RUSTSEC-2022-0050

Source
https://rustsec.org/advisories/RUSTSEC-2022-0050
Import Source
https://github.com/rustsec/advisory-db/blob/osv/crates/RUSTSEC-2022-0050.json
JSON Data
https://api.osv.dev/v1/vulns/RUSTSEC-2022-0050
Published
2022-08-04T12:00:00Z
Modified
2022-08-19T05:34:11Z
Summary
Interledger is Unmaintained
Details

Interledger family of crates is not being actively maintained anymore.

The owner of the published crate does not appear to be responsive.

There is an outstanding concern around username comparison.

This concern may or may not be resolved by bumping up the dependencies of the project.

Database specific
{
    "license": "CC0-1.0"
}
References

Affected packages

crates.io / interledger-packet

Package

Name
interledger-packet
View open source insights on deps.dev
Purl
pkg:cargo/interledger-packet

Affected ranges

Type
SEMVER
Events
Introduced
0.0.0-0

Ecosystem specific

{
    "affects": {
        "arch": [],
        "os": [],
        "functions": []
    },
    "affected_functions": null
}

Database specific

{
    "informational": "unmaintained",
    "categories": [],
    "cvss": null
}