fitchratings.com 112 packages

Last scanned on Oct 27 at 06:13 PM
moment 2.19.0 - 2.25.1VulnerableOutdated
Parse, validate, manipulate, and display dates
License
MIT
Footprint
226 B
Vulnerabilities
Moment.js vulnerable to Inefficient Regular Expression Complexity
Affected versions >=2.18.0 <2.29.4
Path Traversal: 'dir/../../filename' in moment.locale
Affected versions >=0 <2.29.2
Matched Modules
Version distribution in production
241
2.25.1
240
2.19.0
240
2.25.0
127
2.29.1
112
2.29.3
90
2.29.4
escape-string-regexp 1.0.0 - 1.0.5Outdated
Escape RegExp special characters
string_decoder 1.1.0 - 1.3.0
The string_decoder module from Node core
react-is 16.3.0 - 16.13.1Outdated
Brand checking of React Elements.
inherits 2.0.4
Browser-friendly inheritance fully compatible with standard node.js inherits()
buffer 5.7.0 - 6.0.3
Node.js Buffer API, for the browser
entities 2.2.0Outdated
Encode & decode XML and HTML entities with ease & speed
@babel/runtime 7.18.2 - 7.19.4Outdated
babel's modular runtime helpers
+1
hzoo
existentialism
nicolo-ribaudo
get-intrinsic 1.1.2Outdated
Get and robustly cache all JS language-level intrinsics at first require time
function-bind 1.1.0 - 1.1.1Outdated
Implementation of Function.prototype.bind
call-bind 1.0.2Outdated
Robustly `.call.bind()` a function
has-symbols 1.0.2 - 1.0.3
Determine if the JS environment has Symbol support. Supports spec, or shams.
has-property-descriptors 1.0.0Outdated
Does the environment have full property descriptor support? Handles IE 8's broken defineProperty/gOPD.
domutils 1.7.0Outdated
Utilities for working with htmlparser2's dom
base64-js 1.3.0 - 1.5.1
Base64 encoding/decoding in pure JS
fast-json-stable-stringify 2.0.0 - 2.1.0
deterministic `JSON.stringify()` - a faster version of substack's json-stable-strigify without jsonify
define-properties 1.1.4Outdated
Define multiple non-enumerable properties at once. Uses `Object.defineProperty` when available; falls back to standard assignment in older engines.
dom-serializer 0.2.0 - 0.2.2Outdated
render domhandler DOM nodes to a string
domhandler 2.4.0 - 2.4.2Outdated
Handler for htmlparser2 that turns pages into a dom
has-tostringtag 1.0.0Outdated
Determine if the JS environment has `Symbol.toStringTag` support. Supports spec, or shams.
events 3.0.0 - 3.3.0
Node's event emitter for all engines.
object-keys 1.1.0 - 1.1.1
An Object.keys replacement, in case Object.keys is not available. From https://github.com/es-shims/es5-shim
regexp.prototype.flags 1.4.2 - 1.4.3Outdated
ES6 spec-compliant RegExp.prototype.flags shim.
domelementtype 1.2.0 - 2.3.0
all the types of nodes in htmlparser2's dom
core-js 3.23.3 - 3.26.0Outdated
Standard library
is-regex 1.1.4
Is this value a JS regex? Works cross-realm/iframe, and despite ES6 @@toStringTag
is-date-object 1.0.5
Is this value a JS Date object? This module works cross-realm/iframe, and despite ES6 @@toStringTag.
htmlparser2 3.10.0 - 3.10.1Outdated
Fast & forgiving HTML/XML parser
functions-have-names 1.1.1 - 1.2.3
Does this JS environment support the `name` property on functions?
has 1.0.1 - 1.0.3Outdated
Object.prototype.hasOwnProperty.call shortcut
tarruda
tarruda
prop-types 15.8.0 - 15.8.1
Runtime type checking for React props and similar objects.
is-arguments 1.1.1
Is this an arguments object? It's a harder question than you think.
lodash.debounce 4.0.8
The lodash method `_.debounce` exported as a module.
deep-equal 1.1.0 - 1.1.1Outdated
node's assert.deepEqual algorithm
date-fns 2.27.0 - 2.28.0Outdated
Modern JavaScript date utility library
kossnocorp
kossnocorp
object-is 1.1.0 - 1.1.5Outdated
ES2015-compliant shim for Object.is - differentiates between -0 and +0
hoist-non-react-statics 3.3.1 - 3.3.2
Copies non-react specific statics from a child component to a parent component
mridgway
mridgway
@emotion/unitless 0.7.2 - 0.8.0Outdated
An object of css properties that don't accept values with units
+1
emmatown
tkh44
emotion-release-bot
classnames 2.3.0 - 2.3.1Outdated
A simple utility for conditionally joining classNames together
query-string 6.5.0 - 7.1.1Outdated
Parse and stringify URL query strings
@emotion/hash 0.6.3 - 0.9.0Outdated
A MurmurHash2 implementation
+1
emmatown
tkh44
emotion-release-bot
graphql 15.1.0 - 15.8.0Outdated
A Query Language and Runtime which can target any service.
@emotion/serialize 0.11.12 - 0.11.16Outdated
serialization utils for emotion
+1
emmatown
tkh44
emotion-release-bot
@emotion/utils 0.0.4 - 0.11.3Outdated
internal utils for emotion
+1
emmatown
tkh44
emotion-release-bot
@emotion/sheet 0.9.1 - 0.9.4Outdated
emotion's stylesheet
+1
emmatown
tkh44
emotion-release-bot
react-router 6.4.0 - 6.4.2Outdated
Declarative routing for React
@storybook/theming 6.5.0 - 6.5.13Outdated
Core Storybook Components
lodash-es 4.17.21
Lodash exported as ES modules.
react-fast-compare 2.0.4Outdated
Fastest deep equal comparison for React. Great for React.memo & shouldComponentUpdate. Also really fast general-purpose deep comparison.
filter-obj 1.1.0Outdated
Filter object keys and values into a new object
shallowequal 1.0.1 - 1.1.0
Like lodash isEqualWith but for shallow equal.
@xmldom/xmldom 0.7.0 - 0.8.3Outdated
A pure JavaScript W3C standard-based (XML DOM Level 2 Core) DOMParser and XMLSerializer module.
split-on-first 1.0.0 - 2.0.0Outdated
Split a string on the first occurance of a given separator
resize-observer-polyfill 1.5.0 - 1.5.1
A polyfill for the Resize Observer API
copy-to-clipboard 3.3.0 - 3.3.1Outdated
Copy stuff into clipboard using JS with fallbacks
toggle-selection 1.0.5 - 1.0.6
Toggle current selected content in browser
lodash.throttle 4.1.1
The lodash method `_.throttle` exported as a module.
react-popper 0.9.1 - 1.3.11Outdated
Official library to use Popper on React projects
ts-invariant 0.1.0 - 0.10.3
TypeScript implementation of invariant(condition, message)
zen-observable 0.8.15Outdated
An Implementation of ES Observables
zenparsing
zenparsing
@aws-sdk/util-uri-escape 3.55.0 - 3.186.0Outdated
[![NPM version](https://img.shields.io/npm/v/@aws-sdk/util-uri-escape/latest.svg)](https://www.npmjs.com/package/@aws-sdk/util-uri-escape) [![NPM downloads](https://img.shields.io/npm/dm/@aws-sdk/util-uri-escape.svg)](https://www.npmjs.com/package/@aws-sd
+2
amzn-oss
aws-sdk-bot
kuhe
@mui/utils 5.0.0 - 5.10.9Outdated
Utility functions for React components.
@wry/equality 0.1.8 - 0.1.11Outdated
Structural equality checking for JavaScript values
benjamn
benjamn
is-function 1.0.2
is that thing a function? Use this module to find out
@angular/platform-browser 2.0.0 - 2.4.10Outdated
Angular - library for using Angular in a web browser
angular
google-wombot
react-onclickoutside 6.2.0 - 6.12.2Outdated
An onClickOutside wrapper for React components
string-convert 0.2.0 - 0.2.1
String convertions
akiran
akiran
json2mq 0.2.0
Generate media query string from JSON or javascript object
akiran
akiran
react-focus-lock 2.3.0 - 2.9.1Outdated
It is a trap! (for a focus)
react-input-autosize 3.0.0
Auto-resizing Input Component for React
gud 1.0.0
Create a 'gud nuff' (not cryptographically secure) globally unique id
react-side-effect 1.2.0Outdated
Create components whose prop changes map to a global side effect
react-helmet 5.2.0 - 5.2.1Outdated
A document head manager for React
@fortawesome/free-solid-svg-icons 5.1.0 - 5.15.4Outdated
The iconic font, CSS, and SVG framework
react-intl 1.1.0 - 1.2.2Outdated
Internationalize React apps. This library provides React components and an API to format dates, numbers, and strings, including pluralization and handling translations.
apollo-utilities 1.0.0 - 1.3.4
Utilities for working with GraphQL ASTs
+1
apollo-bot
benjamn
jbaxleyiii
apollo-link 1.2.9 - 1.2.14
Flexible, lightweight transport layer for GraphQL
jbaxleyiii
peggyrayzis
apollo-bot
rc-picker 1.0.0 - 2.1.0Outdated
React date & time picker
safe-json-parse 2.0.0 - 4.0.0
Parse JSON safely without throwing
raynos
raynos
linkifyjs 2.1.4 - 2.1.9Outdated
Find URLs, email addresses, #hashtags and @mentions in plain-text strings, then convert them into HTML <a> links.
enquire.js 2.1.6
Awesome Media Queries in JavaScript
keycode 2.1.2 - 2.2.1
Convert between keyboard keycodes and keynames and vice versa.
react-slick 0.24.0 - 0.26.1Outdated
React port of slick carousel
perfect-scrollbar 1.5.2 - 1.5.5
Minimalistic but perfect custom scrollbar plugin
react-device-detect 1.8.6 - 1.17.0Outdated
Detect device type and render your component according to it
react-tabs 3.2.0 - 3.2.3Outdated
An accessible and easy tab component for ReactJS
@chakra-ui/theme 2.1.0 - 2.1.3Outdated
The default theme for chakra components
@videojs/vhs-utils 3.0.2 - 4.0.0
Objects and functions shared throughtout @videojs/http-streaming code
contentful-resolve-response 1.2.2 - 1.3.11Outdated
[![npm](https://img.shields.io/npm/v/contentful-resolve-response.svg)](https://www.npmjs.com/package/contentful-resolve-response)
+1
hungryblank
zcei
cf-admin
mux.js 6.0.0 - 6.2.0Outdated
A collection of lightweight utilities for inspecting and manipulating video container formats.
video.js 7.15.0 - 7.19.2Outdated
An HTML5 video player that supports HLS and DASH with a common API and skin.
react-scroll 1.8.6 - 1.8.7Outdated
A scroll component for React.js
react-native-web 0.6.0 - 0.6.1Outdated
React Native for Web
gsap 3.0.0 - 3.11.3Outdated
GSAP is a framework-agnostic JavaScript animation library that turns developers into animation superheroes. Build high-performance animations that work in **every** major browser. Animate CSS, SVG, canvas, React, Vue, WebGL, colors, strings, motion paths,
url-toolkit 2.2.4 - 2.2.5
Build an absolute URL from a base URL and a relative URL (RFC 1808). No dependencies!
m3u8-parser 4.6.0 - 4.8.0Outdated
m3u8 parser
@loadable/component 5.15.0 - 5.15.2Outdated
React code splitting made easy.
@contentful/rich-text-react-renderer 13.4.0 - 15.0.0Outdated
React renderer for the Contentful rich text field type.
+1
michaelpearce
it-internal
whydah-gally
mpd-parser 0.20.0 - 0.22.1Outdated
mpd parser
videojs-vtt.js 0.15.0 - 0.15.4Outdated
A JavaScript implementation of the WebVTT specification, forked from vtt.js for use with Video.js
gatsby 4.24.0 - 4.24.5Outdated
Blazing fast modern site generator for React
gatsby-link 4.11.0 - 4.17.0Outdated
An enhanced Link component for Gatsby sites with support for resource prefetching
gatsby-react-router-scroll 4.4.0 - 5.24.0Outdated
React Router scroll management forked from https://github.com/ytase/react-router-scroll for Gatsby
@gatsbyjs/reach-router 1.3.5 - 1.3.9Outdated
Gatsby's fork to modernize reach-router
react-html-parser 2.0.2
Parse HTML into React components
amplitude-js 5.2.0Outdated
Javascript library for Amplitude Analytics
react-lazyload 2.4.0 - 2.5.0Outdated
Lazyload your components, images or anything where performance matters.
@apollo/react-hooks 3.0.0 - 3.1.5Outdated
React Apollo Hooks.
@apollo/react-common 3.0.0 - 3.1.4
React Apollo common utilities.
@tannin/plural-forms 1.0.0 - 1.1.0
Compiles a function to compute the plural forms index for a given value
aduth
aduth
lottie-api 1.0.0 - 1.0.2Outdated
A library to edit lottie-web animations dynamically
airnan
airnan
botframework-webchat 0.11.2 - 0.15.0Outdated
A highly-customizable web-based chat client for Azure Bot Services.
+5
botframework
sgellock
cwhitten