deny.toml: Clarify time-rs CVE. (#43148)

The CVE doesn't impact us, so we can ignore it safely. This improves the
comment above the ignored entry in deny.toml. We test our own code via
`clippy` and we aren't using the vulnerable type. Our dependencies could
in theory use it, but that seems rather unlikely.

Testing: test-tidy is tested in CI.

---------

Signed-off-by: Jonathan Schwender <schwenderjonathan@gmail.com>
This commit is contained in:
Jonathan Schwender
2026-03-11 10:42:41 +01:00
committed by GitHub
parent f9fd3968e5
commit fca0a2555e
3 changed files with 14 additions and 3 deletions

2
.clippy.toml Normal file
View File

@@ -0,0 +1,2 @@
# Lint for https://github.com/advisories/GHSA-r6v5-fh4h-64xc until we upgrade to time >=0.3.47
disallowed-types = ["time::format_description::well_known::Rfc2822"]