NewYour coding agent can read the release notes before it upgrades.Set up the MCP server →
crates.io · #4351 most downloaded on crates.io
FFI bindings to BoringSSL
Last release 1 months ago
11 Aug 2026
Release timing varies
gaps range from 8 days to 5 months
Most releases are documented
notes for 36 of 47 stable releases
7 versions withdrawn
withdrawn after publishing
6 years old
56 releases · first in 2020
One column per quarter.
CI improvements by @kornelski in #490
X509StoreContextRef::set_verify_param by @TheJokr in #508Full Changelog: v5.1.0...v5.1.1
X509StoreContextRef::set_verify_param by @TheJokr in #508relax-rsa-key-usage feature to restore historical RSA keyUsage by @johnhurt in #512Full Changelog: v5.1.0...v5.2.0
DEP_BORINGSSL_VERSION_MAJOR varAdded used_hello_retry_request function by @icrutche in #481
Full Changelog: v5.0.2...v5.1.0
boring-sys: Support static MSVC runtime by @jrose-signal in #475
For major changes in v5 see: https://github.com/cloudflare/boring/releases/tag/v5.0.0
Full Changelog: v5.0.1...v5.0.2
Improved building with older versions of upstream BoringSSL C headers #469
Upgrade to 4.21.1 first and fix any deprecation warnings.
Upgrade to 4.21.1 first and fix any deprecation warnings.
fips Cargo feature, and the rest is customized via env vars (like BORING_BSSL_FIPS_PATH): #383SslCurve API. Identifying curves by name is more reliable across different builds of BoringSSL. Use SslRef::curve_name() instead #390 #396X509CheckFlags #425X509Store is now cheaply cloneable, but immutable. SslContextBuilder.cert_store_mut() can't be used after .set_cert_store(). If you need .cert_store_mut(), either don't overwrite the default store, or use .set_cert_store_builder() #426X509StoreBuilder::add_cert takes a reference.set_ex_data() will always Drop previous values #424BIO_set_retry_write on WouldBlock @ihciah in #118set_strict_cipher_list by @abernardeau-wallix in #416set_ticket_key_callback by @toidiu in #330SslCipherRef::protocol_id by @nox in #409Full Changelog: v4.20.0...v5.0.0
SslCurve APIBORING_BSSL_ env vars instead)Ssl::new_from_ref -> Ssl::new()Added ML-KEM-768 and ML-KEM-1024 support #455 #456 #462
pq-experimental (no-op) Cargo feature flag to allow crates support both boring v4 and v5 #461Full Changelog: v5.0.0-alpha.1...v5.0.0-alpha.3
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Deprecated APIs that were removed in v5 .
2026-01-05 Deprecate set_ex_data()
2025-08-26 Support TARGET_CC and CC_{target}
2025-09-03 Add binding for X509_check_ip_asc
2025-05-29 Add set_verify_param
2025-05-27 Revert "feat(x509): Implement Clone for X509Store (#339)"
Clone for X509Store (#339)" (#353)X509_STORE_CTX_get0_cert interfacecorresponds macro in add_certificate_compression_algorithmClone for X509Store (#339)2025-03-31 Add fips-precompiled feature to support newer versions of FIPS
SslCurve API with "fips" feature2025-02-27 Expose API to enable certificate compression.
TokioIo response requirement from hyper_boring::v1::HttpsConnector"2025-02-19 Bump cmake-rs to improve Mac OS build parallelism
TokioIo response requirement from hyper_boring::v1::HttpsConnector2024-11-26 Sync X509StoreBuilder with openssl
2024-11-20 Add bindings for SSL_CB_ACCEPT_EXIT and SSL_CB_CONNECT_EXIT
set_cert_verify_callback (SSL_CTX_set_cert_verify)2024-10-17 boring-sys: include HPKE header file for bindgen
- 2024-09-21 Set MSRV to 1.70
2024-09-18 boring-pq.patch Fix by not updating crypto_test_data.cc
2024-09-18 Don't support X25519MLKEM768 by default (yet)
2024-09-18 Implement optional Hyper 1 support in hyper-boring
corresponds macro from openssl-macros2024-08-04 Properly handle Option in SslRef::set_curves
Option<i32> in SslRef::set_curves2024-08-02 Actually Release 4.9.0
SslCurve::nid()2024-06-28 Expose hmac_sha1 function
2024-05-30 Expose hmac_sha256/512 functions
2024-04-09 Tweak cliff config to exclude merge and release commits from changelog
Nothing published for this version
2024-02-02 Fix building with BORING_BSSL_PATH / BORING_BSSL_FIPS_PATH
2024-01-16 Expose set_compliance_policy and get_ciphers
set_compliance_policy and get_ciphers2024-01-03 Move x509 tests to a subdirectory
2023-12-13 Introduce set_custom_verify_callback and set_async_custom_verify_callback
--target to cargo test in CI2023-11-16 Properly drop overwritten ex data
Nothing published for this version
2023-11-06 Update release notes
2023-10-26 Specify exact versions of dependent crates in the workspace manifest
2023-09-13 Update RELEASE_NOTES
no-patches featurepublish --dry-run instead of pacakge on CIcargo packagefips and fips-link-precompiled features.2023-08-05 Bump version in Cargo.toml
2023-08-03 Fix missing .trim() when verifying FIPS module name
rpk (fixes #140)2023-08-03 Fix feature gates for fips-link-precompiled
2023-08-01 Reduce release bundle size by excluding PQ test data
2023-03-22 Resolve an injection vulnerability in EKU creation
Deriver2021-08-10 Remove unused and deprecated tempdir dependency
mem::uninitializedDisplay for tokio-boring::HandshakeErrortempdir dependency*Ref parameters to macroX509Builder::append_extension.Asn1Timeto_der implementationCmsContentInfo <-> PEM bindings*-pc-windows-gnu"rustc_version to autocfg*-pc-windows-gnuAsn1Integer::from_bnPKey<Private> from private_key_from_derinit to take a closure which is called with the initialized contextcleanup into its own functionX509StoreContextRef::verify_certRsaPssSaltlen enum to encode the special valuesVerifier/Signer for RSA keysPKeyRef::get_id to get the OID of a keySslRef::compressionsign module.sha module.get_locking_function is doubly unlocked"x509_validity" feature"x509_expiry" feature flagAsn1TimeRefself parameters.&mut [c_char]Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Your coding agent can read these notes before it upgrades. Set up the MCP server →