catch.com.au 154 packages

Last scanned on Jan 19 at 09:08 AM
url-parse 1.5.1VulnerableOutdated
Small footprint URL parser that works seamlessly across Node.js and browser environments
License
MIT
Footprint
3 KB
Vulnerabilities
url-parse incorrectly parses hostname / protocol due to unstripped leading control characters.
Affected versions >=0 <1.5.9
Authorization bypass in url-parse
Affected versions >=0 <1.5.6
Open redirect in url-parse
Affected versions >=0 <1.5.2
Authorization Bypass Through User-Controlled Key in url-parse
Affected versions >=0 <1.5.8
url-parse Incorrectly parses URLs that include an '@'
Affected versions >=0 <1.5.7
Matched Modules
Version distribution in production
206
1.5.10
167
1.5.9
50
1.5.3
47
1.4.6
47
1.4.7
23
1.5.1
immer 8.0.1VulnerableOutdated
Create your next immutable state by mutating the current one
axios 0.21.1VulnerableOutdated
Promise based HTTP client for the browser and node.js
next 12.3.1VulnerableOutdated
The React Framework
rauchg
timneutkens
vercel-release-bot
tslib 2.4.0Outdated
Runtime library for TypeScript helper functions
uuid 3.4.0Outdated
RFC4122 (v1, v4, and v5) UUIDs
react-is 16.13.1Outdated
Brand checking of React Elements.
node-fetch 2.6.1 - 2.6.7Outdated
A light-weight module that brings Fetch API to node.js
@babel/runtime 7.18.2 - 7.18.3Outdated
babel's modular runtime helpers
+1
hzoo
existentialism
nicolo-ribaudo
get-intrinsic 1.1.3Outdated
Get and robustly cache all JS language-level intrinsics at first require time
function-bind 1.1.1Outdated
Implementation of Function.prototype.bind
call-bind 1.0.2Outdated
Robustly `.call.bind()` a function
has-symbols 1.0.2 - 1.0.3
Determine if the JS environment has Symbol support. Supports spec, or shams.
es-abstract 1.18.0 - 1.20.1Outdated
ECMAScript spec abstract operations.
define-properties 1.1.3Outdated
Define multiple non-enumerable properties at once. Uses `Object.defineProperty` when available; falls back to standard assignment in older engines.
has-tostringtag 1.0.0Outdated
Determine if the JS environment has `Symbol.toStringTag` support. Supports spec, or shams.
object-keys 1.1.1
An Object.keys replacement, in case Object.keys is not available. From https://github.com/es-shims/es5-shim
regexp.prototype.flags 1.3.1Outdated
ES6 spec-compliant RegExp.prototype.flags shim.
is-regex 1.1.4
Is this value a JS regex? Works cross-realm/iframe, and despite ES6 @@toStringTag
is-date-object 1.0.2 - 1.0.3Outdated
Is this value a JS Date object? This module works cross-realm/iframe, and despite ES6 @@toStringTag.
object.values 1.1.1Outdated
ES2017 spec-compliant Object.values shim.
requires-port 1.0.0
Check if a protocol requires a certain port number to be added to an URL.
has 1.0.2 - 1.0.3Outdated
Object.prototype.hasOwnProperty.call shortcut
tarruda
tarruda
prop-types 15.7.0 - 15.7.2Outdated
Runtime type checking for React props and similar objects.
is-arguments 1.1.1
Is this an arguments object? It's a harder question than you think.
react-dom 17.0.2Outdated
React package for working with the DOM.
process 0.11.10
process information for node.js and browsers
querystringify 2.2.0
Querystringify - Small, simple but powerful query string parser.
lodash.debounce 4.0.8
The lodash method `_.debounce` exported as a module.
deep-equal 1.1.0 - 1.1.1Outdated
node's assert.deepEqual algorithm
date-fns 2.19.0Outdated
Modern JavaScript date utility library
kossnocorp
kossnocorp
lodash.memoize 4.1.2
The lodash method `_.memoize` exported as a module.
clsx 1.1.1Outdated
A tiny (239B) utility for constructing className strings conditionally.
decode-uri-component 0.2.2Outdated
A better decodeURIComponent
object-is 1.1.2 - 1.1.3Outdated
ES2015-compliant shim for Object.is - differentiates between -0 and +0
hoist-non-react-statics 3.3.2
Copies non-react specific statics from a child component to a parent component
mridgway
mridgway
@emotion/memoize 0.6.6 - 0.7.4Outdated
emotion's memoize utility
+1
emmatown
tkh44
emotion-release-bot
dequal 2.0.0 - 2.0.3
A tiny (304B to 489B) utility for check for deep equality
@emotion/unitless 0.7.2 - 0.7.5Outdated
An object of css properties that don't accept values with units
+1
emmatown
tkh44
emotion-release-bot
classnames 2.2.6Outdated
A simple utility for conditionally joining classNames together
stylis 4.1.0 - 4.1.1Outdated
A Light–weight CSS Preprocessor
andarist
thysultan
@emotion/is-prop-valid 0.8.8Outdated
A function to check whether a prop is valid for HTML and SVG elements
+1
emmatown
tkh44
emotion-release-bot
query-string 5.1.1Outdated
Parse and stringify URL query strings
@emotion/hash 0.8.0Outdated
A MurmurHash2 implementation
+1
emmatown
tkh44
emotion-release-bot
graphql 15.3.0Outdated
A Query Language and Runtime which can target any service.
lodash.get 4.4.2
The lodash method `_.get` exported as a module.
@emotion/serialize 1.0.2 - 1.1.1Outdated
serialization utils for emotion
+1
emmatown
tkh44
emotion-release-bot
@emotion/utils 1.1.0Outdated
internal utils for emotion
+1
emmatown
tkh44
emotion-release-bot
@sentry/types 6.4.0 - 6.11.0Outdated
Types for all Sentry JavaScript SDKs
+8
benvinegar
billyvg
mitsuhiko
strict-uri-encode 1.1.0Outdated
A stricter URI encode adhering to RFC 3986
@sentry/utils 6.8.0Outdated
Utilities for all Sentry JavaScript SDKs
+8
benvinegar
billyvg
mitsuhiko
@emotion/cache 11.4.0Outdated
emotion's cache
+1
emmatown
tkh44
emotion-release-bot
@sentry/core 6.8.0Outdated
Base implementation for all Sentry JavaScript SDKs
+8
benvinegar
billyvg
mitsuhiko
@emotion/sheet 1.0.2Outdated
emotion's stylesheet
+1
emmatown
tkh44
emotion-release-bot
@emotion/weak-memoize 0.2.1 - 0.2.5Outdated
A memoization function that uses a WeakMap
+1
emmatown
tkh44
emotion-release-bot
warning 4.0.3
A mirror of Facebook's Warning
js-cookie 3.0.1Outdated
A simple, lightweight JavaScript API for handling cookies
crypto-browserify 1.0.9 - 2.0.0Outdated
implementation of crypto for the browser
+2
dcousens
ljharb
cwmma
@emotion/react 11.4.1Outdated
> Simple styling in React.
+1
emmatown
tkh44
emotion-release-bot
md5 1.0.0 - 2.1.0Outdated
js function for hashing messages with MD5
coolaj86
pvorb
polished 3.0.0 - 3.4.4Outdated
A lightweight toolset for writing styles in Javascript.
crypt 0.0.0 - 0.0.2
utilities for encryption and hashing
pvorb
pvorb
charenc 0.0.0 - 0.0.2
character encoding utilities
pvorb
pvorb
graphql-tag 2.12.6
A JavaScript template literal tag that parses GraphQL queries
jnwng
abernix
apollo-bot
react-lifecycles-compat 3.0.4
Backwards compatibility polyfill for React class components
fb
sophiebits
@emotion/styled 11.3.0Outdated
styled API for emotion
+1
emmatown
tkh44
emotion-release-bot
@sentry/browser 6.8.0Outdated
Official Sentry SDK for browsers
+8
benvinegar
billyvg
mitsuhiko
react-select 3.0.2 - 5.7.0Outdated
A Select control built with and for ReactJS
zen-observable-ts 1.2.4 - 1.2.5Outdated
Thin wrapper around zen-observable and @types/zen-observable, to support ESM exports as well as CommonJS exports
jbaxleyiii
apollo-bot
react-popper 1.3.11Outdated
Official library to use Popper on React projects
popper.js 1.16.1
A kickass library to manage your poppers
ts-invariant 0.10.1 - 0.10.3
TypeScript implementation of invariant(condition, message)
@wry/trie 0.2.1 - 0.3.2Outdated
https://en.wikipedia.org/wiki/Trie
tinycolor2 1.4.2Outdated
Fast Color Parsing and Manipulation
@wry/equality 0.5.3Outdated
Structural equality checking for JavaScript values
benjamn
benjamn
react-error-boundary 3.1.1Outdated
Simple reusable React error boundary component
kentcdodds
brianvaughn
web-vitals 0.2.4Outdated
Easily measure performance metrics in JavaScript
@wry/context 0.7.0Outdated
Manage contextual information needed by (a)synchronous tasks without explicitly passing objects around
benjamn
benjamn
optimism 0.16.1Outdated
Composable reactive caching with efficient invalidation.
@apollo/client 3.7.0Outdated
A fully-featured caching GraphQL client.
@sentry/hub 6.7.2 - 6.10.0Outdated
Sentry hub which handles global state managment.
+8
benvinegar
billyvg
mitsuhiko
@sentry/react 6.5.0 - 6.8.0Outdated
Official Sentry SDK for React.js
+8
benvinegar
billyvg
mitsuhiko
@angular/router 10.0.0 - 14.1.3Outdated
Angular - the routing library
@sentry/minimal 5.29.1 - 6.16.1Outdated
Sentry minimal library that can be used in other packages
+8
benvinegar
billyvg
mitsuhiko
exenv 1.2.1 - 1.2.2
React's ExecutionEnvironment module extracted for use in other packages & components
react-draggable 4.4.1 - 4.4.5Outdated
React draggable component
swr 0.3.7 - 0.3.8Outdated
React Hooks library for remote data fetching
react-toastify 7.0.2 - 7.0.3Outdated
React notification made easy
@datadog/browser-core 4.11.1Outdated
Datadog browser core utilities.
datadog
datadog
gud 1.0.0
Create a 'gud nuff' (not cryptographically secure) globally unique id
@sentry/webpack-plugin x.x.x
Official Sentry Webpack plugin
react-intersection-observer 8.33.0 - 8.33.1Outdated
Monitor if a component is inside the viewport, using IntersectionObserver API
firebase 4.1.4 - 4.5.0Outdated
Firebase JavaScript library for web and Node.js
xstate 4.7.0 - 4.35.2Outdated
Finite State Machines and Statecharts for the Modern Web.
airbnb-prop-types 2.4.0 - 2.16.0
Custom React PropType validators that we use at Airbnb.
react-modal 3.14.3Outdated
Accessible modal dialog component for React.JS
react-intl 1.1.0 - 1.2.2Outdated
Internationalize React apps. This library provides React components and an API to format dates, numbers, and strings, including pluralization and handling translations.
@datadog/browser-rum-core 4.11.1Outdated
Datadog browser RUM core utilities.
datadog
datadog
@datadog/browser-rum 4.11.1Outdated
Datadog Real User Monitoring (RUM) enables you to visualize and analyze the real-time performance and user journeys of your application's individual users.
datadog
datadog
@hypnosphi/create-react-context 0.3.1
Polyfill for the proposed React context API
react-player 1.12.0 - 2.10.1Outdated
A React component for playing a variety of URLs, including file paths, YouTube, Facebook, Twitch, SoundCloud, Streamable, Vimeo, Wistia and DailyMotion
consolidated-events 2.0.2
Manage multiple event handlers using few event listeners
email-validator 2.0.4
Provides a fast, pretty robust e-mail validator. Only checks form, not function.
focus-visible 5.2.0
Polyfill for :focus-visible pseudo-selector
robdodson
sundress
@chakra-ui/theme 2.1.0 - 2.1.3Outdated
The default theme for chakra components
@styled-system/core 5.1.2
jxnblk
jxnblk
react-content-loader 6.0.3Outdated
SVG-Powered component to easily create placeholder loadings (like Facebook cards loading)
styled-system 5.1.2 - 5.1.5
Responsive, theme-based style props for building design systems with React
document.contains 1.0.2
Polyfill/shim for `document.contains`
react-outside-click-handler 1.3.0
A React component for dealing with clicks outside its subtree
+2
brieb
airbnbeng
lencioni
@styled-system/css 5.1.5
Styled System for the `css` prop
@styled-system/color 5.0.0 - 5.1.2
jxnblk
jxnblk
@styled-system/border 5.1.5
jxnblk
jxnblk
@styled-system/variant 5.1.0 - 5.1.5
Read the docs: https://styled-system.com/variants
jxnblk
jxnblk
@styled-system/space 5.0.18 - 5.1.2
jxnblk
jxnblk
@styled-system/layout 5.0.23 - 5.1.2
jxnblk
jxnblk
@styled-system/typography 5.0.0 - 5.1.2
jxnblk
jxnblk
@styled-system/flexbox 5.0.0 - 5.1.2
jxnblk
jxnblk
@styled-system/position 5.0.15 - 5.1.2
jxnblk
jxnblk
@styled-system/grid 5.0.0 - 5.1.2
jxnblk
jxnblk
@styled-system/shadow 5.0.0 - 5.1.2
jxnblk
jxnblk
@styled-system/background 5.0.0 - 5.1.2
jxnblk
jxnblk
is-mobile 3.1.1Outdated
Check if mobile browser.
sha1 1.1.0 - 1.1.1
native js function for hashing messages with SHA-1
pvorb
pvorb
countup.js 2.2.0Outdated
Animates a numerical value by counting to it
inorganik
inorganik
react-countup 6.2.0Outdated
A React component wrapper around CountUp.js
lazysizes 5.3.0Outdated
High performance (jankfree) lazy loader for images (including responsive images), iframes and scripts (widgets).
lodash.range 3.2.0
The lodash method `_.range` exported as a module.
react-uid 2.3.0 - 2.3.2Outdated
Render-less container for ID generation
react-lazy-load-image-component 1.5.1Outdated
React Component to lazy load images using a HOC to track window scroll position.
react-countdown 2.3.2Outdated
A customizable countdown component for React.
@styled-system/should-forward-prop 5.0.7 - 5.1.5
Utility for filtering Styled System props with Emotion's shouldForwardProp option
jxnblk
jxnblk
tesseract.js 2.0.0 - 4.0.2Outdated
Pure Javascript Multilingual OCR
+1
antimatter15
jeromewu
bijection
pure-react-carousel 1.27.5 - 1.27.6Outdated
A highly impartial suite of React components that can be assembled by the consumer to create a responsive and aria compliant carousel with almost no limits on DOM structure or CSS styles.
@apollo/react-ssr 3.0.0 - 3.1.5Outdated
React Apollo server-side rendering utilities
@styled-system/theme-get 5.0.0 - 5.1.2
The `themeGet` function is an existential getter function that can be used in any style declaration to get a value from your theme, with support for fallback values. This helps prevent errors from throwing when a theme value is missing, which can be helpf
jxnblk
jxnblk
lottie-api 1.0.0 - 1.0.2Outdated
A library to edit lottie-web animations dynamically
airnan
airnan
botframework-webchat-component 4.9.2 - 4.15.6Outdated
React component of botframework-webchat
+2
botframework
sgellock
cwhitten
react-amphtml 3.1.0 - 4.0.2
Use amphtml components inside your React apps easily!
dfrankland
dfrankland
@quintype/components 1.6.0 - 1.34.1Outdated
Components to help build Quintype Node.js apps
@swc/helpers x.x.x
@snowplow/browser-plugin-form-tracking x.x.x
@snowplow/browser-tracker-core x.x.x
@snowplow/browser-plugin-ga-cookies x.x.x
@snowplow/browser-plugin-link-click-tracking x.x.x
@snowplow/browser-plugin-timezone x.x.x
@snowplow/browser-tracker x.x.x
@snowplow/tracker-core x.x.x
currency.js x.x.x
jstimezonedetect x.x.x
lodash.partition x.x.x
msw x.x.x
next-with-apollo x.x.x
react-use-websocket x.x.x