EspressoSystems / EspressoSystems/espresso-network

RUSTSEC-2026-0173: proc-macro-error2 is unmaintained

Open
#4,445 0 comments 0 reactions 0 assignees View on GitHub
Dominant language
Rust
Stars
193
Forks
177
Avg merge
2d 4h
Merged PRs (30d)
60

Description

> proc-macro-error2 is unmaintained

| Details | |
| ------------------- | ---------------------------------------------- |
| Status | unmaintained |
| Package | `proc-macro-error2` |
| Version | `2.0.1` |
| URL | [https://github.com/GnomedDev/proc-macro-error-2/issues/17](https://github.com/GnomedDev/proc-macro-error-2/issues/17) |
| Date | 2026-06-07 |

The author of `proc-macro-error2` has [confirmed](https://github.com/GnomedDev/proc-macro-error-2/issues/17#issuecomment-4643215473) that the crate is no longer maintained and recommends that users migrate away from it.

`proc-macro-error2` was originally created as a maintained fork of [`proc-macro-error`](https://crates.io/crates/proc-macro-error) (see [RUSTSEC-2024-0370](https://rustsec.org/advisories/RUSTSEC-2024-0370)). Both the original crate and this fork are now unmaintained.

## Possible Alternative(s)

- [manyhow](https://crates.io/crates/manyhow)
- [proc-macro2-diagnostics](https://github.com/SergioBenitez/proc-macro2-diagnostics)

See [advisory page](https://rustsec.org/advisories/RUSTSEC-2026-0173.html) for additional details.

Contributor guide

No contributing guide indexed for this repository

Research direction

Start by reviewing the RUSTSEC-2026-0173 advisory and checking whether this repository uses proc-macro-error2 version 2.0.1. Compare the listed alternatives, then confirm the intended dependency migration and its validation criteria with the maintainers; the issue does not name affected files or tests.

Written by the indexing model from the issue text.

Assessment

Tech stack
rust
Domain
security
Issue type
Bug
Difficulty
4/5
Estimated time
3-5 days
Activity status
Quiet
Clarity
Needs clarification
Newbie friendliness
35/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.