Build log
host
yacco 0.1.0 · fail · run yacco-0.1.0-1791161918953
199 of 199 lines
1Resolving Hex dependencies...2Resolution completed in 0.354s3Unchanged:4 calendars 0.1.65 calixir 0.1.76 circular_buffer 1.1.07 cowboy 2.19.08 cowboy_telemetry 0.3.19 cowlib 2.20.0 VULNERABLE!10 EEF-CVE-2026-43966 (MEDIUM)11 aka: CVE-2026-43966, GHSA-w4f7-4cxr-rv3c12 HTTP Response Splitting via Non-VCHAR Bytes in cow_http_struct_hd:escape_string/213 https://osv.dev/vulnerability/EEF-CVE-2026-439661415 EEF-CVE-2026-43969 (LOW)16 aka: CVE-2026-43969, GHSA-g2wm-735q-3f5617 Cookie Request Header Injection via Unvalidated Encoder in cow_cookie:cookie/118 https://osv.dev/vulnerability/EEF-CVE-2026-4396919 elixir_make 0.10.020 expo 1.1.121 gettext 0.26.222 interactive_cmd 0.1.423 jason 1.4.524 mime 2.0.725 nerves 2.0.0-pre.226 nerves_discovery 0.1.527 nerves_logging 0.2.428 nerves_runtime 0.13.1329 nerves_system_bbb 2.30.230 nerves_system_br 1.34.431 nerves_system_mangopi_mq_pro 0.17.232 nerves_system_qemu_aarch64 0.4.233 nerves_system_rpi0 2.1.234 nerves_system_rpi4 2.1.235 nerves_system_rpi5 2.1.236 nerves_system_trellis 0.5.037 nerves_system_x86_64 1.34.238 nerves_toolchain_aarch64_nerves_linux_gnu 15.3.139 nerves_toolchain_armv6_nerves_linux_gnueabihf 15.3.140 nerves_toolchain_armv7_nerves_linux_gnueabihf 15.3.141 nerves_toolchain_riscv64_nerves_linux_gnu 15.3.142 nerves_toolchain_x86_64_nerves_linux_musl 15.3.143 nerves_uevent 0.1.744 phoenix 1.5.15 VULNERABLE!45 GHSA-p8f7-22gq-m7j9 (HIGH)46 aka: CVE-2022-4297547 Phoenix before 1.6.14 mishandles check_origin wildcarding48 https://osv.dev/vulnerability/GHSA-p8f7-22gq-m7j949 phoenix_html 2.14.3 VULNERABLE!50 GHSA-5g2h-9x5v-5h3x (MEDIUM)51 aka: CVE-2021-46871, GHSA-j3gg-r6gp-95q252 phoenix_html allows Cross-site Scripting in HEEx class attributes53 https://osv.dev/vulnerability/GHSA-5g2h-9x5v-5h3x54 phoenix_live_dashboard 0.4.055 phoenix_live_view 0.15.7 VULNERABLE!56 EEF-CVE-2026-64941 (LOW)57 aka: CVE-2026-64941, GHSA-36m4-rm57-3prf58 Open redirect in Phoenix.LiveView.validate_local_url!/2 via ASCII tab, LF and CR59 https://osv.dev/vulnerability/EEF-CVE-2026-6494160 phoenix_pubsub 2.3.061 plug 1.20.362 plug_cowboy 2.9.063 plug_crypto 1.2.564 property_table 0.3.465 ranch 2.3.066 ring_logger 0.11.767 tablet 0.3.368 telemetry 0.4.369 telemetry_metrics 0.6.270 telemetry_poller 0.5.171 toolshed 0.5.072 uboot_env 1.0.273 yacco 0.1.074Found packages with security advisories, see above for details75All dependencies have been fetched76==> calixir77Compiling 6 files (.ex)78warning: a..b inside match is deprecated, you must always match on the step: a..b//var or a..b//_ if you want to ignore it79 lib/calixir/calixir.ex:183: Calixir.imod/28081warning: a..b inside match is deprecated, you must always match on the step: a..b//var or a..b//_ if you want to ignore it82 lib/calixir/calixir.ex:184: Calixir.imod/28384warning: a..b inside match is deprecated, you must always match on the step: a..b//var or a..b//_ if you want to ignore it85 lib/calixir/calixir.ex:288: Calixir.in_range?/28687warning: a..b inside match is deprecated, you must always match on the step: a..b//var or a..b//_ if you want to ignore it88 lib/calixir/calixir.ex:909: Calixir.unlucky_fridays_in_range/18990warning: a..b inside match is deprecated, you must always match on the step: a..b//var or a..b//_ if you want to ignore it91 lib/calixir/calixir.ex:1164: Calixir.cycle_in_gregorian/49293warning: a..b inside match is deprecated, you must always match on the step: a..b//var or a..b//_ if you want to ignore it94 lib/calixir/calixir.ex:2636: Calixir.kajeng_keliwon/19596warning: a..b inside match is deprecated, you must always match on the step: a..b//var or a..b//_ if you want to ignore it97 lib/calixir/calixir.ex:2647: Calixir.tumpek/19899warning: a..b inside match is deprecated, you must always match on the step: a..b//var or a..b//_ if you want to ignore it100 lib/calixir/calixir.ex:6412: Calixir.sacred_wednesdays_in_range/1101102Generated calixir app103==> calendars104Compiling 47 files (.ex)105 warning: redefining @doc attribute previously set at line 66.106107 Please remove the duplicate docs. If instead you want to override a previously defined @doc, attach the @doc attribute to a function head (the function signature not followed by any do-block). For example:108109 @doc """110 new docs111 """112 def is_leap?(...)113114 │115 73 │ @doc """116 │ ~~~~~~~~117 │118 └─ lib/calendars/gregorian.ex:73: Calendars.Gregorian.is_leap?/1119120 warning: module attribute @weekdays_alt was set but never used121 │122 32 │ @weekdays_alt [123 │ ~~~~~~~~~~~~~~~124 │125 └─ lib/calendars/hebrew.ex:32: Calendars.Hebrew (module)126127 warning: redefining @doc attribute previously set at line 66.128129 Please remove the duplicate docs. If instead you want to override a previously defined @doc, attach the @doc attribute to a function head (the function signature not followed by any do-block). For example:130131 @doc """132 new docs133 """134 def is_leap?(...)135136 │137 73 │ @doc """138 │ ~~~~~~~~139 │140 └─ lib/calendars/julian.ex:73: Calendars.Julian.is_leap?/1141142Generated calendars app143warning: Phoenix now requires you to explicitly list which engine to use144for Phoenix JSON encoding. We recommend everyone to upgrade to145Jason by setting in your config/config.exs:146147 config :phoenix, :json_library, Jason148149And then adding {:jason, "~> 1.0"} as a dependency.150151If instead you would rather continue using Poison, then add to152your config/config.exs:153154 config :phoenix, :json_library, Poison155156 (phoenix 1.5.15) lib/phoenix.ex:38: Phoenix.start/2157 (kernel 11.0.4) application_master.erl:299: :application_master.start_it_old/4158159warning: the :gettext compiler is no longer required in your mix.exs.160161Please find the following line in your mix.exs and remove the :gettext entry:162163 compilers: [..., :gettext, ...] ++ Mix.compilers(),164165 (gettext 0.26.2) lib/mix/tasks/compile.gettext.ex:5: Mix.Tasks.Compile.Gettext.run/1166 (mix 1.20.3) lib/mix/task.ex:502: anonymous fn/3 in Mix.Task.run_task/5167 (mix 1.20.3) lib/mix/task.compiler.ex:299: Mix.Task.Compiler.run_compiler/2168 (mix 1.20.3) lib/mix/task.compiler.ex:287: Mix.Task.Compiler.run/4169 (mix 1.20.3) lib/mix/tasks/compile.all.ex:75: Mix.Tasks.Compile.All.do_run/2170 (mix 1.20.3) lib/mix/task.ex:502: anonymous fn/3 in Mix.Task.run_task/5171172==> yacco173Compiling 13 files (.ex)174warning: defining a Gettext backend by calling175176 use Gettext, otp_app: ...177178is deprecated. To define a backend, call:179180 use Gettext.Backend, otp_app: :my_app181182Then, instead of importing your backend, call this in your module:183184 use Gettext, backend: MyApp.Gettext185186 lib/yacco_web/gettext.ex:23: YaccoWeb.Gettext (module)187188189== Compilation error in file lib/yacco_web/endpoint.ex ==190** (ArgumentError) invalid :json_decoder option. The module Poison is not loaded and could not be found191 (plug 1.20.3) lib/plug/parsers/json.ex:48: Plug.Parsers.JSON.validate_decoder!/1192 (plug 1.20.3) lib/plug/parsers/json.ex:35: Plug.Parsers.JSON.init/1193 (plug 1.20.3) lib/plug/parsers.ex:283: anonymous fn/2 in Plug.Parsers.convert_parsers/2194 (elixir 1.20.3) lib/enum.ex:1725: Enum."-map/2-lists^map/1-1-"/2195 (elixir 1.20.3) lib/enum.ex:1725: Enum."-map/2-lists^map/1-1-"/2196 (plug 1.20.3) lib/plug/parsers.ex:263: Plug.Parsers.init/1197 (plug 1.20.3) lib/plug/builder.ex:358: Plug.Builder.init_module_plug/4198 (plug 1.20.3) lib/plug/builder.ex:339: anonymous fn/5 in Plug.Builder.compile/3199could not compile dependency :yacco, "mix compile" failed. Errors may have been logged above. You can recompile this dependency with "mix deps.compile yacco --force", update it with "mix deps.update yacco" or clean it with "mix deps.clean yacco"