This project might be open to known security vulnerabilities, which can be prevented by tightening the version range of affected dependencies. Find detailed information at the bottom.

Crate raft-engine

Dependencies

(27 total, 8 outdated, 1 possibly insecure)

CrateRequiredLatestStatus
 byteorder^1.21.5.0up to date
 crc32fast^1.21.4.2up to date
 crossbeam^0.80.8.4up to date
 fail^0.50.5.1up to date
 fs2^0.40.4.3up to date
 hashbrown^0.140.15.3out of date
 hex^0.40.4.3up to date
 if_chain^1.01.0.2up to date
 lazy_static^1.31.5.0up to date
 libc^0.20.2.172up to date
 log^0.40.4.27up to date
 lz4-sys=1.9.51.11.1+lz4-1.10.0out of date
 memmap2^0.90.9.5up to date
 nix^0.260.30.1out of date
 num-derive^0.40.4.2up to date
 num-traits^0.20.2.19up to date
 parking_lot^0.120.12.3up to date
 prometheus^0.130.14.0out of date
 prometheus-static-metric^0.50.5.1up to date
 protobuf ⚠️^23.7.2out of date
 rayon^1.51.10.0up to date
 rhai^1.71.21.0up to date
 scopeguard^1.11.2.0up to date
 serde=1.0.1941.0.219out of date
 serde_repr^0.10.1.20up to date
 strum^0.26.20.27.1out of date
 thiserror^1.02.0.12out of date

Dev dependencies

(7 total, 5 outdated)

CrateRequiredLatestStatus
 criterion^0.40.5.1out of date
 ctor^0.20.4.2out of date
 env_logger^0.100.11.8out of date
 rand^0.80.9.1out of date
 rand_distr^0.40.5.1out of date
 tempfile^3.63.20.0up to date
 toml^0.80.8.22up to date

Crate stress

Dependencies

(8 total, 3 outdated)

CrateRequiredLatestStatus
 clap^3.14.5.38out of date
 const_format^0.2.130.2.34up to date
 hdrhistogram^7.47.5.4up to date
 num-traits^0.20.2.19up to date
 parking_lot_core^0.90.9.10up to date
 rand^0.80.9.1out of date
 rand_distr^0.40.5.1out of date
 statistical^1.0.01.0.0up to date

Crate raft-engine-ctl

Dependencies

(2 total, 2 outdated)

CrateRequiredLatestStatus
 clap^3.14.5.38out of date
 env_logger^0.100.11.8out of date

Security Vulnerabilities

protobuf: Crash due to uncontrolled recursion in protobuf crate

RUSTSEC-2024-0437

Affected version of this crate did not properly parse unknown fields when parsing a user-supplied input.

This allows an attacker to cause a stack overflow when parsing the mssage on untrusted data.