merge queue Sep 5, 2025
Merged via the queue into main with commit 6c18d46 Sep 5, 2025
9 checks passed
@stack72 stack72 deleted the fnichol/update-slab branch September 5, 2025 21:41
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants