Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Upgrade env_logger to avoid the atty crate #170

Closed
Angelmmiguel opened this issue Jul 5, 2023 · 0 comments · Fixed by #178
Closed

Upgrade env_logger to avoid the atty crate #170

Angelmmiguel opened this issue Jul 5, 2023 · 0 comments · Fixed by #178
Assignees
Labels
⬆️ updates Update a dependency to a newer version
Milestone

Comments

@Angelmmiguel
Copy link
Contributor

Is your feature request related to a problem? Please describe.

Based on this GitHub advisory, the atty crate includes a low vulnerability that may affect Windows environments. Wasm Workers Server is protected as it's not using a custom allocator, but this crate is no longer maintained. This is also a dependency for the QuickJS engine, so we will need to see how to avoid it there.

Describe the solution you'd like

I would like to avoid unmaintained crates in the project. Let's try to remove it and bump crates that depends on it.

Describe alternatives you've considered

No response

Additional context

No response

@Angelmmiguel Angelmmiguel added the ⬆️ updates Update a dependency to a newer version label Jul 5, 2023
@Angelmmiguel Angelmmiguel added this to the v1.4.0 milestone Jul 5, 2023
@Angelmmiguel Angelmmiguel self-assigned this Jul 5, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
⬆️ updates Update a dependency to a newer version
Projects
None yet
Development

Successfully merging a pull request may close this issue.

1 participant