🚩 Report: Spam

#1
by Juanpas07 - opened

This HugginFace space did not use yt-dlp to download the test video I inserted, but instead downloaded a pornographic video.

Juan, the app is open source and only 20 lines, you can see that it simply calls yt-dlp. What you experienced is either user error or a vulnerability in yt-dlp itself. Can you share which YouTube link this occured on?

That's strange,
I used this link: https://youtu.be/XOfrxSy1kb4?si=nVhs8GYpmNYwmgRC

It looks like the vulnerability was actually from an outdated version of Gradio! I have updated the Gradio version.

However, it appears that YouTube has become more restrictive and now requires browser cookies to download content. Since it doesn't seem possible to get these from within Gradio, I'm pausing the space for now.

Juanpas07 changed discussion status to closed

Sign up or log in to comment