HistoryEditJSON (OSV)

RUSTSEC-2025-0067

libyml::string::yaml_string_extend is unsound and unmaintained

Reported
Issued
Package
libyml (crates.io)
Type
INFO Unsound
References
Patched
no patched versions

Description

In version 0.0.4, libyml::string::yaml_string_extend was revised resulting in undefined behaviour, which is unsound.

The GitHub project for libyml was archived after unsoundness issues were raised.

If you rely on this crate, it is highly recommended switching to a maintained alternative.

Recommended alternatives

Advisory available under CC0-1.0 license.