About
Community
alan.com
69 packages
Last scanned on Jan 19 at 01:34 PM
Update
Name
Size
Popularity
Severity
lodash
4.17.16
Vulnerable
Outdated
Lodash modular utilities.
Script
https://static.alan.com/fr-web/releases/4e0626d/5727.e985447e84dc25213b93.js?e985447e84dc25213b93
https://static.alan.com/fr-web/releases/4e0626d/7011.e985447e84dc25213b93.js?e985447e84dc25213b93
https://static.alan.com/fr-web/releases/4e0626d/7389.e985447e84dc25213b93.js?e985447e84dc25213b93
https://static.alan.com/fr-web/releases/4e0626d/6053.e985447e84dc25213b93.js?e985447e84dc25213b93
License
MIT
Footprint
4 KB
Vulnerabilities
High
GHSA-35jh-r3h4-6jhm
Command Injection in lodash
Affected versions >=0 <4.17.21
Moderate
GHSA-29mw-wpgm-hmr9
Regular Expression Denial of Service (ReDoS) in lodash
Affected versions >=0 <4.17.21
High
GHSA-p6mc-m468-83gw
Prototype Pollution in lodash
Affected versions >=3.7.0 <4.17.19
Matched Modules
Version distribution in production
3 846
4.17.16
946
4.17.21
337
4.17.20
322
4.17.15
302
4.17.19
301
4.17.13
Also used on 4830 websites
skype.com
20 packages
sentry.io
157 packages
pinterest.com
56 packages
pinimg.com
52 packages
Repository
Homepage
More
modules
stdlib
util
uuid
7.0.0 - 8.0.0
Outdated
RFC4122 (v1, v4, and v5) UUIDs
uuid
guid
rfc4122
react-is
16.3.0 - 16.13.1
Outdated
Brand checking of React Elements.
react
+1
entities
2.2.0
Outdated
Encode & decode XML and HTML entities with ease & speed
entity
decoding
encoding
html
xml
+1
feedic
@babel/runtime
7.15.4 - 7.20.7
Outdated
babel's modular runtime helpers
+1
get-intrinsic
1.1.3
Outdated
Get and robustly cache all JS language-level intrinsics at first require time
javascript
ecmascript
es
js
intrinsic
+2
ljharb
function-bind
1.1.0 - 1.1.1
Outdated
Implementation of Function.prototype.bind
function
bind
shim
es5
call-bind
1.0.2
Outdated
Robustly `.call.bind()` a function
javascript
ecmascript
es
js
callbind
+8
ljharb
has-symbols
1.0.2 - 1.0.3
Determine if the JS environment has Symbol support. Supports spec, or shams.
Symbol
symbols
typeof
sham
polyfill
+3
ljharb
domutils
2.8.0
Outdated
Utilities for working with htmlparser2's dom
dom
htmlparser2
feedic
dom-serializer
1.0.0 - 2.0.0
render domhandler DOM nodes to a string
html
xml
render
feedic
domhandler
4.2.2 - 4.3.1
Outdated
Handler for htmlparser2 that turns pages into a dom
dom
htmlparser2
feedic
deepmerge
4.1.0 - 4.2.2
Outdated
A library for deep (recursive) merging of Javascript objects
merge
deep
extend
copy
clone
+1
tehshrike
domelementtype
2.2.0 - 2.3.0
all the types of nodes in htmlparser2's dom
dom
element
types
htmlparser2
feedic
core-js
2.6.12
Outdated
Standard library
ES3
ES5
ES6
ES7
ES2015
+39
zloirock
htmlparser2
5.0.0 - 6.0.1
Outdated
Fast & forgiving HTML/XML parser
html
parser
streams
xml
dom
+3
feedic
has
1.0.1 - 1.0.3
Outdated
Object.prototype.hasOwnProperty.call shortcut
tarruda
date-fns
2.14.0 - 2.29.3
Outdated
Modern JavaScript date utility library
kossnocorp
hoist-non-react-statics
2.5.1 - 2.5.5
Outdated
Copies non-react specific statics from a child component to a parent component
react
mridgway
@emotion/unitless
0.7.2 - 0.8.0
Outdated
An object of css properties that don't accept values with units
+1
query-string
2.3.0 - 5.0.1
Outdated
Parse and stringify URL query strings
browser
querystring
query
string
qs
+9
sindresorhus
@emotion/serialize
0.11.12 - 1.1.1
Outdated
serialization utils for emotion
+1
validator
13.5.1 - 13.7.0
Outdated
String validation and sanitization
validator
validation
validate
sanitization
sanitize
+3
object.getownpropertydescriptors
2.0.0 - 2.1.5
Outdated
ES2017 spec-compliant shim for `Object.getOwnPropertyDescriptors` that works in ES5.
Object.getOwnPropertyDescriptors
descriptor
property descriptor
ES8
ES2017
+4
ljharb
@sentry/utils
6.19.3 - 7.0.0
Outdated
Utilities for all Sentry JavaScript SDKs
+8
react-router
3.2.2 - 3.2.6
Outdated
Declarative routing for React
react
router
route
routing
history
+1
@emotion/sheet
0.9.1 - 0.9.4
Outdated
emotion's stylesheet
+1
next-tick
1.0.0 - 1.1.0
Environment agnostic nextTick polyfill
nexttick
setImmediate
setTimeout
async
medikoo
react-router-dom
5.1.0 - 5.3.4
Outdated
Declarative routing for React web applications
react
router
route
routing
history
+1
lodash-es
4.17.20 - 4.17.21
Lodash exported as ES modules.
es6
modules
stdlib
util
redux
4.0.0 - 4.0.5
Outdated
Predictable state container for JavaScript apps
redux
reducer
state
predictable
functional
+6
+3
react-fast-compare
3.1.0 - 3.2.0
Outdated
Fastest deep equal comparison for React. Great for React.memo & shouldComponentUpdate. Also really fast general-purpose deep comparison.
fast
equal
react
compare
shouldComponentUpdate
+1
+12
crypto-browserify
1.0.9 - 2.0.0
Outdated
implementation of crypto for the browser
+2
react-redux
7.1.1 - 7.2.9
Outdated
Official React bindings for Redux
react
reactjs
redux
+2
shallowequal
1.0.1 - 1.1.0
Like lodash isEqualWith but for shallow equal.
shallowequal
shallow
equal
isequal
compare
+1
dashed
history
4.0.0 - 4.10.1
Outdated
Manage session history with JavaScript
history
location
mjackson
toposort
2.0.2
Topological sort of directed ascyclic graphs (like dependecy lists)
topological
sort
sorting
graphs
graph
+4
marcelklehr
yup
0.30.0 - 0.31.0
Outdated
Dead simple Object schema validation
monastic.panic
styled-components
0.0.1 - 0.0.6
Outdated
CSS for the <Component> Age. Style components your way with speed, strong typing, and flexibility.
react
css
css-in-js
styled-components
styling
+1
property-expr
2.0.4
Outdated
tiny util for getting and setting deep object props safely
expr
expression
setter
getter
deep
+3
monastic.panic
i18next
20.3.0 - 20.6.1
Outdated
i18next internationalization framework
i18next
internationalization
i18n
translation
localization
+3
redux-thunk
2.1.0 - 2.4.2
Outdated
Thunk middleware for Redux.
redux
thunk
middleware
redux-middleware
flux
+2
@emotion/stylis
0.6.10 - 0.6.12
Outdated
A custom build of Stylis
+1
react-error-overlay
1.0.0 - 1.0.10
Outdated
An overlay for displaying stack frames.
overlay
syntax
error
red
box
+3
+1
value-equal
1.0.1
Are these two JavaScript values equal?
mjackson
react-i18next
11.18.5 - 12.1.4
Outdated
Internationalization for react done right. Using the i18next i18n ecosystem.
i18next
internationalization
i18n
translation
localization
+4
web-vitals
3.0.0 - 3.0.4
Outdated
Easily measure performance metrics in JavaScript
crux
performance
metrics
Core Web Vitals
CLS
+5
@sentry/hub
7.0.0 - 7.14.2
Outdated
Sentry hub which handles global state managment.
+8
react-scripts
0.4.2
Outdated
Configuration and scripts for Create React App.
+1
@angular/platform-browser
2.0.0 - 2.1.2
Outdated
Angular - library for using Angular in a web browser
@sentry/minimal
4.3.3 - 6.19.7
Sentry minimal library that can be used in other packages
+8
formik
2.1.4 - 2.2.9
Outdated
Build forms in React, without the tears
formik
form
forms
react
react-dom
+7
jaredpalmer
@sentry/tracing
6.17.0 - 6.19.7
Outdated
Sentry Performance Monitoring Package
+8
fp-ts
0.2.1 - 0.2.9
Outdated
Functional programming in TypeScript
typescript
algebraic-data-types
functional-programming
gcanti
@datadog/browser-core
4.18.1 - 4.30.1
Outdated
Datadog browser core utilities.
datadog
@firebase/auth
0.19.6 - 0.20.2
Outdated
The Firebase Authenticaton component of the Firebase JS SDK.
+1
create-react-class
15.7.0
Legacy API for creating React components.
react
lit-element
3.0.1 - 3.2.2
Outdated
A simple base class for creating fast, lightweight web components
+11
react-beautiful-dnd
1.0.0 - 6.0.2
Outdated
Beautiful and accessible drag and drop for lists with React
drag and drop
dnd
sortable
reorder
reorderable
+5
xstate
4.7.0 - 4.35.2
Outdated
Finite State Machines and Statecharts for the Modern Web.
statechart
state machine
finite state machine
finite automata
scxml
+2
react-query
3.34.3 - 3.39.2
Outdated
Hooks for managing, caching and syncing asynchronous and remote data in React
rc-trigger
5.2.9
Outdated
base abstract trigger component for react
react
react-component
react-trigger
trigger
+2
@auth0/auth0-spa-js
2.0.0 - 2.0.2
Outdated
Auth0 SDK for Single Page Applications using Authorization Code Grant Flow with PKCE
auth0
login
Authorization Code Grant Flow
PKCE
Single Page Application authentication
+1
+41
normalizr
3.5.0 - 3.6.2
Normalizes and denormalizes JSON according to schema for Redux and Flux applications
flux
redux
normalize
denormalize
api
+1
use-query-params
1.0.0
Outdated
React Hook for managing state in URL query parameters with easy serialization.
react
url
query
parameters
hook
+3
pbeshai
react-string-replace
0.4.0 - 0.4.4
Outdated
String#replace for React components
react
string
replace
ian_sinn
amplitude-js
5.2.0
Outdated
Javascript library for Amplitude Analytics
analytics
amplitude
+5
lottie-api
1.0.0 - 1.0.2
Outdated
A library to edit lottie-web animations dynamically
airnan
botframework-webchat
0.11.2 - 0.15.0
Outdated
A highly-customizable web-based chat client for Azure Bot Services.
+5
Popular search queries
webpack.js.org
url
react-scripts
react
lottie-api
react-helmet-async
+7 packages
github.com
color-convert
@headlessui/react
hoist-non-react-statics
reactstrap
lit-html
+60 packages
pinterest.com
lodash
relay-runtime
react-relay
react-use
lodash-es
+51 packages
Popular packages
react
React is a JavaScript library for building user interfaces.
+6 634 websites
core-js
Standard library
+10 238 websites
es5-ext
ECMAScript extensions and shims
+10 229 websites
@babel/runtime
babel's modular runtime helpers
+8 352 websites
lodash
Lodash modular utilities.
+4 826 websites
axios
Promise based HTTP client for the browser and node.js
+4 742 websites