cryptokitties.co 148 packages

Last scanned on Jan 19 at 09:03 AM
lodash 4.17.16VulnerableOutdated
Lodash modular utilities.
License
MIT
Footprint
6 KB
Vulnerabilities
Command Injection in lodash
Affected versions >=0 <4.17.21
Regular Expression Denial of Service (ReDoS) in lodash
Affected versions >=0 <4.17.21
Prototype Pollution in lodash
Affected versions >=3.7.0 <4.17.19
Matched Modules
Version distribution in production
3 846
4.17.16
946
4.17.21
337
4.17.20
322
4.17.15
302
4.17.19
301
4.17.13
axios 0.18.1VulnerableOutdated
Promise based HTTP client for the browser and node.js
validator 10.11.0VulnerableOutdated
String validation and sanitization
moment-timezone 0.5.34VulnerableOutdated
Parse and display moments in any timezone.
markdown-it 2.0.0 - 3.1.0VulnerableOutdated
Markdown-it - modern pluggable markdown parser.
html-parse-stringify2 2.0.1Vulnerable
Parses well-formed HTML (meaning all tags closed) into an AST and back. quickly.
es5-ext 0.10.24 - 0.10.62VulnerableOutdated
ECMAScript extensions and shims
debug 2.3.1 - 3.1.0Outdated
Lightweight debugging utility for Node.js and the browser
ms 0.7.2 - 2.0.0Outdated
Tiny millisecond conversion utility
+5
gdborton
matheuss
rauchg
readable-stream 3.5.0 - 3.6.0Outdated
Node.js Streams, a user-land copy of the stream library from Node.js
uuid 7.0.0 - 8.0.0Outdated
RFC4122 (v1, v4, and v5) UUIDs
string_decoder 1.1.0 - 1.3.0
The string_decoder module from Node core
isarray 1.0.0 - 2.0.5
Array#isArray for older browsers
react-is 16.3.0 - 16.13.1Outdated
Brand checking of React Elements.
inherits 2.0.3 - 2.0.4
Browser-friendly inheritance fully compatible with standard node.js inherits()
buffer 4.6.0 - 4.9.2Outdated
Node.js Buffer API, for the browser
entities 1.1.1 - 1.1.2Outdated
Encode & decode XML and HTML entities with ease & speed
@babel/runtime 7.13.6 - 7.13.7Outdated
babel's modular runtime helpers
+1
hzoo
existentialism
nicolo-ribaudo
get-intrinsic 1.0.2 - 1.1.1Outdated
Get and robustly cache all JS language-level intrinsics at first require time
function-bind 1.1.0 - 1.1.1Outdated
Implementation of Function.prototype.bind
path-to-regexp 1.7.0 - 2.2.1Outdated
Express style path to RegExp utility
call-bind 1.0.1 - 1.0.2Outdated
Robustly `.call.bind()` a function
core-util-is 1.0.2 - 1.0.3
The `util.is*` functions introduced in Node v0.12.
has-symbols 1.0.2 - 1.0.3
Determine if the JS environment has Symbol support. Supports spec, or shams.
has-property-descriptors 1.0.0Outdated
Does the environment have full property descriptor support? Handles IE 8's broken defineProperty/gOPD.
base64-js 1.3.0 - 1.5.1
Base64 encoding/decoding in pure JS
define-properties 1.1.3 - 1.1.4Outdated
Define multiple non-enumerable properties at once. Uses `Object.defineProperty` when available; falls back to standard assignment in older engines.
has-tostringtag 1.0.0Outdated
Determine if the JS environment has `Symbol.toStringTag` support. Supports spec, or shams.
events 3.0.0 - 3.3.0
Node's event emitter for all engines.
is-buffer 2.0.0 - 2.0.5
Determine if an object is a Buffer
object-keys 1.1.0 - 1.1.1
An Object.keys replacement, in case Object.keys is not available. From https://github.com/es-shims/es5-shim
regexp.prototype.flags 1.4.2 - 1.4.3Outdated
ES6 spec-compliant RegExp.prototype.flags shim.
core-js 2.6.12Outdated
Standard library
is-regex 1.1.4
Is this value a JS regex? Works cross-realm/iframe, and despite ES6 @@toStringTag
retry 0.12.0Outdated
Abstraction for exponential and custom retry strategies for failed operations.
tim-kos
tim-kos
is-date-object 1.0.5
Is this value a JS Date object? This module works cross-realm/iframe, and despite ES6 @@toStringTag.
util 0.10.0 - 0.12.5
Node.js's util module for all engines
eventemitter3 2.0.0 - 5.0.0Outdated
EventEmitter3 focuses on performance while maintaining a Node.js AND browser compatible interface.
functions-have-names 1.1.1 - 1.2.3
Does this JS environment support the `name` property on functions?
scheduler 0.15.0 - 0.23.0Outdated
Cooperative scheduler for the browser environment.
has 1.0.1 - 1.0.3Outdated
Object.prototype.hasOwnProperty.call shortcut
tarruda
tarruda
prop-types 15.8.0 - 15.8.1
Runtime type checking for React props and similar objects.
is-arguments 1.1.1
Is this an arguments object? It's a harder question than you think.
react 16.13.0 - 17.0.2Outdated
React is a JavaScript library for building user interfaces.
lodash.debounce 4.0.8
The lodash method `_.debounce` exported as a module.
deep-equal 1.1.0 - 1.1.1Outdated
node's assert.deepEqual algorithm
url 0.11.0Outdated
The core `url` packaged standalone for use with Browserify.
minimalistic-assert 1.0.0 - 1.0.1
minimalistic-assert ===
cwmma
indutny
object-is 1.1.0 - 1.1.5Outdated
ES2015-compliant shim for Object.is - differentiates between -0 and +0
html-entities 2.0.4 - 2.3.3Outdated
Fastest HTML entities encode/decode library.
hoist-non-react-statics 3.3.1 - 3.3.2
Copies non-react specific statics from a child component to a parent component
mridgway
mridgway
p-retry 2.0.0Outdated
Retry a promise-returning or async function
@emotion/unitless 0.7.2 - 0.8.0Outdated
An object of css properties that don't accept values with units
+1
emmatown
tkh44
emotion-release-bot
classnames 2.3.0 - 2.3.1Outdated
A simple utility for conditionally joining classNames together
assert 1.0.0 - 1.5.0Outdated
The assert module from Node.js, for the browser.
query-string 5.0.1 - 7.1.3Outdated
Parse and stringify URL query strings
sha.js 2.4.9 - 2.4.11
Streamable SHA hashes in pure javascript
dcousens
ljharb
cwmma
graphql 14.4.0 - 16.6.0Outdated
A Query Language and Runtime which can target any service.
tiny-invariant 0.0.2 - 1.3.1Outdated
A tiny invariant function
hash-base 3.0.4 - 3.1.0
abstract base class for hash-streams
asn1.js 5.2.0 - 5.4.1
ASN.1 encoder and decoder
object.getownpropertydescriptors 2.0.0 - 2.1.5Outdated
ES2017 spec-compliant shim for `Object.getOwnPropertyDescriptors` that works in ES5.
elliptic 6.5.4Outdated
EC cryptography
hash.js 1.1.2 - 1.1.7
Various hash functions that could be run by both browser and node
react-router 5.1.1 - 5.3.4Outdated
Declarative routing for React
lodash-es 4.17.21
Lodash exported as ES modules.
hmac-drbg 1.0.1
Deterministic random bit generator (hmac)
redux 4.0.1Outdated
Predictable state container for JavaScript apps
react-router-dom 5.1.0 - 5.3.4Outdated
Declarative routing for React web applications
react-fast-compare 3.1.0 - 3.2.0Outdated
Fastest deep equal comparison for React. Great for React.memo & shouldComponentUpdate. Also really fast general-purpose deep comparison.
des.js 1.0.1Outdated
DES implementation
md5.js 1.1.0 - 1.3.5
node style md5 on pure JavaScript
pbkdf2 3.1.0 - 3.1.2
This library provides the functionality of PBKDF2 with the ability to use any supported hashing algorithm returned from crypto.getHashes()
cipher-base 1.0.4
abstract base class for crypto-streams
parse-asn1 5.1.6Outdated
utility library for parsing asn1 files for use with browserify-sign.
+2
dcousens
ljharb
cwmma
browserify-sign 2.4.0 - 2.8.0Outdated
adds node crypto signing for browsers
+2
dcousens
ljharb
cwmma
browserify-aes 0.4.0 - 0.8.1Outdated
aes, for browserify
stream-http 2.8.2 - 2.8.3Outdated
Streaming http in the browser
evp_bytestokey 1.0.3
The insecure key derivation algorithm from OpenSSL
timers-browserify 2.0.9Outdated
timers module for browserify
browserify-rsa 4.1.0
RSA for browserify
+2
dcousens
ljharb
cwmma
crypto-browserify 1.0.9 - 2.0.0Outdated
implementation of crypto for the browser
+2
dcousens
ljharb
cwmma
create-ecdh 3.0.0 - 4.0.4
createECDH but browserifiable
public-encrypt 4.0.3
browserify version of publicEncrypt & privateDecrypt
+2
dcousens
ljharb
cwmma
diffie-hellman 1.1.2Outdated
pure js diffie-hellman
browserify-des 1.0.2
browserify-des ===
dcousens
ljharb
cwmma
miller-rabin 1.1.0 - 4.0.1
Miller Rabin algorithm for primality test
randomfill 1.0.0 - 1.0.4
random fill from browserify stand alone
character-entities-legacy 2.0.0Outdated
List of legacy HTML named character references that don’t need a trailing semicolon
querystring-es3 0.2.1
Node's querystring module for all engines. (ES3 compat fork)
filter-obj 1.1.0Outdated
Filter object keys and values into a new object
cookiejar 2.0.2 - 2.1.4
simple persistent cookiejar system
andyburke
bradleymeck
reselect 2.5.4 - 3.0.1Outdated
Selectors for Redux.
react-redux 5.1.0 - 5.1.2Outdated
Official React bindings for Redux
shallowequal 1.0.1 - 1.1.0
Like lodash isEqualWith but for shallow equal.
socket.io-parser 3.3.0 - 3.4.2Outdated
socket.io protocol parser
rauchg
darrachequesne
void-elements 2.0.1Outdated
Array of "void elements" defined by the HTML specification.
@xmldom/xmldom 0.7.0 - 0.8.6Outdated
A pure JavaScript W3C standard-based (XML DOM Level 2 Core) DOMParser and XMLSerializer module.
history 4.0.0 - 4.10.1Outdated
Manage session history with JavaScript
engine.io-parser 2.1.3 - 2.2.1Outdated
Parser for the client for the realtime Engine
rauchg
darrachequesne
split-on-first 1.0.0 - 1.1.0Outdated
Split a string on the first occurance of a given separator
to-arraybuffer 1.0.1
Get an ArrayBuffer from a Buffer as fast as possible
p-is-promise 3.0.0 - 4.0.0
Check if something is a promise
styled-components 5.2.0 - 5.3.6Outdated
CSS for the <Component> Age. Style components your way with speed, strong typing, and flexibility.
copy-to-clipboard 3.3.0 - 3.3.1Outdated
Copy stuff into clipboard using JS with fallbacks
redux-thunk 2.1.0 - 2.4.2Outdated
Thunk middleware for Redux.
toggle-selection 1.0.5 - 1.0.6
Toggle current selected content in browser
react-popper 1.3.1 - 2.3.0
Official library to use Popper on React projects
@emotion/stylis 0.8.1 - 0.8.5
A custom build of Stylis
+1
emmatown
tkh44
emotion-release-bot
popper.js 1.12.6 - 1.16.1
A kickass library to manage your poppers
base64-arraybuffer 0.1.0 - 0.1.4Outdated
Encode/decode base64 data into ArrayBuffers
niklasvh
niklasvh
socket.io-client 2.2.0 - 2.5.0Outdated
Realtime application framework client
engine.io-client 3.4.1 - 3.5.3Outdated
Client for the realtime Engine
rauchg
darrachequesne
is-function 1.0.2
is that thing a function? Use this module to find out
react-i18next 7.8.0 - 7.13.0Outdated
Internationalization for react done right. Using the i18next i18n ecosystem.
@angular/platform-browser 12.0.0 - 12.2.17Outdated
Angular - library for using Angular in a web browser
angular
google-wombot
jss 2.1.0 - 2.2.1Outdated
A lib for generating Style Sheets with JavaScript.
fp-ts 0.2.1 - 2.9.5Outdated
Functional programming in TypeScript
string-convert 0.2.0 - 0.2.1
String convertions
akiran
akiran
json2mq 0.2.0
Generate media query string from JSON or javascript object
akiran
akiran
parse-headers 2.0.3 - 2.0.5
Parse http headers, works with browserify/xhr
react-side-effect 1.2.0 - 2.1.2
Create components whose prop changes map to a global side effect
gud 1.0.0
Create a 'gud nuff' (not cryptographically secure) globally unique id
mini-create-react-context 0.3.2Outdated
Smaller Polyfill for the proposed React context API
yeast 0.1.2
Tiny but linear growing unique id generator
set-immediate-shim 1.0.1Outdated
Simple setImmediate shim
blob 0.0.5 - 0.1.0
Abstracts out Blob and uses BlobBuilder in cases where it is supported with any vendor prefix.
amitport
rase-
i18next-browser-languagedetector 2.2.0 - 3.1.1Outdated
language detector used in browser environment for i18next
after 0.8.1 - 0.8.2
after - tiny flow control
component-bind 1.0.0
function binding utility
arraybuffer.slice 0.0.6 - 0.0.7
Exports a function for slicing ArrayBuffers (no polyfilling)
rase-
rase-
component-inherit 0.0.3
Prototype inheritance utility
coreh
coreh
to-array 0.1.3 - 0.1.4
Turn an array like into an array
raynos
raynos
has-binary2 1.0.3Outdated
A function that takes anything in javascript and returns true if its argument contains binary data.
darrachequesne
darrachequesne
enquire.js 2.1.6
Awesome Media Queries in JavaScript
redux-saga 0.15.0 - 0.15.3Outdated
Saga middleware for Redux to handle Side Effects
react-slick 0.27.11 - 0.28.1Outdated
React port of slick carousel
redux-devtools-extension 2.0.0 - 2.13.9
Wrappers for Redux DevTools Extension.
+1
jhen0409
methuselah96
timdorr
@ethersproject/bytes 5.0.0 - 5.7.0
Bytes utility functions for ethers.
@ethersproject/signing-key 5.0.0 - 5.7.0
Elliptic curve library functions for the secp256k1 curve.
react-spring 5.6.9 - 8.0.27Outdated
<p align="center"> <img src="https://i.imgur.com/QZownhg.png" width="240" /> </p>
email-validator 1.0.4 - 2.0.3Outdated
Provides a fast, pretty robust e-mail validator. Only checks form, not function.
@auth0/auth0-spa-js 2.0.0 - 2.0.2Outdated
Auth0 SDK for Single Page Applications using Authorization Code Grant Flow with PKCE
bootstrap-vue 2.15.0Outdated
With more than 85 components, over 45 available plugins, several directives, and 1000+ icons, BootstrapVue provides one of the most comprehensive implementations of the Bootstrap v4 component and grid system available for Vue.js v2.6, complete with extens
store 2.0.12
A localStorage wrapper for all browsers without using cookies or flash. Uses localStorage, globalStorage, and userData behavior under the hood
marcuswestin
marcuswestin
deepcopy 2.0.0 - 2.1.0
deep copy data
sasaplus1
sasaplus1
react-media 1.10.0
CSS media queries for React
react-click-outside 3.0.1
A component wrapper that provides click outside detection.