Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
This addresses vulnerability RUSTSEC-2021-0020 reported by cargo-audit.
I have only updated to
reqwest 0.10
and not0.11
because the latter depends ontokio 1
and the async ecosystem hasn't fully migrated yet, so it seems useful to have a version supportingtokio 0.2
. Maybehashicorp_vault 1.2
could usetokio 0.2
andhashicorp_vault 1.3
could switch totokio 1
? -- Note that I haven't checked if a minor or major bump should be done; I'd thinktokio
is not exposed by this crate because of its use of the blockingreqwest
client.Thank you.