ascd.org 99 packages

Last scanned on Oct 27 at 06:24 PM
lodash 4.17.16VulnerableOutdated
Lodash modular utilities.
License
MIT
Footprint
2 KB
Vulnerabilities
Command Injection in lodash
Affected versions >=0 <4.17.21
Regular Expression Denial of Service (ReDoS) in lodash
Affected versions >=0 <4.17.21
Prototype Pollution in lodash
Affected versions >=3.7.0 <4.17.19
Matched Modules
Version distribution in production
3 846
4.17.16
946
4.17.21
337
4.17.20
322
4.17.15
302
4.17.19
301
4.17.13
next 12.1.6VulnerableOutdated
The React Framework
rauchg
timneutkens
vercel-release-bot
tslib 1.6.0 - 2.4.0Outdated
Runtime library for TypeScript helper functions
string_decoder 1.1.0 - 1.3.0
The string_decoder module from Node core
react-is 16.3.0 - 17.0.2Outdated
Brand checking of React Elements.
inherits 2.0.3Outdated
Browser-friendly inheritance fully compatible with standard node.js inherits()
qs 6.10.2 - 6.10.3Outdated
A querystring parser that supports nesting and arrays, with a depth limit
buffer 5.7.0 - 6.0.3
Node.js Buffer API, for the browser
@babel/runtime 7.18.2 - 7.20.0Outdated
babel's modular runtime helpers
+1
hzoo
existentialism
nicolo-ribaudo
get-intrinsic 1.1.0 - 1.1.1Outdated
Get and robustly cache all JS language-level intrinsics at first require time
function-bind 1.1.0 - 1.1.1Outdated
Implementation of Function.prototype.bind
path-to-regexp 6.1.0 - 6.2.0Outdated
Express style path to RegExp utility
axios 0.27.2Outdated
Promise based HTTP client for the browser and node.js
cookie 0.4.1 - 0.4.2Outdated
HTTP server cookie parsing and serialization
dougwilson
dougwilson
call-bind 1.0.2Outdated
Robustly `.call.bind()` a function
object-inspect 1.12.2Outdated
string representations of objects in node and the browser
has-symbols 1.0.2 - 1.0.3
Determine if the JS environment has Symbol support. Supports spec, or shams.
rxjs 5.0.0 - 6.6.7Outdated
Reactive Extensions for modern JavaScript
side-channel 1.0.4Outdated
Store information about any JS value in a side channel. Uses WeakMap if available.
base64-js 1.3.0 - 1.5.1
Base64 encoding/decoding in pure JS
fast-json-stable-stringify 2.0.0 - 2.1.0
deterministic `JSON.stringify()` - a faster version of substack's json-stable-strigify without jsonify
is-callable 1.2.0 - 1.2.2Outdated
Is this JS value callable? Works with Functions and GeneratorFunctions, despite ES6 @@toStringTag.
events 3.0.0 - 3.3.0
Node's event emitter for all engines.
is-buffer 2.0.0 - 2.0.5
Determine if an object is a Buffer
deepmerge 4.1.0 - 4.2.2Outdated
A library for deep (recursive) merging of Javascript objects
core-js 3.6.3 - 3.6.5Outdated
Standard library
util 0.10.0 - 0.12.5
Node.js's util module for all engines
for-each 0.3.3
A better forEach
ljharb
raynos
extend 3.0.2
Port of jQuery.extend for node.js and the browser
has 1.0.1 - 1.0.3Outdated
Object.prototype.hasOwnProperty.call shortcut
tarruda
tarruda
scheduler 0.15.0 - 0.23.0
Cooperative scheduler for the browser environment.
prop-types 15.8.0 - 15.8.1
Runtime type checking for React props and similar objects.
react 17.0.0 - 18.2.0
React is a JavaScript library for building user interfaces.
json-stringify-safe 5.0.1
Like JSON.stringify, but doesn't blow up on circular refs.
lodash.isplainobject 4.0.6
The lodash method `_.isPlainObject` exported as a module.
clsx 1.2.0 - 1.2.1Outdated
A tiny (239B) utility for constructing className strings conditionally.
@emotion/memoize 0.7.5 - 0.8.0Outdated
emotion's memoize utility
+1
emmatown
tkh44
emotion-release-bot
hoist-non-react-statics 3.3.1 - 3.3.2
Copies non-react specific statics from a child component to a parent component
mridgway
mridgway
unist-util-visit-parents 4.0.0 - 4.1.0Outdated
unist utility to recursively walk over nodes, with ancestral information
unist-util-is 4.0.4 - 4.1.0Outdated
unist utility to check if a node passes a test
unist-util-visit 1.4.0 - 2.0.3Outdated
unist utility to visit nodes
lodash.isstring 4.0.1
The lodash method `_.isString` exported as a module.
mdast-util-to-string 2.0.0Outdated
mdast utility to get the plain text content of a node
unist-util-stringify-position 2.0.0 - 2.0.3Outdated
unist utility to serialize a node, position, or point as a human readable location
graphql 16.1.0 - 16.6.0Outdated
A Query Language and Runtime which can target any service.
vfile-message 1.0.0 - 2.0.4Outdated
vfile utility to create a virtual message
@emotion/serialize 1.0.2 - 1.1.1Outdated
serialization utils for emotion
+1
emmatown
tkh44
emotion-release-bot
@emotion/utils 1.0.0 - 1.2.0Outdated
internal utils for emotion
+1
emmatown
tkh44
emotion-release-bot
unified 9.2.2Outdated
parse, inspect, transform, and serialize content through syntax trees
vfile 2.1.0 - 4.2.0Outdated
Virtual file format for text processing
@storybook/theming 6.5.0 - 6.5.13Outdated
Core Storybook Components
space-separated-tokens 1.1.3 - 2.0.1Outdated
Parse and stringify space separated tokens
remark-parse 9.0.0Outdated
remark plugin to add support for parsing markdown input
trough 1.0.3 - 1.0.5Outdated
`trough` is middleware
bail 1.0.0 - 2.0.2
Throw a given error
mdurl 0.0.1 - 1.0.1Outdated
URL utilities for markdown-it
vitaly
vitaly
@emotion/react 11.0.0 - 11.10.5Outdated
> Simple styling in React.
+1
emmatown
tkh44
emotion-release-bot
micromark 2.11.4Outdated
small commonmark compliant markdown parser with positional info and concrete tokens
mdast-util-from-markdown 0.8.5Outdated
mdast utility to parse markdown
mdast-util-definitions 4.0.0Outdated
mdast utility to find definition nodes in a tree
property-information 5.6.0Outdated
Info on the properties and attributes of the web platform
comma-separated-tokens 1.0.6 - 1.0.8Outdated
Parse and stringify comma-separated tokens
style-to-object 0.2.3 - 0.3.0Outdated
Parse CSS inline style to JavaScript object.
unist-util-position 3.1.0Outdated
unist utility to get the position of a node
mdast-util-to-hast 10.2.0Outdated
mdast utility to transform to hast
inline-style-parser 0.1.0 - 0.1.1Outdated
An inline style parser.
p-is-promise 3.0.0 - 4.0.0
Check if something is a promise
vue 1.0.9 - 2.7.13Outdated
The progressive JavaScript framework for building modern web UI.
zen-observable-ts 1.2.4 - 1.2.5Outdated
Thin wrapper around zen-observable and @types/zen-observable, to support ESM exports as well as CommonJS exports
jbaxleyiii
apollo-bot
unist-util-generated 1.1.6 - 2.0.0Outdated
unist utility to check if a node is generated
ts-invariant 0.9.0 - 0.9.4Outdated
TypeScript implementation of invariant(condition, message)
@wry/trie 0.2.1 - 0.3.2Outdated
https://en.wikipedia.org/wiki/Trie
@mui/utils 5.8.0 - 5.8.4Outdated
Utility functions for React components.
@wry/equality 0.5.1 - 0.5.3Outdated
Structural equality checking for JavaScript values
benjamn
benjamn
@mui/system 5.8.1 - 5.10.10Outdated
MUI System is a set of CSS utilities to help you build custom designs more efficiently. It makes it possible to rapidly lay out custom designs.
@mui/material 5.8.0 - 5.8.3Outdated
Material UI is an open-source React component library that implements Google's Material Design. It's comprehensive and can be used in production out of the box.
remark-rehype 2.0.0 - 8.1.0Outdated
remark plugin that turns markdown into HTML to support rehype
@wry/context 0.4.0 - 0.6.1Outdated
Manage contextual information needed by (a)synchronous tasks without explicitly passing objects around
benjamn
benjamn
unist-builder 2.0.1 - 2.0.3Outdated
unist utility to create a new trees with a nice syntax
optimism 0.16.1Outdated
Composable reactive caching with efficient invalidation.
rc-util 4.20.3 - 5.3.0Outdated
Common Utils For React Component
@apollo/client 3.6.5 - 3.6.9Outdated
A fully-featured caching GraphQL client.
react-markdown 6.0.3Outdated
React component to render markdown
string-convert 0.2.0 - 0.2.1
String convertions
akiran
akiran
json2mq 0.2.0
Generate media query string from JSON or javascript object
akiran
akiran
swr 1.1.0 - 1.3.0Outdated
React Hooks library for remote data fetching
apollo-utilities 1.0.0 - 1.3.4
Utilities for working with GraphQL ASTs
+1
apollo-bot
benjamn
jbaxleyiii
rc-align 2.4.0 - 2.4.5Outdated
align ui component for react
@contentful/rich-text-types 15.9.1 - 15.13.2Outdated
Type definitions and constants for the Contentful rich text field type.
+1
michaelpearce
it-internal
whydah-gally
p-throttle 4.1.0 - 5.0.0Outdated
Throttle promise-returning & async functions
contentful-sdk-core 6.1.0 - 7.0.3Outdated
Core modules for the Contentful JS SDKs
+1
cf-admin
kgarbaya
contentful-ecosystem
contentful 9.1.29Outdated
Client for Contentful's Content Delivery API
hungryblank
cf-admin
contentful-ecosystem
@chakra-ui/theme 2.1.0 - 2.1.3Outdated
The default theme for chakra components
contentful-resolve-response 1.2.2 - 1.3.11Outdated
[![npm](https://img.shields.io/npm/v/contentful-resolve-response.svg)](https://www.npmjs.com/package/contentful-resolve-response)
+1
hungryblank
zcei
cf-admin
@contentful/rich-text-react-renderer 15.11.0 - 15.12.1Outdated
React renderer for the Contentful rich text field type.
+1
michaelpearce
it-internal
whydah-gally
node-polyglot 2.4.0 - 2.4.2Outdated
Give your JavaScript the ability to speak many languages.
graphql-anywhere 3.1.0 - 4.1.28Outdated
Run GraphQL queries with no schema and just one resolver
@contentful/rich-text-plain-text-renderer 15.9.1 - 15.12.1Outdated
Plain text renderer for the Rich Text document.
+1
michaelpearce
it-internal
whydah-gally
v-click-outside 3.1.2Outdated
Vue directive to react on clicks outside an element
ndelvalle
ndelvalle