From 2d05e047b146af903c931b3238ac11f770081fd3 Mon Sep 17 00:00:00 2001 From: Jeff Charles Date: Tue, 7 Jan 2025 11:01:51 -0500 Subject: [PATCH] cargo vet --- supply-chain/config.toml | 22 +++++++++++----------- supply-chain/imports.lock | 12 ++++++++++++ 2 files changed, 23 insertions(+), 11 deletions(-) diff --git a/supply-chain/config.toml b/supply-chain/config.toml index de94d078..3c5b71a5 100644 --- a/supply-chain/config.toml +++ b/supply-chain/config.toml @@ -304,7 +304,7 @@ version = "0.5.9" criteria = "safe-to-deploy" [[exemptions.hstr]] -version = "0.2.12" +version = "0.2.15" criteria = "safe-to-deploy" [[exemptions.iana-time-zone]] @@ -531,10 +531,6 @@ criteria = "safe-to-deploy" version = "2.1.2" criteria = "safe-to-deploy" -[[exemptions.shlex]] -version = "1.3.0" -criteria = "safe-to-deploy" - [[exemptions.simd-abstraction]] version = "0.7.1" criteria = "safe-to-deploy" @@ -584,7 +580,7 @@ version = "2.0.0" criteria = "safe-to-deploy" [[exemptions.swc_atoms]] -version = "3.0.0" +version = "3.0.2" criteria = "safe-to-deploy" [[exemptions.swc_common]] @@ -592,23 +588,23 @@ version = "5.0.0" criteria = "safe-to-deploy" [[exemptions.swc_core]] -version = "8.0.1" +version = "10.0.1" criteria = "safe-to-deploy" [[exemptions.swc_ecma_ast]] -version = "5.0.0" +version = "5.0.1" criteria = "safe-to-deploy" [[exemptions.swc_ecma_parser]] -version = "6.0.0" +version = "6.0.1" criteria = "safe-to-deploy" [[exemptions.swc_ecma_transforms_base]] -version = "6.0.1" +version = "7.0.0" criteria = "safe-to-deploy" [[exemptions.swc_ecma_utils]] -version = "6.0.0" +version = "7.0.0" criteria = "safe-to-deploy" [[exemptions.swc_ecma_visit]] @@ -623,6 +619,10 @@ criteria = "safe-to-deploy" version = "1.0.0" criteria = "safe-to-deploy" +[[exemptions.swc_parallel]] +version = "1.0.1" +criteria = "safe-to-deploy" + [[exemptions.swc_visit]] version = "2.0.0" criteria = "safe-to-deploy" diff --git a/supply-chain/imports.lock b/supply-chain/imports.lock index e3752e2c..75c582b4 100644 --- a/supply-chain/imports.lock +++ b/supply-chain/imports.lock @@ -1641,6 +1641,12 @@ who = "Alex Crichton " criteria = "safe-to-deploy" delta = "0.1.21 -> 0.1.24" +[[audits.bytecode-alliance.audits.shlex]] +who = "Alex Crichton " +criteria = "safe-to-deploy" +version = "1.1.0" +notes = "Only minor `unsafe` code blocks which look valid and otherwise does what it says on the tin." + [[audits.bytecode-alliance.audits.slice-group-by]] who = "Alex Crichton " criteria = "safe-to-deploy" @@ -2522,6 +2528,12 @@ which suggests no one else has found anything either. """ aggregated-from = "https://hg.mozilla.org/mozilla-central/raw-file/tip/supply-chain/audits.toml" +[[audits.mozilla.audits.shlex]] +who = "Max Inden " +criteria = "safe-to-deploy" +delta = "1.1.0 -> 1.3.0" +aggregated-from = "https://hg.mozilla.org/mozilla-central/raw-file/tip/supply-chain/audits.toml" + [[audits.mozilla.audits.socket2]] who = "Kershaw Chang " criteria = "safe-to-deploy"