{ "schema_version": "1.4.0", "id": "GHSA-rc23-xxgq-x27g", "modified": "2022-09-16T17:18:28Z", "published": "2022-09-16T17:18:28Z", "aliases": [], "summary": "wee_alloc is Unmaintained", "details": "Two of the maintainers have indicated that the crate may not be maintained.\n\nThe crate has open issues including memory leaks and may not be suitable for production use.\n\nIt may be best to switch to the default Rust standard allocator on wasm32 targets.\n\nLast release seems to have been three years ago.", "severity": [], "affected": [ { "package": { "ecosystem": "crates.io", "name": "wee_alloc" }, "ranges": [ { "type": "ECOSYSTEM", "events": [ { "introduced": "0" } ] } ] } ], "references": [ { "type": "WEB", "url": "https://github.com/rustwasm/wee_alloc/issues/107" }, { "type": "PACKAGE", "url": "https://github.com/rustwasm/wee_alloc" }, { "type": "WEB", "url": "https://rustsec.org/advisories/RUSTSEC-2022-0054.html" } ], "database_specific": { "cwe_ids": [], "severity": "CRITICAL", "github_reviewed": true, "github_reviewed_at": "2022-09-16T17:18:28Z", "nvd_published_at": null } }