20min.ch 65 packages

Last scanned on Oct 27 at 06:23 PM
lodash 4.17.16VulnerableOutdated
Lodash modular utilities.
License
MIT
Footprint
3 KB
Vulnerabilities
Command Injection in lodash
Affected versions >=0 <4.17.21
Regular Expression Denial of Service (ReDoS) in lodash
Affected versions >=0 <4.17.21
Prototype Pollution in lodash
Affected versions >=3.7.0 <4.17.19
Matched Modules
Version distribution in production
3 846
4.17.16
946
4.17.21
337
4.17.20
322
4.17.15
302
4.17.19
301
4.17.13
next-auth 3.24.1 - 3.29.10VulnerableOutdated
Authentication for Next.js
next 12.1.0 - 12.1.5VulnerableOutdated
The React Framework
rauchg
timneutkens
vercel-release-bot
react-is 16.3.0 - 18.2.0
Brand checking of React Elements.
buffer 5.7.0 - 6.0.3
Node.js Buffer API, for the browser
@babel/runtime 7.14.6 - 7.16.3Outdated
babel's modular runtime helpers
+1
hzoo
existentialism
nicolo-ribaudo
get-intrinsic 1.1.3Outdated
Get and robustly cache all JS language-level intrinsics at first require time
function-bind 1.1.0 - 1.1.1Outdated
Implementation of Function.prototype.bind
call-bind 1.0.2Outdated
Robustly `.call.bind()` a function
object-inspect 1.12.2Outdated
string representations of objects in node and the browser
has-symbols 1.0.2 - 1.0.3
Determine if the JS environment has Symbol support. Supports spec, or shams.
has-property-descriptors 1.0.0Outdated
Does the environment have full property descriptor support? Handles IE 8's broken defineProperty/gOPD.
es-abstract 1.20.4Outdated
ECMAScript spec abstract operations.
base64-js 1.3.0 - 1.5.1
Base64 encoding/decoding in pure JS
define-properties 1.1.4Outdated
Define multiple non-enumerable properties at once. Uses `Object.defineProperty` when available; falls back to standard assignment in older engines.
is-callable 1.2.7
Is this JS value callable? Works with Functions and GeneratorFunctions, despite ES6 @@toStringTag.
nanoid 3.1.30 - 3.3.4Outdated
A tiny (116 bytes), secure URL-friendly unique string ID generator
domhandler 4.2.0 - 5.0.3
Handler for htmlparser2 that turns pages into a dom
has-tostringtag 1.0.0Outdated
Determine if the JS environment has `Symbol.toStringTag` support. Supports spec, or shams.
deepmerge 4.2.2Outdated
A library for deep (recursive) merging of Javascript objects
object-keys 1.1.0 - 1.1.1
An Object.keys replacement, in case Object.keys is not available. From https://github.com/es-shims/es5-shim
domelementtype 2.2.0 - 2.3.0
all the types of nodes in htmlparser2's dom
is-regex 1.1.4
Is this value a JS regex? Works cross-realm/iframe, and despite ES6 @@toStringTag
is-date-object 1.0.5
Is this value a JS Date object? This module works cross-realm/iframe, and despite ES6 @@toStringTag.
is-string 1.0.7
Is this value a JS String object or primitive? This module works cross-realm/iframe, and despite ES6 @@toStringTag.
es-to-primitive 1.2.0 - 1.2.1
ECMAScript “ToPrimitive” algorithm. Provides ES5 and ES2015 versions.
array-includes 3.1.2 - 3.1.5Outdated
An ES7/ES2016 spec-compliant `Array.prototype.includes` shim/polyfill/replacement that works as far down as ES3.
has 1.0.1 - 1.0.3Outdated
Object.prototype.hasOwnProperty.call shortcut
tarruda
tarruda
requires-port 1.0.0
Check if a protocol requires a certain port number to be added to an URL.
string.prototype.trim 1.2.6Outdated
ES5 spec-compliant shim for String.prototype.trim
scheduler 0.21.0 - 0.23.0
Cooperative scheduler for the browser environment.
react 17.0.0 - 18.2.0
React is a JavaScript library for building user interfaces.
react-dom 18.1.0Outdated
React package for working with the DOM.
url-parse 1.5.9 - 1.5.10
Small footprint URL parser that works seamlessly across Node.js and browser environments
querystringify 2.2.0
Querystringify - Small, simple but powerful query string parser.
object.entries 1.0.0 - 1.1.5Outdated
ES2017 spec-compliant Object.entries shim.
dayjs 1.8.1 - 1.10.1Outdated
2KB immutable date time library alternative to Moment.js with the same modern API
hoist-non-react-statics 3.3.1 - 3.3.2
Copies non-react specific statics from a child component to a parent component
mridgway
mridgway
react-transition-group 4.1.0 - 4.4.5
A react component toolset for managing animations
stackframe 1.2.0 - 1.3.4
JS Object representation of a stack frame
@sentry/utils 5.7.0 - 6.13.1Outdated
Utilities for all Sentry JavaScript SDKs
+8
benvinegar
billyvg
mitsuhiko
es-array-method-boxes-properly 1.0.0
Utility package to determine if an `Array.prototype` method properly boxes the callback's receiver and third argument.
ljharb
ljharb
es5-ext 0.3.0 - 0.6.3Outdated
ECMAScript extensions and shims
react-redux 5.0.3 - 7.2.9Outdated
Official React bindings for Redux
shallowequal 1.0.1 - 1.1.0
Like lodash isEqualWith but for shallow equal.
polished 3.0.0 - 3.4.4Outdated
A lightweight toolset for writing styles in Javascript.
style-to-object 0.2.3 - 0.3.0Outdated
Parse CSS inline style to JavaScript object.
inline-style-parser 0.1.0 - 0.1.1Outdated
An inline style parser.
styled-components 4.0.0 - 5.3.6Outdated
CSS for the <Component> Age. Style components your way with speed, strong typing, and flexibility.
intl-messageformat 3.0.0Outdated
Formats ICU Message strings with number, date, plural, and select placeholders to create localized messages.
@reduxjs/toolkit 1.3.4 - 1.8.6Outdated
The official, opinionated, batteries-included toolset for efficient Redux development
focus-lock 0.8.0 - 0.11.3Outdated
DOM trap for a focus
react-dnd 15.0.0 - 16.0.1
Drag and Drop for React
+2
jordangens
gaearon
darthtrevino
html-react-parser 1.4.5 - 3.0.4Outdated
HTML to React parser.
@material-ui/core 4.9.8 - 4.12.4
React components that implement Google's Material Design.
react-property 2.0.0Outdated
HTML and SVG DOM property configs used by React.
style-to-js 1.1.0Outdated
Parses CSS inline style to JavaScript object (camelCased).
@chakra-ui/theme 2.1.0 - 2.1.3Outdated
The default theme for chakra components
node-polyglot 2.4.1 - 2.4.2Outdated
Give your JavaScript the ability to speak many languages.
@tannin/plural-forms 1.0.0 - 1.1.0
Compiles a function to compute the plural forms index for a given value
aduth
aduth
lottie-api 1.0.0 - 1.0.2Outdated
A library to edit lottie-web animations dynamically
airnan
airnan
botframework-webchat-component 4.15.4Outdated
React component of botframework-webchat
+2
botframework
sgellock
cwhitten
prebid.js 2.10.0 - 3.11.0Outdated
Header Bidding Management Library
react-amphtml 3.1.0 - 4.0.2
Use amphtml components inside your React apps easily!
dfrankland
dfrankland
js-component-framework 2.0.0 - 2.0.2Outdated
A framework for configuring a JavaScript component and attaching it to a DOM element or collection of DOM elements, simplifying organization of DOM interactions on your website.