-
Notifications
You must be signed in to change notification settings - Fork 136
Update phf to 0.10 #300
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Update phf to 0.10 #300
Conversation
Should we make a patch version bump of cssparser for this phf upgrade 🤔 ? |
It would be great if that's so. servo-selector also suffers from it. |
r? @emilio |
Yeah feel free to bump the minor version as well before landing? r=me either way |
It seems this needs to update the minimum rust version, see the CI jobs. I think that's probably fine, 1.36 is kinda ancient. |
Do you want to remove them (1.36) or set to the current one? |
@bors-servo r+ Thanks! |
📌 Commit 8ef116b has been approved by |
☀️ Test successful - checks-github |
phf 0.8 still uses rand_core version <0.6.2 which suffer from CVE-2021-27378.
Every crate depends on it will be warned by cargo audit.