About
Community
dashlane.com
84 packages
Last scanned on Jan 9 at 02:37 PM
Update
Name
Size
Popularity
Severity
lodash
4.17.16
Vulnerable
Outdated
Lodash modular utilities.
Script
https://d38muu3h4xeqr1.cloudfront.net/website/static/DG-7883/5302dea2681c991a62c8d339a235a2c4bef59487-17a64792f5f6d375d76e.js
https://d38muu3h4xeqr1.cloudfront.net/website/static/DG-7883/0b38c95134c57bd899effe8e561c7c4df6574f98-2c999214032ba11f3cb1.js
https://d38muu3h4xeqr1.cloudfront.net/website/static/DG-7883/4df01e481074d1b14ee219bad68a6e49ceb7e460-d87d2c29212f0b77fad4.js
License
MIT
Footprint
5 KB
Vulnerabilities
High
GHSA-35jh-r3h4-6jhm
Command Injection in lodash
Affected versions >=0 <4.17.21
Moderate
GHSA-29mw-wpgm-hmr9
Regular Expression Denial of Service (ReDoS) in lodash
Affected versions >=0 <4.17.21
High
GHSA-p6mc-m468-83gw
Prototype Pollution in lodash
Affected versions >=3.7.0 <4.17.19
Matched Modules
Version distribution in production
3 846
4.17.16
946
4.17.21
337
4.17.20
322
4.17.15
302
4.17.19
301
4.17.13
Also used on 4830 websites
skype.com
20 packages
sentry.io
157 packages
pinterest.com
56 packages
pinimg.com
52 packages
Repository
Homepage
More
modules
stdlib
util
readable-stream
3.6.0
Outdated
Node.js Streams, a user-land copy of the stream library from Node.js
readable
stream
pipe
string_decoder
1.1.0 - 1.3.0
The string_decoder module from Node core
string
decoder
browser
browserify
+1
isarray
0.0.0 - 2.0.5
Array#isArray for older browsers
browser
isarray
array
juliangruber
react-is
16.3.0 - 16.13.1
Outdated
Brand checking of React Elements.
react
+1
camelcase
5.3.1
Outdated
Convert a dash/dot/underscore/space separated string to camelCase or PascalCase: `foo-bar` → `fooBar`
camelcase
camel-case
camel
case
dash
+9
sindresorhus
inherits
2.0.4
Browser-friendly inheritance fully compatible with standard node.js inherits()
inheritance
class
klass
oop
object-oriented
+3
isaacs
buffer
5.7.0 - 6.0.3
Node.js Buffer API, for the browser
arraybuffer
browser
browserify
buffer
compatible
+2
feross
@babel/runtime
7.18.2 - 7.20.0
Outdated
babel's modular runtime helpers
+1
core-util-is
1.0.2 - 1.0.3
The `util.is*` functions introduced in Node v0.12.
util
isBuffer
isArray
isNumber
isString
+4
isaacs
base64-js
1.3.0 - 1.5.1
Base64 encoding/decoding in pure JS
base64
domhandler
5.0.0 - 5.0.3
Handler for htmlparser2 that turns pages into a dom
dom
htmlparser2
feedic
buffer-from
0.1.2 - 1.1.1
Outdated
A [ponyfill](https://ponyfill.com) for `Buffer.from`, uses native implementation if available.
buffer
buffer from
linusu
events
3.0.0 - 3.3.0
Node's event emitter for all engines.
events
eventEmitter
eventDispatcher
listeners
deepmerge
4.2.2
Outdated
A library for deep (recursive) merging of Javascript objects
merge
deep
extend
copy
clone
+1
tehshrike
domelementtype
2.2.0 - 2.3.0
all the types of nodes in htmlparser2's dom
dom
element
types
htmlparser2
feedic
escape-html
1.0.3
Escape string for use in HTML
escape
html
utility
dougwilson
scheduler
0.15.0 - 0.23.0
Cooperative scheduler for the browser environment.
react
+1
prop-types
15.8.0 - 15.8.1
Runtime type checking for React props and similar objects.
react
react
17.0.0 - 17.0.2
Outdated
React is a JavaScript library for building user interfaces.
react
+1
date-fns
2.29.3
Outdated
Modern JavaScript date utility library
kossnocorp
minimalistic-assert
1.0.0 - 1.0.1
minimalistic-assert ===
hoist-non-react-statics
3.3.1 - 3.3.2
Copies non-react specific statics from a child component to a parent component
react
mridgway
sha.js
2.4.9 - 2.4.11
Streamable SHA hashes in pure javascript
@emotion/serialize
1.0.2 - 1.1.1
Outdated
serialization utils for emotion
+1
@emotion/utils
1.0.0 - 1.2.0
Outdated
internal utils for emotion
+1
asn1.js
5.2.0 - 5.4.1
ASN.1 encoder and decoder
asn.1
der
hash-base
3.0.4 - 3.1.0
abstract base class for hash-streams
hash
stream
+1
elliptic
6.5.4
Outdated
EC cryptography
EC
Elliptic
curve
Cryptography
indutny
hash.js
1.1.2 - 1.1.7
Various hash functions that could be run by both browser and node
hash
sha256
sha224
hmac
indutny
hmac-drbg
1.0.1
Deterministic random bit generator (hmac)
hmac
drbg
prng
indutny
@storybook/theming
6.5.0 - 6.5.13
Outdated
Core Storybook Components
storybook
+6
lodash-es
4.17.21
Lodash exported as ES modules.
es6
modules
stdlib
util
react-fast-compare
2.0.4 - 3.2.0
Outdated
Fastest deep equal comparison for React. Great for React.memo & shouldComponentUpdate. Also really fast general-purpose deep comparison.
fast
equal
react
compare
shouldComponentUpdate
+1
+12
des.js
1.0.1
Outdated
DES implementation
DES
3DES
EDE
CBC
indutny
md5.js
1.1.0 - 1.3.5
node style md5 on pure JavaScript
crypto
md5
+2
pbkdf2
3.1.0 - 3.1.1
Outdated
This library provides the functionality of PBKDF2 with the ability to use any supported hashing algorithm returned from crypto.getHashes()
pbkdf2
kdf
salt
hash
+3
parse-asn1
5.1.6
Outdated
utility library for parsing asn1 files for use with browserify-sign.
+2
cipher-base
1.0.4
abstract base class for crypto-streams
cipher
stream
browserify-sign
2.4.0 - 2.8.0
Outdated
adds node crypto signing for browsers
+2
browserify-aes
0.4.0 - 0.8.1
Outdated
aes, for browserify
aes
crypto
browserify
+2
evp_bytestokey
1.0.3
The insecure key derivation algorithm from OpenSSL
crypto
openssl
browserify-rsa
4.1.0
RSA for browserify
+2
create-ecdh
3.0.0 - 4.0.4
createECDH but browserifiable
diffie
hellman
diffiehellman
ECDH
+2
public-encrypt
4.0.3
browserify version of publicEncrypt & privateDecrypt
+2
diffie-hellman
1.1.2
Outdated
pure js diffie-hellman
diffie
hellman
diffiehellman
dh
+2
browserify-des
1.0.2
browserify-des ===
miller-rabin
1.1.0 - 4.0.1
Miller Rabin algorithm for primality test
prime
miller-rabin
bignumber
randomfill
1.0.0 - 1.0.4
random fill from browserify stand alone
crypto
random
@emotion/react
11.0.0 - 11.10.5
Outdated
> Simple styling in React.
+1
polished
3.0.0 - 3.4.4
Outdated
A lightweight toolset for writing styles in Javascript.
styled-components
polished
emotion
glamor
css-in-js
+9
style-to-object
0.2.3 - 0.3.0
Outdated
Parse CSS inline style to JavaScript object.
style-to-object
inline
style
parser
css
+2
remarkablemark
toposort
2.0.2
Topological sort of directed ascyclic graphs (like dependecy lists)
topological
sort
sorting
graphs
graph
+4
marcelklehr
inline-style-parser
0.1.0 - 0.1.1
Outdated
An inline style parser.
inline-style-parser
inline-style
style
parser
css
remarkablemark
react-remove-scroll
2.1.0 - 2.5.5
Outdated
Disables scroll outside of `children` node.
scroll
kashey
copy-to-clipboard
3.3.2
Outdated
Copy stuff into clipboard using JS with fallbacks
clipboard
copy
browser
sudodoki
property-expr
2.0.5
Outdated
tiny util for getting and setting deep object props safely
expr
expression
setter
getter
deep
+3
monastic.panic
toggle-selection
1.0.5 - 1.0.6
Toggle current selected content in browser
selection
toggle
browser
deselect
sudodoki
date-fns-tz
1.3.0 - 1.3.7
Outdated
Time zone support for date-fns v3 with the Intl API
date-fns
timezone
time zone
date
time
+3
marnusw
formik
2.1.5 - 2.2.9
Outdated
Build forms in React, without the tears
formik
form
forms
react
react-dom
+7
jaredpalmer
fp-ts
2.6.6 - 2.9.5
Outdated
Functional programming in TypeScript
typescript
algebraic-data-types
functional-programming
gcanti
faker
2.0.1 - 2.1.5
Outdated
Generate massive amounts of fake contextual data
marak
react-side-effect
2.1.0 - 2.1.2
Create components whose prop changes map to a global side effect
react
component
side
effect
react-helmet
6.0.0 - 6.1.0
A document head manager for React
react-helmet
nfl
react
document
head
+7
+2
@datadog/browser-rum-core
3.5.0 - 4.23.2
Outdated
Datadog browser RUM core utilities.
datadog
html-react-parser
1.4.5 - 3.0.4
Outdated
HTML to React parser.
html-react-parser
html
react
parser
dom
remarkablemark
react-property
2.0.0
Outdated
HTML and SVG DOM property configs used by React.
react-property
html
svg
dom
property
+4
remarkablemark
style-to-js
1.1.1
Outdated
Parses CSS inline style to JavaScript object (camelCased).
style-to-js
css
style
javascript
object
+1
remarkablemark
react-device-detect
1.8.6 - 1.12.1
Outdated
Detect device type and render your component according to it
useragent
mobile
phone
tablet
detect
+7
duskload
diacritics
1.2.0 - 1.3.0
remove diacritics from strings
diacritics
remove
removal
search
string
superjoe
i18n-iso-countries
3.0.0 - 7.5.0
Outdated
i18n for ISO 3166-1 country codes
i18n
iso
3166
iso 3166
iso 3166-1
+84
@chakra-ui/theme
2.1.0 - 2.1.3
Outdated
The default theme for chakra components
theme
theming
ui mode
ui
react-loading-skeleton
3.1.0
Outdated
Make beautiful, animated loading skeletons that automatically adapt to your app.
react
loading
skeleton
progress
spinner
dvtng
webfontloader
1.6.18 - 1.6.28
Web Font Loader gives you added control when using linked fonts via @font-face.
web
fonts
webfonts
font
loader
+1
react-final-form
6.5.4
Outdated
🏁 High performance subscription-based form state management for React
erikras
gatsby
4.24.0 - 4.24.5
Outdated
Blazing fast modern site generator for React
blog
generator
jekyll
markdown
react
+2
+10
gatsby-react-router-scroll
4.4.0 - 5.24.0
Outdated
React Router scroll management forked from https://github.com/ytase/react-router-scroll for Gatsby
gatsby
+10
@gatsbyjs/reach-router
1.3.5 - 1.3.9
Outdated
Gatsby's fork to modernize reach-router
react
reach router
gatsby
+6
gatsby-script
1.6.0 - 1.9.0
Outdated
An enhanced script component for Gatsby sites with support for various loading strategies
gatsby
+9
gatsby-plugin-image
2.14.0 - 2.24.0
Outdated
Adding responsive images to your site while maintaining high performance scores can be difficult to do manually. The Gatsby Image plugin handles the hard parts of producing images in multiple sizes and formats for you!
gatsby
gatsby-plugin
+3
@theme-ui/css
0.9.0 - 0.14.7
Outdated
[![Minified Size on Bundlephobia](https://badgen.net/bundlephobia/minzip/@theme-ui/css)](https://bundlephobia.com/package/@theme-ui/css)
+1
@theme-ui/core
0.9.0 - 0.14.7
Outdated
[![Minified Size on Bundlephobia](https://badgen.net/bundlephobia/minzip/@theme-ui/core)](https://bundlephobia.com/package/@theme-ui/core)
+1
@tannin/plural-forms
1.0.0 - 1.1.0
Compiles a function to compute the plural forms index for a given value
aduth
@theme-ui/parse-props
0.6.0 - 0.14.7
Internal package — You don't want to consume this directly.
+1
Popular search queries
webpack.js.org
url
react-scripts
react
lottie-api
react-helmet-async
+7 packages
github.com
color-convert
@headlessui/react
hoist-non-react-statics
reactstrap
lit-html
+60 packages
pinterest.com
lodash
relay-runtime
react-relay
react-use
lodash-es
+51 packages
Popular packages
react
React is a JavaScript library for building user interfaces.
+6 634 websites
core-js
Standard library
+10 238 websites
es5-ext
ECMAScript extensions and shims
+10 229 websites
@babel/runtime
babel's modular runtime helpers
+8 352 websites
lodash
Lodash modular utilities.
+4 826 websites
axios
Promise based HTTP client for the browser and node.js
+4 742 websites