d.pr 97 packages

Last scanned on Jan 19 at 10:01 AM
lodash 4.17.16VulnerableOutdated
Lodash modular utilities.
License
MIT
Footprint
1 KB
Vulnerabilities
Command Injection in lodash
Affected versions >=0 <4.17.21
Regular Expression Denial of Service (ReDoS) in lodash
Affected versions >=0 <4.17.21
Prototype Pollution in lodash
Affected versions >=3.7.0 <4.17.19
Matched Modules
Version distribution in production
3 846
4.17.16
946
4.17.21
337
4.17.20
322
4.17.15
302
4.17.19
301
4.17.13
axios 0.17.1 - 0.18.0VulnerableOutdated
Promise based HTTP client for the browser and node.js
elliptic 6.3.1 - 6.4.1VulnerableOutdated
EC cryptography
validator 10.8.0VulnerableOutdated
String validation and sanitization
markdown-it 2.0.0 - 3.1.0VulnerableOutdated
Markdown-it - modern pluggable markdown parser.
es5-ext 0.10.24 - 0.10.49VulnerableOutdated
ECMAScript extensions and shims
supports-color 1.1.0Outdated
Detect whether a terminal supports color
readable-stream 2.3.4 - 2.3.7Outdated
Node.js Streams, a user-land copy of the stream library from Node.js
string_decoder 1.1.0 - 1.3.0
The string_decoder module from Node core
isarray 0.0.0 - 2.0.5
Array#isArray for older browsers
react-is 16.3.0 - 16.13.1Outdated
Brand checking of React Elements.
inherits 2.0.3Outdated
Browser-friendly inheritance fully compatible with standard node.js inherits()
buffer 4.6.0 - 4.9.2Outdated
Node.js Buffer API, for the browser
entities 1.1.1 - 1.1.2Outdated
Encode & decode XML and HTML entities with ease & speed
@babel/runtime 7.0.0 - 7.5.5Outdated
babel's modular runtime helpers
+1
hzoo
existentialism
nicolo-ribaudo
path-to-regexp 1.7.0 - 1.8.0Outdated
Express style path to RegExp utility
core-util-is 1.0.2 - 1.0.3
The `util.is*` functions introduced in Node v0.12.
base64-js 1.3.0 - 1.5.1
Base64 encoding/decoding in pure JS
events 3.0.0 - 3.3.0
Node's event emitter for all engines.
is-buffer 1.1.4 - 1.1.6Outdated
Determine if an object is a Buffer
deepmerge 4.2.2Outdated
A library for deep (recursive) merging of Javascript objects
core-js 2.6.9Outdated
Standard library
util 0.10.0 - 0.12.5
Node.js's util module for all engines
scheduler 0.9.0 - 0.14.0Outdated
Cooperative scheduler for the browser environment.
pako 1.0.6 - 1.0.11Outdated
zlib port to javascript - fast, modularized, with browser support
prop-types 15.7.0 - 15.7.2Outdated
Runtime type checking for React props and similar objects.
react 16.8.6Outdated
React is a JavaScript library for building user interfaces.
url 0.11.0Outdated
The core `url` packaged standalone for use with Browserify.
lodash.isplainobject 4.0.6
The lodash method `_.isPlainObject` exported as a module.
minimalistic-assert 1.0.0 - 1.0.1
minimalistic-assert ===
cwmma
indutny
html-entities 2.0.4 - 2.3.3Outdated
Fastest HTML entities encode/decode library.
hoist-non-react-statics 2.5.1 - 3.3.2
Copies non-react specific statics from a child component to a parent component
mridgway
mridgway
path-browserify 0.0.0 - 0.0.1Outdated
the path module from node core for browsers
classnames 2.2.6Outdated
A simple utility for conditionally joining classNames together
assert 1.0.0 - 1.5.0Outdated
The assert module from Node.js, for the browser.
query-string 5.0.1 - 5.1.1Outdated
Parse and stringify URL query strings
sha.js 2.4.9 - 2.4.11
Streamable SHA hashes in pure javascript
dcousens
ljharb
cwmma
pascalcase 0.1.1Outdated
Convert a string to pascal case (upper camelcase).
browserify-zlib 0.2.0
Full zlib module for the browser
stack-trace 0.0.10Outdated
Get v8 stack traces as an array of CallSite objects.
+3
felixge
sebastianhoitz
tim-smart
asn1.js 4.6.0 - 4.10.1Outdated
ASN.1 encoder and decoder
hash-base 3.0.4 - 3.1.0
abstract base class for hash-streams
winston 2.4.2 - 2.4.7Outdated
A logger for just about everything.
memoize-one 5.2.0 - 5.2.1Outdated
A memoization library which only remembers the latest invocation
hash.js 1.1.2 - 1.1.7
Various hash functions that could be run by both browser and node
react-router 4.3.0 - 4.3.1Outdated
Declarative routing for React
hmac-drbg 1.0.1
Deterministic random bit generator (hmac)
react-fast-compare 2.0.4 - 3.2.0Outdated
Fastest deep equal comparison for React. Great for React.memo & shouldComponentUpdate. Also really fast general-purpose deep comparison.
des.js 1.0.0Outdated
DES implementation
md5.js 1.1.0 - 1.3.5
node style md5 on pure JavaScript
pbkdf2 3.0.16 - 3.0.17Outdated
This library provides the functionality of PBKDF2 with the ability to use any supported hashing algorithm returned from crypto.getHashes()
cipher-base 1.0.4
abstract base class for crypto-streams
parse-asn1 5.1.4 - 5.1.5Outdated
utility library for parsing asn1 files for use with browserify-sign.
+2
dcousens
ljharb
cwmma
browserify-sign 2.4.0 - 2.8.0Outdated
adds node crypto signing for browsers
+2
dcousens
ljharb
cwmma
browserify-aes 0.4.0 - 0.8.1Outdated
aes, for browserify
stream-http 2.8.2 - 2.8.3Outdated
Streaming http in the browser
evp_bytestokey 1.0.3
The insecure key derivation algorithm from OpenSSL
timers-browserify 2.0.9Outdated
timers module for browserify
browserify-rsa 3.0.0 - 4.0.1Outdated
RSA for browserify
+2
dcousens
ljharb
cwmma
create-ecdh 3.0.0 - 4.0.4
createECDH but browserifiable
public-encrypt 4.0.3
browserify version of publicEncrypt & privateDecrypt
+2
dcousens
ljharb
cwmma
diffie-hellman 1.1.2Outdated
pure js diffie-hellman
browserify-des 1.0.2
browserify-des ===
dcousens
ljharb
cwmma
miller-rabin 1.1.0 - 4.0.1
Miller Rabin algorithm for primality test
randomfill 1.0.0 - 1.0.4
random fill from browserify stand alone
vm-browserify 0.0.1 - 1.1.2
vm module for the browser
mdurl 1.0.0 - 1.0.1Outdated
URL utilities for markdown-it
vitaly
vitaly
character-entities-legacy 2.0.0Outdated
List of legacy HTML named character references that don’t need a trailing semicolon
querystring-es3 0.2.1
Node's querystring module for all engines. (ES3 compat fork)
babel-runtime 6.18.0 - 6.26.0
babel selfContained runtime
hzoo
loganfsmyth
existentialism
shallowequal 1.0.1 - 1.1.0
Like lodash isEqualWith but for shallow equal.
@xmldom/xmldom 0.7.0 - 0.8.6Outdated
A pure JavaScript W3C standard-based (XML DOM Level 2 Core) DOMParser and XMLSerializer module.
history 4.6.3 - 4.10.1Outdated
Manage session history with JavaScript
md5 2.2.1 - 2.3.0
js function for hashing messages with MD5
coolaj86
pvorb
crypt 0.0.0 - 0.0.2
utilities for encryption and hashing
pvorb
pvorb
charenc 0.0.0 - 0.0.2
character encoding utilities
pvorb
pvorb
to-arraybuffer 1.0.1
Get an ArrayBuffer from a Buffer as fast as possible
p-is-promise 3.0.0 - 4.0.0
Check if something is a promise
libphonenumber-js 1.9.2 - 1.9.5Outdated
A simpler (and smaller) rewrite of Google Android's libphonenumber library in javascript
js-base64 2.4.9Outdated
Yet another Base64 transcoder in pure-JS
dankogai
dankogai
attr-accept 1.1.3Outdated
JavaScript implementation of the "accept" attribute for HTML5 <input type="file">
react-markdown 2.5.0 - 2.5.1Outdated
React component to render markdown
fp-ts 2.6.6 - 2.9.5Outdated
Functional programming in TypeScript
react-side-effect 1.2.0Outdated
Create components whose prop changes map to a global side effect
react-helmet 5.2.0 - 5.2.1Outdated
A document head manager for React
select 1.1.2
Programmatically select the text of a HTML element
delegate 3.2.0
Lightweight event delegation
good-listener 1.1.0 - 1.2.2
A more versatile way of adding & removing event listeners
load-script 1.0.0 - 2.0.0
Dynamic script loading for browser
react-virtualized 9.19.0 - 9.21.1Outdated
React components for efficiently rendering large, scrollable lists and tabular data
react-player 2.9.0Outdated
A React component for playing a variety of URLs, including file paths, YouTube, Facebook, Twitch, SoundCloud, Streamable, Vimeo, Wistia and DailyMotion
react-phone-number-input 3.2.1 - 3.2.10Outdated
Telephone number input React component
bootstrap-vue 1.0.0 - 2.15.0Outdated
With more than 85 components, over 45 available plugins, several directives, and 1000+ icons, BootstrapVue provides one of the most comprehensive implementations of the Bootstrap v4 component and grid system available for Vue.js v2.6, complete with extens
raven-js 3.27.0 - 3.27.2
JavaScript client for Sentry
react-collapsible 2.6.0 - 2.8.1Outdated
React component to wrap content in Collapsible element with trigger to open and close.
react-click-outside 3.0.1
A component wrapper that provides click outside detection.
lottie-api 1.0.0 - 1.0.2Outdated
A library to edit lottie-web animations dynamically
airnan
airnan