benzinga.com 106 packages

Last scanned on Oct 27 at 06:02 PM
lodash 4.17.16VulnerableOutdated
Lodash modular utilities.
License
MIT
Footprint
6 KB
Vulnerabilities
Command Injection in lodash
Affected versions >=0 <4.17.21
Regular Expression Denial of Service (ReDoS) in lodash
Affected versions >=0 <4.17.21
Prototype Pollution in lodash
Affected versions >=3.7.0 <4.17.19
Matched Modules
Version distribution in production
3 846
4.17.16
946
4.17.21
337
4.17.20
322
4.17.15
302
4.17.19
301
4.17.13
axios 0.19.1 - 0.19.2VulnerableOutdated
Promise based HTTP client for the browser and node.js
next 12.0.0 - 12.0.3VulnerableOutdated
The React Framework
rauchg
timneutkens
vercel-release-bot
react-is 17.0.0 - 17.0.2Outdated
Brand checking of React Elements.
qs 6.10.2 - 6.10.3Outdated
A querystring parser that supports nesting and arrays, with a depth limit
@babel/runtime 7.14.6 - 7.16.3Outdated
babel's modular runtime helpers
+1
hzoo
existentialism
nicolo-ribaudo
get-intrinsic 1.1.0 - 1.1.1Outdated
Get and robustly cache all JS language-level intrinsics at first require time
function-bind 1.1.0 - 1.1.1Outdated
Implementation of Function.prototype.bind
path-to-regexp 6.1.0 - 6.2.0Outdated
Express style path to RegExp utility
cookie 0.4.1 - 0.4.2Outdated
HTTP server cookie parsing and serialization
dougwilson
dougwilson
call-bind 1.0.2Outdated
Robustly `.call.bind()` a function
object-inspect 1.11.0 - 1.11.1Outdated
string representations of objects in node and the browser
has-symbols 1.0.2 - 1.0.3
Determine if the JS environment has Symbol support. Supports spec, or shams.
side-channel 1.0.4Outdated
Store information about any JS value in a side channel. Uses WeakMap if available.
postcss-value-parser 3.3.1Outdated
Transforms css values and at-rule params into the tree
es-abstract 1.17.0 - 1.20.4Outdated
ECMAScript spec abstract operations.
fast-json-stable-stringify 2.0.0 - 2.1.0
deterministic `JSON.stringify()` - a faster version of substack's json-stable-strigify without jsonify
define-properties 1.1.3 - 1.1.4Outdated
Define multiple non-enumerable properties at once. Uses `Object.defineProperty` when available; falls back to standard assignment in older engines.
events 3.0.0 - 3.3.0
Node's event emitter for all engines.
object-keys 1.1.0 - 1.1.1
An Object.keys replacement, in case Object.keys is not available. From https://github.com/es-shims/es5-shim
eventemitter3 2.0.0 - 4.0.7Outdated
EventEmitter3 focuses on performance while maintaining a Node.js AND browser compatible interface.
object.values 1.0.0 - 1.1.5Outdated
ES2017 spec-compliant Object.values shim.
has 1.0.1 - 1.0.3Outdated
Object.prototype.hasOwnProperty.call shortcut
tarruda
tarruda
scheduler 0.15.0 - 0.23.0
Cooperative scheduler for the browser environment.
prop-types 15.8.0 - 15.8.1
Runtime type checking for React props and similar objects.
react 17.0.0 - 18.2.0
React is a JavaScript library for building user interfaces.
react-dom 18.0.0 - 18.2.0
React package for working with the DOM.
date-fns 2.19.0 - 2.26.0Outdated
Modern JavaScript date utility library
kossnocorp
kossnocorp
dayjs 1.10.6 - 1.10.8Outdated
2KB immutable date time library alternative to Moment.js with the same modern API
hoist-non-react-statics 3.3.1 - 3.3.2
Copies non-react specific statics from a child component to a parent component
mridgway
mridgway
@emotion/unitless 0.7.2 - 0.8.0Outdated
An object of css properties that don't accept values with units
+1
emmatown
tkh44
emotion-release-bot
classnames 2.3.0 - 2.3.1Outdated
A simple utility for conditionally joining classNames together
react-transition-group 2.4.0 - 3.0.0Outdated
A react component toolset for managing animations
dom-helpers 5.0.1 - 5.2.1
tiny modular DOM lib for ie9+
ramda 0.26.0 - 0.27.2Outdated
A practical functional library for JavaScript programmers.
@popperjs/core 2.8.5 - 2.11.6Outdated
Tooltip and Popover Positioning Engine
lodash-es 4.17.21
Lodash exported as ES modules.
redux 4.1.0 - 4.2.0Outdated
Predictable state container for JavaScript apps
react-fast-compare 3.1.0 - 3.2.0Outdated
Fastest deep equal comparison for React. Great for React.memo & shouldComponentUpdate. Also really fast general-purpose deep comparison.
react-redux 5.0.3 - 7.2.9Outdated
Official React bindings for Redux
shallowequal 1.0.1 - 1.1.0
Like lodash isEqualWith but for shallow equal.
void-elements 3.1.0
Array of "void elements" defined by the HTML specification.
polished 3.6.6 - 4.2.2Outdated
A lightweight toolset for writing styles in Javascript.
d3-path 1.0.3 - 3.0.1Outdated
Serialize Canvas path commands to SVG.
react-lifecycles-compat 3.0.4
Backwards compatibility polyfill for React class components
fb
sophiebits
d3-scale 3.2.0 - 4.0.2
Encodings that map abstract data to visual representation.
resize-observer-polyfill 1.5.0 - 1.5.1
A polyfill for the Resize Observer API
styled-jsx 3.2.4 - 4.0.1Outdated
Full CSS support for JSX without compromises
styled-components 5.0.0 - 5.3.6Outdated
CSS for the <Component> Age. Style components your way with speed, strong typing, and flexibility.
react-select 2.1.0 - 5.5.7Outdated
A Select control built with and for ReactJS
@emotion/stylis 0.8.1Outdated
A custom build of Stylis
+1
emmatown
tkh44
emotion-release-bot
react-i18next 11.10.0 - 11.17.4Outdated
Internationalization for react done right. Using the i18next i18n ecosystem.
rc-util 5.13.2 - 5.16.0Outdated
Common Utils For React Component
react-textarea-autosize 8.0.0 - 8.3.4Outdated
textarea component for React which grows with content
xss 1.0.13 - 1.0.14Outdated
Sanitize untrusted HTML (to prevent XSS) with a configuration specified by a Whitelist
cssfilter 0.0.10
Sanitize untrusted CSS with a configuration specified by a Whitelist. 根据白名单过滤CSS
exenv 1.1.0 - 1.2.2
React's ExecutionEnvironment module extracted for use in other packages & components
reduce-css-calc 2.1.8
Reduce CSS calc() function to the maximum
fp-ts 0.6.7Outdated
Functional programming in TypeScript
string-hash 1.1.1 - 1.1.3
fast string hashing function
react-input-autosize 3.0.0
Auto-resizing Input Component for React
rc-tooltip 5.1.0 - 5.1.1Outdated
React Tooltip
tippy.js 6.0.2 - 6.3.7
The complete tooltip, popover, dropdown, and menu solution for the web
decimal.js-light 2.2.5 - 2.3.1Outdated
An arbitrary-precision Decimal type for JavaScript.
react-use 12.3.2 - 17.4.0Outdated
Collection of React Hooks
streamich
streamich
recharts 2.0.0Outdated
React charts
@ant-design/colors 2.0.2 - 3.2.2Outdated
Color palettes calculator of Ant Design
+4
madccc
afc163
vthinkxie
@fortawesome/fontawesome-svg-core 1.3.0 - 6.2.0Outdated
The iconic font, CSS, and SVG framework
airbnb-prop-types 2.16.0
Custom React PropType validators that we use at Airbnb.
react-modal 3.14.1 - 3.16.1
Accessible modal dialog component for React.JS
universal-cookie 4.0.1 - 4.0.4Outdated
Universal cookies for JavaScript
@ant-design/icons 4.0.5 - 4.6.2Outdated
[![NPM version](https://img.shields.io/npm/v/@ant-design/icons.svg?style=flat)](https://npmjs.org/package/@ant-design/icons) [![NPM downloads](http://img.shields.io/npm/dm/@ant-design/icons.svg?style=flat)](https://npmjs.org/package/@ant-design/icons)
+4
madccc
afc163
vthinkxie
rc-resize-observer 1.0.1Outdated
Resize observer for React
antd 4.16.2 - 4.16.13Outdated
An enterprise-class UI design language and React components implementation
rc-trigger 4.3.0 - 4.3.4Outdated
base abstract trigger component for react
react-bootstrap 0.28.0 - 0.33.1Outdated
Bootstrap 5 components built with React
css-unit-converter 1.1.2
Converts CSS values from one unit to another
rc-pagination 1.20.12 - 3.1.10Outdated
pagination ui component for react
rc-notification 4.5.6 - 4.6.0Outdated
notification ui component for react
@ant-design/icons-svg 4.1.0 - 4.2.1Outdated
Abstract nodes for ant design icons.
+4
madccc
afc163
vthinkxie
rc-picker 2.4.2 - 2.5.18Outdated
React date & time picker
rc-field-form 1.19.0 - 1.27.3Outdated
React Form Component
@fortawesome/react-fontawesome 0.1.18 - 0.1.19Outdated
Official React component for Font Awesome 5
+4
jasonlundien
devoto13
jrjohnson
consolidated-events 1.0.0 - 1.1.1Outdated
Manage multiple event handlers using few event listeners
redux-devtools-extension 2.0.0 - 2.13.9
Wrappers for Redux DevTools Extension.
+1
jhen0409
methuselah96
timdorr
use-subscription 1.3.0 - 1.5.1Outdated
Reusable hooks
+1
gnoff
fb
sophiebits
apollo-link-http 1.5.10 - 1.5.17
HTTP transport layer for GraphQL
apollo-bot
apollo-bot
@fortawesome/free-regular-svg-icons 6.0.0 - 6.1.2Outdated
The iconic font, CSS, and SVG framework
@auth0/auth0-spa-js 2.0.0Outdated
Auth0 SDK for Single Page Applications using Authorization Code Grant Flow with PKCE
diacritics 1.2.0 - 1.3.0
remove diacritics from strings
i18n-iso-countries 3.0.0 - 7.5.0Outdated
i18n for ISO 3166-1 country codes
react-cookie 3.1.0 - 4.1.1Outdated
Universal cookies for React
@fortawesome/free-brands-svg-icons 6.0.0 - 6.1.1Outdated
The iconic font, CSS, and SVG framework
document.contains 1.0.2
Polyfill/shim for `document.contains`
react-outside-click-handler 1.3.0
A React component for dealing with clicks outside its subtree
+2
brieb
airbnbeng
lencioni
normalizr 3.5.0 - 3.6.2
Normalizes and denormalizes JSON according to schema for Redux and Flux applications
semantic-ui-react 1.1.0Outdated
The official Semantic-UI-React integration.
layershifter
levithomason
react-router-redux 4.0.8
Ruthlessly simple bindings to keep react-router and redux in sync
react-lazyload 2.4.0 - 3.2.0Outdated
Lazyload your components, images or anything where performance matters.
react-flip-move 2.6.1 - 2.6.2Outdated
Effortless animation between DOM changes (eg. list reordering) using the FLIP technique.
react-google-login 5.2.1 - 5.2.2
A Google Login Component for React
@tannin/plural-forms 1.0.0 - 1.1.0
Compiles a function to compute the plural forms index for a given value
aduth
aduth
cross-domain-utils 2.0.38
Javascript module template.
bluepnume
bluepnume
react-facebook 4.1.1 - 5.0.3Outdated
Facebook components like a Login button, Like, Share, Comments, Embedded Post/Video, Messenger Chat and others
@sitecore-jss/sitecore-jss-react 9.0.1 - 18.0.1Outdated
This module is provided as a part of Sitecore JavaScript Rendering SDK (JSS). It contains React components and integration for JSS.
+7
sc-yavorkrastev
sitecorecorporation
sc-maximnakhod
react-dfp 0.20.0 - 0.21.0
A React implementation of the google [DFP](https://developers.google.com/doubleclick-gpt/reference "GPT Reference") API. This package is inspired in the awesome library [jquery.dfp](https://github.com/coop182/jquery.dfp.js), and aims to provide its same e