This project contains known security vulnerabilities. Find detailed information at the bottom.

Crate json-ld-context-processing

Dependencies

(9 total, 2 outdated, 1 insecure)

CrateRequiredLatestStatus
 contextual^0.1.40.1.6up to date
 futures^0.30.3.31up to date
 iref^3.1.23.2.2up to date
 json-ld-core^0.21.20.21.2up to date
 json-ld-syntax^0.21.20.21.2up to date
 mown^0.2.21.0.0out of date
 owning_ref ⚠️^0.4.10.4.1insecure
 rdf-types^0.220.22.5up to date
 thiserror^1.0.382.0.12out of date

Security Vulnerabilities

owning_ref: Multiple soundness issues in `owning_ref`

RUSTSEC-2022-0040

  • OwningRef::map_with_owner is unsound and may result in a use-after-free.
  • OwningRef::map is unsound and may result in a use-after-free.
  • OwningRefMut::as_owner and OwningRefMut::as_owner_mut are unsound and may result in a use-after-free.
  • The crate violates Rust's aliasing rules, which may cause miscompilations on recent compilers that emit the LLVM noalias attribute.

safer_owning_ref is a replacement crate which fixes these issues. No patched versions of the original crate are available, and the maintainer is unresponsive.