Skip to content

fix(deps): update lz4_flex to 0.12.1 (high GHSA-vvp9-7p8x-rfvv)#208

Merged
louisliu2048 merged 1 commit intomainfrom
fix/security-lz4_flex-14
Mar 20, 2026
Merged

fix(deps): update lz4_flex to 0.12.1 (high GHSA-vvp9-7p8x-rfvv)#208
louisliu2048 merged 1 commit intomainfrom
fix/security-lz4_flex-14

Conversation

@github-actions
Copy link
Contributor

Description

Bumps lz4_flex to resolve a high severity vulnerability.

Type of Change

  • Bug fix (non-breaking change which fixes an issue)

Security Alert

Change

Updated transitive dependency lz4_flex from 0.12.0 to 0.12.1 via cargo update lz4_flex --precise 0.12.1. Only Cargo.lock is modified; no direct dependency declarations changed.

Checklist

  • I have reviewed the relevant code guidelines in the docs/ folder
  • My code follows the coding standards of this project
  • I have performed a self-review of my own code

Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>
@louisliu2048 louisliu2048 merged commit c7cad17 into main Mar 20, 2026
6 checks passed
@Vui-Chee Vui-Chee deleted the fix/security-lz4_flex-14 branch March 20, 2026 02:32
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants