autoexpress.co.uk 98 packages

Last scanned on Oct 27 at 06:28 PM
lodash-es 3.6.0 - 3.10.1VulnerableOutdated
Lodash exported as ES modules.
License
MIT
Footprint
1 KB
Vulnerabilities
Regular Expression Denial of Service (ReDoS) in lodash
Affected versions >=0 <4.17.21
Prototype Pollution in lodash
Affected versions >=0 <4.17.14
Regular Expression Denial of Service (ReDoS) in lodash
Affected versions >=0 <4.17.11
Prototype Pollution in lodash
Affected versions >=0 <4.17.20
Command Injection in lodash
Affected versions >=0 <4.17.21
Matched Modules
Version distribution in production
736
4.17.21
264
4.17.20
86
4.17.13
86
4.17.14
86
4.17.15
44
3.10.1
lodash 4.17.16VulnerableOutdated
Lodash modular utilities.
tslib 1.6.0 - 2.4.0
Runtime library for TypeScript helper functions
string_decoder 1.1.0 - 1.3.0
The string_decoder module from Node core
inherits 2.0.4
Browser-friendly inheritance fully compatible with standard node.js inherits()
uuid 7.0.0 - 8.0.0Outdated
RFC4122 (v1, v4, and v5) UUIDs
isarray 0.0.0 - 2.0.5
Array#isArray for older browsers
react-is 16.3.0 - 16.13.1Outdated
Brand checking of React Elements.
@babel/runtime 7.8.0 - 7.8.7Outdated
babel's modular runtime helpers
+1
hzoo
existentialism
nicolo-ribaudo
buffer 4.6.0 - 4.9.2Outdated
Node.js Buffer API, for the browser
core-js 3.0.0 - 3.22.5Outdated
Standard library
path-to-regexp 1.7.0 - 1.8.0Outdated
Express style path to RegExp utility
es-abstract 1.17.7Outdated
ECMAScript spec abstract operations.
has-symbols 1.0.0 - 1.0.1Outdated
Determine if the JS environment has Symbol support. Supports spec, or shams.
entities 2.0.0Outdated
Encode & decode XML and HTML entities with ease & speed
has 1.0.1 - 1.0.3
Object.prototype.hasOwnProperty.call shortcut
tarruda
ljharb
define-properties 1.1.3 - 1.1.4
Define multiple non-enumerable properties at once. Uses `Object.defineProperty` when available; falls back to standard assignment in older engines.
domelementtype 1.2.0 - 2.1.0Outdated
all the types of nodes in htmlparser2's dom
function-bind 1.1.0 - 1.1.1
Implementation of Function.prototype.bind
domutils 1.7.0Outdated
Utilities for working with htmlparser2's dom
is-regex 1.0.4 - 1.0.5Outdated
Is this value a JS regex? Works cross-realm/iframe, and despite ES6 @@toStringTag
dom-serializer 0.2.0 - 0.2.2Outdated
render domhandler DOM nodes to a string
fast-json-stable-stringify 2.0.0 - 2.1.0
deterministic `JSON.stringify()` - a faster version of substack's json-stable-strigify without jsonify
base64-js 1.3.0 - 1.5.1
Base64 encoding/decoding in pure JS
object-keys 1.1.0 - 1.1.1
An Object.keys replacement, in case Object.keys is not available. From https://github.com/es-shims/es5-shim
events 3.0.0 - 3.3.0
Node's event emitter for all engines.
domhandler 2.4.0 - 2.4.2Outdated
Handler for htmlparser2 that turns pages into a dom
dotenv 8.5.0 - 14.1.1Outdated
Loads environment variables from .env file
is-date-object 1.0.1 - 1.0.3Outdated
Is this value a JS Date object? This module works cross-realm/iframe, and despite ES6 @@toStringTag.
deepmerge 3.0.0 - 3.3.0Outdated
A library for deep (recursive) merging of Javascript objects
regexp.prototype.flags 1.2.0 - 1.3.2Outdated
ES6 spec-compliant RegExp.prototype.flags shim.
htmlparser2 3.10.0 - 3.10.1Outdated
Fast & forgiving HTML/XML parser
performance-now 0.1.3 - 2.1.0
Implements performance.now (based on process.hrtime).
meryn
meryn
eventemitter3 2.0.0 - 4.0.7
EventEmitter3 focuses on performance while maintaining a Node.js AND browser compatible interface.
p-finally 1.0.0Outdated
`Promise#finally()` ponyfill - Invoked when the promise is settled regardless of outcome
url 0.11.0
The core `url` packaged standalone for use with Browserify.
coolaj86
ljharb
defunctzombie
prop-types 15.7.0 - 15.7.2Outdated
Runtime type checking for React props and similar objects.
scheduler 0.15.0 - 0.23.0
Cooperative scheduler for the browser environment.
is-arguments 1.0.4Outdated
Is this an arguments object? It's a harder question than you think.
path-browserify 0.0.0 - 0.0.1Outdated
the path module from node core for browsers
hoist-non-react-statics 1.2.0 - 3.3.2
Copies non-react specific statics from a child component to a parent component
mridgway
mridgway
symbol-observable 2.0.0 - 3.0.0Outdated
Symbol.observable ponyfill
deep-equal 1.1.0 - 1.1.1Outdated
node's assert.deepEqual algorithm
object-is 1.0.1 - 1.1.5
ES2015-compliant shim for Object.is - differentiates between -0 and +0
dayjs 1.8.18 - 1.8.20Outdated
2KB immutable date time library alternative to Moment.js with the same modern API
crypto-browserify 1.0.9 - 2.0.0Outdated
implementation of crypto for the browser
cwmma
indutny
jprichardson
querystring-es3 0.2.1
Node's querystring module for all engines. (ES3 compat fork)
es5-ext 0.6.0 - 0.10.49Outdated
ECMAScript extensions and shims
classnames 2.2.6Outdated
A simple utility for conditionally joining classNames together
history 4.0.0 - 4.10.1Outdated
Manage session history with JavaScript
@emotion/serialize 0.11.12 - 0.11.16Outdated
serialization utils for emotion
+1
tkh44
mitchellhamilton
emotion-release-bot
graphql 14.5.5 - 14.7.0Outdated
A Query Language and Runtime which can target any service.
@emotion/sheet 0.9.1 - 0.9.4Outdated
emotion's stylesheet
+1
tkh44
mitchellhamilton
emotion-release-bot
event-target-shim 1.0.2 - 1.1.1Outdated
An implementation of WHATWG EventTarget interface.
react-fast-compare 2.0.4 - 3.2.0
Fastest deep equal comparison for React. Great for React.memo & shouldComponentUpdate. Also really fast general-purpose deep comparison.
memoize-one 5.1.0 - 5.2.1Outdated
A memoization library which only remembers the latest invocation
shallowequal 1.0.1 - 1.1.0
Like lodash isEqualWith but for shallow equal.
tiny-invariant 0.0.2 - 1.3.1
A tiny invariant function
react-lifecycles-compat 3.0.4
Backwards compatibility polyfill for React class components
+2
gaearon
acdlite
fb
raf 3.0.0 - 3.1.0Outdated
requestAnimationFrame polyfill for node and the browser
graphql-tag 2.9.1 - 2.12.6
A JavaScript template literal tag that parses GraphQL queries
jnwng
abernix
apollo-bot
style-to-object 0.2.3 - 0.3.0
Converts inline style to object.
resolve-pathname 3.0.0
Resolve URL pathnames using JavaScript
mjackson
mjackson
value-equal 1.0.1
Are these two JavaScript values equal?
mjackson
mjackson
inline-style-parser 0.1.0 - 0.1.1
An inline style parser.
zen-observable 0.8.15
An Implementation of ES Observables
zenparsing
zenparsing
throttle-debounce 1.0.0 - 1.1.0Outdated
Throttle and debounce functions.
@wry/equality 0.2.0Outdated
Structural equality checking for JavaScript values
benjamn
benjamn
mini-create-react-context 0.3.2Outdated
Smaller Polyfill for the proposed React context API
@wry/context 0.4.0 - 0.6.1Outdated
Manage contextual information needed by (a)synchronous tasks without explicitly passing objects around
benjamn
benjamn
next 9.5.0 - 13.0.0
The React Framework
rauchg
timneutkens
vercel-release-bot
gud 1.0.0
Create a 'gud nuff' (not cryptographically secure) globally unique id
react-input-autosize 2.2.2Outdated
Auto-resizing Input Component for React
optimism 0.11.2 - 0.15.0Outdated
Composable reactive caching with efficient invalidation.
rc-util 4.20.3 - 5.3.0Outdated
Common Utils For React Component
@apollo/client 3.2.4 - 3.2.9Outdated
A fully-featured caching GraphQL client.
react-helmet-async 0.2.0Outdated
Thread-safe Helmet for React 16+ and friends
wonderboymusic
wonderboymusic
exenv 1.1.0 - 1.2.2
React's ExecutionEnvironment module extracted for use in other packages & components
react-modal 3.4.1 - 3.11.2Outdated
Accessible modal dialog component for React.JS
load-script 1.0.0 - 2.0.0
Dynamic script loading for browser
apollo-link-error 1.1.8 - 1.1.10Outdated
Error Apollo Link for GraphQL Network Stack
apollo-bot
apollo-bot
recompose 0.25.0 - 0.30.0
A React utility belt for function components and higher-order components
change-emitter 0.1.2 - 0.1.6
Listen for changes. Like an event emitter that only emits a single event type. Really tiny.
html-react-parser 0.10.4 - 0.11.0Outdated
HTML to React parser.
react-property 1.0.1 - 1.0.2Outdated
HTML and SVG DOM property configs used by React.
react-player 2.9.0Outdated
A React component for playing a variety of URLs, including file paths, YouTube, Facebook, Twitch, SoundCloud, Streamable, Vimeo, Wistia and DailyMotion
@loadable/component 5.10.3 - 5.12.0Outdated
React code splitting made easy.
uniqid 5.2.0Outdated
Unique ID Generator
webfontloader 1.6.18 - 1.6.28
Web Font Loader gives you added control when using linked fonts via @font-face.
@apollo/react-components 3.0.0 - 3.1.5Outdated
React Apollo Query, Mutation and Subscription components.
next-i18next 1.0.0 - 7.0.1Outdated
The easiest way to translate your NextJs apps.
lazysizes 5.2.0 - 5.3.2
High performance (jankfree) lazy loader for images (including responsive images), iframes and scripts (widgets).
react-html-parser 2.0.2
Parse HTML into React components
react-apollo 2.1.0 - 2.4.1Outdated
React Apollo Hooks, Components, and HOC.
react-router-hash-link 2.2.0 - 2.3.1Outdated
Hash link scroll functionality for React Router v4/5
tti-polyfill 0.2.2
Polyfill for Time to Interactive. See https://goo.gl/OSmrPk
philipwalton
philipwalton
@iabtcf/cmpapi 1.1.0 - 1.4.0Outdated
Ensures other in-page digital marketing technologies have access to CMP transparency and consent information for the iab. Transparency and Consent Framework (TCF).
react-gpt 2.0.1
A react display ad component using Google Publisher Tag