fairview.org 73 packages

Last scanned on Jan 19 at 11:21 AM
url-parse 1.5.1VulnerableOutdated
Small footprint URL parser that works seamlessly across Node.js and browser environments
License
MIT
Footprint
3 KB
Vulnerabilities
url-parse incorrectly parses hostname / protocol due to unstripped leading control characters.
Affected versions >=0 <1.5.9
Authorization bypass in url-parse
Affected versions >=0 <1.5.6
Open redirect in url-parse
Affected versions >=0 <1.5.2
Authorization Bypass Through User-Controlled Key in url-parse
Affected versions >=0 <1.5.8
url-parse Incorrectly parses URLs that include an '@'
Affected versions >=0 <1.5.7
Matched Modules
Version distribution in production
206
1.5.10
167
1.5.9
50
1.5.3
47
1.4.6
47
1.4.7
23
1.5.1
lodash 4.17.20VulnerableOutdated
Lodash modular utilities.
axios 0.21.1VulnerableOutdated
Promise based HTTP client for the browser and node.js
html-parse-stringify2 2.0.1Vulnerable
Parses well-formed HTML (meaning all tags closed) into an AST and back. quickly.
es5-ext 0.10.24 - 0.10.49VulnerableOutdated
ECMAScript extensions and shims
tslib 1.13.0 - 1.14.1Outdated
Runtime library for TypeScript helper functions
isarray 0.0.0 - 0.0.1Outdated
Array#isArray for older browsers
react-is 16.13.1Outdated
Brand checking of React Elements.
inherits 2.0.4
Browser-friendly inheritance fully compatible with standard node.js inherits()
regenerator-runtime x.x.x
Runtime for Regenerator-compiled generator and async functions.
@babel/runtime 7.18.2 - 7.18.3Outdated
babel's modular runtime helpers
+1
hzoo
existentialism
nicolo-ribaudo
path-to-regexp 1.8.0Outdated
Express style path to RegExp utility
object-assign 4.1.1
ES2015 `Object.assign()` ponyfill
fast-json-stable-stringify 2.0.0 - 2.1.0
deterministic `JSON.stringify()` - a faster version of substack's json-stable-strigify without jsonify
core-js 3.21.1Outdated
Standard library
scheduler 0.16.2Outdated
Cooperative scheduler for the browser environment.
requires-port 1.0.0
Check if a protocol requires a certain port number to be added to an URL.
prop-types 15.8.0 - 15.8.1
Runtime type checking for React props and similar objects.
react 16.10.0Outdated
React is a JavaScript library for building user interfaces.
react-dom 16.10.0Outdated
React package for working with the DOM.
process 0.11.10
process information for node.js and browsers
querystringify 2.2.0
Querystringify - Small, simple but powerful query string parser.
asap 2.0.5 - 2.0.6
High-priority task queue for Node.js and browsers
minimalistic-assert 1.0.0 - 1.0.1
minimalistic-assert ===
cwmma
indutny
hoist-non-react-statics 3.3.2
Copies non-react specific statics from a child component to a parent component
mridgway
mridgway
promise 8.3.0
Bare bones Promises/A+ implementation
forbeslindesay
then-promise-bot
symbol-observable 1.1.0 - 1.2.0Outdated
Symbol.observable ponyfill
graphql 14.5.0 - 14.7.0Outdated
A Query Language and Runtime which can target any service.
whatwg-fetch 3.6.2Outdated
A window.fetch polyfill.
jakechampion
mattandrews
mislav
tiny-invariant 0.0.2 - 1.3.1Outdated
A tiny invariant function
hash.js 1.1.7
Various hash functions that could be run by both browser and node
react-router 5.1.0Outdated
Declarative routing for React
react-router-dom 5.1.0Outdated
Declarative routing for React web applications
react-fast-compare 2.0.4Outdated
Fastest deep equal comparison for React. Great for React.memo & shouldComponentUpdate. Also really fast general-purpose deep comparison.
shallowequal 1.1.0
Like lodash isEqualWith but for shallow equal.
void-elements 2.0.1Outdated
Array of "void elements" defined by the HTML specification.
history 4.10.1Outdated
Manage session history with JavaScript
isomorphic-fetch 2.1.1 - 3.0.0
Isomorphic WHATWG Fetch API, for Node & Browserify
mattandrews
the-ft
i18next 19.3.2Outdated
i18next internationalization framework
zen-observable-ts 0.8.10 - 0.8.21Outdated
Thin wrapper around zen-observable and @types/zen-observable, to support ESM exports as well as CommonJS exports
jbaxleyiii
apollo-bot
ts-invariant 0.4.4Outdated
TypeScript implementation of invariant(condition, message)
zen-observable 0.8.15Outdated
An Implementation of ES Observables
zenparsing
zenparsing
resolve-pathname 3.0.0
Resolve URL pathnames using JavaScript
mjackson
mjackson
@wry/equality 0.1.9 - 0.1.11Outdated
Structural equality checking for JavaScript values
benjamn
benjamn
value-equal 1.0.1
Are these two JavaScript values equal?
mjackson
mjackson
react-app-polyfill 1.0.4 - 1.0.6Outdated
Polyfills for various browsers including commonly used language features
+1
fb
timer
iansu
@wry/context 0.4.4 - 0.6.0Outdated
Manage contextual information needed by (a)synchronous tasks without explicitly passing objects around
benjamn
benjamn
optimism 0.10.2 - 0.10.3Outdated
Composable reactive caching with efficient invalidation.
react-i18next 11.2.5 - 11.3.3Outdated
Internationalization for react done right. Using the i18next i18n ecosystem.
react-scripts 0.4.2Outdated
Configuration and scripts for Create React App.
+1
fb
timer
iansu
react-side-effect 1.2.0Outdated
Create components whose prop changes map to a global side effect
react-helmet 5.2.1Outdated
A document head manager for React
mini-create-react-context 0.3.3 - 0.4.1
Smaller Polyfill for the proposed React context API
apollo-utilities 1.3.0 - 1.3.4
Utilities for working with GraphQL ASTs
+1
apollo-bot
benjamn
jbaxleyiii
apollo-link 1.2.12 - 1.2.14
Flexible, lightweight transport layer for GraphQL
jbaxleyiii
peggyrayzis
apollo-bot
rc-trigger 4.3.0 - 4.3.4Outdated
base abstract trigger component for react
apollo-link-http-common 0.2.15 - 0.2.16
Http utilities for Apollo Link shared across all links using http
lodash.unescape 4.0.1
The lodash method `_.unescape` exported as a module.
focus-visible 5.1.0Outdated
Polyfill for :focus-visible pseudo-selector
robdodson
sundress
@chakra-ui/theme 2.1.0 - 2.1.3Outdated
The default theme for chakra components
apollo-cache 1.1.22 - 1.3.5
Core abstract of Caching layer for Apollo Client
+3
apollo-bot
benjamn
jbaxleyiii
apollo-client 2.6.4Outdated
A simple yet functional GraphQL client.
apollo-cache-inmemory 1.6.3 - 1.6.6
Core abstract of Caching layer for Apollo Client
+1
apollo-bot
benjamn
jbaxleyiii
@loadable/component 5.14.1Outdated
React code splitting made easy.
bootstrap-vue 2.0.0 - 2.15.0Outdated
With more than 85 components, over 45 available plugins, several directives, and 1000+ icons, BootstrapVue provides one of the most comprehensive implementations of the Bootstrap v4 component and grid system available for Vue.js v2.6, complete with extens
@apollo/react-common 3.0.0 - 3.1.4
React Apollo common utilities.
object-fit-images 3.2.4
Polyfill object-fit and object-position on images on IE9, IE10, IE11, Edge, Safari, ...
style-attr 1.3.0
Parse and stringify style attributes
@sitecore-jss/sitecore-jss 12.0.1 - 14.0.4Outdated
This module is provided as a part of Sitecore JavaScript Rendering SDK. It contains the core JSS APIs (layout service) and utilities.
+7
sc-yavorkrastev
sitecorecorporation
sc-maximnakhod
apollo-link-batch-http 1.2.9 - 1.2.14
Batch HTTP transport layer for GraphQL
jbaxleyiii
apollo-bot
apollo-link-batch 1.1.10 - 1.1.15
Apollo Link that performs batching and operation on batched Operations
jbaxleyiii
apollo-bot
@sitecore-jss/sitecore-jss-react 13.0.5Outdated
This module is provided as a part of Sitecore JavaScript Rendering SDK (JSS). It contains React components and integration for JSS.
+7
sc-yavorkrastev
sitecorecorporation
sc-maximnakhod
i18next-fetch-backend 2.2.0 - 2.3.1Outdated
backend layer for i18next using browsers fetch