Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Vulnerability GHSA-q6cp-qfwq-4gcv in httpmock's dependency - h2 #105

Open
orcame opened this issue Apr 17, 2024 · 1 comment
Open

Vulnerability GHSA-q6cp-qfwq-4gcv in httpmock's dependency - h2 #105

orcame opened this issue Apr 17, 2024 · 1 comment
Labels
maintenance A maintenance task

Comments

@orcame
Copy link

orcame commented Apr 17, 2024

Summary

The dependency h2(0.3.24) has vulnerability issue, check details from GHSA-q6cp-qfwq-4gcv

Details

The dependency h2(0.3.24) has vulnerability issue, check details from GHSA-q6cp-qfwq-4gcv
Fixed in 0.4.4

The 'hyper' has new version. Need to update.

Dependency Tree

├─┬ httpmock 0.7.0 - Cargo
│ └─┬ hyper 0.14.28 - Cargo
│ └── h2 0.3.24 - Cargo

@alexliesenfeld
Copy link
Owner

alexliesenfeld commented Apr 18, 2024

Thanks! This will be addressed with then next release.

@alexliesenfeld alexliesenfeld added the maintenance A maintenance task label Jun 2, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
maintenance A maintenance task
Projects
None yet
Development

No branches or pull requests

2 participants