From c18e448bda5d2c6877e831fd880d09dcbabeaa73 Mon Sep 17 00:00:00 2001 From: Drew De Ponte Date: Fri, 17 Jun 2022 23:43:37 -0400 Subject: [PATCH] Fix regex dep denial of service vulnerability Fix regex dep denial of service vulnerability by upgrading to the latest version of regex. [changelog] fixed: denial of service vulnerability in regex dependency ps-id: 267bf66b-e26b-4103-9dff-0d8b1ea0b2f1 --- Cargo.lock | 8 ++++---- Cargo.toml | 2 +- 2 files changed, 5 insertions(+), 5 deletions(-) diff --git a/Cargo.lock b/Cargo.lock index 2467e25..646e859 100644 --- a/Cargo.lock +++ b/Cargo.lock @@ -566,9 +566,9 @@ dependencies = [ [[package]] name = "regex" -version = "1.5.4" +version = "1.5.6" source = "registry+https://github.com/rust-lang/crates.io-index" -checksum = "d07a8629359eb56f1e2fb1652bb04212c072a87ba68546a04065d525673ac461" +checksum = "d83f127d94bdbcda4c8cc2e50f6f84f4b611f69c902699ca385a39c3a75f9ff1" dependencies = [ "aho-corasick", "memchr", @@ -577,9 +577,9 @@ dependencies = [ [[package]] name = "regex-syntax" -version = "0.6.25" +version = "0.6.26" source = "registry+https://github.com/rust-lang/crates.io-index" -checksum = "f497285884f3fcff424ffc933e56d7cbca511def0c9831a7f9b5f6153e3cc89b" +checksum = "49b3de9ec5dc0a3417da371aab17d729997c15010e7fd24ff707773a33bddb64" [[package]] name = "remove_dir_all" diff --git a/Cargo.toml b/Cargo.toml index 931fce4..6e09a4f 100644 --- a/Cargo.toml +++ b/Cargo.toml @@ -11,7 +11,7 @@ uuid = { version = "0.8.2", features = ["serde", "v4"] } serde = { version = "1.0.130", features = ["derive"] } serde_json = "1.0.68" structopt = "0.3.26" -regex = "1.5.4" +regex = "1.5.6" lazy_static = "1.4.0" is_executable = "1.0.1" home-dir = "0.1.0"