Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

feat: update dependencies due to vulnerabilities #9

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

somehowchris
Copy link

@somehowchris somehowchris commented Apr 18, 2021

Hey man,

Awesome tool. Tried it out locally and noticed some vulnerabilities and unpinned libraries. For security purposes, I pinned some of them and updated the docker image.

If you plan to keep that thing up to date (which would be awesome) I would recommend to add dependabot or something like it.

There are a f**** ton of lines updated due to cargo fmt. The main changes are the Cargo.toml files, the Dockerfile and the two imports of image::FileType moved to image::imageops::FileType and image::ConvertBuffer moved to image::buffer::ConvertBuffer

Do you plan to publish the docker image yourself?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

1 participant