storebrand

Build log

host

storebrand 0.1.1 · fail · run storebrand-0.1.1-1791115272994
257 of 257 lines
1Resolving Hex dependencies...2Resolution completed in 0.135s3Unchanged:4  certifi 1.0.05  circular_buffer 1.1.06  elixir_make 0.10.07  hackney 1.6.6 RETIRED! VULNERABLE!8    (invalid)910    EEF-CVE-2026-47075 (MEDIUM)11    aka: CVE-2026-47075, GHSA-j9wq-vxxc-94wf12    CR/LF injection in query parameter in hackney13    https://osv.dev/vulnerability/EEF-CVE-2026-470751415    GHSA-vq52-99r9-h5pw (LOW)16    aka: CVE-2025-121117    Server-side Request Forgery (SSRF) in hackney18    https://osv.dev/vulnerability/GHSA-vq52-99r9-h5pw1920    EEF-CVE-2026-47071 (HIGH)21    aka: CVE-2026-47071, GHSA-gp9c-pm5m-5cxr22    SOCKS5 TLS upgrade ignores caller timeout in hackney23    https://osv.dev/vulnerability/EEF-CVE-2026-470712425    GHSA-9fm9-hp7p-53mf (LOW)26    aka: CVE-2025-386427    Hackney fails to properly release HTTP connections to the pool28    https://osv.dev/vulnerability/GHSA-9fm9-hp7p-53mf2930    EEF-CVE-2026-47069 (LOW)31    aka: CVE-2026-47069, GHSA-mp55-p8c9-rfw232    CRLF injection in cookie domain/path options in hackney33    https://osv.dev/vulnerability/EEF-CVE-2026-470693435    EEF-CVE-2026-47076 (MEDIUM)36    aka: CVE-2026-47076, GHSA-pj7v-xfvx-wmjq37    SSRF allowlist bypass via percent-encoded host in hackney38    https://osv.dev/vulnerability/EEF-CVE-2026-4707639  httpoison 0.9.240  idna 4.0.041  interactive_cmd 0.1.442  metrics 1.0.143  mimerl 1.0.244  nerves 2.0.0-pre.245  nerves_discovery 0.1.546  nerves_logging 0.2.447  nerves_runtime 0.13.1348  nerves_system_bbb 2.30.249  nerves_system_br 1.34.450  nerves_system_mangopi_mq_pro 0.17.251  nerves_system_qemu_aarch64 0.4.252  nerves_system_rpi0 2.1.253  nerves_system_rpi4 2.1.254  nerves_system_rpi5 2.1.255  nerves_system_trellis 0.5.056  nerves_system_x86_64 1.34.257  nerves_toolchain_aarch64_nerves_linux_gnu 15.3.158  nerves_toolchain_armv6_nerves_linux_gnueabihf 15.3.159  nerves_toolchain_armv7_nerves_linux_gnueabihf 15.3.160  nerves_toolchain_riscv64_nerves_linux_gnu 15.3.161  nerves_toolchain_x86_64_nerves_linux_musl 15.3.162  nerves_uevent 0.1.763  poison 3.1.064  property_table 0.3.465  ring_logger 0.11.766  ssl_verify_fun 1.1.167  storebrand 0.1.168  tablet 0.3.369  toolshed 0.5.070  uboot_env 1.0.271  uuid 1.1.872Found retired packages, see above for details73Found packages with security advisories, see above for details74All dependencies have been fetched75    warning: String.strip/1 is deprecated. Use String.trim/1 instead76    │77  4 │   @version File.read!("VERSION") |> String.strip78    │                                            ~79    │80    └─ /work/proj/deps/poison/mix.exs:4:44: Poison.Mixfile (module)8182===> Analyzing applications...83===> Compiling certifi84===> Analyzing applications...85===> Compiling hackney86    ┌─ src/hackney_ssl.erl:87    │88 65 │    case lists:keymember(ecdh_rsa, 1, ssl:cipher_suites()) of89    │                                      ╰── Warning: ssl:cipher_suites/0 is removed; use ssl:cipher_suites/2,3 instead909192    ┌─ src/hackney_pool.erl:93    │94 90 │              catch Transport:close(Socket),95    │              ╰── Warning: 'catch ...' is deprecated; please use 'try ... catch ... end' instead.96Compile directive 'nowarn_deprecated_catch' can be used to suppress97warnings in selected modules.9899    ┌─ src/hackney_pool.erl:100    │101 94 │          catch Transport:close(Socket),102    │          ╰── Warning: 'catch ...' is deprecated; please use 'try ... catch ... end' instead.103Compile directive 'nowarn_deprecated_catch' can be used to suppress104warnings in selected modules.105106     ┌─ src/hackney_pool.erl:107     │108 285 │                   catch Transport:close(Socket),109     │                   ╰── Warning: 'catch ...' is deprecated; please use 'try ... catch ... end' instead.110Compile directive 'nowarn_deprecated_catch' can be used to suppress111warnings in selected modules.112113     ┌─ src/hackney_pool.erl:114     │115 381 │                  catch Transport:controlling_process(S, self()),116     │                  ╰── Warning: 'catch ...' is deprecated; please use 'try ... catch ... end' instead.117Compile directive 'nowarn_deprecated_catch' can be used to suppress118warnings in selected modules.119120     ┌─ src/hackney_pool.erl:121     │122 403 │          catch Transport:close(Socket),123     │          ╰── Warning: 'catch ...' is deprecated; please use 'try ... catch ... end' instead.124Compile directive 'nowarn_deprecated_catch' can be used to suppress125warnings in selected modules.126127     ┌─ src/hackney_pool.erl:128     │129 493 │              catch Transport:close(Socket),130     │              ╰── Warning: 'catch ...' is deprecated; please use 'try ... catch ... end' instead.131Compile directive 'nowarn_deprecated_catch' can be used to suppress132warnings in selected modules.133134135    ┌─ src/hackney_stream.erl:136    │137 35 │          erlang:get_stacktrace()},138    │          ╰── Warning: erlang:get_stacktrace/0 is removed; use the new try/catch syntax for retrieving the stack backtrace139140141     ┌─ src/hackney_manager.erl:142     │143 122 │          catch Transport:controlling_process(Socket, self()),144     │          ╰── Warning: 'catch ...' is deprecated; please use 'try ... catch ... end' instead.145Compile directive 'nowarn_deprecated_catch' can be used to suppress146warnings in selected modules.147148     ┌─ src/hackney_manager.erl:149     │150 123 │          catch Transport:close(Socket),151     │          ╰── Warning: 'catch ...' is deprecated; please use 'try ... catch ... end' instead.152Compile directive 'nowarn_deprecated_catch' can be used to suppress153warnings in selected modules.154155     ┌─ src/hackney_manager.erl:156     │157 255 │          catch Transport:controlling_process(Socket, self()),158     │          ╰── Warning: 'catch ...' is deprecated; please use 'try ... catch ... end' instead.159Compile directive 'nowarn_deprecated_catch' can be used to suppress160warnings in selected modules.161162     ┌─ src/hackney_manager.erl:163     │164 256 │          catch Transport:close(Socket),165     │          ╰── Warning: 'catch ...' is deprecated; please use 'try ... catch ... end' instead.166Compile directive 'nowarn_deprecated_catch' can be used to suppress167warnings in selected modules.168169     ┌─ src/hackney_manager.erl:170     │171 456 │    case catch hackney_stream:start_link(StreamTo2, Ref, Client) of172     │         ╰── Warning: 'catch ...' is deprecated; please use 'try ... catch ... end' instead.173Compile directive 'nowarn_deprecated_catch' can be used to suppress174warnings in selected modules.175176177     ┌─ src/hackney_trace.erl:178     │179 130 │    (catch io:format(standard_io, "stop trace at ~s~n", [format_timestamp(Timestamp)])),180     │     ╰── Warning: 'catch ...' is deprecated; please use 'try ... catch ... end' instead.181Compile directive 'nowarn_deprecated_catch' can be used to suppress182warnings in selected modules.183184     ┌─ src/hackney_trace.erl:185     │186 137 │    (catch io:format(Fd, "stop trace at ~s~n", [format_timestamp(Timestamp)])),187     │     ╰── Warning: 'catch ...' is deprecated; please use 'try ... catch ... end' instead.188Compile directive 'nowarn_deprecated_catch' can be used to suppress189warnings in selected modules.190191     ┌─ src/hackney_trace.erl:192     │193 144 │    (catch io:format(Fd, "stop trace at ~s~n", [format_timestamp(Timestamp)])),194     │     ╰── Warning: 'catch ...' is deprecated; please use 'try ... catch ... end' instead.195Compile directive 'nowarn_deprecated_catch' can be used to suppress196warnings in selected modules.197198     ┌─ src/hackney_trace.erl:199     │200 145 │    (catch file:close(Fd)),201     │     ╰── Warning: 'catch ...' is deprecated; please use 'try ... catch ... end' instead.202Compile directive 'nowarn_deprecated_catch' can be used to suppress203warnings in selected modules.204205     ┌─ src/hackney_trace.erl:206     │207 152 │    (catch io:format(Fd, "stop trace at ~s~n", [format_timestamp(Timestamp)])),208     │     ╰── Warning: 'catch ...' is deprecated; please use 'try ... catch ... end' instead.209Compile directive 'nowarn_deprecated_catch' can be used to suppress210warnings in selected modules.211212     ┌─ src/hackney_trace.erl:213     │214 153 │    (catch file:close(Fd)),215     │     ╰── Warning: 'catch ...' is deprecated; please use 'try ... catch ... end' instead.216Compile directive 'nowarn_deprecated_catch' can be used to suppress217warnings in selected modules.218219     ┌─ src/hackney_trace.erl:220     │221 159 │    (catch print_hackney_trace(Fd, Sev, Timestamp, Who,222     │     ╰── Warning: 'catch ...' is deprecated; please use 'try ... catch ... end' instead.223Compile directive 'nowarn_deprecated_catch' can be used to suppress224warnings in selected modules.225226     ┌─ src/hackney_trace.erl:227     │228 163 │    (catch print_trace(Fd, Event)),229     │     ╰── Warning: 'catch ...' is deprecated; please use 'try ... catch ... end' instead.230Compile directive 'nowarn_deprecated_catch' can be used to suppress231warnings in selected modules.232233234==> httpoison235Compiling 2 files (.ex)236Generated httpoison app237==> storebrand238Compiling 2 files (.ex)239    warning: Application.get_env/2 is discouraged in the module body, use Application.compile_env/3 instead240    │241  8 │   unless Application.get_env(:storebrand, Storebrand) do242    │                      ~243    │244    └─ lib/storebrand.ex:8:22: Storebrand (module)245246    warning: Application.get_env/2 is discouraged in the module body, use Application.compile_env/3 instead247    │248 12 │   unless Keyword.get(Application.get_env(:storebrand, Storebrand), :url) do249    │                                  ~250    │251    └─ lib/storebrand.ex:12:34: Storebrand (module)252253254== Compilation error in file lib/storebrand.ex ==255** (Storebrand.ConfigError) Storebrand is not configured256    lib/storebrand.ex:9: (module)257could not compile dependency :storebrand, "mix compile" failed. Errors may have been logged above. You can recompile this dependency with "mix deps.compile storebrand --force", update it with "mix deps.update storebrand" or clean it with "mix deps.clean storebrand"