arrow.com 30 packages

Last scanned on Oct 27 at 07:09 PM
handlebars 4.0.0 - 4.2.2VulnerableOutdated
Handlebars provides the power necessary to let you build semantic templates effectively with no frustration
License
MIT
Footprint
6 KB
Vulnerabilities
Arbitrary Code Execution in handlebars
Affected versions >=0 <3.0.8, >=4.0.0 <4.5.3
Denial of Service in handlebars
Affected versions >=4.0.0 <4.4.5
Arbitrary Code Execution in Handlebars
Affected versions >=0 <3.0.8, >=4.0.0 <4.5.3
Remote code execution in handlebars when compiling templates
Affected versions >=0 <4.7.7
Prototype Pollution in handlebars
Affected versions >=0 <4.7.7
Regular Expression Denial of Service in Handlebars
Affected versions >=4.0.0 <4.4.5
Prototype Pollution in handlebars
Affected versions >=0 <3.0.8, >=4.0.0 <4.5.3
Arbitrary Code Execution in handlebars
Affected versions >=0 <3.0.8, >=4.0.0 <4.5.2
Matched Modules
Version distribution in production
182
4.7.7
172
4.7.6
168
4.7.3
166
4.7.2
166
4.7.4
94
4.2.2
next 0.9.9 - 1.1.2VulnerableOutdated
The React Framework
rauchg
timneutkens
vercel-release-bot
es5-ext 0.10.1 - 0.10.62VulnerableOutdated
ECMAScript extensions and shims
core-js 2.6.11Outdated
Standard library
url 0.11.0Outdated
The core `url` packaged standalone for use with Browserify.
@floating-ui/core 0.0.1 - 1.0.1Outdated
Positioning library for floating elements: tooltips, popovers, dropdowns, and more
es6-promise 3.3.0 - 4.2.3Outdated
A lightweight library that provides tools for organizing asynchronous code
querystring-es3 0.2.1
Node's querystring module for all engines. (ES3 compat fork)
babel-runtime 6.18.0 - 6.26.0
babel selfContained runtime
hzoo
loganfsmyth
existentialism
styled-jsx 2.0.1 - 2.2.7Outdated
Full CSS support for JSX without compromises
synchronous-promise 1.0.0 - 2.0.16Outdated
Synchronous Promise-like prototype to use in testing where you would have used an ES6 Promise
fluffynuts
fluffynuts
react-hook-form 7.0.0 - 7.12.2Outdated
Performant, flexible and extensible forms library for React Hooks
vue 2.2.0Outdated
The progressive JavaScript framework for building modern web UI.
@formatjs/ecma402-abstract 1.0.3 - 1.13.0Outdated
A collection of implementation for ECMAScript abstract operations
@angular/core 8.0.0 - 12.2.16Outdated
Angular - the core framework
angular
google-wombot
@apollo/client 3.0.0 - 3.7.1Outdated
A fully-featured caching GraphQL client.
react-scripts 0.4.2Outdated
Configuration and scripts for Create React App.
+1
fb
timer
iansu
@angular/common 10.0.0 - 14.2.8Outdated
Angular - commonly needed directives and services
angular
google-wombot
dom7 3.0.0 - 4.0.4Outdated
Minimalistic JavaScript library for DOM manipulation, with a jQuery-compatible API
react-player 2.0.0 - 2.11.0Outdated
A React component for playing a variety of URLs, including file paths, YouTube, Facebook, Twitch, SoundCloud, Streamable, Vimeo, Wistia and DailyMotion
react-calendar 2.0.0 - 2.0.1Outdated
Ultimate calendar for your React app.
react-native-web 0.13.0 - 0.18.9Outdated
React Native for Web
keymirror 0.1.0 - 0.1.1
A simple utility for creating an object with values equal to its keys. Identical to react/lib/keyMirror
strml
strml
bootstrap-vue 1.0.0 - 2.15.0Outdated
With more than 85 components, over 45 available plugins, several directives, and 1000+ icons, BootstrapVue provides one of the most comprehensive implementations of the Bootstrap v4 component and grid system available for Vue.js v2.6, complete with extens
react-range 1.4.7 - 1.8.14
Range input. Slides in all directions.
@vue/composition-api 1.1.0 - 1.7.1Outdated
Provide logic composition capabilities for Vue.
@stimulus/core 0.6.0Outdated
Stimulus JavaScript framework: Core library
dhh
dhh
twitter-text 3.1.0
official twitter text linkification
+6
bigloser
catia3045
ded
most 0.7.0 - 0.9.1Outdated
Monadic streams
prebid.js 1.38.0 - 7.22.0Outdated
Header Bidding Management Library