1. Rust Security Alert: rumqttc v0.25.1 Pins Vulnerable Dependencies, Blocks TLS Stack Updates
A critical dependency chain in the Rust ecosystem is exposing projects to multiple security vulnerabilities. The MQTT client library `rumqttc v0.25.1` is pinning outdated and vulnerable versions of two key `rustls` dependencies, creating a single point of failure that blocks the entire TLS stack from updating to secure...