Skip to content

Commit feb462a

Browse files
Silence RUSTSEC-2025-0014 in test workspace
1 parent 33535c6 commit feb462a

File tree

2 files changed

+13
-0
lines changed

2 files changed

+13
-0
lines changed

test/deny.toml

+3
Original file line numberDiff line numberDiff line change
@@ -20,6 +20,9 @@ yanked = "deny"
2020
ignore = [
2121
# Ignored audit issues. This list should be kept short, and effort should be
2222
# put into removing items from the list.
23+
#
24+
# RUSTSEC-2025-0014 - `humantime` is unmaintained: https://github.com/tailhook/humantime/issues/31
25+
"RUSTSEC-2025-0014"
2326
]
2427

2528

test/osv-scanner.toml

+10
Original file line numberDiff line numberDiff line change
@@ -1,3 +1,13 @@
11
# See repository root `osv-scanner.toml` for instructions and rules for this file.
22
#
33
# Keep this file in sync with test/deny.toml
4+
5+
# The `humantime` crate is no longer maintained
6+
[[IgnoredVulns]]
7+
id = "RUSTSEC-2025-0014"
8+
ignoreUntil = 2025-06-11
9+
reason = """
10+
The `humantime` crate is no longer maintained. `tarpc` depend on it, and there is currently no "fix" for this.
11+
We have no reason to suspect that `humantime` is vulnerable in any way. An issue has been opened upstream:
12+
https://github.com/google/tarpc/issues/509
13+
"""

0 commit comments

Comments
 (0)