-
Notifications
You must be signed in to change notification settings - Fork 554
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Package vulnerabilities #659
Comments
Can you get me a list based off of installing master? That way I can know what to get fixed in order to do a fresh release? Some of these will most-likely resolve with using master. |
I do have a plan to get snyk working on the repo to catch these early, but I hit a few snags. |
Do you mean this?
Let me know how to get what you want, and I'll be happy to help |
Try release 2.4.2 and let me know if it fixes things. |
|
I have Snyk running on my local machine. So now I can see the 4 vulnerabilities and identify when they are removed. Most critical errors come from the ability to detect GIF frames. If you're not using the If you'd like to fix these - can you send a pull-request to https://github.com/nsfw-filter/gif-frames to update their dependencies? When they update, I'll point NSFWJS to the latest. |
Thank you for checking them.. Is this pull request perhaps trying to fix this problem? |
That looks correct. Seems everyone is too busy, hahahaha. |
I am having a vulnerability issue in the request package used by |
That's the gif package. I hope someone can fork it and upgrade. |
When installing version 2.4.1 NPM reports 4 total vulnerabilities, 3 moderate and 1 high.
Can we get a fix on this?
The text was updated successfully, but these errors were encountered: