Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bugfix: RUSTSEC-2023-0071 - RSA Vulnerability #75

Open
bkonkle opened this issue Dec 5, 2023 · 1 comment
Open

Bugfix: RUSTSEC-2023-0071 - RSA Vulnerability #75

bkonkle opened this issue Dec 5, 2023 · 1 comment
Labels
dependencies Pull requests that update a dependency file

Comments

@bkonkle
Copy link
Owner

bkonkle commented Dec 5, 2023

The security audit check is failing because of RUSTSEC-2023-0071. An updated version is not yet available.

This ticket will be held open until SeaORM/SQLx can be updated to move to a version of rsa that is constant-time to avoid the vulnerability.

@bkonkle bkonkle added the enhancement New feature or request label Dec 5, 2023
@bkonkle bkonkle added dependencies Pull requests that update a dependency file and removed enhancement New feature or request labels Dec 5, 2023
@bkonkle
Copy link
Owner Author

bkonkle commented Sep 3, 2024

Should be solved in SeaORM v1.1: https://www.sea-ql.org/blog/2024-08-04-sea-orm-1.0/#release-planning

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file
Projects
None yet
Development

No branches or pull requests

1 participant