This project contains known security vulnerabilities. Find detailed information at the bottom.

Crate zbox

Dependencies

(17 total, 8 outdated, 1 insecure)

CrateRequiredLatestStatus
 android_logger^0.7.00.15.1out of date
 cfg-if^0.1.61.0.5out of date
 env_logger^0.6.00.11.11out of date
 http^0.1.171.5.0out of date
 js-sys^0.3.240.3.106up to date
 lazy_static^1.2.01.5.1up to date
 libsqlite3-sys ⚠️^0.15.00.38.2insecure
 linked-hash-map^0.5.10.5.6up to date
 log^0.4.60.4.34up to date
 redis^0.10.01.7.1out of date
 reqwest^0.9.50.13.5out of date
 rmp-serde^0.13.71.3.1out of date
 serde^1.0.801.0.229up to date
 serde_derive^1.0.801.0.229up to date
 serde_json^1.0.391.0.151up to date
 wasm-bindgen^0.2.470.2.129up to date
 web-sys^0.3.240.3.106up to date

Dev dependencies

(4 total, 3 outdated)

CrateRequiredLatestStatus
 bytes^0.4.121.12.1out of date
 rand^0.6.50.10.3out of date
 rand_xorshift^0.1.10.5.0out of date
 tempdir^0.3.70.3.7up to date

Security Vulnerabilities

libsqlite3-sys: `libsqlite3-sys` via C SQLite CVE-2022-35737

RUSTSEC-2022-0090

It was sometimes possible for SQLite versions >= 1.0.12, < 3.39.2 to allow an array-bounds overflow when large string were input into SQLite's printf function.

As libsqlite3-sys bundles SQLite, it is susceptible to the vulnerability. libsqlite3-sys was updated to bundle the patched version of SQLite here.