ex_wemo

Build log

host

ex_wemo 0.1.0 · fail · run ex_wemo-0.1.0-1791179731519
125 of 125 lines
1Resolving Hex dependencies...2Resolution completed in 0.17s3Unchanged:4  certifi 1.2.15  circular_buffer 1.1.06  cowboy 1.1.2 VULNERABLE!7    GHSA-w4f7-4cxr-rv3c (MEDIUM)8    aka: CVE-2026-43966, EEF-CVE-2026-439669    cowboy and gun affected by an HTTP Request/Response Splitting vulnerability10    https://osv.dev/vulnerability/GHSA-w4f7-4cxr-rv3c11  cowlib 1.0.2 VULNERABLE!12    EEF-CVE-2026-7790 (HIGH)13    aka: CVE-2026-7790, GHSA-32p9-57cr-4x6514    Unbounded chunk-size hex digits in cowlib cause quadratic CPU and memory DoS15    https://osv.dev/vulnerability/EEF-CVE-2026-77901617    EEF-CVE-2026-43970 (HIGH)18    aka: CVE-2026-43970, GHSA-84f2-rp86-235p19    Decompression Bomb in cow_spdy:inflate/2 Allows Memory Exhaustion via Crafted SPDY Frame20    https://osv.dev/vulnerability/EEF-CVE-2026-4397021  elixir_make 0.10.022  ex_wemo 0.1.023  hackney 1.8.6 VULNERABLE!24    EEF-CVE-2026-47075 (MEDIUM)25    aka: CVE-2026-47075, GHSA-j9wq-vxxc-94wf26    CR/LF injection in query parameter in hackney27    https://osv.dev/vulnerability/EEF-CVE-2026-470752829    EEF-CVE-2026-47071 (HIGH)30    aka: CVE-2026-47071, GHSA-gp9c-pm5m-5cxr31    SOCKS5 TLS upgrade ignores caller timeout in hackney32    https://osv.dev/vulnerability/EEF-CVE-2026-470713334    EEF-CVE-2026-47076 (MEDIUM)35    aka: CVE-2026-47076, GHSA-pj7v-xfvx-wmjq36    SSRF allowlist bypass via percent-encoded host in hackney37    https://osv.dev/vulnerability/EEF-CVE-2026-470763839    EEF-CVE-2026-47069 (LOW)40    aka: CVE-2026-47069, GHSA-mp55-p8c9-rfw241    CRLF injection in cookie domain/path options in hackney42    https://osv.dev/vulnerability/EEF-CVE-2026-470694344    GHSA-9fm9-hp7p-53mf (LOW)45    aka: CVE-2025-386446    Hackney fails to properly release HTTP connections to the pool47    https://osv.dev/vulnerability/GHSA-9fm9-hp7p-53mf4849    GHSA-vq52-99r9-h5pw (LOW)50    aka: CVE-2025-121151    Server-side Request Forgery (SSRF) in hackney52    https://osv.dev/vulnerability/GHSA-vq52-99r9-h5pw53  html_entities 0.4.054  httpoison 0.11.255  idna 5.0.256  interactive_cmd 0.1.457  metrics 1.0.158  mimerl 1.0.259  nerves 2.0.0-pre.260  nerves_discovery 0.1.561  nerves_logging 0.2.462  nerves_runtime 0.13.1363  nerves_system_bbb 2.30.264  nerves_system_br 1.34.465  nerves_system_mangopi_mq_pro 0.17.266  nerves_system_qemu_aarch64 0.4.267  nerves_system_rpi0 2.1.268  nerves_system_rpi4 2.1.269  nerves_system_rpi5 2.1.270  nerves_system_trellis 0.5.071  nerves_system_x86_64 1.34.272  nerves_toolchain_aarch64_nerves_linux_gnu 15.3.173  nerves_toolchain_armv6_nerves_linux_gnueabihf 15.3.174  nerves_toolchain_armv7_nerves_linux_gnueabihf 15.3.175  nerves_toolchain_riscv64_nerves_linux_gnu 15.3.176  nerves_toolchain_x86_64_nerves_linux_musl 15.3.177  nerves_uevent 0.1.778  poison 3.1.079  property_table 0.3.480  ranch 1.3.281  ring_logger 0.11.782  ssdp 0.2.083  ssl_verify_fun 1.1.184  sweet_xml 0.6.6 VULNERABLE!85    GHSA-qpmc-wprv-x746 (HIGH)86    aka: CVE-2019-1516087    Inline DTD allows XML bomb attack88    https://osv.dev/vulnerability/GHSA-qpmc-wprv-x74689  tablet 0.3.390  toolshed 0.5.091  uboot_env 1.0.292  unicode_util_compat 0.2.093Found packages with security advisories, see above for details94All dependencies have been fetched95    warning: String.strip/1 is deprecated. Use String.trim/1 instead96    │97  4 │   @version File.read!("VERSION") |> String.strip98    │                                            ~99    │100    └─ /work/proj/deps/poison/mix.exs:4:44: Poison.Mixfile (module)101102==> html_entities103Compiling 2 files (.ex)104Generated html_entities app105==> nerves_compatibility_test106===> Analyzing applications...107===> Compiling unicode_util_compat108===> Analyzing applications...109===> Compiling idna110make: Entering directory '/work/proj/deps/certifi/certs_spec'111escript ../certs_spec/gen_certifi_mod.escript112=ERROR REPORT==== 5-Oct-2026::05:56:09.056381 ===113Can't load module 'compile' that resides in sticky dir114115escript: Internal error: {badmatch,{error,sticky_directory}}116[{escript,parse_and_run,3,[{file,"escript.erl"},{line,466}]},117 {escript,start,1,[{file,"escript.erl"},{line,422}]},118 {init,start_it,1,[]},119 {init,start_em,1,[]},120 {init,do_boot,3,[]}]121make: *** [Makefile:4: generate] Error 127122make: Leaving directory '/work/proj/deps/certifi/certs_spec'123===> Hook for compile failed!124125** (Mix) Could not compile dependency :certifi, "/home/nerves/.mix/elixir/1-20-otp-29/rebar3 bare compile --paths /work/proj/_build/host/lib/*/ebin" command failed. Errors may have been logged above. You can recompile this dependency with "mix deps.compile certifi --force", update it with "mix deps.update certifi" or clean it with "mix deps.clean certifi"