Skip to content

chore(deps): bump the cargo group with 12 updates - #70

Merged
NullSablex merged 1 commit into
masterfrom
dependabot/cargo/cargo-0379ac6be8
Oct 4, 2026
Merged

NullSablex merged 1 commit into
masterfrom
dependabot/cargo/cargo-0379ac6be8

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Oct 4, 2026

Copy link
Copy Markdown

Bumps the cargo group with 12 updates:

Package From To
encoding_rs 0.8.41 0.8.42
cc 1.4.7 1.5.1
find-msvc-tools 0.1.13 0.1.14
hyper-util 0.1.20 0.1.21
lazy_static 1.5.0 1.5.1
quinn-proto 0.11.18 0.11.19
rand 0.10.2 0.10.3
rustls-platform-verifier 0.7.0 0.7.1
rustls-platform-verifier-android 0.1.1 0.2.0
smallvec 1.16.1 1.16.2
tokio-rustls 0.26.5 0.26.6
yoke-derive 0.8.3 0.8.4

Updates encoding_rs from 0.8.41 to 0.8.42

Commits
  • a155adc Increment version number to 0.8.42
  • 6603aed Attach the multiversion crate to the std feature instead
  • f718b07 docs: multiversion is compiled only with simd-accel
  • 4434afa chore: pull in multiversion only when it is actually used
  • 96138f6 Update main branch in URLs
  • See full diff in compare view

Updates cc from 1.4.7 to 1.5.1

Release notes

Sourced from cc's releases.

cc-v1.5.1

Fixed

  • link the static C++ stdlib with -bundle, once per Build (#1955)

Other

  • Use lp64d ABI for Redox riscv64 (#1953)

cc-v1.5.0

Added

  • inherit x86 target features from RUSTFLAGS (#1948)

Fixed

  • don't report the file name cl.exe echoes as a warning in expand() (#1950)
  • ignore MSVC /link flags with a warning (#1949)
  • Make windows_sys more private and re-export types needed by cc-rs (#1944)
  • pass -Tp on MSVC for .cc so they are not treated as objects (#1930)

Other

  • document macOS SDKROOT and Xcode CLT for testing (#1943)
  • remove License section from CONTRIBUTING.md (#1942)
  • add CONTRIBUTING.md and Conventional Commit PR title check (#1938)

Fixed

  • Pass -Tp immediately before .cc sources on MSVC (not clang-cl) when compiling C++ so they are not treated as object files (#1877)
Changelog

Sourced from cc's changelog.

1.5.1 - 2026-09-25

Fixed

  • link the static C++ stdlib with -bundle, once per Build (#1955)

Other

  • Use lp64d ABI for Redox riscv64 (#1953)

1.5.0 - 2026-09-25

Added

  • inherit x86 target features from RUSTFLAGS (#1948)

Fixed

  • don't report the file name cl.exe echoes as a warning in expand() (#1950)
  • ignore MSVC /link flags with a warning (#1949)
  • Make windows_sys more private and re-export types needed by cc-rs (#1944)
  • pass -Tp on MSVC for .cc so they are not treated as objects (#1930)

Other

  • document macOS SDKROOT and Xcode CLT for testing (#1943)
  • remove License section from CONTRIBUTING.md (#1942)
  • add CONTRIBUTING.md and Conventional Commit PR title check (#1938)

Fixed

  • Pass -Tp immediately before .cc sources on MSVC (not clang-cl) when compiling C++ so they are not treated as object files (#1877)
Commits
  • d279cdd chore(cc): release v1.5.1 (#1954)
  • 87533b7 fix: link the static C++ stdlib with -bundle, once per Build (#1955)
  • 0faaa40 Use lp64d ABI for Redox riscv64 (#1953)
  • 6b0d8e6 chore: release (#1952)
  • b7d59a9 fix: don't report the file name cl.exe echoes as a warning in expand() (#1950)
  • fc01fd7 fix: ignore MSVC /link flags with a warning (#1949)
  • b81fc77 feat: inherit x86 target features from RUSTFLAGS (#1948)
  • 0da3fab ci: add additional targets for MSRV testing (#1945)
  • 0c74c6a ci(deps): bump release-plz/action from 0.5.137 to 0.5.138 (#1947)
  • e2bff2c docs: document macOS SDKROOT and Xcode CLT for testing (#1943)
  • Additional commits viewable in compare view

Updates find-msvc-tools from 0.1.13 to 0.1.14

Release notes

Sourced from find-msvc-tools's releases.

find-msvc-tools-v0.1.14

Fixed

  • Make windows_sys more private and re-export types needed by cc-rs (#1944)
Commits
  • 6b0d8e6 chore: release (#1952)
  • b7d59a9 fix: don't report the file name cl.exe echoes as a warning in expand() (#1950)
  • fc01fd7 fix: ignore MSVC /link flags with a warning (#1949)
  • b81fc77 feat: inherit x86 target features from RUSTFLAGS (#1948)
  • 0da3fab ci: add additional targets for MSRV testing (#1945)
  • 0c74c6a ci(deps): bump release-plz/action from 0.5.137 to 0.5.138 (#1947)
  • e2bff2c docs: document macOS SDKROOT and Xcode CLT for testing (#1943)
  • fa75298 fix: Make windows_sys more private and re-export types needed by cc-rs (#1944)
  • 5b5d671 docs: remove License section from CONTRIBUTING.md (#1942)
  • 3651c0c docs: add CONTRIBUTING.md and Conventional Commit PR title check (#1938)
  • Additional commits viewable in compare view

Updates hyper-util from 0.1.20 to 0.1.21

Release notes

Sourced from hyper-util's releases.

v0.1.21

Additions

  • Add crate-level documentation. (#327)
  • Add client::legacy::Builder::http2_header_table_size() method. (#274)
  • Add client::legacy::Builder::http2_max_concurrent_streams() method. (#274)
  • Add client::legacy::Builder::http2_max_local_error_reset_streams() method. (#277)
  • Add client::legacy::connect::HttpConnector::set_mark() method. (#303)
  • Add rt::tracing::WithSpanExecutor<E>, hyper_util::rt::tracing::CurrentSpanExecutor<E>, and hyper_util::rt::tracing::MkSpanExecutor<E, F> executors. (#323)

Fixes

  • Fix client::legacy::Client so that it properly validates CONNECT responses. (#315)
  • Fix client::legacy::Client to cancel the idle interval once its pool empties. (#292)
  • Fix client::legacy::Client to properly handle IPv6 addresses when using a SOCKS proxy. (#302)
  • Fix client::pool::cache to preserve readiness with clones. (#297)
  • Fix client::pool::cache to wake its waiters in FIFO order. (#298)
  • Fix client::pool::singleton::Singleton to properly handle cancellation. (#299)
  • Fix client::pool::singleton::Singleton to share errors with all waiters. (#296)
  • Fix client::proxy::matcher handling for IP wildcards. (#309)
  • The tokio/net feature is narrowed to the client-legacy feature flag, from the client feature flag. (#276)
  • Various fixes to the client::legacy::Client's SOCKS proxying. (#302) (#307) (#308) (#310)

Changes

This release contains a minor behavioral change for users of the tracing feature flag to be aware of.

This feature flag was introduced in v0.1.11. When enabled, rt::TokioExecutor<E> began propagating the currently active tracing::Span to spawned tasks when hyper::rt::Executor::execute() is called. This caused issues for some users, due to background tasks keeping a span open for the duration of a long-lived connection.

This behavior has now been removed from rt::TokioExecutor<E> (#322) by default. A collection of executor wrappers have been added to a new rt::tracing submodule, to provide facilities for instrumenting a client or server's spawned tasks. See the module-level documentation of rt::tracing for more information.

To temporarily preserve the previous rt::TokioExecutor<E> span propagation behavior, enable the rt-tracing-exec-force feature. Note that this feature flag will be removed in a future release.

This release bumps the minimal supported Rust version (MSRV) from 1.64 to 1.85.

This release bumps the rust edition from 2021 to 2024.

... (truncated)

Changelog

Sourced from hyper-util's changelog.

0.1.21 (2026-09-24)

This release bumps the minimal supported Rust version (MSRV) from 1.64 to 1.85.

This release bumps the rust edition from 2021 to 2024.

Additions

  • Add crate-level documentation. (#327)
  • Add client::legacy::Builder::http2_header_table_size() method. (#274)
  • Add client::legacy::Builder::http2_max_concurrent_streams() method. (#274)
  • Add client::legacy::Builder::http2_max_local_error_reset_streams() method. (#277)
  • Add client::legacy::connect::HttpConnector::set_mark() method. (#303)
  • Add rt::tracing::WithSpanExecutor<E>, hyper_util::rt::tracing::CurrentSpanExecutor<E>, and hyper_util::rt::tracing::MkSpanExecutor<E, F> executors. (#323)

Fixes

  • Fix client::legacy::Client so that it properly validates CONNECT responses. (#315)
  • Fix client::legacy::Client to cancel the idle interval once its pool empties. (#292)
  • Fix client::legacy::Client to properly handle IPv6 addresses when using a SOCKS proxy. (#302)
  • Fix client::pool::cache to preserve readiness with clones. (#297)
  • Fix client::pool::cache to wake its waiters in FIFO order. (#298)
  • Fix client::pool::singleton::Singleton to properly handle cancellation. (#299)
  • Fix client::pool::singleton::Singleton to share errors with all waiters. (#296)
  • Fix client::proxy::matcher handling for IP wildcards. (#309)
  • The tokio/net feature is narrowed to the client-legacy feature flag, from the client feature flag. (#276)
  • Various fixes to the client::legacy::Client's SOCKS proxying. (#302) (#307) (#308) (#310)

Changes

This release contains a minor behavioral change for users of the tracing feature flag to be aware of.

This feature flag was introduced in v0.1.11. When enabled, rt::TokioExecutor<E> began propagating the currently active tracing::Span to spawned tasks when hyper::rt::Executor::execute() is called. This caused issues for some users, due to background tasks keeping a span open for the duration of a long-lived connection.

This behavior has now been removed from rt::TokioExecutor<E> (#322) by default. A collection of executor wrappers have been added to a new rt::tracing submodule, to provide facilities for instrumenting a client or server's spawned tasks. See the module-level documentation of rt::tracing for more information.

To temporarily preserve the previous rt::TokioExecutor<E> span propagation behavior, enable the rt-tracing-exec-force feature. Note that this feature flag will be removed in a future release.

Commits
  • 23a8689 v0.1.21
  • cdb2346 doc(client/pool): add broken_intra_doc_links allowance (#326)
  • 13b6110 chore(error): remove disabled hyper_util::error submodule (#325)
  • b9ee451 docs(lib): add crate-level documentation (#327)
  • d6b7d7e feat(rt/tracing): introduce tracing executors (#323)
  • f2da915 feat(client): add HttpConnector::set_mark for SO_MARK (#303)
  • 4dbd494 feat(rt): change TokioExecutor to not trace, add rt-tracing-exec-force feat...
  • d480d9f fix(client): parse proxy CONNECT response with httparse (#315)
  • 7e0958b chore(ci): simplify msrv check (#317)
  • 0734568 chore(ci): update to actions/checkout@v7 (#316)
  • Additional commits viewable in compare view

Updates lazy_static from 1.5.0 to 1.5.1

Commits

Updates quinn-proto from 0.11.18 to 0.11.19

Release notes

Sourced from quinn-proto's releases.

quinn-proto 0.11.19

Fixes several advisories:

What's Changed

Commits
  • 8192ed3 udp: bump version to 0.5.16
  • 6862d3d udp: backport receive error handling to 0.11.x
  • 78d30dc proto: bump version to 0.11.19
  • 73114d8 Check MAX_STREAM_DATA on remote bidi streams against limit
  • a6e78d1 proto: reserve close frame space after large Initial headers
  • 74c33ff proto: reject Initial tokens that prevent packet construction
  • f97fb5a quinn: Wake wait_idle when the endpoint driver is dropped
  • 8ada074 quinn-proto: Pad Initial datagrams to the configured minimum MTU
  • 16ecc70 fix: stale waker in blocked_readers
  • 12d7f07 fix: cleanup state if transmit failed
  • Additional commits viewable in compare view

Updates rand from 0.10.2 to 0.10.3

Changelog

Sourced from rand's changelog.

[0.10.3] — 2026-09-20

Fixes

  • Fix WeightedIndex panic when the sum of float weights is infinite; return Error::Overflow instead (#1808)
  • Fix spurious Error::NonFinite from Uniform::new_inclusive on large finite float ranges such as 0.0..=f64::MAX (#1821)
  • Fix possible panic due to sampling a deserialized Uniform<char> (#1831)

Changes

  • Report exact remaining lengths from WeightedIndex::weights() and reduce overhead when reading weights (#1838)

#1808: rust-random/rand#1808 #1821: rust-random/rand#1821 #1831: rust-random/rand#1831 #1838: rust-random/rand#1838

Commits
  • 9e7d328 Prepare rand 0.10.3 (#1840)
  • f73ce74 Optimize WeightedIndex weight lookup and iteration (#1838)
  • ef9e044 Avoid panic from deserialized Uniform\<char> where range == 0 (#1831)
  • c994eb1 docs: fix angle unit in quick start example (#1839)
  • 33dea4f Test that WeightedIndex rejects INFINITY with Error::Overflow (#1822)
  • 94c9078 Fix Uniform::new_inclusive overflow on large finite float ranges (#1821)
  • bb1262f Use Xoshiro256PlusPlus in examples/rayon-monte-carlo.rs (#1805)
  • 521fab6 Stop pinning dependencies (#1820)
  • 3f7c433 Stop pinning dependencies
  • cf4f73e sample_efraimidis_spirakis: error on more than amount non-finite weights (#1814)
  • Additional commits viewable in compare view

Updates rustls-platform-verifier from 0.7.0 to 0.7.1

Release notes

Sourced from rustls-platform-verifier's releases.

0.7.1

About

This version contains Windows and Android bugfixes, but its headline feature is a migration to an improved distribution strategy for the Android component of the crate, which must be included by Gradle for Android application/library builds. If you don't build for Android, no need to worry these changes don't affect you. But if you do, please continue reading to understand the required migration steps and benefits. 0.7.1 requires the Android migration to be performed once manually.

Android Revocation

The biggest improvement to functionality in this release is proper support for revocation on Android. As OCSP moves to deprecation, more CAs are exclusively using CRLs to distribute revocation data. Previously this failed to work on Android without workarounds since by default the network fetches for this were blocked. As of 0.2.0 of rustls-platform-verifier-android, this works again as expected. We now bundle an Android App manifest with the library, which Android Studio merges into the main manifest of the app being built.

Android Distribution

As of this release, we have stopped bundling pre-compiled .aar artifacts and a local Maven repository inside each release of rustls-platform-verifier-android. Instead, all future (and past!) Maven artifacts are now hosted on GitHub under the maven-archive branch. The branch's structure creates a remote Maven repository that Gradle can download and synchronize with just like any other. Importantly, this now means that the Android library can be downloaded and resolved independently of cargo's own downloads.

0.2.0 of the Android component is exclusively distributed through this new mechanism, but the 0.1.0 and 0.1.1 releases were also backported to the new repository. This means that no matter what version of rustls-platform-verifier you are using, its possible to migrate your Gradle build configuration to the more modern approach. Once again we have included out-of-the-box Gradle and Kotlin script snippets to configure the repository. See our README guide for more info.

What's Changed

New Contributors

Full Changelog: rustls/rustls-platform-verifier@v/0.7.0...v/0.7.1

Commits
  • 252e251 Release 0.7.1
  • 18f5c53 Bump Maven release to 0.2.0
  • 2885f2f Bump android-release-support to 0.2.0
  • 0e76b93 Update Android documentation and release process for GitHub-published artifacts
  • c87abb8 Remove Cargo-bundled Maven repository to setup for GitHub-published artifacts
  • 7c3e664 Bundle generated CRL networkSecurityConfig into release manifest
  • f4d7c89 Update Android build tooling and associated versions
  • f48a4b9 Fix groupId in POM template
  • 027c029 Update Android network security config
  • a8aa23d Take semver-compatible dependency updates
  • Additional commits viewable in compare view

Updates rustls-platform-verifier-android from 0.1.1 to 0.2.0

Release notes

Sourced from rustls-platform-verifier-android's releases.

0.2.0

  • Rustls version updated from 0.21 to 0.22

What's Changed

Full Changelog: rustls/rustls-platform-verifier@v/0.1.0...v/0.2.0

v/0.1.2

Fix an error in the handling of allowed EKUs on Windows; see rustls/rustls-platform-verifier#126

What's Changed

Full Changelog: rustls/rustls-platform-verifier@v/0.1.1...v/0.1.2

Commits
  • 9188474 Cargo: rustls-platform-verifier 0.1.0 -> 0.2.0
  • c18a7e2 Cargo: update to rustls 0.22, associated updates
  • b51d933 ci: add FreeBSD cargo test job
  • 52b8b61 proj: relax cfg gates to allow FreeBSD
  • abb3710 Fix README extra roots documentation on other OSes
  • 5df10ea Fix incorrect platform-specific Verifier documentation
  • a586af9 Update release documentation and scripts to record flushed-out steps
  • 09be880 docs: clarify Linux certificate store
  • 0da4cd6 docs: fix broken ServerCertVerifier link
  • dc8de0a verification_real_world: update 1password test data comments
  • Additional commits viewable in compare view

Updates smallvec from 1.16.1 to 1.16.2

Release notes

Sourced from smallvec's releases.

v1.16.2

What's Changed

New Contributors

Full Changelog: servo/rust-smallvec@v1.16.1...v1.16.2

Commits
  • ccf5fc7 chore: bump version (#617)
  • af207cc Merge pull request #608 from Rayan-and-beyond/fix/manual-readme-warning-606
  • cda4b73 Merge pull request #594 from astral-sh/charlie/codex-fix-may-dangle
  • d0556cb Merge pull request #596 from astral-sh/charlie/codex-v1-compact
  • f73914c Flatten retain tests into the unit test module
  • 954d599 Move retain tests into the unit test module
  • 8d93633 Remove added retain benchmark harness
  • 88c6bfa Limit compaction optimization to retain
  • b9ef17d Fix element ownership tracking with may_dangle
  • 42029c2 Compact retained elements directly in retain and dedup_by
  • See full diff in compare view

Updates tokio-rustls from 0.26.5 to 0.26.6

Release notes

Sourced from tokio-rustls's releases.

0.26.6

0.26.5 added an optimization to batch multiple reads which could swallow some errors. Buffer errors so that they propagate to the caller as soon as the caller next reads from the stream.

What's Changed

Commits
  • 8aebb7c Bump version to 0.26.6
  • 6f8509a Rename buffered_err to error
  • bd0494d Buffer and propagate errors from transport
  • a781340 Add regression test for issue 204
  • 9d0dae6 build(deps): bump rustls from 0.23.44 to 0.23.45
  • 0ad049e build(deps): bump rustls from 0.23.43 to 0.23.44
  • 4f913c7 build(deps): bump rcgen from 0.14.9 to 0.14.10
  • See full diff in compare view

Updates yoke-derive from 0.8.3 to 0.8.4

Changelog

Sourced from yoke-derive's changelog.

Changelog

icu4x 2.3.x

Several crates have had patch releases in the 2.3 stream:

  • Components
    • (2.3.1) icu
      • Remove dev-dependency on unpublished crate icu_host_info (unicode-org#8404)
    • (2.3.1) icu_collator
      • Fix panic when a contraction contracts a starter, does not contract a following non-starter, and the non-starter starts another contraction. Occurs in Burmese. (unicode-org#8380)
    • (2.3.1) icu_locale
      • Remove unnecessary dependencies on icu_pattern when unstable feature is not enabled (unicode-org#8397)
  • Data model and providers
    • (2.3.1) icu_provider
      • Improve performance of data loading that uses locale fallback (unicode-org#8406)
    • (2.3.1) icu_provider_source
      • Fix checksum on 32-bit systems (unicode-org#8401)
  • FFI
    • General
      • Upate to Diplomat 0.16.1 (unicode-org#8411)
    • (2.3.1) icu_capi
      • Add missing docs to properties (unicode-org#8407)
    • (2.3.2) icu_capi
      • Add missing stability annotations (unicode-org#8462)
    • (2.3.1) Dart
    • (2.3.2) Dart
      • Cache downloaded pre-built binaries (unicode-org#8426)
      • Add missing stability annotations (unicode-org#8462)
    • (2.3.1) NPM
    • (2.3.2) NPM
      • Add missing stability annotations (unicode-org#8462)
  • Utils
    • (0.2.2) databake-derive
      • Update to syn@3 dependency (unicode-org#8293)
    • (0.8.3) yoke-derive
      • Update to syn@3 dependency (unicode-org#8293)
    • (0.8.4) yoke-derive
      • Declare MSRV
    • (0.1.8) zerofrom-derive
      • Update to syn@3 dependency (unicode-org#8293)
    • (0.11.5, 0.11.6) zerovec-derive
      • (0.11.5) Fix soundness issue around multi element buffer validation in ULE derives (unicode-org#8393)
      • (0.11.6) Fix when building with MIRIFLAGS=-Zmiri-tree-borrows (unicode-org#8391)
    • (0.11.8) zerovec
      • Fix length check in impl ULE for [T; N] (unicode-org#8400)

icu4x 2.3

... (truncated)

Commits

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore <dependency name> major version will close this group update PR and stop Dependabot creating any more for the specific dependency's major version (unless you unignore this specific dependency's major version or upgrade to it yourself)
  • @dependabot ignore <dependency name> minor version will close this group update PR and stop Dependabot creating any more for the specific dependency's minor version (unless you unignore this specific dependency's minor version or upgrade to it yourself)
  • @dependabot ignore <dependency name> will close this group update PR and stop Dependabot creating any more for the specific dependency (unless you unignore this specific dependency or upgrade to it yourself)
  • @dependabot unignore <dependency name> will remove all of the ignore conditions of the specified dependency
  • @dependabot unignore <dependency name> <ignore condition> will remove the ignore condition of the specified dependency and ignore conditions

Bumps the cargo group with 12 updates:

| Package | From | To |
| --- | --- | --- |
| [encoding_rs](https://github.com/hsivonen/encoding_rs) | `0.8.41` | `0.8.42` |
| [cc](https://github.com/rust-lang/cc-rs) | `1.4.7` | `1.5.1` |
| [find-msvc-tools](https://github.com/rust-lang/cc-rs) | `0.1.13` | `0.1.14` |
| [hyper-util](https://github.com/hyperium/hyper-util) | `0.1.20` | `0.1.21` |
| [lazy_static](https://github.com/rust-lang-nursery/lazy-static.rs) | `1.5.0` | `1.5.1` |
| [quinn-proto](https://github.com/quinn-rs/quinn) | `0.11.18` | `0.11.19` |
| [rand](https://github.com/rust-random/rand) | `0.10.2` | `0.10.3` |
| [rustls-platform-verifier](https://github.com/rustls/rustls-platform-verifier) | `0.7.0` | `0.7.1` |
| [rustls-platform-verifier-android](https://github.com/rustls/rustls-platform-verifier) | `0.1.1` | `0.2.0` |
| [smallvec](https://github.com/servo/rust-smallvec) | `1.16.1` | `1.16.2` |
| [tokio-rustls](https://github.com/rustls/tokio-rustls) | `0.26.5` | `0.26.6` |
| [yoke-derive](https://github.com/unicode-org/icu4x) | `0.8.3` | `0.8.4` |


Updates `encoding_rs` from 0.8.41 to 0.8.42
- [Commits](hsivonen/encoding_rs@v0.8.41...v0.8.42)

Updates `cc` from 1.4.7 to 1.5.1
- [Release notes](https://github.com/rust-lang/cc-rs/releases)
- [Changelog](https://github.com/rust-lang/cc-rs/blob/main/CHANGELOG.md)
- [Commits](rust-lang/cc-rs@cc-v1.4.7...cc-v1.5.1)

Updates `find-msvc-tools` from 0.1.13 to 0.1.14
- [Release notes](https://github.com/rust-lang/cc-rs/releases)
- [Changelog](https://github.com/rust-lang/cc-rs/blob/main/CHANGELOG.md)
- [Commits](rust-lang/cc-rs@find-msvc-tools-v0.1.13...find-msvc-tools-v0.1.14)

Updates `hyper-util` from 0.1.20 to 0.1.21
- [Release notes](https://github.com/hyperium/hyper-util/releases)
- [Changelog](https://github.com/hyperium/hyper-util/blob/master/CHANGELOG.md)
- [Commits](hyperium/hyper-util@v0.1.20...v0.1.21)

Updates `lazy_static` from 1.5.0 to 1.5.1
- [Release notes](https://github.com/rust-lang-nursery/lazy-static.rs/releases)
- [Commits](https://github.com/rust-lang-nursery/lazy-static.rs/commits)

Updates `quinn-proto` from 0.11.18 to 0.11.19
- [Release notes](https://github.com/quinn-rs/quinn/releases)
- [Commits](quinn-rs/quinn@quinn-proto-0.11.18...quinn-proto-0.11.19)

Updates `rand` from 0.10.2 to 0.10.3
- [Release notes](https://github.com/rust-random/rand/releases)
- [Changelog](https://github.com/rust-random/rand/blob/master/CHANGELOG.md)
- [Commits](rust-random/rand@0.10.2...0.10.3)

Updates `rustls-platform-verifier` from 0.7.0 to 0.7.1
- [Release notes](https://github.com/rustls/rustls-platform-verifier/releases)
- [Changelog](https://github.com/rustls/rustls-platform-verifier/blob/main/CHANGELOG)
- [Commits](rustls/rustls-platform-verifier@v/0.7.0...v/0.7.1)

Updates `rustls-platform-verifier-android` from 0.1.1 to 0.2.0
- [Release notes](https://github.com/rustls/rustls-platform-verifier/releases)
- [Changelog](https://github.com/rustls/rustls-platform-verifier/blob/main/CHANGELOG)
- [Commits](rustls/rustls-platform-verifier@v/0.1.1...v/0.2.0)

Updates `smallvec` from 1.16.1 to 1.16.2
- [Release notes](https://github.com/servo/rust-smallvec/releases)
- [Commits](servo/rust-smallvec@v1.16.1...v1.16.2)

Updates `tokio-rustls` from 0.26.5 to 0.26.6
- [Release notes](https://github.com/rustls/tokio-rustls/releases)
- [Commits](rustls/tokio-rustls@v/0.26.5...v/0.26.6)

Updates `yoke-derive` from 0.8.3 to 0.8.4
- [Release notes](https://github.com/unicode-org/icu4x/releases)
- [Changelog](https://github.com/unicode-org/icu4x/blob/main/CHANGELOG.md)
- [Commits](https://github.com/unicode-org/icu4x/commits)

---
updated-dependencies:
- dependency-name: encoding_rs
  dependency-version: 0.8.42
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: cargo
- dependency-name: cc
  dependency-version: 1.5.1
  dependency-type: indirect
  update-type: version-update:semver-minor
  dependency-group: cargo
- dependency-name: find-msvc-tools
  dependency-version: 0.1.14
  dependency-type: indirect
  update-type: version-update:semver-patch
  dependency-group: cargo
- dependency-name: hyper-util
  dependency-version: 0.1.21
  dependency-type: indirect
  update-type: version-update:semver-patch
  dependency-group: cargo
- dependency-name: lazy_static
  dependency-version: 1.5.1
  dependency-type: indirect
  update-type: version-update:semver-patch
  dependency-group: cargo
- dependency-name: quinn-proto
  dependency-version: 0.11.19
  dependency-type: indirect
  update-type: version-update:semver-patch
  dependency-group: cargo
- dependency-name: rand
  dependency-version: 0.10.3
  dependency-type: indirect
  update-type: version-update:semver-patch
  dependency-group: cargo
- dependency-name: rustls-platform-verifier
  dependency-version: 0.7.1
  dependency-type: indirect
  update-type: version-update:semver-patch
  dependency-group: cargo
- dependency-name: rustls-platform-verifier-android
  dependency-version: 0.2.0
  dependency-type: indirect
  update-type: version-update:semver-minor
  dependency-group: cargo
- dependency-name: smallvec
  dependency-version: 1.16.2
  dependency-type: indirect
  update-type: version-update:semver-patch
  dependency-group: cargo
- dependency-name: tokio-rustls
  dependency-version: 0.26.6
  dependency-type: indirect
  update-type: version-update:semver-patch
  dependency-group: cargo
- dependency-name: yoke-derive
  dependency-version: 0.8.4
  dependency-type: indirect
  update-type: version-update:semver-patch
  dependency-group: cargo
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file minor Compatible new feature (minor bump) rust Pull requests that update rust code labels Oct 4, 2026
@dependabot
dependabot Bot requested a review from NullSablex as a code owner October 4, 2026 12:27
@dependabot dependabot Bot added minor Compatible new feature (minor bump) dependencies Pull requests that update a dependency file rust Pull requests that update rust code labels Oct 4, 2026
@NullSablex
NullSablex merged commit b3ac451 into master Oct 4, 2026
10 checks passed
@NullSablex
NullSablex deleted the dependabot/cargo/cargo-0379ac6be8 branch October 4, 2026 14:56
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file minor Compatible new feature (minor bump) rust Pull requests that update rust code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant