- Updated Cargo’s bundled GitHub RSA host key and revoked the previously leaked key
- Added @revoked support and improved error messaging for @cert authority during SSH host key verification
- Prevents Cargo from accepting the compromised key even when trusted by the system