GHSA-7vjm-6qgq-3mrq: Shaman has soundness issues and is unmaintained
shaman::cryptoutil::write_u64v_le and other functions mentioned above cannot garantee memory safety of get_unchecked later if both length are zero.
shaman is unmaintained.
References
Code Behaviors & Features
Detect and mitigate GHSA-7vjm-6qgq-3mrq with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →