Commit Graph

8 Commits

Author SHA1 Message Date
Richard Bradfield
60455ec8b1 Mark patched tiny-http version for 2020-0031 (#875)
* Mark patched tiny-http version for 2020-0031

A backport of the fix for 2020-0031 has been applied to the 0.6.x
branch, starting at 0.6.3, subsequent 0.6 versions are no longer
vulnerable.

* Fix version specification

Co-authored-by: Sergey "Shnatsel" Davidoff <shnatsel@gmail.com>
2021-04-16 13:27:30 +02:00
Lucas Fernandes Nogueira
18000b07d4 chore(tiny_http): RUSTSEC 2020-0031 patched on 0.8.0 (#721) 2021-01-30 18:50:32 -05:00
Yechan Bae
846dfb93a3 Update CVE numbers (#542) 2021-01-04 09:02:59 -08:00
Tony Arcieri
ac125ee29a Translate database into V3 advisory format (#420)
As proposed in #240 and tracked in #414, this PR translates all
advisories into the new "V3" advisory format, which is based on Markdown
with leading TOML front matter.

This format makes it easier to see rendered Markdown syntax
descriptions, whether rendered by an IDE or GitHub. This should help
with both crafting advisories initially as well as review, and ideally
encourages more lengthy descriptions.

Support for this format shipped in `cargo-audit` v0.12.0 on
May 6th, 2020.
2020-10-01 18:29:11 -07:00
github-actions[bot]
c12999b9c8 Assigned RUSTSEC-2020-0031 to tiny_http (#358)
Co-authored-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com>
2020-08-21 17:59:34 -04:00
Alex Gaynor
52f305fb45 renumber this as 0 so the assign ID script handles it (#357) 2020-08-21 17:58:10 -04:00
Sergey "Shnatsel" Davidoff
1400f85920 drop categories 2020-08-21 19:09:16 +02:00
snoopysecurity
d7233ee826 Add tiny-http Request Smuggling 2020-08-21 10:56:33 +01:00