axios 0.21.1VulnerableOutdated
Promise based HTTP client for the browser and node.js
11 KB
axios Inefficient Regular Expression Complexity vulnerability
Affected versions >=0 <0.21.2
Matched Modules
Version distribution in production
next 10.0.0 - 10.2.3VulnerableOutdated
The React Framework
trim 0.0.1VulnerableOutdated
Trim string whitespace
es5-ext 0.10.24 - 0.10.49VulnerableOutdated
ECMAScript extensions and shims
debug 2.3.1 - 3.1.0Outdated
Lightweight debugging utility for Node.js and the browser
tslib 1.10.0 - 2.4.0Outdated
Runtime library for TypeScript helper functions
ms 2.0.0Outdated
Tiny millisecond conversion utility
readable-stream 3.6.0Outdated
Node.js Streams, a user-land copy of the stream library from Node.js
string_decoder 1.1.0 - 1.3.0
The string_decoder module from Node core
camelcase 5.3.1Outdated
Convert a dash/dot/underscore/space separated string to camelCase or PascalCase: `foo-bar` → `fooBar`
inherits 2.0.4
Browser-friendly inheritance fully compatible with standard node.js inherits()
buffer 5.5.0 - 5.6.1Outdated
Node.js Buffer API, for the browser
@babel/runtime 7.12.13 - 7.12.18Outdated
babel's modular runtime helpers
get-intrinsic 1.1.0 - 1.1.1Outdated
Get and robustly cache all JS language-level intrinsics at first require time
function-bind 1.1.0 - 1.1.1Outdated
Implementation of Function.prototype.bind
call-bind 1.0.2Outdated
Robustly `.call.bind()` a function
object-inspect 1.9.0Outdated
string representations of objects in node and the browser
fast-deep-equal 3.0.0 - 3.1.3
Fast deep equal
has-symbols 1.0.2 - 1.0.3
Determine if the JS environment has Symbol support. Supports spec, or shams.
es-abstract 1.18.0 - 1.18.6Outdated
ECMAScript spec abstract operations.
base64-js 1.3.0 - 1.5.1
Base64 encoding/decoding in pure JS
fast-json-stable-stringify 2.0.0 - 2.1.0
deterministic `JSON.stringify()` - a faster version of substack's json-stable-strigify without jsonify
define-properties 1.1.3 - 1.1.4Outdated
Define multiple non-enumerable properties at once. Uses `Object.defineProperty` when available; falls back to standard assignment in older engines.
is-callable 1.2.3Outdated
Is this JS value callable? Works with Functions and GeneratorFunctions, despite ES6 @@toStringTag.
events 3.0.0 - 3.3.0
Node's event emitter for all engines.
is-buffer 2.0.0 - 2.0.5
Determine if an object is a Buffer
which-typed-array 1.1.1 - 1.1.4Outdated
Which kind of Typed Array is this JavaScript value? Works cross-realm, without `instanceof`, and despite Symbol.toStringTag.
object-keys 1.1.0 - 1.1.1
An Object.keys replacement, in case Object.keys is not available. From https://github.com/es-shims/es5-shim
core-js 3.6.0 - 3.6.2Outdated
Standard library
is-typed-array 1.1.3 - 1.1.5Outdated
Is this value a JS Typed Array? This module works cross-realm/iframe, does not depend on `instanceof` or mutable properties, and despite ES6 Symbol.toStringTag.
is-regex 1.1.2Outdated
Is this value a JS regex? Works cross-realm/iframe, and despite ES6 @@toStringTag
available-typed-arrays 1.0.0 - 1.0.3Outdated
Returns an array of Typed Array names that are available in the current environment
is-date-object 1.0.1 - 1.0.3Outdated
Is this value a JS Date object? This module works cross-realm/iframe, and despite ES6 @@toStringTag.
util 0.12.0 - 0.12.5
Node.js's util module for all engines
is-string 1.0.4 - 1.0.5Outdated
Is this value a JS String object or primitive? This module works cross-realm/iframe, and despite ES6 @@toStringTag.
es-to-primitive 1.2.0 - 1.2.1
ECMAScript “ToPrimitive” algorithm. Provides ES5 and ES2015 versions.
extend 3.0.2
Port of jQuery.extend for node.js and the browser
has 1.0.1 - 1.0.3Outdated
Object.prototype.hasOwnProperty.call shortcut
scheduler 0.15.0 - 0.23.0
Cooperative scheduler for the browser environment.
prop-types 15.7.0 - 15.7.2Outdated
Runtime type checking for React props and similar objects.
is-arguments 1.1.0Outdated
Is this an arguments object? It's a harder question than you think.
react 16.13.0 - 17.0.2Outdated
React is a JavaScript library for building user interfaces.
is-generator-function 1.0.9Outdated
Determine if a function is a native generator function.
asn1 0.2.4 - 0.2.6
Contains parsers and serializers for ASN.1 (currently BER only)
minimalistic-assert 1.0.0 - 1.0.1
minimalistic-assert ===
object-is 1.1.0 - 1.1.5Outdated
ES2015-compliant shim for Object.is - differentiates between -0 and +0
repeat-string 1.6.0 - 1.6.1
Repeat the given string n times. Fastest implementation for repeating a string.
unist-util-visit-parents 2.1.0 - 3.0.2Outdated
unist utility to recursively walk over nodes, with ancestral information
unist-util-is 3.0.0 - 4.0.2Outdated
unist utility to check if a node passes a test
unist-util-visit 1.4.0 - 2.0.3Outdated
unist utility to visit nodes
assert 2.0.0Outdated
The assert module from Node.js, for the browser.
query-string 5.1.0 - 5.1.1Outdated
Parse and stringify URL query strings
unist-util-stringify-position 2.0.0 - 2.0.3Outdated
unist utility to serialize a node, position, or point as a human readable location
sha.js 2.4.9 - 2.4.11
Streamable SHA hashes in pure javascript
graphql 15.1.0 - 15.8.0Outdated
A Query Language and Runtime which can target any service.
vfile-message 1.0.0 - 2.0.4Outdated
vfile utility to create a virtual message
unified 8.2.0 - 8.4.2Outdated
parse, inspect, transform, and serialize content through syntax trees
asn1.js 5.2.0 - 5.4.1
ASN.1 encoder and decoder
hash-base 3.0.4 - 3.1.0
abstract base class for hash-streams
vfile 2.1.0 - 4.2.0Outdated
Virtual file format for text processing
elliptic 6.5.4Outdated
EC cryptography
hash.js 1.1.2 - 1.1.7
Various hash functions that could be run by both browser and node
es-array-method-boxes-properly 1.0.0
Utility package to determine if an `Array.prototype` method properly boxes the callback's receiver and third argument.
hmac-drbg 1.0.1
Deterministic random bit generator (hmac)
space-separated-tokens 1.1.3 - 2.0.1Outdated
Parse and stringify space separated tokens
des.js 1.0.1Outdated
DES implementation
es6-promise 4.2.7 - 4.2.8
A lightweight library that provides tools for organizing asynchronous code
md5.js 1.1.0 - 1.3.5
node style md5 on pure JavaScript
pbkdf2 3.1.2
This library provides the functionality of PBKDF2 with the ability to use any supported hashing algorithm returned from crypto.getHashes()
cipher-base 1.0.4
abstract base class for crypto-streams
parse-asn1 5.1.6Outdated
utility library for parsing asn1 files for use with browserify-sign.
browserify-sign 2.4.0 - 2.8.0Outdated
adds node crypto signing for browsers
dlv 1.1.3
Safely get a dot-notated property within an object.
browserify-aes 0.4.0 - 0.8.1Outdated
aes, for browserify
remark-parse 7.0.2Outdated
remark plugin to add support for parsing markdown input
evp_bytestokey 1.0.3
The insecure key derivation algorithm from OpenSSL
browserify-rsa 4.1.0
RSA for browserify
create-ecdh 3.0.0 - 4.0.4
createECDH but browserifiable
public-encrypt 4.0.3
browserify version of publicEncrypt & privateDecrypt
diffie-hellman 1.1.2Outdated
pure js diffie-hellman
browserify-des 1.0.2
browserify-des ===
miller-rabin 1.1.0 - 4.0.1
Miller Rabin algorithm for primality test
trough 1.0.3 - 1.0.5Outdated
`trough` is middleware
randomfill 1.0.0 - 1.0.4
random fill from browserify stand alone
bail 1.0.0 - 2.0.2
Throw a given error
mdurl 0.0.1 - 1.0.1Outdated
URL utilities for markdown-it
is-alphabetical 1.0.0 - 2.0.0Outdated
Check if a character is alphabetical
is-decimal 1.0.0 - 2.0.0Outdated
Check if a character is decimal
is-hexadecimal 1.0.0 - 2.0.0Outdated
Check if a character is hexadecimal
mdast-util-definitions 1.2.2 - 3.0.1Outdated
mdast utility to find definition nodes in a tree
property-information 5.6.0Outdated
Info on the properties and attributes of the web platform
comma-separated-tokens 1.0.6 - 1.0.8Outdated
Parse and stringify comma-separated tokens
style-to-object 0.2.3 - 0.3.0Outdated
Parse CSS inline style to JavaScript object.
unist-util-position 3.1.0Outdated
unist utility to get the position of a node
ccount 1.1.0 - 2.0.0Outdated
Count how often a character (or substring) is used in a string
mdast-util-to-hast 6.0.2Outdated
mdast utility to transform to hast
inline-style-parser 0.1.0 - 0.1.1Outdated
An inline style parser.
is-nan 1.3.1 - 1.3.2
ES2015-compliant shim for Number.isNaN - the global isNaN returns false positives.
p-is-promise 3.0.0 - 4.0.0
Check if something is a promise
styled-jsx 3.2.4 - 3.4.7Outdated
Full CSS support for JSX without compromises
longest-streak 2.0.1 - 2.0.4Outdated
Count the longest repeating streak of a substring
unist-util-remove-position 1.1.0 - 3.0.0Outdated
unist utility to remove positions from a tree
vfile-location 2.0.0 - 3.0.1Outdated
vfile utility to convert between positional (line and column-based) and offset (range-based) locations
unist-util-generated 1.1.6 - 2.0.0Outdated
unist utility to check if a node is generated
ts-invariant 0.5.1 - 0.8.2Outdated
TypeScript implementation of invariant(condition, message)
zen-observable 0.8.15Outdated
An Implementation of ES Observables
markdown-table 1.1.3Outdated
Generate a markdown (GFM) table
@wry/equality 0.3.4 - 0.4.0Outdated
Structural equality checking for JavaScript values
unist-builder 1.0.3 - 2.0.0Outdated
unist utility to create a new trees with a nice syntax
remark-stringify 7.0.4Outdated
remark plugin to add support for serializing markdown
@apollo/client 3.2.8 - 3.3.21Outdated
A fully-featured caching GraphQL client.
collapse-white-space 1.0.0 - 2.0.0Outdated
Collapse white space
unherit 1.1.0 - 1.1.3Outdated
Create a subclass that can be modified without affecting the super class
trim-trailing-lines 1.1.4 - 2.0.0Outdated
Remove final line feeds from a string
is-whitespace-character 1.0.0 - 2.0.1
Check if a character is a whitespace character
state-toggle 1.0.0 - 2.0.1Outdated
Enter/exit a state
markdown-escapes 1.0.0 - 1.0.4Outdated
Legacy list of escapable characters in markdown
is-word-character 1.0.0 - 2.0.1
Check if a character is a word character
foreach 2.0.4 - 2.0.6
foreach component + npm package
hast-to-hyperscript 7.0.2 - 8.0.0Outdated
Deprecated: use [`hast-util-to-jsx-runtime`][hast-util-to-jsx-runtime] instead, which is much better :)
es6-object-assign 1.0.0 - 1.1.0
ECMAScript 2015 (ES6) Object.assign polyfill and ponyfill
exenv 1.1.0 - 1.2.2
React's ExecutionEnvironment module extracted for use in other packages & components
fp-ts 2.10.0 - 2.10.5Outdated
Functional programming in TypeScript
string-hash 1.1.1 - 1.1.3
fast string hashing function
react-dnd 15.0.0 - 16.0.1
Drag and Drop for React
lit-element 3.0.0Outdated
A simple base class for creating fast, lightweight web components
@firebase/firestore 3.6.0 - 3.7.1Outdated
The Cloud Firestore component of the Firebase JS SDK.
html-react-parser 0.13.0 - 0.14.1Outdated
HTML to React parser.
load-script 1.0.0 - 2.0.0
Dynamic script loading for browser
react-property 1.0.1 - 1.0.2Outdated
HTML and SVG DOM property configs used by React.
react-player 1.12.0 - 1.15.3Outdated
A React component for playing a variety of URLs, including file paths, YouTube, Facebook, Twitch, SoundCloud, Streamable, Vimeo, Wistia and DailyMotion
use-subscription 1.3.0 - 1.5.1Outdated
Reusable hooks
hast-util-sanitize 2.0.1 - 3.0.0Outdated
hast utility to sanitize nodes
ramda-adjunct 2.35.0 - 3.3.0Outdated
Ramda Adjunct is the most popular and most comprehensive set of utilities for use with Ramda, providing a variety of useful, well tested functions with excellent documentation.
react-native-web 0.0.14 - 0.18.9Outdated
React Native for Web
scriptjs 2.5.6 - 2.5.9
Asyncronous JavaScript loader and dependency manager
react-final-form 6.5.4Outdated
🏁 High performance subscription-based form state management for React
sister 3.0.1 - 3.0.2
Event manager.
amplitude-js 5.2.0Outdated
Javascript library for Amplitude Analytics
spin.js 2.1.1 - 2.3.2Outdated
A spinning activity indicator
@mapbox/hast-util-table-cell-style 0.1.3 - 0.2.0Outdated
Transform deprecated styling attributes on HAST table cells to inline styles
@tannin/plural-forms 1.0.0 - 1.1.0
Compiles a function to compute the plural forms index for a given value
cross-domain-utils 2.0.38
Javascript module template.
react-facebook 7.0.1 - 8.1.4Outdated
Facebook components like a Login button, Like, Share, Comments, Embedded Post/Video, Messenger Chat and others
@iabtcf/core 1.0.0 - 1.3.1Outdated
Ensures consistent encoding and decoding of TC Signals for the iab. Transparency and Consent Framework (TCF).
react-spinner-children 1.0.6 - 1.0.8
A React component wrapper for spin.js with support for children
@iabtcf/cmpapi 1.1.0 - 1.1.3Outdated
Ensures other in-page digital marketing technologies have access to CMP transparency and consent information for the iab. Transparency and Consent Framework (TCF).
feathers-commons 0.8.5 - 0.8.7
Shared Feathers utility functions
@quintype/components 1.6.0 - 1.34.1Outdated
Components to help build Quintype Node.js apps