Build log
host
prexent 0.2.1 · fail · run prexent-0.2.1-1791074204228
362 of 362 lines
1Resolving Hex dependencies...2Resolution completed in 0.194s3Unchanged:4 circular_buffer 1.1.05 cowboy 2.19.06 cowboy_telemetry 0.3.17 cowlib 2.20.0 VULNERABLE!8 EEF-CVE-2026-43966 (MEDIUM)9 aka: CVE-2026-43966, GHSA-w4f7-4cxr-rv3c10 HTTP Response Splitting via Non-VCHAR Bytes in cow_http_struct_hd:escape_string/211 https://osv.dev/vulnerability/EEF-CVE-2026-439661213 EEF-CVE-2026-43969 (LOW)14 aka: CVE-2026-43969, GHSA-g2wm-735q-3f5615 Cookie Request Header Injection via Unvalidated Encoder in cow_cookie:cookie/116 https://osv.dev/vulnerability/EEF-CVE-2026-4396917 earmark 1.4.49 RETIRED! VULNERABLE!18 (deprecated) Earmark is no longer maintained. Migrate to a replacement, for example MDEx (https://hex.pm/packages/mdex).1920 EEF-CVE-2026-48591 (MEDIUM)21 aka: CVE-2026-48591, GHSA-52mm-h59v-f3c722 Stored XSS via unescaped HTML attribute values in earmark23 https://osv.dev/vulnerability/EEF-CVE-2026-4859124 elixir_make 0.10.025 erlexec 1.21.0 RETIRED!26 (deprecated) Deprecated27 exexec 0.2.028 expo 1.1.129 file_system 1.1.130 gettext 0.26.231 interactive_cmd 0.1.432 jason 1.4.533 mime 2.0.734 nerves 2.0.0-pre.235 nerves_discovery 0.1.536 nerves_logging 0.2.437 nerves_runtime 0.13.1338 nerves_system_bbb 2.30.239 nerves_system_br 1.34.440 nerves_system_mangopi_mq_pro 0.17.241 nerves_system_qemu_aarch64 0.4.242 nerves_system_rpi0 2.1.243 nerves_system_rpi4 2.1.244 nerves_system_rpi5 2.1.245 nerves_system_trellis 0.5.046 nerves_system_x86_64 1.34.247 nerves_toolchain_aarch64_nerves_linux_gnu 15.3.148 nerves_toolchain_armv6_nerves_linux_gnueabihf 15.3.149 nerves_toolchain_armv7_nerves_linux_gnueabihf 15.3.150 nerves_toolchain_riscv64_nerves_linux_gnu 15.3.151 nerves_toolchain_x86_64_nerves_linux_musl 15.3.152 nerves_uevent 0.1.753 phoenix 1.4.18 VULNERABLE!54 GHSA-p8f7-22gq-m7j9 (HIGH)55 aka: CVE-2022-4297556 Phoenix before 1.6.14 mishandles check_origin wildcarding57 https://osv.dev/vulnerability/GHSA-p8f7-22gq-m7j95859 EEF-CVE-2026-56812 (MEDIUM)60 aka: CVE-2026-56812, GHSA-63mc-hw7g-86rr61 Phoenix JavaScript presence client crashes on presence keys colliding with Object.prototype members in Presence.syncState/syncDiff62 https://osv.dev/vulnerability/EEF-CVE-2026-568126364 EEF-CVE-2026-56811 (HIGH)65 aka: CVE-2026-56811, GHSA-6983-jfq8-485w66 Phoenix transports do not limit channel joins per connection, enabling process-exhaustion denial of service67 https://osv.dev/vulnerability/EEF-CVE-2026-5681168 phoenix_html 2.13.4 VULNERABLE!69 GHSA-5g2h-9x5v-5h3x (MEDIUM)70 aka: CVE-2021-46871, GHSA-j3gg-r6gp-95q271 phoenix_html allows Cross-site Scripting in HEEx class attributes72 https://osv.dev/vulnerability/GHSA-5g2h-9x5v-5h3x73 phoenix_live_reload 1.7.074 phoenix_live_view 0.3.175 phoenix_pubsub 1.1.276 plug 1.20.377 plug_cowboy 2.9.078 plug_crypto 2.2.079 prexent 0.2.180 property_table 0.3.481 ranch 2.3.082 ring_logger 0.11.783 tablet 0.3.384 telemetry 0.4.385 toolshed 0.5.086 uboot_env 1.0.287Found retired packages, see above for details88Found packages with security advisories, see above for details89All dependencies have been fetched90===> Fetching pc v1.15.091===> Analyzing applications...92===> Compiling pc93===> Compiling c_src/ei++.cpp94===> Compiling c_src/exec.cpp95===> Compiling c_src/exec_impl.cpp96===> Linking /work/proj/_build/host/lib/erlexec/priv/x86_64-pc-linux-gnu/exec-port97===> Analyzing applications...98===> Compiling erlexec99==> exexec100Compiling 2 files (.ex)101Generated exexec app102==> phoenix_html103Compiling 8 files (.ex)104 warning: using single-quoted strings to represent charlists is deprecated.105 Use ~c"" if you indeed want a charlist or use "" instead.106 You may run "mix format --migrate" to change all single-quoted107 strings to use the ~c sigil and fix this warning.108 │109 12 │ @anno (if :erlang.system_info(:otp_release) >= '19' do110 │ ~111 │112 └─ lib/phoenix_html/engine.ex:12:50113114 warning: function handle_text/3 required by behaviour EEx.Engine is not implemented (in module Phoenix.HTML.Engine)115 │116 1 │ defmodule Phoenix.HTML.Engine do117 │ ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~118 │119 └─ lib/phoenix_html/engine.ex:1: Phoenix.HTML.Engine (module)120121 warning: the 1st pattern in clause will never match:122123 60124125 because it is expected to receive type:126127 dynamic(empty_list() or non_empty_list(term(), term()))128129 hint: defimpl for List requires its callbacks to match exclusively on empty_list() or non_empty_list(term(), term())130131 type warning found at:132 │133 56 │ def to_iodata(?<), do: "<"134 │ ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~135 │136 └─ lib/phoenix_html/safe.ex:56: Phoenix.HTML.Safe.List.to_iodata/1137138 warning: got "@impl true" for function handle_text/2 but no behaviour specifies such callback. The known callbacks are:139140 * EEx.Engine.handle_begin/1 (function)141 * EEx.Engine.handle_body/1 (function)142 * EEx.Engine.handle_end/1 (function)143 * EEx.Engine.handle_expr/3 (function)144 * EEx.Engine.handle_text/3 (function)145 * EEx.Engine.init/1 (function)146147 │148 52 │ def handle_text(state, text) do149 │ ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~150 │151 └─ lib/phoenix_html/engine.ex:52: Phoenix.HTML.Engine (module)152153 warning: the 1st pattern in clause will never match:154155 62156157 because it is expected to receive type:158159 dynamic(empty_list() or non_empty_list(term(), term()))160161 hint: defimpl for List requires its callbacks to match exclusively on empty_list() or non_empty_list(term(), term())162163 type warning found at:164 │165 57 │ def to_iodata(?>), do: ">"166 │ ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~167 │168 └─ lib/phoenix_html/safe.ex:57: Phoenix.HTML.Safe.List.to_iodata/1169170 warning: the 1st pattern in clause will never match:171172 38173174 because it is expected to receive type:175176 dynamic(empty_list() or non_empty_list(term(), term()))177178 hint: defimpl for List requires its callbacks to match exclusively on empty_list() or non_empty_list(term(), term())179180 type warning found at:181 │182 58 │ def to_iodata(?&), do: "&"183 │ ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~184 │185 └─ lib/phoenix_html/safe.ex:58: Phoenix.HTML.Safe.List.to_iodata/1186187 warning: the 1st pattern in clause will never match:188189 34190191 because it is expected to receive type:192193 dynamic(empty_list() or non_empty_list(term(), term()))194195 hint: defimpl for List requires its callbacks to match exclusively on empty_list() or non_empty_list(term(), term())196197 type warning found at:198 │199 59 │ def to_iodata(?"), do: """200 │ ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~201 │202 └─ lib/phoenix_html/safe.ex:59: Phoenix.HTML.Safe.List.to_iodata/1203204 warning: the 1st pattern in clause will never match:205206 39207208 because it is expected to receive type:209210 dynamic(empty_list() or non_empty_list(term(), term()))211212 hint: defimpl for List requires its callbacks to match exclusively on empty_list() or non_empty_list(term(), term())213214 type warning found at:215 │216 60 │ def to_iodata(?'), do: "'"217 │ ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~218 │219 └─ lib/phoenix_html/safe.ex:60: Phoenix.HTML.Safe.List.to_iodata/1220221 warning: the 1st pattern in clause will never match:222223 {:safe, data}224225 because it is expected to receive type:226227 dynamic(empty_list() or non_empty_list(term(), term()))228229 hint: defimpl for List requires its callbacks to match exclusively on empty_list() or non_empty_list(term(), term())230231 type warning found at:232 │233 76 │ def to_iodata({:safe, data}) do234 │ ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~235 │236 └─ lib/phoenix_html/safe.ex:76: Phoenix.HTML.Safe.List.to_iodata/1237238 warning: the following clause is redundant:239240 def to_iodata(other)241242 it has type:243244 dynamic(empty_list() or non_empty_list(term(), term()))245246 previous clauses have already matched on the following types:247248 non_empty_list(term(), term())249 empty_list()250251 │252 80 │ def to_iodata(other) do253 │ ~254 │255 └─ lib/phoenix_html/safe.ex:80:7: Phoenix.HTML.Safe.List.to_iodata/1256257 warning: the 1st pattern in clause will never match:258259 h260261 because it is expected to receive type:262263 dynamic(empty_list() or non_empty_list(term(), term()))264265 where "h" was given the type:266267 # type: integer()268 # from: lib/phoenix_html/safe.ex:62:25269 is_integer(h)270271 hint: defimpl for List requires its callbacks to match exclusively on empty_list() or non_empty_list(term(), term())272273 type warning found at:274 │275 62 │ def to_iodata(h) when is_integer(h) and h <= 255 do276 │ ~277 │278 └─ lib/phoenix_html/safe.ex:62:17: Phoenix.HTML.Safe.List.to_iodata/1279280 warning: the 1st pattern in clause will never match:281282 h283284 because it is expected to receive type:285286 dynamic(empty_list() or non_empty_list(term(), term()))287288 where "h" was given the type:289290 # type: integer()291 # from: lib/phoenix_html/safe.ex:66:25292 is_integer(h)293294 hint: defimpl for List requires its callbacks to match exclusively on empty_list() or non_empty_list(term(), term())295296 type warning found at:297 │298 66 │ def to_iodata(h) when is_integer(h) do299 │ ~300 │301 └─ lib/phoenix_html/safe.ex:66:17: Phoenix.HTML.Safe.List.to_iodata/1302303 warning: the 1st pattern in clause will never match:304305 h306307 because it is expected to receive type:308309 dynamic(empty_list() or non_empty_list(term(), term()))310311 where "h" was given the type:312313 # type: binary()314 # from: lib/phoenix_html/safe.ex:72:25315 is_binary(h)316317 hint: defimpl for List requires its callbacks to match exclusively on empty_list() or non_empty_list(term(), term())318319 type warning found at:320 │321 72 │ def to_iodata(h) when is_binary(h) do322 │ ~323 │324 └─ lib/phoenix_html/safe.ex:72:17: Phoenix.HTML.Safe.List.to_iodata/1325326Generated phoenix_html app327warning: "xref: [exclude: ...]" in your mix.exs file is deprecated, instead use: "elixirc_options: [no_warn_undefined: ...]"328 (mix 1.20.3) lib/mix/tasks/compile.elixir.ex:243: Mix.Tasks.Compile.Elixir.xref_exclude_opts/2329 (mix 1.20.3) lib/mix/tasks/compile.elixir.ex:142: Mix.Tasks.Compile.Elixir.run/1330 (mix 1.20.3) lib/mix/task.ex:502: anonymous fn/3 in Mix.Task.run_task/5331 (mix 1.20.3) lib/mix/task.compiler.ex:299: Mix.Task.Compiler.run_compiler/2332 (mix 1.20.3) lib/mix/task.compiler.ex:287: Mix.Task.Compiler.run/4333 (mix 1.20.3) lib/mix/tasks/compile.all.ex:75: Mix.Tasks.Compile.All.do_run/2334335==> phoenix_live_view336Compiling 15 files (.ex)337 warning: missing parentheses for expression following "do:" keyword. Parentheses are required to solve ambiguity inside keywords.338339 This error happens when you have function calls without parentheses inside keywords. For example:340341 function(arg, one: nested_call a, b, c)342 function(arg, one: if expr, do: :this, else: :that)343344 In the examples above, we don't know if the arguments "b" and "c" apply to the function "function" or "nested_call". Or if the keywords "do" and "else" apply to the function "function" or "if". You can solve this by explicitly adding parentheses:345346 function(arg, one: if(expr, do: :this, else: :that))347 function(arg, one: nested_call(a, b, c))348349 Ambiguity found at:350 │351 1233 │ do: raise ArgumentError, "cannot invoke #{context} from a child LiveView"352 │ ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~353 │354 └─ lib/phoenix_live_view.ex:1233355356357== Compilation error in file lib/phoenix_live_view/socket.ex ==358** (ArgumentError) unknown fields [:root_id] in :only when deriving the Inspect protocol for Phoenix.LiveView.Socket359 (elixir 1.20.3) lib/inspect.ex:258: Inspect.validate_option/4360 (elixir 1.20.3) expanding macro: Inspect.__deriving__/2361 lib/phoenix_live_view/socket.ex:11: Phoenix.LiveView.Socket (module)362could not compile dependency :phoenix_live_view, "mix compile" failed. Errors may have been logged above. You can recompile this dependency with "mix deps.compile phoenix_live_view --force", update it with "mix deps.update phoenix_live_view" or clean it with "mix deps.clean phoenix_live_view"