Skip to content
This repository has been archived by the owner on Sep 4, 2024. It is now read-only.

Update sea-orm dependency to resolve security issues #3

Closed
johnbcodes opened this issue Jun 13, 2023 · 1 comment
Closed

Update sea-orm dependency to resolve security issues #3

johnbcodes opened this issue Jun 13, 2023 · 1 comment

Comments

@johnbcodes
Copy link
Owner

johnbcodes commented Jun 13, 2023

The sea-orm crate currently depends on the ouroboros crate which its author has declared unsound and no longer maintained. Update when sea-orm maintainers remove it.

@johnbcodes johnbcodes changed the title Update sea-orm dependency once its ouroboros dependency is removed Update sea-orm dependency to resolve security issue Jul 15, 2023
@johnbcodes johnbcodes changed the title Update sea-orm dependency to resolve security issue Update sea-orm dependency to resolve security issues Jul 15, 2023
@johnbcodes
Copy link
Owner Author

Instead of no longer maintaining ouroboros the maintainer has removed the functionality which caused it to be unsound. The sea-orm maintainers have upgraded to a version that is sound but have not released it.

Additionally, sea-orm depends on sqlx 0.6 which causes #2 and would conflict if the project's version of sqlx were to be upgraded. There is a an issue underway to resolve that as well

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant