Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Upgrade Borsh to resolve vulnerability #621

Merged
merged 3 commits into from
Nov 13, 2023
Merged

Upgrade Borsh to resolve vulnerability #621

merged 3 commits into from
Nov 13, 2023

Conversation

paupino
Copy link
Owner

@paupino paupino commented Nov 13, 2023

This replaces / closes #616 - Borsh now requires feature flags to be provided to enable the derive macros that this feature was utilizing.

Ultimately it resolves https://rustsec.org/advisories/RUSTSEC-2023-0033.html.

@paupino paupino merged commit ede308d into master Nov 13, 2023
5 checks passed
@paupino paupino deleted the f/borsh branch November 13, 2023 15:38
@westy92
Copy link

westy92 commented Nov 14, 2023

Thank you so much! When can we expect a release?

@paupino
Copy link
Owner Author

paupino commented Nov 14, 2023

@westy92 Thanks for helping push this through - I'll prepare a release now and have something out shortly.

@westy92
Copy link

westy92 commented Nov 14, 2023

@paupino you're welcome - and thank you!

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants