alan.com 69 packages

Last scanned on Jan 19 at 01:34 PM
lodash 4.17.16VulnerableOutdated
Lodash modular utilities.
License
MIT
Footprint
4 KB
Vulnerabilities
Command Injection in lodash
Affected versions >=0 <4.17.21
Regular Expression Denial of Service (ReDoS) in lodash
Affected versions >=0 <4.17.21
Prototype Pollution in lodash
Affected versions >=3.7.0 <4.17.19
Matched Modules
Version distribution in production
3 846
4.17.16
946
4.17.21
337
4.17.20
322
4.17.15
302
4.17.19
301
4.17.13
uuid 7.0.0 - 8.0.0Outdated
RFC4122 (v1, v4, and v5) UUIDs
react-is 16.3.0 - 16.13.1Outdated
Brand checking of React Elements.
entities 2.2.0Outdated
Encode & decode XML and HTML entities with ease & speed
@babel/runtime 7.15.4 - 7.20.7Outdated
babel's modular runtime helpers
+1
hzoo
existentialism
nicolo-ribaudo
get-intrinsic 1.1.3Outdated
Get and robustly cache all JS language-level intrinsics at first require time
function-bind 1.1.0 - 1.1.1Outdated
Implementation of Function.prototype.bind
call-bind 1.0.2Outdated
Robustly `.call.bind()` a function
has-symbols 1.0.2 - 1.0.3
Determine if the JS environment has Symbol support. Supports spec, or shams.
domutils 2.8.0Outdated
Utilities for working with htmlparser2's dom
dom-serializer 1.0.0 - 2.0.0
render domhandler DOM nodes to a string
domhandler 4.2.2 - 4.3.1Outdated
Handler for htmlparser2 that turns pages into a dom
deepmerge 4.1.0 - 4.2.2Outdated
A library for deep (recursive) merging of Javascript objects
domelementtype 2.2.0 - 2.3.0
all the types of nodes in htmlparser2's dom
core-js 2.6.12Outdated
Standard library
htmlparser2 5.0.0 - 6.0.1Outdated
Fast & forgiving HTML/XML parser
has 1.0.1 - 1.0.3Outdated
Object.prototype.hasOwnProperty.call shortcut
tarruda
tarruda
date-fns 2.14.0 - 2.29.3Outdated
Modern JavaScript date utility library
kossnocorp
kossnocorp
hoist-non-react-statics 2.5.1 - 2.5.5Outdated
Copies non-react specific statics from a child component to a parent component
mridgway
mridgway
@emotion/unitless 0.7.2 - 0.8.0Outdated
An object of css properties that don't accept values with units
+1
emmatown
tkh44
emotion-release-bot
query-string 2.3.0 - 5.0.1Outdated
Parse and stringify URL query strings
@emotion/serialize 0.11.12 - 1.1.1Outdated
serialization utils for emotion
+1
emmatown
tkh44
emotion-release-bot
validator 13.5.1 - 13.7.0Outdated
String validation and sanitization
object.getownpropertydescriptors 2.0.0 - 2.1.5Outdated
ES2017 spec-compliant shim for `Object.getOwnPropertyDescriptors` that works in ES5.
@sentry/utils 6.19.3 - 7.0.0Outdated
Utilities for all Sentry JavaScript SDKs
+8
benvinegar
billyvg
mitsuhiko
react-router 3.2.2 - 3.2.6Outdated
Declarative routing for React
@emotion/sheet 0.9.1 - 0.9.4Outdated
emotion's stylesheet
+1
emmatown
tkh44
emotion-release-bot
next-tick 1.0.0 - 1.1.0
Environment agnostic nextTick polyfill
react-router-dom 5.1.0 - 5.3.4Outdated
Declarative routing for React web applications
lodash-es 4.17.20 - 4.17.21
Lodash exported as ES modules.
redux 4.0.0 - 4.0.5Outdated
Predictable state container for JavaScript apps
react-fast-compare 3.1.0 - 3.2.0Outdated
Fastest deep equal comparison for React. Great for React.memo & shouldComponentUpdate. Also really fast general-purpose deep comparison.
crypto-browserify 1.0.9 - 2.0.0Outdated
implementation of crypto for the browser
+2
dcousens
ljharb
cwmma
react-redux 7.1.1 - 7.2.9Outdated
Official React bindings for Redux
shallowequal 1.0.1 - 1.1.0
Like lodash isEqualWith but for shallow equal.
history 4.0.0 - 4.10.1Outdated
Manage session history with JavaScript
toposort 2.0.2
Topological sort of directed ascyclic graphs (like dependecy lists)
yup 0.30.0 - 0.31.0Outdated
Dead simple Object schema validation
monastic.panic
monastic.panic
styled-components 0.0.1 - 0.0.6Outdated
CSS for the <Component> Age. Style components your way with speed, strong typing, and flexibility.
property-expr 2.0.4Outdated
tiny util for getting and setting deep object props safely
i18next 20.3.0 - 20.6.1Outdated
i18next internationalization framework
redux-thunk 2.1.0 - 2.4.2Outdated
Thunk middleware for Redux.
@emotion/stylis 0.6.10 - 0.6.12Outdated
A custom build of Stylis
+1
emmatown
tkh44
emotion-release-bot
react-error-overlay 1.0.0 - 1.0.10Outdated
An overlay for displaying stack frames.
value-equal 1.0.1
Are these two JavaScript values equal?
mjackson
mjackson
react-i18next 11.18.5 - 12.1.4Outdated
Internationalization for react done right. Using the i18next i18n ecosystem.
web-vitals 3.0.0 - 3.0.4Outdated
Easily measure performance metrics in JavaScript
@sentry/hub 7.0.0 - 7.14.2Outdated
Sentry hub which handles global state managment.
+8
benvinegar
billyvg
mitsuhiko
react-scripts 0.4.2Outdated
Configuration and scripts for Create React App.
+1
fb
timer
iansu
@angular/platform-browser 2.0.0 - 2.1.2Outdated
Angular - library for using Angular in a web browser
angular
google-wombot
@sentry/minimal 4.3.3 - 6.19.7
Sentry minimal library that can be used in other packages
+8
benvinegar
billyvg
mitsuhiko
formik 2.1.4 - 2.2.9Outdated
Build forms in React, without the tears
@sentry/tracing 6.17.0 - 6.19.7Outdated
Sentry Performance Monitoring Package
+8
benvinegar
billyvg
mitsuhiko
fp-ts 0.2.1 - 0.2.9Outdated
Functional programming in TypeScript
@datadog/browser-core 4.18.1 - 4.30.1Outdated
Datadog browser core utilities.
datadog
datadog
@firebase/auth 0.19.6 - 0.20.2Outdated
The Firebase Authenticaton component of the Firebase JS SDK.
+1
chholland
firebase-ops
feiyang.chen
create-react-class 15.7.0
Legacy API for creating React components.
lit-element 3.0.1 - 3.2.2Outdated
A simple base class for creating fast, lightweight web components
+11
aomarks
emarquez
sorvell
react-beautiful-dnd 1.0.0 - 6.0.2Outdated
Beautiful and accessible drag and drop for lists with React
xstate 4.7.0 - 4.35.2Outdated
Finite State Machines and Statecharts for the Modern Web.
react-query 3.34.3 - 3.39.2Outdated
Hooks for managing, caching and syncing asynchronous and remote data in React
tannerlinsley
tkdodo
rc-trigger 5.2.9Outdated
base abstract trigger component for react
@auth0/auth0-spa-js 2.0.0 - 2.0.2Outdated
Auth0 SDK for Single Page Applications using Authorization Code Grant Flow with PKCE
normalizr 3.5.0 - 3.6.2
Normalizes and denormalizes JSON according to schema for Redux and Flux applications
use-query-params 1.0.0Outdated
React Hook for managing state in URL query parameters with easy serialization.
react-string-replace 0.4.0 - 0.4.4Outdated
String#replace for React components
amplitude-js 5.2.0Outdated
Javascript library for Amplitude Analytics
lottie-api 1.0.0 - 1.0.2Outdated
A library to edit lottie-web animations dynamically
airnan
airnan
botframework-webchat 0.11.2 - 0.15.0Outdated
A highly-customizable web-based chat client for Azure Bot Services.
+5
botframework
sgellock
cwhitten