9news.com.au 107 packages

Last scanned on Oct 27 at 06:17 PM
lodash 4.17.16VulnerableOutdated
Lodash modular utilities.
License
MIT
Footprint
7 KB
Vulnerabilities
Command Injection in lodash
Affected versions >=0 <4.17.21
Regular Expression Denial of Service (ReDoS) in lodash
Affected versions >=0 <4.17.21
Prototype Pollution in lodash
Affected versions >=3.7.0 <4.17.19
Matched Modules
Version distribution in production
3 846
4.17.16
946
4.17.21
337
4.17.20
322
4.17.15
302
4.17.19
301
4.17.13
axios 0.18.1VulnerableOutdated
Promise based HTTP client for the browser and node.js
serialize-javascript 1.8.0 - 1.9.1VulnerableOutdated
Serialize JavaScript to a superset of JSON that includes regular expressions and functions.
elliptic 6.5.2 - 6.5.3VulnerableOutdated
EC cryptography
es5-ext 0.10.24 - 0.10.49VulnerableOutdated
ECMAScript extensions and shims
debug 3.2.0 - 4.0.1Outdated
Lightweight debugging utility for Node.js and the browser
color-convert 1.8.2 - 2.0.1
Plain color conversion functions
ms 2.1.2 - 2.1.3
Tiny millisecond conversion utility
+5
gdborton
matheuss
rauchg
readable-stream 2.3.4 - 2.3.7Outdated
Node.js Streams, a user-land copy of the stream library from Node.js
string_decoder 1.1.0 - 1.3.0
The string_decoder module from Node core
uuid 1.4.0 - 1.4.1Outdated
RFC4122 (v1, v4, and v5) UUIDs
isarray 1.0.0 - 2.0.5
Array#isArray for older browsers
react-is 16.3.0 - 16.13.1Outdated
Brand checking of React Elements.
inherits 2.0.4
Browser-friendly inheritance fully compatible with standard node.js inherits()
buffer 4.6.0 - 4.9.2Outdated
Node.js Buffer API, for the browser
@babel/runtime 7.9.0 - 7.9.2Outdated
babel's modular runtime helpers
+1
hzoo
existentialism
nicolo-ribaudo
is-arrayish 0.3.1 - 0.3.2
Determines if an object can be used as an array
cookie 0.2.4 - 0.4.1Outdated
HTTP server cookie parsing and serialization
dougwilson
dougwilson
core-util-is 1.0.2 - 1.0.3
The `util.is*` functions introduced in Node v0.12.
base64-js 1.3.0 - 1.5.1
Base64 encoding/decoding in pure JS
is-buffer 2.0.0 - 2.0.5
Determine if an object is a Buffer
events 3.0.0 - 3.3.0
Node's event emitter for all engines.
array-flatten 2.0.0 - 2.1.2Outdated
Flatten nested arrays
core-js 2.6.11Outdated
Standard library
scheduler 0.15.0 - 0.23.0
Cooperative scheduler for the browser environment.
prop-types 15.7.0 - 15.7.2Outdated
Runtime type checking for React props and similar objects.
react 0.11.0 - 17.0.2Outdated
React is a JavaScript library for building user interfaces.
react-dom 16.1.0 - 16.14.0Outdated
React package for working with the DOM.
url 0.11.0Outdated
The core `url` packaged standalone for use with Browserify.
date-fns 2.0.0 - 2.29.3Outdated
Modern JavaScript date utility library
kossnocorp
kossnocorp
color 3.1.0 - 3.2.1Outdated
Color conversion and manipulation with CSS string support
minimalistic-assert 1.0.0 - 1.0.1
minimalistic-assert ===
cwmma
indutny
color-string 1.5.3 - 1.9.1
Parser and generator for CSS color strings
hoist-non-react-statics 2.5.1 - 3.3.2
Copies non-react specific statics from a child component to a parent component
mridgway
mridgway
simple-swizzle 0.2.1 - 0.2.2
Simply swizzle your arguments
@emotion/unitless 0.7.2 - 0.8.0Outdated
An object of css properties that don't accept values with units
+1
emmatown
tkh44
emotion-release-bot
classnames 2.2.6Outdated
A simple utility for conditionally joining classNames together
stylis 3.1.0 - 3.5.4Outdated
A Light–weight CSS Preprocessor
andarist
thysultan
@emotion/is-prop-valid 0.6.7 - 0.6.8Outdated
A function to check whether a prop is valid for HTML and SVG elements
+1
emmatown
tkh44
emotion-release-bot
lodash.get 4.4.1 - 4.4.2
The lodash method `_.get` exported as a module.
dom-helpers 3.4.0Outdated
tiny modular DOM lib for ie9+
sha.js 2.4.9 - 2.4.11
Streamable SHA hashes in pure javascript
dcousens
ljharb
cwmma
bowser 1.9.4Outdated
Lightweight browser detector
asn1.js 4.6.0 - 4.10.1Outdated
ASN.1 encoder and decoder
memoize-one 4.0.2 - 4.1.0Outdated
A memoization library which only remembers the latest invocation
hash-base 3.0.4 - 3.1.0
abstract base class for hash-streams
hash.js 1.1.2 - 1.1.7
Various hash functions that could be run by both browser and node
immediate 2.4.3 - 3.3.0
A cross browser microtask library
cwmma
cwmma
hmac-drbg 1.0.1
Deterministic random bit generator (hmac)
react-fast-compare 2.0.4Outdated
Fastest deep equal comparison for React. Great for React.memo & shouldComponentUpdate. Also really fast general-purpose deep comparison.
redux 3.2.1 - 3.7.2Outdated
Predictable state container for JavaScript apps
des.js 1.0.1Outdated
DES implementation
md5.js 1.1.0 - 1.3.5
node style md5 on pure JavaScript
pbkdf2 3.0.16 - 3.0.17Outdated
This library provides the functionality of PBKDF2 with the ability to use any supported hashing algorithm returned from crypto.getHashes()
parse-asn1 5.1.4 - 5.1.5Outdated
utility library for parsing asn1 files for use with browserify-sign.
+2
dcousens
ljharb
cwmma
cipher-base 1.0.4
abstract base class for crypto-streams
browserify-sign 2.4.0 - 2.8.0Outdated
adds node crypto signing for browsers
+2
dcousens
ljharb
cwmma
browserify-aes 0.4.0 - 0.8.1Outdated
aes, for browserify
evp_bytestokey 1.0.3
The insecure key derivation algorithm from OpenSSL
browserify-rsa 3.0.0 - 4.0.1Outdated
RSA for browserify
+2
dcousens
ljharb
cwmma
timers-browserify 2.0.9Outdated
timers module for browserify
create-ecdh 3.0.0 - 4.0.4
createECDH but browserifiable
public-encrypt 4.0.3
browserify version of publicEncrypt & privateDecrypt
+2
dcousens
ljharb
cwmma
diffie-hellman 1.1.2Outdated
pure js diffie-hellman
browserify-des 1.0.2
browserify-des ===
dcousens
ljharb
cwmma
miller-rabin 1.1.0 - 4.0.1
Miller Rabin algorithm for primality test
randomfill 1.0.0 - 1.0.4
random fill from browserify stand alone
vm-browserify 0.0.1 - 1.1.2
vm module for the browser
universal-user-agent 4.0.0Outdated
Get a user agent string across all JavaScript Runtime Environments
gr2m
gr2m
querystring-es3 0.2.1
Node's querystring module for all engines. (ES3 compat fork)
babel-runtime 6.18.0 - 6.26.0
babel selfContained runtime
hzoo
loganfsmyth
existentialism
reselect 3.0.0 - 3.0.1Outdated
Selectors for Redux.
shallowequal 1.0.1 - 1.1.0
Like lodash isEqualWith but for shallow equal.
react-redux 5.1.2Outdated
Official React bindings for Redux
polished 1.0.0 - 1.0.1Outdated
A lightweight toolset for writing styles in Javascript.
is-finite 1.1.0 - 2.0.0
ES2015 Number.isFinite() ponyfill
styled-components 4.0.0 - 5.3.6Outdated
CSS for the <Component> Age. Style components your way with speed, strong typing, and flexibility.
redux-thunk 2.1.0 - 2.4.1Outdated
Thunk middleware for Redux.
js-base64 2.5.2Outdated
Yet another Base64 transcoder in pure-JS
dankogai
dankogai
@apollo/client 3.0.0 - 3.7.1Outdated
A fully-featured caching GraphQL client.
react-scripts 0.4.2Outdated
Configuration and scripts for Create React App.
+1
fb
timer
iansu
collapse-white-space 1.0.0 - 2.0.0Outdated
Collapse white space
fp-ts 2.6.6 - 2.9.5Outdated
Functional programming in TypeScript
string-convert 0.2.0 - 0.2.1
String convertions
akiran
akiran
json2mq 0.2.0
Generate media query string from JSON or javascript object
akiran
akiran
react-side-effect 1.2.0 - 2.1.2
Create components whose prop changes map to a global side effect
react-helmet 5.0.0 - 5.2.1Outdated
A document head manager for React
create-react-class 15.6.3Outdated
Legacy API for creating React components.
universal-cookie 2.0.1 - 4.0.4Outdated
Universal cookies for JavaScript
antd 3.9.0 - 3.11.3Outdated
An enterprise-class UI design language and React components implementation
enquire.js 2.1.6
Awesome Media Queries in JavaScript
keycode 2.1.2 - 2.2.1
Convert between keyboard keycodes and keynames and vice versa.
react-slick 0.14.9 - 0.14.11Outdated
React port of slick carousel
stylis-rule-sheet 0.0.9 - 0.0.10
stylis plugin to extract individual rules to use with insertRule API
thysultan
thysultan
emotion 9.0.0 - 10.0.27Outdated
The Next Generation of CSS-in-JS.
react-sortable-hoc 0.0.1 - 0.0.2Outdated
Set of higher-order components to turn any list into a sortable, touch-friendly, animated list
react-event-listener 0.5.9 - 0.6.6
A React component that allow to bind events on the global scope
react-share 1.0.0 - 1.0.1Outdated
Social media share buttons and share counts for React.
bootstrap-vue 1.0.0 - 2.15.0Outdated
With more than 85 components, over 45 available plugins, several directives, and 1000+ icons, BootstrapVue provides one of the most comprehensive implementations of the Bootstrap v4 component and grid system available for Vue.js v2.6, complete with extens
react-swipeable-views-core 0.12.14 - 0.14.0
react-swipeable-views core modules
oliviertassinari
jeanpoelie
caleb-harrelson
react-swipeable-views 0.11.0 - 0.13.9Outdated
A React component for swipeable views
react-visibility-sensor 3.10.0 - 3.11.1Outdated
Sensor component for React that notifies you when it goes in or out of the window viewport.
react-timeago 3.2.1 - 3.4.3Outdated
A simple Time-Ago component for ReactJs
picturefill 3.0.0 - 3.0.3
A responsive image polyfill.
lottie-api 1.0.0 - 1.0.2Outdated
A library to edit lottie-web animations dynamically
airnan
airnan
@rmwc/base 1.9.4 - 8.0.3Outdated
RMWC base module
jamesmfriedman
jamesmfriedman
tg-core-components 0.0.5 - 0.0.6Outdated
tg-core-components
+4
albinadolfsson
codebetniklas
sebost