20min.ch 65 packages

Last scanned on Oct 27 at 06:23 PM
lodash 4.17.16VulnerableOutdated
Lodash modular utilities.
License
MIT
Footprint
3 KB
Vulnerabilities
Regular Expression Denial of Service (ReDoS) in lodash
Affected versions >=0 <4.17.21
Prototype Pollution in lodash
Affected versions >=0 <4.17.20
Command Injection in lodash
Affected versions >=0 <4.17.21
Matched Modules
Version distribution in production
704
4.17.16
235
4.17.21
86
4.17.20
59
4.17.15
54
4.17.13
53
4.17.12
react-is 16.3.0 - 18.2.0
Brand checking of React Elements.
@babel/runtime 7.14.6 - 7.16.3Outdated
babel's modular runtime helpers
+1
hzoo
existentialism
nicolo-ribaudo
buffer 5.7.0 - 6.0.3
Node.js Buffer API, for the browser
es-abstract 1.20.4
ECMAScript spec abstract operations.
has-symbols 1.0.2 - 1.0.3
Determine if the JS environment has Symbol support. Supports spec, or shams.
object-inspect 1.12.2
string representations of objects in node and the browser
get-intrinsic 1.1.3
Get and robustly cache all JS language-level intrinsics at first require time
has 1.0.1 - 1.0.3
Object.prototype.hasOwnProperty.call shortcut
tarruda
ljharb
define-properties 1.1.4
Define multiple non-enumerable properties at once. Uses `Object.defineProperty` when available; falls back to standard assignment in older engines.
domelementtype 2.2.0 - 2.3.0
all the types of nodes in htmlparser2's dom
function-bind 1.1.0 - 1.1.1
Implementation of Function.prototype.bind
is-callable 1.2.7
Is this JS value callable? Works with Functions and GeneratorFunctions, despite ES6 @@toStringTag.
is-regex 1.1.4
Is this value a JS regex? Works cross-realm/iframe, and despite ES6 @@toStringTag
base64-js 1.3.0 - 1.5.1
Base64 encoding/decoding in pure JS
object-keys 1.1.0 - 1.1.1
An Object.keys replacement, in case Object.keys is not available. From https://github.com/es-shims/es5-shim
call-bind 1.0.2
Robustly `.call.bind()` a function
domhandler 4.2.0 - 5.0.3
Handler for htmlparser2 that turns pages into a dom
is-date-object 1.0.5
Is this value a JS Date object? This module works cross-realm/iframe, and despite ES6 @@toStringTag.
is-string 1.0.7
Is this value a JS String object or primitive? This module works cross-realm/iframe, and despite ES6 @@toStringTag.
es-to-primitive 1.2.0 - 1.2.1
ECMAScript “ToPrimitive” algorithm. Provides ES5 and ES2015 versions.
deepmerge 4.2.2
A library for deep (recursive) merging of Javascript objects
nanoid 3.1.30 - 3.3.4Outdated
A tiny (116 bytes), secure URL-friendly unique string ID generator
has-tostringtag 1.0.0
Determine if the JS environment has `Symbol.toStringTag` support. Supports spec, or shams.
array-includes 3.1.2 - 3.1.5
An ES7/ES2016 spec-compliant `Array.prototype.includes` shim/polyfill/replacement that works as far down as ES3.
has-property-descriptors 1.0.0
Does the environment have full property descriptor support? Handles IE 8's broken defineProperty/gOPD.
scheduler 0.21.0 - 0.23.0
Cooperative scheduler for the browser environment.
requires-port 1.0.0
Check if a protocol requires a certain port number to be added to an URL.
react 17.0.0 - 18.2.0
React is a JavaScript library for building user interfaces.
react-dom 18.1.0Outdated
React package for working with the DOM.
object.entries 1.0.0 - 1.1.5
ES2017 spec-compliant Object.entries shim.
hoist-non-react-statics 3.3.1 - 3.3.2
Copies non-react specific statics from a child component to a parent component
mridgway
mridgway
url-parse 1.5.9 - 1.5.10
Small footprint URL parser that works seamlessly across Node.js and browser environments
querystringify 2.2.0
Querystringify - Small, simple but powerful query string parser.
dayjs 1.8.1 - 1.10.1Outdated
2KB immutable date time library alternative to Moment.js with the same modern API
stackframe 1.2.0 - 1.3.4
JS Object representation of a stack frame
react-transition-group 4.1.0 - 4.4.5
A react component toolset for managing animations
es5-ext 0.3.0 - 0.6.3Outdated
ECMAScript extensions and shims
es-array-method-boxes-properly 1.0.0
Utility package to determine if an `Array.prototype` method properly boxes the callback's receiver and third argument.
ljharb
ljharb
shallowequal 1.0.1 - 1.1.0
Like lodash isEqualWith but for shallow equal.
@sentry/utils 5.7.0 - 6.13.1Outdated
Utilities for all Sentry JavaScript SDKs
+9
benvinegar
billyvg
mitsuhiko
react-redux 5.0.3 - 7.2.9Outdated
Official React bindings for Redux
polished 3.0.0 - 3.4.4Outdated
A lightweight toolset for writing styles in Javascript.
style-to-object 0.2.3 - 0.3.0
Converts inline style to object.
inline-style-parser 0.1.0 - 0.1.1
An inline style parser.
styled-components 4.0.0 - 5.3.6
Visual primitives for the component age. Use the best bits of ES6 and CSS to style your apps without stress
next 12.1.0 - 12.1.5Outdated
The React Framework
rauchg
timneutkens
vercel-release-bot
string.prototype.trim 1.2.6
ES5 spec-compliant shim for String.prototype.trim
focus-lock 0.8.0 - 0.11.3
DOM trap for a focus
intl-messageformat 3.0.0Outdated
Formats ICU Message strings with number, date, plural, and select placeholders to create localized messages.
@reduxjs/toolkit 1.3.4 - 1.8.6
The official, opinionated, batteries-included toolset for efficient Redux development
@material-ui/core 4.9.8 - 4.12.4
React components that implement Google's Material Design.
react-dnd 15.0.0 - 16.0.1
Drag and Drop for React
+2
jordangens
gaearon
darthtrevino
html-react-parser 1.4.5 - 3.0.4
HTML to React parser.
react-property 2.0.0
HTML and SVG DOM property configs used by React.
style-to-js 1.1.0Outdated
Parses CSS inline style to JavaScript object (camelCased).
@chakra-ui/theme 2.1.0 - 2.1.3Outdated
The default theme for chakra components
next-auth 3.24.1 - 3.29.10Outdated
Authentication for Next.js
node-polyglot 2.4.1 - 2.4.2
Give your JavaScript the ability to speak many languages.
@tannin/plural-forms 1.0.0 - 1.1.0
Compiles a function to compute the plural forms index for a given value
aduth
aduth
lottie-api 1.0.0 - 1.0.2Outdated
A library to edit lottie-web animations dynamically
airnan
airnan
prebid.js 2.10.0 - 3.11.0Outdated
Header Bidding Management Library
botframework-webchat-component 4.15.4
React component of botframework-webchat
+2
botframework
joshgummersall
sgellock
react-amphtml 3.1.0 - 4.0.2
Use amphtml components inside your React apps easily!
dfrankland
dfrankland
js-component-framework 2.0.0 - 2.0.2Outdated
This framework is a method of attaching an ES6 class to a DOM element or collection of DOM elements.