Skip to content

chore(deps): bump rcgen from 0.14.8 to 0.14.10 - #1045

Closed
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/cargo/rcgen-0.14.9
Closed

dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/cargo/rcgen-0.14.9

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Aug 19, 2026

Copy link
Copy Markdown
Contributor

Bumps rcgen from 0.14.8 to 0.14.10.

Release notes

Sourced from rcgen's releases.

0.14.10

What's Changed

0.14.9

Previous versions generated DER that is strictly incompatible with the spec, writing an explicit false value for IsCa::ExplicitNoCa where this should be omitted (as it's the default).

What's Changed

Commits
  • f4a3b16 Bump version to 0.14.10
  • dea3d4d Upgrade to botan 0.13
  • 788b093 Upgrade to pem 4
  • 7ce21f4 Take advantage of stable ML-DSA in aws-lc-rs
  • e2dba45 Remove unused RSASSA-PSS signature algorithm
  • 37070de Omit reasonCode unspecified(0) from CRL entry extensions
  • b247a87 Write extensions for certs that only set KeyUsage or CRLDP
  • 85eafdd Reject empty CRL distribution point URIs
  • 3a99b50 Encode CRL invalidityDate as GeneralizedTime
  • 7ca88d2 rcgen: bump version to 0.14.9
  • Additional commits viewable in compare view

@dependabot @github

dependabot Bot commented on behalf of github Aug 19, 2026

Copy link
Copy Markdown
Contributor Author

Labels

The following labels could not be found: rust. Please create it before Dependabot can add it to a pull request.

Please fix the above issues or remove invalid values from dependabot.yml.

@dependabot dependabot Bot added the dependencies Pull requests that update a dependency file label Aug 19, 2026
@chatgpt-codex-connector

Copy link
Copy Markdown

Codex usage limits have been reached for code reviews. Please check with the admins of this repo to increase the limits by adding credits.
Repo admins can enable using credits for code reviews in their settings.

@github-actions

github-actions Bot commented Aug 19, 2026

Copy link
Copy Markdown
Contributor

This PR changes mirrored Maestro source files in the public repo, but it does not link the matching private source-of-truth PR.

Link the matching evalops/mono source PR (legacy maestro-internal links remain accepted), then re-run the check:

  • https://github.com/evalops/mono/pull/<number>
  • evalops/mono#<number>
  • maestro-internal#<number>

Mirrored files touched:

  • Cargo.lock

@socket-security

socket-security Bot commented Aug 19, 2026

Copy link
Copy Markdown

Review the following changes in direct dependencies. Learn more about Socket for GitHub.

Diff Package Supply Chain
Security
Vulnerability Quality Maintenance License
Updatedcargo/​rcgen@​0.14.8 ⏵ 0.14.109610093100100

View full report

@dependabot
dependabot Bot force-pushed the dependabot/cargo/rcgen-0.14.9 branch from eacd9ba to b8bd2f6 Compare August 20, 2026 14:44
@dependabot
dependabot Bot force-pushed the dependabot/cargo/rcgen-0.14.9 branch 2 times, most recently from 7bf0166 to 2ef9805 Compare September 2, 2026 00:37
@dependabot dependabot Bot changed the title chore(deps): bump rcgen from 0.14.8 to 0.14.9 chore(deps): bump rcgen from 0.14.8 to 0.14.10 Sep 5, 2026
@dependabot
dependabot Bot force-pushed the dependabot/cargo/rcgen-0.14.9 branch 6 times, most recently from 6d5767a to f337841 Compare September 7, 2026 21:25
Bumps [rcgen](https://github.com/rustls/rcgen) from 0.14.8 to 0.14.10.
- [Release notes](https://github.com/rustls/rcgen/releases)
- [Commits](rustls/rcgen@v0.14.8...v0.14.10)

---
updated-dependencies:
- dependency-name: rcgen
  dependency-version: 0.14.9
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot
dependabot Bot force-pushed the dependabot/cargo/rcgen-0.14.9 branch from f337841 to 06bf278 Compare September 8, 2026 00:28
@haasonsaas

Copy link
Copy Markdown
Contributor

Superseded by dx-corp/mono#9723 — this bump now lives in the mono source of truth and reaches code via the public mirror sync, which this mirror PR can never satisfy (provenance policy). Closing.

@haasonsaas haasonsaas closed this Sep 19, 2026
@dependabot @github

dependabot Bot commented on behalf of github Sep 19, 2026

Copy link
Copy Markdown
Contributor Author

OK, I won't notify you again about this release, but will get in touch when a new version is available. If you'd rather skip all updates until the next major or minor version, let me know by commenting @dependabot ignore this major version or @dependabot ignore this minor version. You can also ignore all major, minor, or patch releases for a dependency by adding an ignore condition with the desired update_types to your config file.

If you change your mind, just re-open this PR and I'll resolve any conflicts on it.

@dependabot
dependabot Bot deleted the dependabot/cargo/rcgen-0.14.9 branch September 19, 2026 04:43
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant