diy.org 217 packages

Last scanned on Jan 19 at 04:42 PM
lodash 4.17.11VulnerableOutdated
Lodash modular utilities.
License
MIT
Footprint
51 KB
Vulnerabilities
Prototype Pollution in lodash
Affected versions >=0 <4.17.12
Command Injection in lodash
Affected versions >=0 <4.17.21
Regular Expression Denial of Service (ReDoS) in lodash
Affected versions >=0 <4.17.21
Prototype Pollution in lodash
Affected versions >=3.7.0 <4.17.19
Matched Modules
Version distribution in production
3 846
4.17.16
946
4.17.21
337
4.17.20
322
4.17.15
302
4.17.19
232
4.17.11
moment 2.19.0 - 2.25.1VulnerableOutdated
Parse, validate, manipulate, and display dates
superagent 3.5.1 - 3.5.2VulnerableOutdated
elegant & feature rich browser / node HTTP with a fluent API
next 6.0.0 - 6.0.3VulnerableOutdated
The React Framework
rauchg
timneutkens
vercel-release-bot
es5-ext 0.10.24 - 0.10.49VulnerableOutdated
ECMAScript extensions and shims
tslib 1.10.0Outdated
Runtime library for TypeScript helper functions
readable-stream 2.3.6Outdated
Node.js Streams, a user-land copy of the stream library from Node.js
safe-buffer 5.1.1 - 5.1.2Outdated
Safer Node.js Buffer API
string_decoder 1.1.0 - 1.3.0
The string_decoder module from Node core
isarray 0.0.0 - 0.0.1Outdated
Array#isArray for older browsers
react-is 16.8.6Outdated
Brand checking of React Elements.
punycode 1.4.1Outdated
A robust Punycode converter that fully complies to RFC 3492 and RFC 5891, and works on nearly all JavaScript platforms.
inherits 1.0.1 - 2.0.3Outdated
Browser-friendly inheritance fully compatible with standard node.js inherits()
qs 6.4.0Outdated
A querystring parser that supports nesting and arrays, with a depth limit
buffer 4.9.1Outdated
Node.js Buffer API, for the browser
regenerator-runtime 0.13.2 - 0.13.3Outdated
Runtime for Regenerator-compiled generator and async functions.
@babel/runtime 7.0.0 - 7.18.0Outdated
babel's modular runtime helpers
+1
hzoo
existentialism
nicolo-ribaudo
path-to-regexp 1.7.0Outdated
Express style path to RegExp utility
core-util-is 1.0.2Outdated
The `util.is*` functions introduced in Node v0.12.
isobject 3.0.1Outdated
Returns true if the value is an object and not an array or null.
ieee754 1.1.9 - 1.1.13Outdated
Read/write IEEE754 floating point numbers from/to a Buffer or array-like object
is-plain-object 2.0.2 - 2.0.4Outdated
Returns true if an object was created by the `Object` constructor, or Object.create(null).
util-deprecate 1.0.2
The Node.js `util.deprecate()` function with browser support
object-assign 4.1.1
ES2015 `Object.assign()` ponyfill
base64-js 1.2.3Outdated
Base64 encoding/decoding in pure JS
fast-json-stable-stringify 2.0.0 - 2.1.0
deterministic `JSON.stringify()` - a faster version of substack's json-stable-strigify without jsonify
events 1.1.1Outdated
Node's event emitter for all engines.
deepmerge 3.3.0 - 4.0.0Outdated
A library for deep (recursive) merging of Javascript objects
process-nextick-args 2.0.0Outdated
process.nextTick but always with args
cwmma
cwmma
core-js 2.6.9Outdated
Standard library
util 0.10.2 - 0.10.4Outdated
Node.js's util module for all engines
scheduler 0.13.6Outdated
Cooperative scheduler for the browser environment.
prop-types 15.7.0 - 15.7.2Outdated
Runtime type checking for React props and similar objects.
react 16.8.1Outdated
React is a JavaScript library for building user interfaces.
process 0.11.10
process information for node.js and browsers
react-dom 16.8.6Outdated
React package for working with the DOM.
performance-now 2.0.0 - 2.1.0
Implements performance.now (based on process.hrtime).
meryn
meryn
component-emitter 1.2.1Outdated
Simple event emitter
dayjs 1.11.1Outdated
2KB immutable date time library alternative to Moment.js with the same modern API
immutable 3.8.2Outdated
Immutable Data Collections
setimmediate 1.0.5
A shim for the setImmediate efficient script yielding API
domenic
domenic
@emotion/memoize 0.6.6 - 0.7.4Outdated
emotion's memoize utility
+1
emmatown
tkh44
emotion-release-bot
hoist-non-react-statics 3.3.0Outdated
Copies non-react specific statics from a child component to a parent component
mridgway
mridgway
invariant 2.2.3 - 2.2.4
invariant
@emotion/unitless 0.7.2 - 0.7.5Outdated
An object of css properties that don't accept values with units
+1
emmatown
tkh44
emotion-release-bot
classnames 2.2.2 - 2.2.5Outdated
A simple utility for conditionally joining classNames together
stylis 3.5.4Outdated
A Light–weight CSS Preprocessor
andarist
thysultan
symbol-observable 1.1.0 - 1.2.0Outdated
Symbol.observable ponyfill
@emotion/is-prop-valid 0.8.1 - 0.8.3Outdated
A function to check whether a prop is valid for HTML and SVG elements
+1
emmatown
tkh44
emotion-release-bot
lodash.get 4.4.2
The lodash method `_.get` exported as a module.
@emotion/hash 0.6.6 - 0.7.4Outdated
A MurmurHash2 implementation
+1
emmatown
tkh44
emotion-release-bot
graphql 14.2.1Outdated
A Query Language and Runtime which can target any service.
react-transition-group 2.3.1Outdated
A react component toolset for managing animations
dom-helpers 3.3.1Outdated
tiny modular DOM lib for ie9+
stream-browserify 1.0.0 - 2.0.2Outdated
the stream module from node core for browsers
@emotion/serialize 0.11.7 - 0.11.8Outdated
serialization utils for emotion
+1
emmatown
tkh44
emotion-release-bot
bowser 1.6.0 - 1.6.1Outdated
Lightweight browser detector
tiny-invariant 1.0.2 - 1.0.6Outdated
A tiny invariant function
@emotion/utils 0.11.0 - 0.11.3Outdated
internal utils for emotion
+1
emmatown
tkh44
emotion-release-bot
object.getownpropertydescriptors 2.0.0 - 2.1.5Outdated
ES2017 spec-compliant shim for `Object.getOwnPropertyDescriptors` that works in ES5.
memoize-one 5.2.1Outdated
A memoization library which only remembers the latest invocation
@emotion/cache 10.0.9 - 10.0.15Outdated
emotion's cache
+1
emmatown
tkh44
emotion-release-bot
react-router 5.0.1Outdated
Declarative routing for React
@emotion/sheet 0.9.1 - 0.9.4Outdated
emotion's stylesheet
+1
emmatown
tkh44
emotion-release-bot
is-promise 2.1.0Outdated
Test whether an object looks like a promises-a+ promise
forbeslindesay
then-bot
@emotion/weak-memoize 0.2.1 - 0.2.5Outdated
A memoization function that uses a WeakMap
+1
emmatown
tkh44
emotion-release-bot
lodash-es 4.17.3 - 4.17.21
Lodash exported as ES modules.
redux 3.7.1 - 3.7.2Outdated
Predictable state container for JavaScript apps
react-router-dom 5.0.1Outdated
Declarative routing for React web applications
react-fast-compare 2.0.4Outdated
Fastest deep equal comparison for React. Great for React.memo & shouldComponentUpdate. Also really fast general-purpose deep comparison.
warning 2.0.0 - 3.0.0Outdated
A mirror of Facebook's Warning
timers-browserify 2.0.6Outdated
timers module for browserify
js-cookie 2.1.4Outdated
A simple, lightweight JavaScript API for handling cookies
react-redux 7.1.0Outdated
Official React bindings for Redux
shallowequal 1.1.0
Like lodash isEqualWith but for shallow equal.
fbjs 0.8.16 - 0.8.18Outdated
A collection of utility libraries used by other Facebook JS projects
+5
zpao
eliwhite
yungsters
history 4.9.0Outdated
Manage session history with JavaScript
raf 3.4.0 - 3.4.1
requestAnimationFrame polyfill for node and the browser
graphql-tag 2.1.0 - 2.9.0Outdated
A JavaScript template literal tag that parses GraphQL queries
jnwng
abernix
apollo-bot
debounce 1.2.0 - 1.2.1Outdated
Delay function calls until a set time elapses after the last invocation
react-lifecycles-compat 3.0.4
Backwards compatibility polyfill for React class components
fb
sophiebits
resize-observer-polyfill 1.5.1
A polyfill for the Resize Observer API
is-what 3.14.1Outdated
JS type check (TypeScript supported) functions like `isPlainObject() isArray()` etc. A simple & small integration.
p-is-promise 3.0.0 - 4.0.0
Check if something is a promise
styled-components 4.4.1Outdated
CSS for the <Component> Age. Style components your way with speed, strong typing, and flexibility.
es6-error 4.0.1 - 4.1.1
Easily-extendable error for use with ES6 classes
redux-thunk 1.0.1 - 2.0.1Outdated
Thunk middleware for Redux.
unfetch 3.0.0Outdated
Bare minimum fetch polyfill in 500 bytes
@emotion/stylis 0.8.4 - 0.8.5
A custom build of Stylis
+1
emmatown
tkh44
emotion-release-bot
zen-observable-ts 0.8.14 - 0.8.21Outdated
Thin wrapper around zen-observable and @types/zen-observable, to support ESM exports as well as CommonJS exports
jbaxleyiii
apollo-bot
popper.js 1.16.1
A kickass library to manage your poppers
ts-invariant 0.3.3Outdated
TypeScript implementation of invariant(condition, message)
zen-observable 0.8.11 - 0.8.14Outdated
An Implementation of ES Observables
zenparsing
zenparsing
hyphenate-style-name 1.0.2Outdated
Hyphenates a camelcased CSS property name
resolve-pathname 2.2.0Outdated
Resolve URL pathnames using JavaScript
mjackson
mjackson
value-equal 0.4.0Outdated
Are these two JavaScript values equal?
mjackson
mjackson
@wry/equality 0.1.7Outdated
Structural equality checking for JavaScript values
benjamn
benjamn
@apollo/client 3.0.0 - 3.7.4Outdated
A fully-featured caching GraphQL client.
tiny-emitter 1.1.0 - 2.0.2Outdated
A tiny (less than 1k) event emitter library
react-scripts 0.4.2Outdated
Configuration and scripts for Create React App.
+1
fb
timer
iansu
iterall 1.2.0 - 1.2.2Outdated
Minimal zero-dependency utilities for using JavaScript Iterables in all environments.
@emotion/css 10.0.0 - 10.0.27Outdated
The Next Generation of CSS-in-JS.
react-textarea-autosize 5.2.1Outdated
textarea component for React which grows with content
jss 9.8.7Outdated
A lib for generating Style Sheets with JavaScript.
indexof 0.0.1
Microsoft sucks
tjholowaychuk
tjholowaychuk
react-datepicker 0.59.0Outdated
A simple and reusable datepicker component for React
fp-ts 0.2.1 - 0.2.9Outdated
Functional programming in TypeScript
is-in-browser 1.1.3Outdated
Simple check to see if current app is running in browser
tuxsudo
tuxsudo
@emotion/core 10.0.14Outdated
+1
emmatown
tkh44
emotion-release-bot
array.prototype.find 2.0.0 - 2.2.1Outdated
Array.prototype.find ES6 polyfill.
css-vendor 0.3.8Outdated
CSS vendor prefix detection and property feature testing.
gud 1.0.0
Create a 'gud nuff' (not cryptographically secure) globally unique id
tippy.js 5.0.0 - 6.3.7
The complete tooltip, popover, dropdown, and menu solution for the web
mini-create-react-context 0.3.2Outdated
Smaller Polyfill for the proposed React context API
react-helmet-async 1.0.2 - 1.0.6Outdated
Thread-safe Helmet for React 16+ and friends
wonderboymusic
wonderboymusic
clipboard 1.6.0 - 1.6.1Outdated
Modern copy to clipboard. No Flash. Just 2kb
react-use 9.12.0 - 17.4.0Outdated
Collection of React Hooks
streamich
streamich
@babel/polyfill 7.4.4Outdated
Provides polyfills necessary for a full ES2015+ environment
+1
hzoo
existentialism
nicolo-ribaudo
xstate 4.7.0 - 4.35.2Outdated
Finite State Machines and Statecharts for the Modern Web.
select 1.1.2
Programmatically select the text of a HTML element
delegate 3.2.0
Lightweight event delegation
good-listener 1.1.5 - 1.2.2
A more versatile way of adding & removing event listeners
apollo-utilities 1.3.2Outdated
Utilities for working with GraphQL ASTs
+1
apollo-bot
benjamn
jbaxleyiii
@material-ui/utils 4.0.0 - 4.11.3
Material-UI Utils - Utility functions for Material-UI.
apollo-link 1.2.12 - 1.2.14
Flexible, lightweight transport layer for GraphQL
jbaxleyiii
peggyrayzis
apollo-bot
@material-ui/core 3.9.4Outdated
React components that implement Google's Material Design.
rc-picker 1.0.0 - 1.6.1Outdated
React date & time picker
@emotion/styled-base 10.0.13 - 10.0.14Outdated
Deprecated package which became `@emotion/styled/base`
+1
emmatown
tkh44
emotion-release-bot
@material-ui/icons 3.0.0 - 3.0.2Outdated
Material Design Svg Icons converted to Material-UI React components.
recompose 0.29.0 - 0.30.0
A React utility belt for function components and higher-order components
redux-devtools-extension 2.0.0 - 2.13.8Outdated
Wrappers for Redux DevTools Extension.
+1
jhen0409
methuselah96
timdorr
stylis-rule-sheet 0.0.9 - 0.0.10
stylis plugin to extract individual rules to use with insertRule API
thysultan
thysultan
apollo-link-http-common 0.2.3Outdated
Http utilities for Apollo Link shared across all links using http
emotion-theming 10.0.14Outdated
A CSS-in-JS theming solution, inspired by styled-components
+1
emmatown
tkh44
emotion-release-bot
@babel/runtime-corejs2 7.0.0 - 7.5.5Outdated
babel's modular runtime helpers with core-js@2 polyfilling
+1
hzoo
existentialism
nicolo-ribaudo
email-validator 1.0.5 - 1.0.7Outdated
Provides a fast, pretty robust e-mail validator. Only checks form, not function.
react-portal 4.1.4Outdated
To make your life with React Portals easier.
react-hot-loader 3.0.0 - 3.1.3Outdated
Tweak React components in real time.
mixpanel-browser 2.41.0Outdated
The official Mixpanel JavaScript browser client library
+1
mp_jthong
mixpanel-dev
tdumitrescu
brcast 3.0.0 - 3.0.1Outdated
Tiny data broadcaster with 0 dependencies
apollo-cache 1.1.16 - 1.1.22Outdated
Core abstract of Caching layer for Apollo Client
+3
apollo-bot
benjamn
jbaxleyiii
react-loading-skeleton 2.0.1 - 2.2.0Outdated
Make beautiful, animated loading skeletons that automatically adapt to your app.
@styled-system/core 5.0.15Outdated
jxnblk
jxnblk
styled-system 5.0.15 - 5.0.21Outdated
Responsive, theme-based style props for building design systems with React
@styled-system/css 5.0.13Outdated
Styled System for the `css` prop
@styled-system/color 5.0.0 - 5.1.2
jxnblk
jxnblk
apollo-client 2.6.3Outdated
A simple yet functional GraphQL client.
apollo-cache-inmemory 1.2.9 - 1.2.10Outdated
Core abstract of Caching layer for Apollo Client
+1
apollo-bot
benjamn
jbaxleyiii
@styled-system/border 5.0.0 - 5.0.18Outdated
jxnblk
jxnblk
@styled-system/layout 5.0.0 - 5.0.21Outdated
jxnblk
jxnblk
@styled-system/variant 5.0.0 - 5.0.21Outdated
Read the docs: https://styled-system.com/variants
jxnblk
jxnblk
@styled-system/space 5.0.4 - 5.0.15Outdated
jxnblk
jxnblk
@styled-system/typography 5.0.0 - 5.1.2
jxnblk
jxnblk
@styled-system/position 5.0.15 - 5.1.2
jxnblk
jxnblk
@styled-system/flexbox 5.0.0 - 5.1.2
jxnblk
jxnblk
@styled-system/grid 5.0.0 - 5.1.2
jxnblk
jxnblk
@styled-system/background 5.0.0 - 5.1.2
jxnblk
jxnblk
@styled-system/shadow 5.0.0 - 5.1.2
jxnblk
jxnblk
react-motion 0.5.0 - 0.5.2
A spring that solves your animation problems.
merge-anything 2.4.2 - 2.4.4Outdated
Merge objects & other types recursively. A simple & small integration.
react-event-listener 0.6.3 - 0.6.6
A React component that allow to bind events on the global scope
final-form 4.16.1Outdated
🏁 Framework agnostic, high performance, subscription-based form state management
erikras
erikras
react-final-form 6.3.0Outdated
🏁 High performance subscription-based form state management for React
erikras
erikras
redux-form 8.2.4Outdated
A higher order component decorator for forms using Redux and React
keymirror 0.1.0 - 0.1.1
A simple utility for creating an object with values equal to its keys. Identical to react/lib/keyMirror
strml
strml
redux-actions 2.6.3 - 2.6.5Outdated
Flux Standard Action utlities for Redux
bootstrap-vue 1.0.0 - 2.15.0Outdated
With more than 85 components, over 45 available plugins, several directives, and 1000+ icons, BootstrapVue provides one of the most comprehensive implementations of the Bootstrap v4 component and grid system available for Vue.js v2.6, complete with extens
normalizr 3.2.4Outdated
Normalizes and denormalizes JSON according to schema for Redux and Flux applications
react-measure 2.5.2
Compute measurements of React components.
use-query-params 2.0.0 - 2.1.2Outdated
React Hook for managing state in URL query parameters with easy serialization.
semantic-ui-react 0.80.2 - 1.0.0Outdated
The official Semantic-UI-React integration.
layershifter
levithomason
@apollo/react-hooks 3.0.0 - 3.1.5Outdated
React Apollo Hooks.
react-router-hash-link 1.2.1 - 1.2.2Outdated
Hash link scroll functionality for React Router v4/5
react-lazy-load-image-component 1.5.1Outdated
React Component to lazy load images using a HOC to track window scroll position.
@styled-system/should-forward-prop 5.0.7 - 5.1.5
Utility for filtering Styled System props with Emotion's shouldForwardProp option
jxnblk
jxnblk
graphql-anywhere 4.2.2 - 4.2.4Outdated
Run GraphQL queries with no schema and just one resolver
deepcopy 2.0.0 - 2.1.0
deep copy data
sasaplus1
sasaplus1
@apollo/react-common 3.0.0 - 3.1.4
React Apollo common utilities.
jss-nested 6.0.1
JSS plugin that enables support for nested selectors
react-apollo 2.1.1 - 2.1.2Outdated
React Apollo Hooks, Components, and HOC.
jss-camel-case 6.1.0
JSS plugin that allows to write camel cased rule properties
jss-global 2.0.0 - 3.0.0
Global styles for JSS
jss-default-unit 7.0.0 - 8.0.2
JSS plugin that adds default custom unit to numeric values where needed
jss-vendor-prefixer 6.0.0 - 7.0.0Outdated
JSS plugin that handles vendor prefixes in the browser
jss-props-sort 5.0.0 - 6.0.0
JSS plugin that ensures style properties extend each other instead of override
payment 2.2.1Outdated
A general purpose library for building credit card forms, validating inputs and formatting numbers. Base on jquery.payment by @stripe, but without the jQuery.
qj 2.0.0
A minimal jQuery replacement used in Card and Payment.
jessepollak
jessepollak
@tannin/plural-forms 1.0.0 - 1.1.0
Compiles a function to compute the plural forms index for a given value
aduth
aduth
twitter-text 3.0.0 - 3.0.1Outdated
official twitter text linkification
+6
bigloser
catia3045
ded
apollo-link-state 0.4.1Outdated
An easy way to manage local state with Apollo Link
jbaxleyiii
peggyrayzis
apollo-bot
apollo-link-batch 1.1.0 - 1.1.2Outdated
Apollo Link that performs batching and operation on batched Operations
jbaxleyiii
apollo-bot
apollo-link-batch-http 1.2.0 - 1.2.1Outdated
Batch HTTP transport layer for GraphQL
jbaxleyiii
apollo-bot
react-facebook 4.1.1 - 5.0.3Outdated
Facebook components like a Login button, Like, Share, Comments, Embedded Post/Video, Messenger Chat and others
botframework-webchat 0.11.2 - 0.15.0Outdated
A highly-customizable web-based chat client for Azure Bot Services.
+5
botframework
sgellock
cwhitten
react-items-carousel x.x.x
denormalizr x.x.x
react-required-if x.x.x
smoothscroll x.x.x
superagent-defaults x.x.x
react-simple-tooltip x.x.x
apollo-cache-redux x.x.x
fireworks x.x.x
emitter-component x.x.x
superagent-prefix x.x.x
twemoji-parser x.x.x
react-show-more-text x.x.x
react-idle x.x.x
cache-service-cache-module x.x.x
superagent-cache-plugin x.x.x
csv-stringify x.x.x
lodash.min x.x.x
lodash.max x.x.x
hashlru x.x.x
macro-components x.x.x
final-form-set-field-touched x.x.x
normalize-scroll-left x.x.x
query-command-supported x.x.x