Skip to content

Commit 846e25a

Browse files
committed
Update 'regex' crate due to CVE; use minimal versions in bindings-generator
See https://blog.rust-lang.org/2022/03/08/cve-2022-24713.html
1 parent 4e66976 commit 846e25a

File tree

2 files changed

+11
-11
lines changed

2 files changed

+11
-11
lines changed

bindings-generator/Cargo.toml

Lines changed: 10 additions & 10 deletions
Original file line numberDiff line numberDiff line change
@@ -16,13 +16,13 @@ debug = []
1616
custom-godot = ["which"]
1717

1818
[dependencies]
19-
heck = "0.4.0"
20-
memchr = "2.4.1"
21-
miniserde = "0.1.15"
22-
proc-macro2 = "1.0.30"
23-
quote = "1.0.10"
24-
regex = "1.5.4"
25-
roxmltree = "0.14.1"
26-
syn = { version = "1.0.80", features = ["full", "extra-traits", "visit"] }
27-
unindent = "0.1.7"
28-
which = { optional = true, version = "4.2.2" }
19+
heck = "0.4"
20+
memchr = "2"
21+
miniserde = "0.1.10"
22+
proc-macro2 = "1"
23+
quote = "1"
24+
regex = "1.5.5" # for security: https://blog.rust-lang.org/2022/03/08/cve-2022-24713.html
25+
roxmltree = "0.14"
26+
syn = { version = "1", features = ["full", "extra-traits", "visit"] }
27+
unindent = "0.1.5"
28+
which = { optional = true, version = "4" }

gdnative-sys/Cargo.toml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -19,5 +19,5 @@ libc = "0.2"
1919
bindgen = { version = "0.59", default-features = false, features = ["runtime"] }
2020
proc-macro2 = "1"
2121
quote = "1"
22-
miniserde = "0.1"
22+
miniserde = "0.1.10"
2323
semver = "1"

0 commit comments

Comments
 (0)