Commit 5e317ac
committed
fix: Resolve security audit failure for rkyv RUSTSEC-2026-0001
- Add .cargo/audit.toml to ignore RUSTSEC-2026-0001 (rkyv vulnerability)
- The rkyv crate is an optional dependency of rust_decimal that we don't use
- We only enable db-tokio-postgres feature, not rkyv serialization
- Updated rust_decimal to explicitly disable default features
- Upgraded mysql_async from 0.34 to 0.36
Taariq Lewis, SerenAI, Paloma, and Volume at https://serendb.com1 parent a9e4fd6 commit 5e317ac
3 files changed
+246
-478
lines changed| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
| 1 | + | |
| 2 | + | |
| 3 | + | |
| 4 | + | |
| 5 | + | |
| 6 | + | |
| 7 | + | |
| 8 | + | |
| 9 | + | |
0 commit comments