baomoi.com 102 packages

Last scanned on Jan 19 at 10:12 AM
handlebars 1.1.0 - 1.1.2VulnerableOutdated
Handlebars provides the power necessary to let you build semantic templates effectively with no frustration
License
MIT
Footprint
67 B
Vulnerabilities
Moderate severity vulnerability that affects handlebars
Affected versions >=0 <4.0.0
Cross-Site Scripting in handlebars
Affected versions >=0 <4.0.0
Remote code execution in handlebars when compiling templates
Affected versions >=0 <4.7.7
Prototype Pollution in handlebars
Affected versions >=0 <4.7.7
Remote code execution in Handlebars.js
Affected versions >=0 <4.1.0
Matched Modules
Version distribution in production
182
4.7.7
172
4.7.6
168
4.7.3
166
4.7.2
166
4.7.4
39
1.1.2
moment 2.19.0 - 2.25.1VulnerableOutdated
Parse, validate, manipulate, and display dates
next 10.0.0 - 10.2.3VulnerableOutdated
The React Framework
rauchg
timneutkens
vercel-release-bot
next-auth 4.0.1 - 4.18.8VulnerableOutdated
Authentication for Next.js
svelte 0.0.2 - 0.1.1VulnerableOutdated
Cybernetically enhanced web apps
es5-ext 0.10.39 - 0.10.40VulnerableOutdated
ECMAScript extensions and shims
readable-stream 3.6.0Outdated
Node.js Streams, a user-land copy of the stream library from Node.js
string_decoder 1.1.0 - 1.3.0
The string_decoder module from Node core
isarray 1.0.0 - 2.0.5
Array#isArray for older browsers
react-is 16.3.0 - 16.13.1Outdated
Brand checking of React Elements.
inherits 2.0.4
Browser-friendly inheritance fully compatible with standard node.js inherits()
buffer 4.6.0 - 4.9.2Outdated
Node.js Buffer API, for the browser
@babel/runtime 7.9.6 - 7.12.18Outdated
babel's modular runtime helpers
+1
hzoo
existentialism
nicolo-ribaudo
path-to-regexp 6.1.0 - 6.2.0Outdated
Express style path to RegExp utility
core-util-is 1.0.2 - 1.0.3
The `util.is*` functions introduced in Node v0.12.
rxjs 5.0.0 - 5.5.12Outdated
Reactive Extensions for modern JavaScript
base64-js 1.3.0 - 1.5.1
Base64 encoding/decoding in pure JS
events 3.0.0 - 3.3.0
Node's event emitter for all engines.
eventemitter3 2.0.0 - 5.0.0Outdated
EventEmitter3 focuses on performance while maintaining a Node.js AND browser compatible interface.
array-includes 3.0.0 - 3.1.4Outdated
An ES7/ES2016 spec-compliant `Array.prototype.includes` shim/polyfill/replacement that works as far down as ES3.
scheduler 0.15.0 - 0.23.0Outdated
Cooperative scheduler for the browser environment.
prop-types 15.7.0 - 15.7.2Outdated
Runtime type checking for React props and similar objects.
react 17.0.0 - 18.2.0Outdated
React is a JavaScript library for building user interfaces.
date-fns 2.27.0 - 2.28.0Outdated
Modern JavaScript date utility library
kossnocorp
kossnocorp
dayjs 1.10.2 - 1.10.4Outdated
2KB immutable date time library alternative to Moment.js with the same modern API
minimalistic-assert 1.0.0 - 1.0.1
minimalistic-assert ===
cwmma
indutny
hoist-non-react-statics 3.3.1 - 3.3.2
Copies non-react specific statics from a child component to a parent component
mridgway
mridgway
har-validator 4.1.1 - 4.1.2Outdated
Extremely fast HTTP Archive (HAR) validator using JSON Schema
classnames 2.3.0 - 2.3.1Outdated
A simple utility for conditionally joining classNames together
sha.js 2.4.9 - 2.4.11
Streamable SHA hashes in pure javascript
dcousens
ljharb
cwmma
underscore 1.11.0 - 1.13.6
JavaScript's functional programming helper library.
core-js-pure 3.0.0 - 3.27.2Outdated
Standard library
asn1.js 5.2.0 - 5.4.1
ASN.1 encoder and decoder
hash-base 3.0.4 - 3.1.0
abstract base class for hash-streams
elliptic 6.5.4Outdated
EC cryptography
hash.js 1.1.2 - 1.1.7
Various hash functions that could be run by both browser and node
hmac-drbg 1.0.1
Deterministic random bit generator (hmac)
lodash-es 4.14.0 - 4.17.21
Lodash exported as ES modules.
redux 4.0.5Outdated
Predictable state container for JavaScript apps
react-fast-compare 3.1.0 - 3.2.0Outdated
Fastest deep equal comparison for React. Great for React.memo & shouldComponentUpdate. Also really fast general-purpose deep comparison.
des.js 1.0.1Outdated
DES implementation
md5.js 1.1.0 - 1.3.5
node style md5 on pure JavaScript
@testing-library/user-event 12.4.0 - 12.8.3Outdated
Fire events the same way the user does
pbkdf2 3.1.0 - 3.1.2
This library provides the functionality of PBKDF2 with the ability to use any supported hashing algorithm returned from crypto.getHashes()
cipher-base 1.0.4
abstract base class for crypto-streams
parse-asn1 5.1.6Outdated
utility library for parsing asn1 files for use with browserify-sign.
+2
dcousens
ljharb
cwmma
browserify-sign 2.4.0 - 2.8.0Outdated
adds node crypto signing for browsers
+2
dcousens
ljharb
cwmma
browserify-aes 0.4.0 - 0.8.1Outdated
aes, for browserify
evp_bytestokey 1.0.3
The insecure key derivation algorithm from OpenSSL
browserify-rsa 4.1.0
RSA for browserify
+2
dcousens
ljharb
cwmma
create-ecdh 3.0.0 - 4.0.4
createECDH but browserifiable
public-encrypt 4.0.3
browserify version of publicEncrypt & privateDecrypt
+2
dcousens
ljharb
cwmma
diffie-hellman 1.1.2Outdated
pure js diffie-hellman
browserify-des 1.0.2
browserify-des ===
dcousens
ljharb
cwmma
miller-rabin 1.1.0 - 4.0.1
Miller Rabin algorithm for primality test
randomfill 1.0.0 - 1.0.4
random fill from browserify stand alone
luxon 0.5.6 - 3.2.1Outdated
Immutable date wrapper
shallowequal 1.0.1 - 1.1.0
Like lodash isEqualWith but for shallow equal.
d3-time 0.0.2 - 0.0.6Outdated
A calculator for humanity’s peculiar conventions of time.
d3-shape 1.0.2 - 3.2.0
Graphical primitives for visualization, such as lines and areas.
css-to-react-native 3.0.0 - 3.1.0Outdated
Convert CSS text to a React Native stylesheet object
react-popper 2.2.5 - 2.3.0
Official library to use Popper on React projects
d3-geo 1.2.2 - 3.1.0Outdated
Shapes and calculators for spherical coordinates.
framer-motion 6.5.0 - 8.5.0Outdated
A simple and powerful JavaScript animation library
@firebase/util 1.4.0 - 1.8.0Outdated
_NOTE: This is specifically tailored for Firebase JS SDK usage, if you are not a member of the Firebase team, please avoid using this package_
+1
chholland
firebase-ops
feiyang.chen
remark-stringify 2.0.0 - 8.1.1Outdated
remark plugin to add support for serializing markdown
@angular/core 6.0.0 - 12.2.16Outdated
Angular - the core framework
angular
google-wombot
chart.js 3.4.0 - 3.9.1Outdated
Simple HTML5 charts using the canvas element.
@apollo/client 3.0.0 - 3.7.4Outdated
A fully-featured caching GraphQL client.
@hookform/resolvers 1.1.0Outdated
React Hook Form validation resolvers: Yup, Joi, Superstruct, Zod, Vest, Class Validator, io-ts, Nope, computed-types, TypeBox, arktype and Typanion
formik 0.11.9 - 2.2.9Outdated
Build forms in React, without the tears
focus-lock 0.4.0 - 0.11.4Outdated
DOM trap for a focus
react-onclickoutside 6.2.0 - 6.12.2Outdated
An onClickOutside wrapper for React components
react-datepicker 0.59.0Outdated
A simple and reusable datepicker component for React
fp-ts 0.4.4 - 0.5.4Outdated
Functional programming in TypeScript
@datadog/browser-core 4.21.2Outdated
Datadog browser core utilities.
datadog
datadog
react-intersection-observer 8.30.3 - 8.31.0Outdated
Monitor if a component is inside the viewport, using IntersectionObserver API
@react-spring/core 9.0.0 - 9.6.1Outdated
The platform-agnostic core of `react-spring`
@firebase/firestore 0.3.1 - 0.3.7Outdated
The Cloud Firestore component of the Firebase JS SDK.
+1
chholland
firebase-ops
feiyang.chen
react-use 14.1.1 - 17.4.0Outdated
Collection of React Hooks
streamich
streamich
recharts 0.17.1 - 1.8.6Outdated
React charts
popmotion 3.7.0 - 4.3.4Outdated
The animator's toolbox
react-chartjs-2 2.6.0 - 2.9.0Outdated
React components for Chart.js
rc-picker 2.3.2 - 3.1.4Outdated
React date & time picker
wonka 1.0.1 - 1.1.1Outdated
A tiny but capable push & pull stream library for TypeScript and Flow
use-subscription 1.3.0 - 1.5.1Outdated
Reusable hooks
+1
gnoff
fb
sophiebits
sweetalert2 8.11.5 - 11.4.18Outdated
A beautiful, responsive, customizable and accessible (WAI-ARIA) replacement for JavaScript's popup boxes, supported fork of sweetalert
react-calendar 2.0.0 - 4.0.0Outdated
Ultimate calendar for your React app.
styled-system 5.0.15 - 5.1.5
Responsive, theme-based style props for building design systems with React
redux-form 7.0.0 - 8.3.9Outdated
A higher order component decorator for forms using Redux and React
bootstrap-vue 2.0.0 - 2.2.2Outdated
With more than 85 components, over 45 available plugins, several directives, and 1000+ icons, BootstrapVue provides one of the most comprehensive implementations of the Bootstrap v4 component and grid system available for Vue.js v2.6, complete with extens
react-html-parser 1.0.2 - 2.0.2
Parse HTML into React components
deepcopy 2.0.0 - 2.1.0
deep copy data
sasaplus1
sasaplus1
just-clone 2.0.0Outdated
deep copies objects and arrays
react-accessible-accordion 4.0.0 - 5.0.0
Accessible Accordion component for React
@stimulus/core 0.6.0Outdated
Stimulus JavaScript framework: Core library
dhh
dhh
twitter-text 3.1.0
official twitter text linkification
+6
bigloser
catia3045
ded
fp-ts-contrib 0.1.21 - 0.1.29
A community driven utility package for fp-ts
@most/scheduler 0.8.0 - 0.12.0Outdated
Reactive programming with lean, functions-only, curried, tree-shakeable API
prebid.js 6.15.0 - 7.32.0Outdated
Header Bidding Management Library
list 2.0.0Outdated
Fast purely functional immutable lists.
react-amphtml 3.0.0 - 3.0.1Outdated
Use amphtml components inside your React apps easily!
dfrankland
dfrankland