This project might be open to known security vulnerabilities, which can be prevented by tightening the version range of affected dependencies. Find detailed information at the bottom.

Crate deno

Dependencies

(130 total, 39 outdated, 1 possibly insecure)

CrateRequiredLatestStatus
 anstream^0.6.140.6.21up to date
 async-trait^0.1.730.1.89up to date
 aws-lc-rs^1.13.11.15.1up to date
 base64^0.22.10.22.1up to date
 bincode=1.3.32.0.1out of date
 boxed_error^0.2.30.2.3up to date
 bytes^1.4.01.11.0up to date
 bytes-str^0.2.50.2.7up to date
 capacity_builder^0.5.00.5.0up to date
 chrono ⚠️^0.40.4.42maybe insecure
 clap=4.5.474.5.53out of date
 clap_complete=4.5.574.5.61out of date
 clap_complete_fig=4.5.24.5.2up to date
 color-print^0.3.50.3.7up to date
 console_static_text=0.8.30.8.3up to date
 crossterm^0.28.10.29.0out of date
 dashmap^5.5.36.1.0out of date
 deno_ast=0.52.00.52.0up to date
 deno_bundle_runtime^0.9.00.9.0up to date
 deno_cache_dir=0.26.30.26.3up to date
 deno_config^0.72.00.72.0up to date
 deno_core^0.372.00.373.0out of date
 deno_doc=0.188.00.188.0up to date
 deno_error=0.7.10.7.3out of date
 deno_graph=0.105.00.105.0up to date
 deno_lib^0.40.02.3.1out of date
 deno_lint=0.82.00.82.0up to date
 deno_lockfile=0.32.20.32.2up to date
 deno_media_type=0.3.00.3.3out of date
 deno_npm=0.42.20.42.2up to date
 deno_npm_cache^0.41.00.41.0up to date
 deno_npm_installer^0.17.00.17.0up to date
 deno_package_json^0.24.00.24.0up to date
 deno_panic^0.1.00.1.0up to date
 deno_path_util=0.6.40.6.4up to date
 deno_resolver^0.53.00.53.0up to date
 deno_runtime^0.230.00.230.0up to date
 deno_semver=0.9.10.9.1up to date
 deno_signals^0.13.00.13.0up to date
 deno_snapshots^0.37.00.37.0up to date
 deno_subprocess_windows^0.17.00.17.0up to date
 deno_task_shell=0.26.00.26.1out of date
 deno_telemetry^0.44.00.44.0up to date
 deno_terminal=0.2.30.2.3up to date
 deno_typescript_go_client_rust^0.4.00.4.0up to date
 dhat^0.3.30.3.3up to date
 dissimilar=1.0.91.0.10out of date
 dotenvy^0.15.70.15.7up to date
 dprint-core=0.67.40.67.4up to date
 dprint-plugin-json=0.21.00.21.0up to date
 dprint-plugin-jupyter=0.2.10.2.1up to date
 dprint-plugin-markdown=0.20.00.20.0up to date
 dprint-plugin-typescript=0.95.130.95.13up to date
 esbuild_client^0.7.10.7.1up to date
 eszip=0.106.00.106.0up to date
 fancy-regex=0.14.00.17.0out of date
 faster-hex^0.10.00.10.0up to date
 flate2^1.0.301.1.5up to date
 fs3^0.5.00.5.0up to date
 http^1.01.4.0up to date
 http-body^1.01.0.1up to date
 http-body-util^0.1.20.1.3up to date
 import_map^0.24.00.24.0up to date
 indexmap^22.12.1up to date
 jsonc-parser^0.27.10.28.0out of date
 jupyter-protocol^0.8.00.10.1out of date
 runtimelib=0.28.00.30.1out of date
 keyring^3.6.33.6.3up to date
 lazy-regex^33.4.2up to date
 libc^0.2.1680.2.178up to date
 libsui^0.12.20.12.4up to date
 libz-sys^1.1.201.1.23up to date
 log^0.4.280.4.29up to date
 lol_html^2.6.02.7.0up to date
 lsp-types=0.97.00.97.0up to date
 malva=0.12.10.15.1out of date
 markup_fmt=0.22.00.25.3out of date
 memchr^2.7.42.7.6up to date
 nix=0.27.10.30.1out of date
 node_resolver^0.60.00.60.0up to date
 notify=6.1.18.2.0out of date
 once_cell^1.17.11.21.3up to date
 open^5.0.15.3.3up to date
 opentelemetry^0.27.00.31.0out of date
 opentelemetry-otlp^0.27.00.31.0out of date
 opentelemetry-semantic-conventions^0.27.00.31.0out of date
 opentelemetry_sdk^0.27.00.31.0out of date
 p256^0.13.20.13.2up to date
 pathdiff^0.2.10.2.3up to date
 percent-encoding^2.3.02.3.2up to date
 phf^0.110.13.1out of date
 pretty_yaml=0.5.00.5.1out of date
 quick-junit^0.3.50.5.2out of date
 rand=0.8.50.9.2out of date
 regex^1.7.01.12.2up to date
 rustc-hash^2.1.12.1.1up to date
 rustls=0.23.280.23.35out of date
 rustyline=13.0.017.0.2out of date
 rustyline-derive=0.7.00.11.1out of date
 serde^1.0.1491.0.228up to date
 serde_repr=0.1.190.1.20out of date
 sha2^0.10.80.10.9up to date
 shell-escape=0.1.50.1.5up to date
 shlex^1.3.01.3.0up to date
 spki^0.7.20.7.3up to date
 sqlformat=0.3.50.5.0out of date
 strsim^0.11.10.11.1up to date
 sys_traits=0.1.170.1.21out of date
 tar=0.4.430.4.44out of date
 tempfile^3.4.03.23.0up to date
 text-size=1.1.11.1.1up to date
 text_lines=0.6.00.6.0up to date
 thiserror^2.0.122.0.17up to date
 tokio^1.47.11.48.0up to date
 tokio-util^0.7.160.7.17up to date
 tokio-vsock^0.70.7.2up to date
 tower^0.5.20.5.2up to date
 deno_tower_lsp=0.4.30.4.3up to date
 tracing^0.10.1.43up to date
 tracing-opentelemetry^0.28.00.32.0out of date
 tracing-subscriber^0.3.200.3.22up to date
 twox-hash=2.1.02.1.2out of date
 typed-arena=2.0.22.0.2up to date
 unicode-width^0.1.30.2.2out of date
 uuid^1.3.01.19.0up to date
 walkdir=2.5.02.5.0up to date
 weak-table^0.3.20.3.2up to date
 winapi=0.3.90.3.9up to date
 zip^2.4.16.0.0out of date
 zstd=0.13.20.13.3out of date

Dev dependencies

(4 total, 2 outdated)

CrateRequiredLatestStatus
 deno_bench_util^0.216.00.216.0up to date
 deno_core^0.372.00.373.0out of date
 pretty_assertions=1.4.11.4.1up to date
 sys_traits=0.1.170.1.21out of date

Security Vulnerabilities

chrono: Potential segfault in `localtime_r` invocations

RUSTSEC-2020-0159

Impact

Unix-like operating systems may segfault due to dereferencing a dangling pointer in specific circumstances. This requires an environment variable to be set in a different thread than the affected functions. This may occur without the user's knowledge, notably in a third-party library.

Workarounds

No workarounds are known.

References