dompurify 1.0.0VulnerableOutdated
DOMPurify is a DOM-only, super-fast, uber-tolerant XSS sanitizer for HTML, MathML and SVG. It's written in JavaScript and works in all modern browsers (Safari, Opera (15+), Internet Explorer (10+), Firefox and Chrome - as well as almost anything else usin
(MPL-2.0 OR Apache-2.0)
Cross-Site Scripting in dompurify
Affected versions >=0 <2.0.3
DOMPurify Open Redirect vulnerability
Affected versions >=0 <1.0.11
Cross-Site Scripting in dompurify
Affected versions >=0 <2.0.7
Cross-site Scripting in dompurify
Affected versions >=0 <2.0.17
Matched Modules
Version distribution in production
lodash 4.17.16VulnerableOutdated
Lodash modular utilities.
es5-ext 0.10.24 - 0.10.49VulnerableOutdated
ECMAScript extensions and shims
kind-of 3.2.0 - 6.0.2Outdated
Get the native type of a value.
isarray 1.0.0 - 2.0.5
Array#isArray for older browsers
inherits 2.0.3Outdated
Browser-friendly inheritance fully compatible with standard node.js inherits()
is-number 2.0.2 - 4.0.0Outdated
Returns true if a number or string value is a finite number. Useful for regex matches, parsing, user input, etc.
extend-shallow 2.0.0 - 2.0.1Outdated
Extend an object with the properties of additional objects. node.js/javascript util.
buffer 4.6.0 - 4.9.2Outdated
Node.js Buffer API, for the browser
is-glob 2.0.1Outdated
Returns `true` if the given string looks like a glob pattern or an extglob pattern. This makes it easy to create code that only uses external modules like node-glob when necessary, resulting in much faster code execution and initialization time, and a bet
normalize-path 2.1.0 - 2.1.1Outdated
Normalize slashes in a file path to be posix/unix-like forward slashes. Also condenses repeat slashes to a single slash and removes and trailing slashes, unless disabled.
@babel/runtime 7.0.0 - 7.7.2Outdated
babel's modular runtime helpers
is-extendable 0.1.1Outdated
Returns true if a value is a plain object, array or function.
is-extglob 1.0.0Outdated
Returns true if a string has an extglob.
isobject 2.1.0Outdated
Returns true if the value is an object and not an array or null.
base64-js 1.3.0 - 1.5.1
Base64 encoding/decoding in pure JS
is-buffer 1.1.4 - 1.1.6Outdated
Determine if an object is a Buffer
core-js 2.6.4Outdated
Standard library
clone 2.1.0 - 2.1.2
deep cloning of objects and arrays
util 0.10.0 - 0.12.5
Node.js's util module for all engines
dot-prop 1.0.0Outdated
Get, set, or delete a property from a nested object using a dot path
repeat-string 1.6.0 - 1.6.1
Repeat the given string n times. Fastest implementation for repeating a string.
arr-diff 2.0.0Outdated
Returns an array with only the unique values from the first array, by excluding all values from additional arrays using strict equality for comparisons.
array-unique 0.1.1 - 0.3.2
Remove duplicate values from an array. Fastest ES5 implementation.
path-browserify 0.0.0 - 0.0.1Outdated
the path module from node core for browsers
remove-trailing-separator 1.1.0
Removes separators from the end of the string.
repeat-element 1.1.0 - 1.1.3Outdated
Create an array by repeating the given value n times.
whatwg-fetch 3.0.0 - 3.1.1Outdated
A window.fetch polyfill.
arr-flatten 1.1.0
Recursively flatten an array or arrays.
lodash-es 4.17.21
Lodash exported as ES modules.
es6-promise 4.2.4 - 4.2.8
A lightweight library that provides tools for organizing asynchronous code
for-own 0.1.3 - 1.0.0
Iterate over the own enumerable properties of an object, and return an object with properties that evaluate to true from the callback. Exit early by returning `false`. JavaScript/Node.js.
debounce 1.2.0 - 1.2.1Outdated
Delay function calls until a set time elapses after the last invocation
p-is-promise 3.0.0 - 4.0.0
Check if something is a promise
vue 1.0.9 - 2.7.14Outdated
The progressive JavaScript framework for building modern web UI.
array-slice 0.2.1 - 0.2.3Outdated
Array-slice method. Slices `array` from the `start` index up to, but not including, the `end` index.
rc-util 5.5.0 - 5.8.0Outdated
Common Utils For React Component
object.omit 2.0.0 - 2.0.1Outdated
Return a copy of an object excluding the given key, or array of keys. Also accepts an optional filter function as the last argument.
jss 2.3.0 - 3.3.0Outdated
A lib for generating Style Sheets with JavaScript.
react-dnd 9.1.0 - 9.3.4Outdated
Drag and Drop for React
@react-aria/utils 3.4.0 - 3.14.2Outdated
Spectrum UI components in React
react-bootstrap 0.30.2 - 0.31.5Outdated
Bootstrap 5 components built with React
@chakra-ui/theme-tools 1.2.1 - 2.0.13Outdated
Set of helpers that makes theming and styling easier
gsap 3.0.0 - 3.11.4Outdated
GSAP is a framework-agnostic JavaScript animation library that turns developers into animation superheroes. Build high-performance animations that work in **every** major browser. Animate CSS, SVG, canvas, React, Vue, WebGL, colors, strings, motion paths,
canvas-confetti 0.2.0 - 1.6.0Outdated
performant confetti animation in the browser
instantsearch.js 1.8.3 - 4.49.4Outdated
InstantSearch.js is a JavaScript library for building performant and instant search experiences with Algolia.
bootstrap-vue 2.15.0Outdated
With more than 85 components, over 45 available plugins, several directives, and 1000+ icons, BootstrapVue provides one of the most comprehensive implementations of the Bootstrap v4 component and grid system available for Vue.js v2.6, complete with extens
semantic-ui-react 0.64.3 - 2.1.4Outdated
The official Semantic-UI-React integration.
deepcopy 2.0.0 - 2.1.0
deep copy data
picturefill 3.0.0 - 3.0.3
A responsive image polyfill.
@brightcove/player-loader 1.3.1 - 1.8.0
An asynchronous script loader for the Brightcove Player.
gatsby-background-image 0.2.9 - 0.5.7Outdated
Lazy-loading React background-image component with optional support for the blur-up effect.
react-amphtml 3.1.0 - 4.0.2
Use amphtml components inside your React apps easily!