This project might be open to known security vulnerabilities, which can be prevented by tightening the version range of affected dependencies. Find detailed information at the bottom.

Crate bp7


(10 total, 3 outdated, 1 possibly insecure)

 crc^ of date
 derive_builder^ of date
 humantime^ to date
 nanorand ⚠️^ of date
 serde^ to date
 serde_bytes^ to date
 serde_cbor^ to date
 serde_json^ to date
 stdweb^ to date
 thiserror^ to date

Dev dependencies

(3 total, 2 outdated)

 criterion^ of date
 instant^ to date
 test-case^ of date

Security Vulnerabilities

nanorand: nanorand 0.5.0 - RNGs failed to generate properly for non-64-bit numbers


In versions of nanorand prior to 0.5.1, RandomGen implementations for standard unsigned integers could fail to properly generate numbers, due to using bit-shifting to truncate a 64-bit number, rather than just an as conversion.

This often manifested as RNGs returning nothing but 0, including the cryptographically secure ChaCha random number generator..