在安装NPM 6之后,几乎我在Angular 6项目上安装的每个NPM软件包都存在漏洞.
我应该每次"npm审核修复"每个包吗?我应该重新安装NPM 5吗?其他方案?
这是我使用的终端sequlize代码及其漏洞:
npm i sequelize --save
npm WARN @angular/material@6.2.1 requires a peer of @angular/cdk@6.2.1
but none is installed. You must install peer dependencies yourself.
+ sequelize@4.37.10
added 16 packages from 39 contributors and audited 22308 packages in
10.659s
found 9 vulnerabilities (3 low, 5 moderate, 1 high)
run `npm audit fix` to fix them, or `npm audit` for details
Run Code Online (Sandbox Code Playgroud)