Skip to content

v0.10.3

quinn-proto was bumped from 0.11.14 to 0.11.15 to clear RUSTSEC-2026-0185, a remote memory-exhaustion/DoS issue in a transitive HTTP/3 QUIC dependency. It is not on the CLI’s HTTP/1.1 request path, so this is a Cargo.lock-only security update with no runtime behavior change.