GHSA-x8jh-xj3x-gx3c: `fast-float` has multiple soundness issues
fast-float
contains multiple soundness issues:
- Undefined behavior when checking input length, which has been merged but no package pubished.
- Many functions marked as safe with non-local safety guarantees
The library is also unmaintained.
References
Detect and mitigate GHSA-x8jh-xj3x-gx3c with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →