Build log
nerves_system_trellis
history 0.0.23 · fail · run history-0.0.23-1790945171758
602 of 602 lines
1Resolving Hex dependencies...2Resolution completed in 0.837s3Unchanged:4 bamboo 2.2.05 bamboo_smtp 4.2.26 broadway 1.3.07 castore 1.0.218 certifi 2.15.09 circular_buffer 1.1.010 combine 0.10.011 confex 3.5.112 cowboy 2.19.013 cowboy_telemetry 0.4.014 cowlib 2.20.0 VULNERABLE!15 EEF-CVE-2026-43966 (MEDIUM)16 aka: CVE-2026-43966, GHSA-w4f7-4cxr-rv3c17 HTTP Response Splitting via Non-VCHAR Bytes in cow_http_struct_hd:escape_string/218 https://osv.dev/vulnerability/EEF-CVE-2026-439661920 EEF-CVE-2026-43969 (LOW)21 aka: CVE-2026-43969, GHSA-g2wm-735q-3f5622 Cookie Request Header Injection via Unvalidated Encoder in cow_cookie:cookie/123 https://osv.dev/vulnerability/EEF-CVE-2026-4396924 db_connection 2.10.225 decimal 2.4.1 VULNERABLE!26 EEF-CVE-2026-32686 (MEDIUM)27 aka: CVE-2026-32686, GHSA-rhv4-8758-jx7v28 Unbounded exponent in decimal enables unauthenticated DoS29 https://osv.dev/vulnerability/EEF-CVE-2026-3268630 deque 1.2.031 ecto 3.13.632 ecto_enum 1.4.033 ecto_sql 3.13.534 ecto_term 0.0.135 elixir_make 0.10.036 enumerati 0.0.837 etso 0.1.638 ex2ms 1.7.039 ex_binance 0.0.1040 ex_bitmex 0.6.141 ex_bybit 0.0.142 ex_delta_exchange 0.0.343 ex_deribit 0.0.944 ex_ftx 0.0.1445 ex_gdax 0.2.046 ex_huobi 0.0.247 ex_okex 0.6.048 exconstructor 1.3.149 gen_smtp 1.2.050 gen_stage 1.3.251 gettext 0.19.152 hackney 1.25.0 VULNERABLE!53 EEF-CVE-2026-47071 (HIGH)54 aka: CVE-2026-47071, GHSA-gp9c-pm5m-5cxr55 SOCKS5 TLS upgrade ignores caller timeout in hackney56 https://osv.dev/vulnerability/EEF-CVE-2026-470715758 EEF-CVE-2026-47076 (MEDIUM)59 aka: CVE-2026-47076, GHSA-pj7v-xfvx-wmjq60 SSRF allowlist bypass via percent-encoded host in hackney61 https://osv.dev/vulnerability/EEF-CVE-2026-470766263 EEF-CVE-2026-47069 (LOW)64 aka: CVE-2026-47069, GHSA-mp55-p8c9-rfw265 CRLF injection in cookie domain/path options in hackney66 https://osv.dev/vulnerability/EEF-CVE-2026-470696768 EEF-CVE-2026-47075 (MEDIUM)69 aka: CVE-2026-47075, GHSA-j9wq-vxxc-94wf70 CR/LF injection in query parameter in hackney71 https://osv.dev/vulnerability/EEF-CVE-2026-4707572 history 0.0.2373 httpoison 1.8.274 idna 6.1.175 indifferent 0.9.176 interactive_cmd 0.1.477 jason 1.4.578 juice 0.0.379 libcluster 3.5.080 mapail 1.0.281 maptu 1.0.082 master_proxy 0.1.4 RETIRED!83 (deprecated) Development has moved to main_proxy84 metrics 1.0.185 mime 1.6.086 mimerl 1.5.087 murmur 1.0.488 navigator 0.0.889 nerves 2.0.0-pre.290 nerves_discovery 0.1.591 nerves_logging 0.2.492 nerves_runtime 0.13.1393 nerves_system_bbb 2.30.294 nerves_system_br 1.34.495 nerves_system_mangopi_mq_pro 0.17.296 nerves_system_qemu_aarch64 0.4.297 nerves_system_rpi0 2.1.298 nerves_system_rpi4 2.1.299 nerves_system_rpi5 2.1.2100 nerves_system_trellis 0.5.0101 nerves_system_x86_64 1.34.2102 nerves_toolchain_aarch64_nerves_linux_gnu 15.3.1103 nerves_toolchain_armv6_nerves_linux_gnueabihf 15.3.1104 nerves_toolchain_armv7_nerves_linux_gnueabihf 15.3.1105 nerves_toolchain_riscv64_nerves_linux_gnu 15.3.1106 nerves_toolchain_x86_64_nerves_linux_musl 15.3.1107 nerves_uevent 0.1.7108 nimble_options 1.1.1109 notified 0.0.6110 notified_phoenix 0.0.7111 number 1.0.5112 ordered_nary_tree 0.0.4113 paged_query 0.0.2114 parse_trans 3.4.1115 phoenix 1.6.17116 phoenix_ecto 4.7.0117 phoenix_html 3.3.4118 phoenix_live_dashboard 0.6.5119 phoenix_live_view 0.17.14 VULNERABLE!120 EEF-CVE-2026-64941 (LOW)121 aka: CVE-2026-64941, GHSA-36m4-rm57-3prf122 Open redirect in Phoenix.LiveView.validate_local_url!/2 via ASCII tab, LF and CR123 https://osv.dev/vulnerability/EEF-CVE-2026-64941124 phoenix_pubsub 2.3.0125 phoenix_template 1.1.0126 phoenix_view 2.0.4127 plug 1.20.3128 plug_cowboy 2.9.0129 plug_crypto 1.2.5130 poison 4.0.1131 polymorphic_embed 1.10.0132 poolboy 1.5.2133 postgrex 0.22.4134 proper_case 1.3.1135 property_table 0.3.4136 ranch 2.3.0137 redirect 0.4.0138 ring_logger 0.11.7139 schoolbus 0.0.3140 ssl_verify_fun 1.1.7141 stored 0.0.8142 stylish 0.0.9143 table_rex 3.2.0144 tablet 0.3.3145 tai 0.0.75146 tai_events 0.0.2147 telemetry 1.4.2148 telemetry_metrics 0.6.2149 telemetry_metrics_prometheus 1.1.0150 telemetry_metrics_prometheus_core 1.2.1151 telemetry_poller 1.3.0152 timex 3.7.9153 toolshed 0.5.0154 tzdata 1.2.2155 uboot_env 1.0.2156 unicode_util_compat 0.7.1157 vex 0.9.2158 websockex 0.4.3159 workbench 0.0.18160* Getting history (Hex package)161* Getting nerves (Hex package)162* Getting ring_logger (Hex package)163* Getting toolshed (Hex package)164* Getting nerves_runtime (Hex package)165* Getting nerves_system_bbb (Hex package)166* Getting nerves_system_mangopi_mq_pro (Hex package)167* Getting nerves_system_qemu_aarch64 (Hex package)168* Getting nerves_system_rpi0 (Hex package)169* Getting nerves_system_rpi4 (Hex package)170* Getting nerves_system_rpi5 (Hex package)171* Getting nerves_system_trellis (Hex package)172* Getting nerves_system_x86_64 (Hex package)173* Getting nerves_system_br (Hex package)174* Getting nerves_toolchain_x86_64_nerves_linux_musl (Hex package)175* Getting nerves_toolchain_armv7_nerves_linux_gnueabihf (Hex package)176* Getting nerves_toolchain_aarch64_nerves_linux_gnu (Hex package)177* Getting nerves_toolchain_armv6_nerves_linux_gnueabihf (Hex package)178* Getting nerves_toolchain_riscv64_nerves_linux_gnu (Hex package)179* Getting nerves_logging (Hex package)180* Getting nerves_uevent (Hex package)181* Getting uboot_env (Hex package)182* Getting elixir_make (Hex package)183* Getting property_table (Hex package)184* Getting circular_buffer (Hex package)185* Getting interactive_cmd (Hex package)186* Getting nerves_discovery (Hex package)187* Getting tablet (Hex package)188* Getting broadway (Hex package)189* Getting confex (Hex package)190* Getting ecto_enum (Hex package)191* Getting ecto_sql (Hex package)192* Getting enumerati (Hex package)193* Getting etso (Hex package)194* Getting ex_ftx (Hex package)195* Getting gettext (Hex package)196* Getting indifferent (Hex package)197* Getting jason (Hex package)198* Getting master_proxy (Hex package)199* Getting navigator (Hex package)200* Getting notified_phoenix (Hex package)201* Getting paged_query (Hex package)202* Getting phoenix (Hex package)203* Getting phoenix_ecto (Hex package)204* Getting phoenix_html (Hex package)205* Getting phoenix_live_dashboard (Hex package)206* Getting phoenix_live_view (Hex package)207* Getting plug_cowboy (Hex package)208* Getting postgrex (Hex package)209* Getting redirect (Hex package)210* Getting stylish (Hex package)211* Getting tai (Hex package)212* Getting telemetry (Hex package)213* Getting telemetry_metrics (Hex package)214* Getting telemetry_metrics_prometheus (Hex package)215* Getting telemetry_poller (Hex package)216* Getting timex (Hex package)217* Getting workbench (Hex package)218* Getting decimal (Hex package)219* Getting deque (Hex package)220* Getting libcluster (Hex package)221* Getting number (Hex package)222* Getting phoenix_pubsub (Hex package)223* Getting schoolbus (Hex package)224* Getting stored (Hex package)225* Getting vex (Hex package)226* Getting combine (Hex package)227* Getting tzdata (Hex package)228* Getting telemetry_metrics_prometheus_core (Hex package)229* Getting ecto (Hex package)230* Getting ecto_term (Hex package)231* Getting ex2ms (Hex package)232* Getting ex_binance (Hex package)233* Getting ex_bitmex (Hex package)234* Getting ex_bybit (Hex package)235* Getting ex_delta_exchange (Hex package)236* Getting ex_deribit (Hex package)237* Getting ex_gdax (Hex package)238* Getting ex_huobi (Hex package)239* Getting ex_okex (Hex package)240* Getting httpoison (Hex package)241* Getting juice (Hex package)242* Getting murmur (Hex package)243* Getting polymorphic_embed (Hex package)244* Getting poolboy (Hex package)245* Getting table_rex (Hex package)246* Getting tai_events (Hex package)247* Getting websockex (Hex package)248* Getting hackney (Hex package)249* Getting certifi (Hex package)250* Getting idna (Hex package)251* Getting metrics (Hex package)252* Getting mimerl (Hex package)253* Getting parse_trans (Hex package)254* Getting ssl_verify_fun (Hex package)255* Getting unicode_util_compat (Hex package)256* Getting mapail (Hex package)257* Getting maptu (Hex package)258* Getting poison (Hex package)259* Getting proper_case (Hex package)260* Getting exconstructor (Hex package)261* Getting plug (Hex package)262* Getting mime (Hex package)263* Getting plug_crypto (Hex package)264* Getting db_connection (Hex package)265* Getting cowboy (Hex package)266* Getting cowboy_telemetry (Hex package)267* Getting cowlib (Hex package)268* Getting ranch (Hex package)269* Getting castore (Hex package)270* Getting phoenix_view (Hex package)271* Getting phoenix_template (Hex package)272* Getting notified (Hex package)273* Getting bamboo (Hex package)274* Getting bamboo_smtp (Hex package)275* Getting gen_smtp (Hex package)276* Getting ordered_nary_tree (Hex package)277* Getting gen_stage (Hex package)278* Getting nimble_options (Hex package)279Found retired packages, see above for details280Found packages with security advisories, see above for details281You have added/upgraded packages you could sponsor, run `mix hex.sponsor` to learn more282 warning: using single-quoted strings to represent charlists is deprecated.283 Use ~c"" if you indeed want a charlist or use "" instead.284 You may run "mix format --migrate" to change all single-quoted285 strings to use the ~c sigil and fix this warning.286 │287 21 │ defp elixirc_paths(:test), do: ['lib', 'test/support']288 │ ~289 │290 └─ /work/proj/deps_trellis/websockex/mix.exs:21:35291292 warning: using single-quoted strings to represent charlists is deprecated.293 Use ~c"" if you indeed want a charlist or use "" instead.294 You may run "mix format --migrate" to change all single-quoted295 strings to use the ~c sigil and fix this warning.296 │297 21 │ defp elixirc_paths(:test), do: ['lib', 'test/support']298 │ ~299 │300 └─ /work/proj/deps_trellis/websockex/mix.exs:21:42301302 warning: using single-quoted strings to represent charlists is deprecated.303 Use ~c"" if you indeed want a charlist or use "" instead.304 You may run "mix format --migrate" to change all single-quoted305 strings to use the ~c sigil and fix this warning.306 │307 22 │ defp elixirc_paths(_), do: ['lib']308 │ ~309 │310 └─ /work/proj/deps_trellis/websockex/mix.exs:22:31311312==> nerves_system_br313Generated nerves_system_br app314==> gen_stage315Compiling 10 files (.ex)316 warning: unused require Logger317 │318 103 │ require Logger319 │ ~320 │321 └─ lib/gen_stage/dispatchers/partition_dispatcher.ex:103:3322323Generated gen_stage app324==> combine325Compiling 6 files (.ex)326 warning: the variable "n" (context Combine.Parsers.Binary) is accessed inside size(...) of a bitstring but it was defined outside of the match. You must precede it with the pin operator327 │328 26 │ <<bits::bitstring-size(n), rest::bitstring>> ->329 │ ~330 │331 └─ lib/combine/parsers/binary.ex:26:30: Combine.Parsers.Binary.bits_impl/2332333 warning: the variable "bits_size" (context Combine.Parsers.Binary) is accessed inside size(...) of a bitstring but it was defined outside of the match. You must precede it with the pin operator334 │335 48 │ <<bits::bitstring-size(bits_size), rest::bitstring>> ->336 │ ~337 │338 └─ lib/combine/parsers/binary.ex:48:30: Combine.Parsers.Binary.bytes_impl/2339340 warning: the variable "size" (context Combine.Parsers.Binary) is accessed inside size(...) of a bitstring but it was defined outside of the match. You must precede it with the pin operator341 │342 70 │ <<int::big-unsigned-size(size), rest::bitstring>> ->343 │ ~344 │345 └─ lib/combine/parsers/binary.ex:70:36: Combine.Parsers.Binary.uint_impl/3346347 warning: the variable "size" (context Combine.Parsers.Binary) is accessed inside size(...) of a bitstring but it was defined outside of the match. You must precede it with the pin operator348 │349 77 │ <<int::little-unsigned-size(size), rest::bitstring>> ->350 │ ~351 │352 └─ lib/combine/parsers/binary.ex:77:39: Combine.Parsers.Binary.uint_impl/3353354 warning: the variable "size" (context Combine.Parsers.Binary) is accessed inside size(...) of a bitstring but it was defined outside of the match. You must precede it with the pin operator355 │356 101 │ <<int::big-signed-size(size), rest::bitstring>> ->357 │ ~358 │359 └─ lib/combine/parsers/binary.ex:101:34: Combine.Parsers.Binary.int_impl/3360361 warning: the variable "size" (context Combine.Parsers.Binary) is accessed inside size(...) of a bitstring but it was defined outside of the match. You must precede it with the pin operator362 │363 108 │ <<int::little-signed-size(size), rest::bitstring>> ->364 │ ~365 │366 └─ lib/combine/parsers/binary.ex:108:37: Combine.Parsers.Binary.int_impl/3367368 warning: the variable "size" (context Combine.Parsers.Binary) is accessed inside size(...) of a bitstring but it was defined outside of the match. You must precede it with the pin operator369 │370 128 │ <<num::float-size(size), rest::bitstring>> ->371 │ ~372 │373 └─ lib/combine/parsers/binary.ex:128:25: Combine.Parsers.Binary.float_impl/2374375 warning: the variable "byte_size" (context Combine.Parsers.Text) is accessed inside size(...) of a bitstring but it was defined outside of the match. You must precede it with the pin operator376 │377 432 │ <<^expected::binary-size(byte_size), rest::binary>> ->378 │ ~379 │380 └─ lib/combine/parsers/text.ex:432:34: Combine.Parsers.Text.string_impl/2381382 warning: the following clause is redundant:383384 defp word_of_impl(%Combine.ParserState{...} = state, _pattern)385386 it has type:387388 dynamic(%Combine.ParserState{status: :ok}), dynamic()389390 previous clauses have already matched on the following types:391392 %Combine.ParserState{status: :error}, term()393 %Combine.ParserState{status: :ok}, term()394395 │396 488 │ defp word_of_impl(%ParserState{status: :ok} = state, _pattern) do397 │ ~398 │399 └─ lib/combine/parsers/text.ex:488:8: Combine.Parsers.Text.word_of_impl/2400401Generated combine app402==> mime403Compiling 2 files (.ex)404Generated mime app405==> circular_buffer406Compiling 1 file (.ex)407Generated circular_buffer app408==> nimble_options409Compiling 3 files (.ex)410Generated nimble_options app411==> schoolbus412Compiling 2 files (.ex)413Generated schoolbus app414==> poison415Compiling 4 files (.ex)416 warning: using single-quoted strings to represent charlists is deprecated.417 Use ~c"" if you indeed want a charlist or use "" instead.418 You may run "mix format --migrate" to change all single-quoted419 strings to use the ~c sigil and fix this warning.420 │421 127 │ for {char, seq} <- Enum.zip('"\\\n\t\r\f\b', '"\\ntrfb') do422 │ ~423 │424 └─ lib/poison/encoder.ex:127:31425426 warning: using single-quoted strings to represent charlists is deprecated.427 Use ~c"" if you indeed want a charlist or use "" instead.428 You may run "mix format --migrate" to change all single-quoted429 strings to use the ~c sigil and fix this warning.430 │431 127 │ for {char, seq} <- Enum.zip('"\\\n\t\r\f\b', '"\\ntrfb') do432 │ ~433 │434 └─ lib/poison/encoder.ex:127:48435436 warning: using single-quoted strings to represent charlists is deprecated.437 Use ~c"" if you indeed want a charlist or use "" instead.438 You may run "mix format --migrate" to change all single-quoted439 strings to use the ~c sigil and fix this warning.440 │441 174 │ when char <= 0x1F or char in '"\\' do442 │ ~443 │444 └─ lib/poison/encoder.ex:174:37445446 warning: using single-quoted strings to represent charlists is deprecated.447 Use ~c"" if you indeed want a charlist or use "" instead.448 You may run "mix format --migrate" to change all single-quoted449 strings to use the ~c sigil and fix this warning.450 │451 94 │ when char in '-0123456789' do452 │ ~453 │454 └─ lib/poison/parser.ex:94:21455456 warning: using single-quoted strings to represent charlists is deprecated.457 Use ~c"" if you indeed want a charlist or use "" instead.458 You may run "mix format --migrate" to change all single-quoted459 strings to use the ~c sigil and fix this warning.460 │461 189 │ when char in '123456789' do462 │ ~463 │464 └─ lib/poison/parser.ex:189:21465466 warning: using single-quoted strings to represent charlists is deprecated.467 Use ~c"" if you indeed want a charlist or use "" instead.468 You may run "mix format --migrate" to change all single-quoted469 strings to use the ~c sigil and fix this warning.470 │471 205 │ defp number_exp(<<e>> <> rest, frac, pos, acc) when e in 'eE' do472 │ ~473 │474 └─ lib/poison/parser.ex:205:60475476 warning: using single-quoted strings to represent charlists is deprecated.477 Use ~c"" if you indeed want a charlist or use "" instead.478 You may run "mix format --migrate" to change all single-quoted479 strings to use the ~c sigil and fix this warning.480 │481 238 │ when char in '0123456789' do482 │ ~483 │484 └─ lib/poison/parser.ex:238:21485486 warning: using single-quoted strings to represent charlists is deprecated.487 Use ~c"" if you indeed want a charlist or use "" instead.488 You may run "mix format --migrate" to change all single-quoted489 strings to use the ~c sigil and fix this warning.490 │491 246 │ defp number_digits_count(<<char>> <> rest, acc) when char in '0123456789' do492 │ ~493 │494 └─ lib/poison/parser.ex:246:64495496 warning: using single-quoted strings to represent charlists is deprecated.497 Use ~c"" if you indeed want a charlist or use "" instead.498 You may run "mix format --migrate" to change all single-quoted499 strings to use the ~c sigil and fix this warning.500 │501 270 │ for {seq, char} <- Enum.zip('"\\ntr/fb', '"\\\n\t\r/\f\b') do502 │ ~503 │504 └─ lib/poison/parser.ex:270:31505506 warning: using single-quoted strings to represent charlists is deprecated.507 Use ~c"" if you indeed want a charlist or use "" instead.508 You may run "mix format --migrate" to change all single-quoted509 strings to use the ~c sigil and fix this warning.510 │511 270 │ for {seq, char} <- Enum.zip('"\\ntr/fb', '"\\\n\t\r/\f\b') do512 │ ~513 │514 └─ lib/poison/parser.ex:270:44515516 warning: using single-quoted strings to represent charlists is deprecated.517 Use ~c"" if you indeed want a charlist or use "" instead.518 You may run "mix format --migrate" to change all single-quoted519 strings to use the ~c sigil and fix this warning.520 │521 277 │ when a1 in 'dD' and a2 in 'dD' and b1 in '89abAB' and522 │ ~523 │524 └─ lib/poison/parser.ex:277:24525526 warning: using single-quoted strings to represent charlists is deprecated.527 Use ~c"" if you indeed want a charlist or use "" instead.528 You may run "mix format --migrate" to change all single-quoted529 strings to use the ~c sigil and fix this warning.530 │531 277 │ when a1 in 'dD' and a2 in 'dD' and b1 in '89abAB' and532 │ ~533 │534 └─ lib/poison/parser.ex:277:39535536 warning: using single-quoted strings to represent charlists is deprecated.537 Use ~c"" if you indeed want a charlist or use "" instead.538 You may run "mix format --migrate" to change all single-quoted539 strings to use the ~c sigil and fix this warning.540 │541 277 │ when a1 in 'dD' and a2 in 'dD' and b1 in '89abAB' and542 │ ~543 │544 └─ lib/poison/parser.ex:277:54545546 warning: using single-quoted strings to represent charlists is deprecated.547 Use ~c"" if you indeed want a charlist or use "" instead.548 You may run "mix format --migrate" to change all single-quoted549 strings to use the ~c sigil and fix this warning.550 │551 334 │ defp skip_whitespace(<<char>> <> rest, pos) when char in '\s\n\t\r' do552 │ ~553 │554 └─ lib/poison/parser.ex:334:60555556 warning: Application.get_env/2 is discouraged in the module body, use Application.compile_env/3 instead557 │558 42 │ if Application.get_env(:poison, :native) do559 │ ~560 │561 └─ lib/poison/parser.ex:42:18: Poison.Parser (module)562563 warning: use Bitwise is deprecated. import Bitwise instead564 │565 46 │ use Bitwise566 │ ~~~~~~~~~~~567 │568 └─ lib/poison/parser.ex:46: Poison.Parser (module)569570 warning: use Bitwise is deprecated. import Bitwise instead571 │572 117 │ use Bitwise573 │ ~~~~~~~~~~~574 │575 └─ lib/poison/encoder.ex:117: Poison.Encoder.BitString (module)576577 warning: the variable "size" is accessed inside size(...) of a bitstring but it was defined outside of the match. You must precede it with the pin operator578 │579 169 │ <<chunk::binary-size(size), rest::binary>> = string580 │ ~581 │582 └─ lib/poison/encoder.ex:169:26: Poison.Encoder.BitString.escape/2583584 warning: the variable "count" is accessed inside size(...) of a bitstring but it was defined outside of the match. You must precede it with the pin operator585 │586 240 │ <<digits::binary-size(count), rest::binary>> = string587 │ ~588 │589 └─ lib/poison/parser.ex:240:27: Poison.Parser.number_digits/2590591 warning: the variable "count" is accessed inside size(...) of a bitstring but it was defined outside of the match. You must precede it with the pin operator592 │593 266 │ <<chunk::binary-size(count), rest::binary>> = string594 │ ~595 │596 └─ lib/poison/parser.ex:266:26: Poison.Parser.string_continue/3597598Generated poison app599==> websockex600could not compile dependency :websockex, "mix compile" failed. Errors may have been logged above. You can recompile this dependency with "mix deps.compile websockex --force", update it with "mix deps.update websockex" or clean it with "mix deps.clean websockex"601==> nerves_compatibility_test602** (Mix) :elixirc_paths should be a list of string paths, got: [~c"lib"]