tegal1337 / YOMEN

Youtube Bot Auto Comment
https://imtaqin.id/youtube-auto-commenter/
176 stars 78 forks source link

High severity vulnerabilities reported #20

Closed steverob1066 closed 2 years ago

steverob1066 commented 2 years ago

On install: 2 high severity vulnerabilities

After audit: # npm audit report shelljs <=0.8.4 Severity: high Improper Privilege Management in shelljs - https://github.com/advisories/GHSA-4rq4-32rv-6wp6 Improper Privilege Management in shelljs - https://github.com/advisories/GHSA-64g7-mvw6-v9qj No fix available node_modules/shelljs command-exist * Depends on vulnerable versions of shelljs node_modules/command-exist 2 high severity vulnerabilities Some issues need review, and may require choosing a different dependency.

I updated the package.json file with latest versions of the components. It all runs OK until the first comment and then seems to stop with no further comments.