cheddar.com 156 packages

Last scanned on Jan 19 at 08:15 AM
lodash 4.17.16VulnerableOutdated
Lodash modular utilities.
License
MIT
Footprint
752 B
Vulnerabilities
Command Injection in lodash
Affected versions >=0 <4.17.21
Regular Expression Denial of Service (ReDoS) in lodash
Affected versions >=0 <4.17.21
Prototype Pollution in lodash
Affected versions >=3.7.0 <4.17.19
Matched Modules
Version distribution in production
3 846
4.17.16
946
4.17.21
337
4.17.20
322
4.17.15
302
4.17.19
301
4.17.13
react 0.13.0 - 0.13.3VulnerableOutdated
React is a JavaScript library for building user interfaces.
trim 0.0.1VulnerableOutdated
Trim string whitespace
moment-timezone 0.5.33VulnerableOutdated
Parse and display moments in any timezone.
markdown-it 2.0.0 - 3.1.0VulnerableOutdated
Markdown-it - modern pluggable markdown parser.
es5-ext 0.10.24 - 0.10.49VulnerableOutdated
ECMAScript extensions and shims
tslib 1.9.3 - 2.0.3Outdated
Runtime library for TypeScript helper functions
readable-stream 2.3.4 - 2.3.7Outdated
Node.js Streams, a user-land copy of the stream library from Node.js
uuid 7.0.0 - 8.0.0Outdated
RFC4122 (v1, v4, and v5) UUIDs
string_decoder 1.1.0 - 1.3.0
The string_decoder module from Node core
isarray 0.0.0 - 2.0.5
Array#isArray for older browsers
react-is 16.3.0 - 16.13.1Outdated
Brand checking of React Elements.
inherits 2.0.3Outdated
Browser-friendly inheritance fully compatible with standard node.js inherits()
qs 6.10.2 - 6.11.0Outdated
A querystring parser that supports nesting and arrays, with a depth limit
buffer 4.6.0 - 4.9.2Outdated
Node.js Buffer API, for the browser
entities 1.1.1 - 1.1.2Outdated
Encode & decode XML and HTML entities with ease & speed
@babel/runtime 7.13.6 - 7.13.7Outdated
babel's modular runtime helpers
+1
hzoo
existentialism
nicolo-ribaudo
get-intrinsic 1.0.2 - 1.1.1Outdated
Get and robustly cache all JS language-level intrinsics at first require time
function-bind 1.1.0 - 1.1.1Outdated
Implementation of Function.prototype.bind
path-to-regexp 1.7.0 - 1.8.0Outdated
Express style path to RegExp utility
axios 0.27.2Outdated
Promise based HTTP client for the browser and node.js
call-bind 1.0.1 - 1.0.2Outdated
Robustly `.call.bind()` a function
object-inspect 1.12.0 - 1.12.1Outdated
string representations of objects in node and the browser
core-util-is 1.0.2 - 1.0.3
The `util.is*` functions introduced in Node v0.12.
has-symbols 1.0.2 - 1.0.3
Determine if the JS environment has Symbol support. Supports spec, or shams.
is-plain-obj 1.1.0Outdated
Check if a value is a plain object
sindresorhus
sindresorhus
side-channel 1.0.4Outdated
Store information about any JS value in a side channel. Uses WeakMap if available.
domutils 1.6.2Outdated
Utilities for working with htmlparser2's dom
base64-js 1.2.0 - 1.2.3Outdated
Base64 encoding/decoding in pure JS
fast-json-stable-stringify 2.0.0 - 2.1.0
deterministic `JSON.stringify()` - a faster version of substack's json-stable-strigify without jsonify
dom-serializer 0.1.0Outdated
render domhandler DOM nodes to a string
domhandler 2.4.0 - 2.4.2Outdated
Handler for htmlparser2 that turns pages into a dom
is-buffer 1.1.4 - 1.1.6Outdated
Determine if an object is a Buffer
domelementtype 1.1.1 - 1.3.1Outdated
all the types of nodes in htmlparser2's dom
core-js 2.5.6Outdated
Standard library
htmlparser2 3.9.1 - 3.9.2Outdated
Fast & forgiving HTML/XML parser
extend 3.0.1Outdated
Port of jQuery.extend for node.js and the browser
has 1.0.1 - 1.0.3Outdated
Object.prototype.hasOwnProperty.call shortcut
tarruda
tarruda
prop-types 15.6.0 - 15.6.1Outdated
Runtime type checking for React props and similar objects.
react-dom 16.2.0 - 16.2.1Outdated
React package for working with the DOM.
json-stringify-safe 5.0.1
Like JSON.stringify, but doesn't blow up on circular refs.
lodash.debounce 4.0.8
The lodash method `_.debounce` exported as a module.
performance-now 0.1.3 - 2.1.0
Implements performance.now (based on process.hrtime).
meryn
meryn
url 0.11.0Outdated
The core `url` packaged standalone for use with Browserify.
lodash.isplainobject 4.0.6
The lodash method `_.isPlainObject` exported as a module.
html-entities 2.0.4 - 2.3.3Outdated
Fastest HTML entities encode/decode library.
repeat-string 1.6.0 - 1.6.1
Repeat the given string n times. Fastest implementation for repeating a string.
hoist-non-react-statics 2.3.0 - 3.3.2
Copies non-react specific statics from a child component to a parent component
mridgway
mridgway
unist-util-is 2.1.0 - 2.1.3Outdated
unist utility to check if a node passes a test
unist-util-visit-parents 1.0.0 - 1.1.2Outdated
unist utility to recursively walk over nodes, with ancestral information
path-browserify 0.0.0 - 0.0.1Outdated
the path module from node core for browsers
promise 7.3.1 - 8.0.1Outdated
Bare bones Promises/A+ implementation
forbeslindesay
then-promise-bot
unist-util-visit 1.3.0 - 1.3.1Outdated
unist utility to visit nodes
lodash.isstring 4.0.1
The lodash method `_.isString` exported as a module.
classnames 2.2.2 - 2.2.6Outdated
A simple utility for conditionally joining classNames together
lodash.camelcase 4.2.0 - 4.3.0
The lodash method `_.camelCase` exported as a module.
query-string 5.0.1 - 5.1.1Outdated
Parse and stringify URL query strings
ua-parser-js 0.7.27Outdated
Detect Browser, Engine, OS, CPU, and Device type/model from User-Agent & Client Hints data. Supports browser & node.js environment
unist-util-stringify-position 1.1.1 - 1.1.2Outdated
unist utility to serialize a node, position, or point as a human readable location
ramda 0.26.0 - 0.27.2Outdated
A practical functional library for JavaScript programmers.
graphql 0.13.0Outdated
A Query Language and Runtime which can target any service.
react-transition-group 2.0.0 - 2.2.1Outdated
A react component toolset for managing animations
dom-helpers 5.0.1 - 5.2.1
tiny modular DOM lib for ie9+
vfile-message 1.0.0 - 2.0.4Outdated
vfile utility to create a virtual message
unified 6.1.5 - 6.1.6Outdated
parse, inspect, transform, and serialize content through syntax trees
vfile 2.1.0 - 4.2.0Outdated
Virtual file format for text processing
winston 0.5.0 - 2.4.7Outdated
A logger for just about everything.
react-router 4.1.0 - 4.3.1Outdated
Declarative routing for React
lodash-es 4.17.3 - 4.17.21
Lodash exported as ES modules.
redux 3.7.1 - 3.7.2Outdated
Predictable state container for JavaScript apps
character-entities 2.0.0 - 2.0.1Outdated
Map of named character references
react-router-dom 4.3.0 - 4.3.1Outdated
Declarative routing for React web applications
remark-parse 5.0.0Outdated
remark plugin to add support for parsing markdown input
stream-http 2.8.0 - 2.8.1Outdated
Streaming http in the browser
timers-browserify 1.4.0 - 2.0.12
timers module for browserify
crypto-browserify 1.0.9 - 2.0.0Outdated
implementation of crypto for the browser
+2
dcousens
ljharb
cwmma
@angular-devkit/core 0.4.0 - 0.4.3Outdated
Angular DevKit - Core Utility Library
parse-entities 1.1.1 - 1.1.2Outdated
Parse HTML character references
character-entities-legacy 2.0.0Outdated
List of legacy HTML named character references that don’t need a trailing semicolon
trough 1.0.3 - 1.0.5Outdated
`trough` is middleware
bail 1.0.0 - 2.0.2
Throw a given error
querystring-es3 0.2.1
Node's querystring module for all engines. (ES3 compat fork)
is-alphabetical 1.0.0 - 2.0.0Outdated
Check if a character is alphabetical
is-decimal 1.0.0 - 2.0.0Outdated
Check if a character is decimal
is-hexadecimal 1.0.0 - 2.0.0Outdated
Check if a character is hexadecimal
character-reference-invalid 2.0.0 - 2.0.1
Map of invalid numeric character references to their replacements, according to HTML
react-redux 5.0.3 - 5.0.7Outdated
Official React bindings for Redux
babel-runtime 6.18.0 - 6.26.0
babel selfContained runtime
hzoo
loganfsmyth
existentialism
shallowequal 1.0.1 - 1.1.0
Like lodash isEqualWith but for shallow equal.
@xmldom/xmldom 0.7.0 - 0.8.6Outdated
A pure JavaScript W3C standard-based (XML DOM Level 2 Core) DOMParser and XMLSerializer module.
history 4.6.3 - 4.7.2Outdated
Manage session history with JavaScript
raf 3.0.0 - 3.1.0Outdated
requestAnimationFrame polyfill for node and the browser
graphql-tag 2.12.2 - 2.12.6
A JavaScript template literal tag that parses GraphQL queries
jnwng
abernix
apollo-bot
replace-ext 0.0.1 - 1.0.0Outdated
Replaces a file extension with another one.
@vue/shared 3.0.0 - 3.2.45Outdated
internal utils shared across @vue packages
to-arraybuffer 1.0.1
Get an ArrayBuffer from a Buffer as fast as possible
redux-thunk 2.1.0 - 2.4.2Outdated
Thunk middleware for Redux.
unist-util-remove-position 1.1.0 - 3.0.0Outdated
unist utility to remove positions from a tree
vfile-location 2.0.0 - 3.0.1Outdated
vfile utility to convert between positional (line and column-based) and offset (range-based) locations
ts-invariant 0.7.0 - 0.7.5Outdated
TypeScript implementation of invariant(condition, message)
zen-observable 0.8.15Outdated
An Implementation of ES Observables
zenparsing
zenparsing
resolve-pathname 2.1.0 - 2.2.0Outdated
Resolve URL pathnames using JavaScript
mjackson
mjackson
value-equal 0.2.1 - 0.3.0Outdated
Are these two JavaScript values equal?
mjackson
mjackson
@wry/equality 0.1.8 - 0.1.11Outdated
Structural equality checking for JavaScript values
benjamn
benjamn
@wry/context 0.4.0 - 0.6.1Outdated
Manage contextual information needed by (a)synchronous tasks without explicitly passing objects around
benjamn
benjamn
optimism 0.10.1 - 0.10.3Outdated
Composable reactive caching with efficient invalidation.
@apollo/client 3.0.0 - 3.7.4Outdated
A fully-featured caching GraphQL client.
react-scripts 0.4.2Outdated
Configuration and scripts for Create React App.
+1
fb
timer
iansu
collapse-white-space 1.0.0 - 2.0.0Outdated
Collapse white space
iterall 1.0.0 - 1.3.0
Minimal zero-dependency utilities for using JavaScript Iterables in all environments.
relay-runtime 1.5.0Outdated
A core runtime for building GraphQL-driven applications.
unherit 1.1.0 - 1.1.3Outdated
Create a subclass that can be modified without affecting the super class
react-markdown 4.0.2 - 4.0.9Outdated
React component to render markdown
formik 1.0.0 - 2.2.9Outdated
Build forms in React, without the tears
trim-trailing-lines 1.1.0 - 1.1.3Outdated
Remove final line feeds from a string
is-whitespace-character 1.0.0 - 2.0.1
Check if a character is a whitespace character
state-toggle 1.0.0 - 2.0.1Outdated
Enter/exit a state
markdown-escapes 1.0.0 - 1.0.4Outdated
Legacy list of escapable characters in markdown
is-word-character 1.0.0 - 2.0.1
Check if a character is a word character
react-onclickoutside 6.2.0 - 6.12.2Outdated
An onClickOutside wrapper for React components
json2mq 0.2.0
Generate media query string from JSON or javascript object
akiran
akiran
string-convert 0.2.0 - 0.2.1
String convertions
akiran
akiran
exenv 1.1.0 - 1.2.2
React's ExecutionEnvironment module extracted for use in other packages & components
react-side-effect 1.1.5Outdated
Create components whose prop changes map to a global side effect
react-helmet 5.2.0 - 5.2.1Outdated
A document head manager for React
apollo-link 1.2.9 - 1.2.14
Flexible, lightweight transport layer for GraphQL
jbaxleyiii
peggyrayzis
apollo-bot
enquire.js 2.1.6
Awesome Media Queries in JavaScript
react-slick 0.29.0Outdated
React port of slick carousel
deep-freeze 0.0.1
recursively Object.freeze() objects and functions
nopersonsmodules
nopersonsmodules
p-throttle 4.1.0 - 5.0.0Outdated
Throttle promise-returning & async functions
react-device-detect 1.10.11 - 2.2.2Outdated
Detect device type and render your component according to it
apollo-link-http-common 0.0.0 - 0.2.16
Http utilities for Apollo Link shared across all links using http
apollo-link-http 1.5.15 - 1.5.17
HTTP transport layer for GraphQL
apollo-bot
apollo-bot
contentful 9.1.10Outdated
Client for Contentful's Content Delivery API
hungryblank
cf-admin
contentful-ecosystem
apollo-cache 1.2.0 - 1.3.5
Core abstract of Caching layer for Apollo Client
+3
apollo-bot
benjamn
jbaxleyiii
apollo-link-error 1.1.8 - 1.1.13
Error Apollo Link for GraphQL Network Stack
apollo-bot
apollo-bot
contentful-resolve-response 1.2.2 - 1.3.12Outdated
[![npm](https://img.shields.io/npm/v/contentful-resolve-response.svg)](https://www.npmjs.com/package/contentful-resolve-response)
+1
hungryblank
zcei
cf-admin
apollo-client 0.5.19 - 2.6.10
A simple yet functional GraphQL client.
html-to-react 1.3.1 - 1.4.1Outdated
A lightweight library that converts raw HTML to a React DOM structure.
apollo-cache-inmemory 1.0.0 - 1.6.6
Core abstract of Caching layer for Apollo Client
+1
apollo-bot
benjamn
jbaxleyiii
next-seo 4.5.0 - 4.6.0Outdated
SEO plugin for Next.js projects
mdast-add-list-metadata 1.0.1 - 1.1.0
Enhances the metadata of list and listItem nodes
bootstrap-vue 1.0.0 - 2.15.0Outdated
With more than 85 components, over 45 available plugins, several directives, and 1000+ icons, BootstrapVue provides one of the most comprehensive implementations of the Bootstrap v4 component and grid system available for Vue.js v2.6, complete with extens
react-loadable 5.2.0 - 5.5.0
A higher order component for loading components with promises
miksu
thejameskyle
react-html-parser 2.0.2
Parse HTML into React components
deepcopy 2.0.0 - 2.1.0
deep copy data
sasaplus1
sasaplus1
@contentful/rich-text-html-renderer 15.9.1 - 15.13.1Outdated
HTML renderer for the Contentful rich text field type.
+1
michaelpearce
it-internal
whydah-gally
react-relay 1.5.0Outdated
A framework for building GraphQL-driven React applications.
react-apollo 2.4.1 - 2.5.8Outdated
React Apollo Hooks, Components, and HOC.
react-scrolllock 5.0.0 - 5.0.1
Prevent scroll on the body when component is mounted.
@stimulus/core 0.6.0Outdated
Stimulus JavaScript framework: Core library
dhh
dhh
lottie-api 1.0.0 - 1.0.2Outdated
A library to edit lottie-web animations dynamically
airnan
airnan
web-speech-cognitive-services 4.0.0Outdated
Polyfill Web Speech API with Cognitive Services Speech-to-Text service
feathers-commons 0.8.5 - 0.8.7
Shared Feathers utility functions
tg-core-components 0.0.36 - 0.0.50Outdated
tg-core-components
+4
albinadolfsson
codebetniklas
sebost
relay-query-lookup-renderer 2.0.0 - 3.0.2Outdated
Same as Relay Modern's QueryRenderer, but will check the store for data before fetching.
robrichard
robrichard