glints.com 143 packages

Last scanned on Jan 19 at 10:17 AM
url-parse 1.4.6 - 1.4.7VulnerableOutdated
Small footprint URL parser that works seamlessly across Node.js and browser environments
License
MIT
Footprint
3 KB
Vulnerabilities
url-parse incorrectly parses hostname / protocol due to unstripped leading control characters.
Affected versions >=0 <1.5.9
Authorization bypass in url-parse
Affected versions >=0 <1.5.6
Path traversal in url-parse
Affected versions >=0 <1.5.0
Open redirect in url-parse
Affected versions >=0 <1.5.2
Authorization Bypass Through User-Controlled Key in url-parse
Affected versions >=0 <1.5.8
url-parse Incorrectly parses URLs that include an '@'
Affected versions >=0 <1.5.7
Matched Modules
Version distribution in production
206
1.5.10
167
1.5.9
50
1.5.3
47
1.4.6
47
1.4.7
24
1.5.4
axios 0.19.2VulnerableOutdated
Promise based HTTP client for the browser and node.js
moment 2.27.0VulnerableOutdated
Parse, validate, manipulate, and display dates
decode-uri-component 0.2.0VulnerableOutdated
A better decodeURIComponent
marked 3.0.5 - 3.0.8VulnerableOutdated
A markdown parser built for speed
next 11.1.4VulnerableOutdated
The React Framework
rauchg
timneutkens
vercel-release-bot
tslib 1.13.0 - 1.14.1Outdated
Runtime library for TypeScript helper functions
react-is 17.0.2Outdated
Brand checking of React Elements.
regenerator-runtime 0.13.4 - 0.13.5Outdated
Runtime for Regenerator-compiled generator and async functions.
node-fetch 2.3.0 - 2.6.0Outdated
A light-weight module that brings Fetch API to node.js
@babel/runtime 7.0.0 - 7.18.0Outdated
babel's modular runtime helpers
+1
hzoo
existentialism
nicolo-ribaudo
lodash 4.17.21
Lodash modular utilities.
yaml 1.0.0 - 2.2.1Outdated
JavaScript parser and stringifier for YAML
fast-json-stable-stringify 2.0.0 - 2.1.0
deterministic `JSON.stringify()` - a faster version of substack's json-stable-strigify without jsonify
deepmerge 4.2.2Outdated
A library for deep (recursive) merging of Javascript objects
eventemitter3 3.0.0 - 4.0.7Outdated
EventEmitter3 focuses on performance while maintaining a Node.js AND browser compatible interface.
requires-port 1.0.0
Check if a protocol requires a certain port number to be added to an URL.
scheduler 0.20.2Outdated
Cooperative scheduler for the browser environment.
prop-types 15.7.0 - 15.7.2Outdated
Runtime type checking for React props and similar objects.
react 17.0.2Outdated
React is a JavaScript library for building user interfaces.
process 0.11.10
process information for node.js and browsers
is-obj 2.0.0Outdated
Check if a value is an object
react-dom 17.0.2Outdated
React package for working with the DOM.
querystringify 2.1.1Outdated
Querystringify - Small, simple but powerful query string parser.
dot-prop 6.0.1Outdated
Get, set, or delete a property from a nested object using a dot path
clsx 1.1.1Outdated
A tiny (239B) utility for constructing className strings conditionally.
@emotion/memoize 0.6.6 - 0.7.4Outdated
emotion's memoize utility
+1
emmatown
tkh44
emotion-release-bot
hoist-non-react-statics 2.5.1 - 2.5.5Outdated
Copies non-react specific statics from a child component to a parent component
mridgway
mridgway
querystring 0.2.0Outdated
Node's querystring module for all engines.
invariant 2.2.3 - 2.2.4
invariant
@emotion/unitless 0.7.2 - 0.7.5Outdated
An object of css properties that don't accept values with units
+1
emmatown
tkh44
emotion-release-bot
dequal 2.0.0 - 2.0.3
A tiny (304B to 489B) utility for check for deep equality
classnames 2.2.6Outdated
A simple utility for conditionally joining classNames together
symbol-observable 1.1.0 - 1.2.0Outdated
Symbol.observable ponyfill
@emotion/is-prop-valid 0.8.8Outdated
A function to check whether a prop is valid for HTML and SVG elements
+1
emmatown
tkh44
emotion-release-bot
query-string 6.13.1 - 6.13.5Outdated
Parse and stringify URL query strings
stackframe 0.3.1 - 1.0.1Outdated
JS Object representation of a stack frame
@emotion/hash 0.8.0Outdated
A MurmurHash2 implementation
+1
emmatown
tkh44
emotion-release-bot
graphql 14.6.0Outdated
A Query Language and Runtime which can target any service.
error-stack-parser 1.3.6Outdated
Extract meaning from JS Errors
@emotion/serialize 0.11.14 - 0.11.16Outdated
serialization utils for emotion
+1
emmatown
tkh44
emotion-release-bot
@emotion/utils 0.11.0 - 0.11.3Outdated
internal utils for emotion
+1
emmatown
tkh44
emotion-release-bot
strict-uri-encode 2.0.0
A stricter URI encode adhering to RFC 3986
@sentry/utils 7.23.0 - 7.31.0Outdated
Utilities for all Sentry JavaScript SDKs
+8
benvinegar
billyvg
mitsuhiko
@emotion/cache 10.0.17 - 10.0.29Outdated
emotion's cache
+1
emmatown
tkh44
emotion-release-bot
@emotion/sheet 0.9.1 - 0.9.4Outdated
emotion's stylesheet
+1
emmatown
tkh44
emotion-release-bot
@sentry/core 7.23.0Outdated
Base implementation for all Sentry JavaScript SDKs
+8
benvinegar
billyvg
mitsuhiko
lodash-es 4.17.21
Lodash exported as ES modules.
redux 4.0.5Outdated
Predictable state container for JavaScript apps
js-cookie 2.2.1Outdated
A simple, lightweight JavaScript API for handling cookies
reselect 4.0.0Outdated
Selectors for Redux.
react-redux 7.2.6Outdated
Official React bindings for Redux
shallowequal 1.1.0
Like lodash isEqualWith but for shallow equal.
fbjs 0.8.16 - 0.8.18Outdated
A collection of utility libraries used by other Facebook JS projects
+5
zpao
eliwhite
yungsters
graphql-tag 2.12.6
A JavaScript template literal tag that parses GraphQL queries
jnwng
abernix
apollo-bot
react-lifecycles-compat 3.0.4
Backwards compatibility polyfill for React class components
fb
sophiebits
split-on-first 1.0.0 - 1.1.0Outdated
Split a string on the first occurance of a given separator
@sentry/browser 7.23.0 - 7.31.0Outdated
Official Sentry SDK for browsers
+8
benvinegar
billyvg
mitsuhiko
styled-components 5.3.3Outdated
CSS for the <Component> Age. Style components your way with speed, strong typing, and flexibility.
isomorphic-fetch 2.1.1 - 3.0.0
Isomorphic WHATWG Fetch API, for Node & Browserify
mattandrews
the-ft
redux-thunk 2.1.1 - 2.3.0Outdated
Thunk middleware for Redux.
@emotion/stylis 0.8.4 - 0.8.5
A custom build of Stylis
+1
emmatown
tkh44
emotion-release-bot
zen-observable-ts 1.1.0 - 1.2.3
Thin wrapper around zen-observable and @types/zen-observable, to support ESM exports as well as CommonJS exports
jbaxleyiii
apollo-bot
hash-sum 2.0.0
Blazing fast unique hash generator
bevacqua
bevacqua
use-isomorphic-layout-effect 1.0.0 - 1.1.2
A React helper hook for scheduling a layout effect with a fallback to a regular effect for environments where layout effects should not be used (such as server-side rendering).
andarist
andarist
ts-invariant 0.4.3 - 0.4.4Outdated
TypeScript implementation of invariant(condition, message)
zen-observable 0.8.15Outdated
An Implementation of ES Observables
zenparsing
zenparsing
@formatjs/ecma402-abstract 1.11.0 - 1.11.6Outdated
A collection of implementation for ECMAScript abstract operations
compute-scroll-into-view 1.0.17Outdated
The engine that powers scroll-into-view-if-needed
@wry/trie 0.2.1 - 0.3.2Outdated
https://en.wikipedia.org/wiki/Trie
@wry/equality 0.1.9 - 0.1.11Outdated
Structural equality checking for JavaScript values
benjamn
benjamn
intl-messageformat 9.10.0 - 9.11.4Outdated
Formats ICU Message strings with number, date, plural, and select placeholders to create localized messages.
promise-polyfill 8.1.2 - 8.1.3Outdated
Lightweight promise polyfill. A+ compliant
@wry/context 0.4.4 - 0.6.1Outdated
Manage contextual information needed by (a)synchronous tasks without explicitly passing objects around
benjamn
benjamn
optimism 0.16.1Outdated
Composable reactive caching with efficient invalidation.
@formatjs/icu-messageformat-parser 2.0.15 - 2.0.19Outdated
Hand-written ICU MessageFormat parser with compatible output as [`intl-messageformat-parser`](https://www.npmjs.com/package/intl-messageformat-parser) but 6 - 10 times as fast.
longlho
redonkulus
pyrocat
@formatjs/icu-skeleton-parser 1.3.0 - 1.3.8Outdated
longlho
redonkulus
pyrocat
@apollo/client 3.5.10Outdated
A fully-featured caching GraphQL client.
@sentry/react 7.1.0 - 7.31.1Outdated
Official Sentry SDK for React.js
+8
benvinegar
billyvg
mitsuhiko
backo2 1.0.2
simple backoff based on segmentio/backo
mokesmokes
mokesmokes
iterall 1.3.0
Minimal zero-dependency utilities for using JavaScript Iterables in all environments.
@sentry/integrations 7.0.0 - 7.31.1Outdated
Pluggable integrations that can be used to enhance JS SDKs
+8
benvinegar
billyvg
mitsuhiko
@emotion/css 10.0.0 - 10.0.27Outdated
The Next Generation of CSS-in-JS.
@formatjs/fast-memoize 1.2.0 - 1.2.3Outdated
fork of fast-memoize and support esm
@sentry/tracing 7.19.0 - 7.24.1Outdated
Sentry Performance Monitoring Package
+8
benvinegar
billyvg
mitsuhiko
fp-ts 2.6.7Outdated
Functional programming in TypeScript
@emotion/core 10.3.0 - 10.3.1Outdated
+1
emmatown
tkh44
emotion-release-bot
swr 0.4.1Outdated
React Hooks library for remote data fetching
react-toastify 9.0.0 - 9.0.8Outdated
React notification made easy
react-use 7.3.0 - 15.3.8Outdated
Collection of React Hooks
streamich
streamich
xstate 4.19.2 - 4.20.0Outdated
Finite State Machines and Statecharts for the Modern Web.
subscriptions-transport-ws 0.9.16Outdated
A websocket transport for GraphQL subscriptions
apollo-bot
apollo-bot
downshift 6.1.3Outdated
🏎 A set of primitives to build simple, flexible, WAI-ARIA compliant React autocomplete, combobox or select dropdown components.
react-intl 5.23.0 - 5.24.4Outdated
Internationalize React apps. This library provides React components and an API to format dates, numbers, and strings, including pluralization and handling translations.
apollo-utilities 1.3.4
Utilities for working with GraphQL ASTs
+1
apollo-bot
benjamn
jbaxleyiii
@formatjs/intl 1.17.0 - 1.18.5Outdated
Internationalize JS apps. This library provides an API to format dates, numbers, and strings, including pluralization and handling translations.
use-debounce 5.2.0Outdated
Debounce hook for react
native-url 0.3.4
Brings the node url api layer to whatwg-url class
recompose 0.30.0
A React utility belt for function components and higher-order components
react-player 1.12.0 - 1.15.3Outdated
A React component for playing a variety of URLs, including file paths, YouTube, Facebook, Twitch, SoundCloud, Streamable, Vimeo, Wistia and DailyMotion
body-scroll-lock 3.1.4 - 3.1.5Outdated
Enables body scroll locking (for iOS Mobile and Tablet, Android, desktop Safari/Chrome/Firefox) without breaking scrolling of a target element (eg. modal/lightbox/flyouts/nav-menus)
use-subscription 1.5.1Outdated
Reusable hooks
+1
gnoff
fb
sophiebits
change-emitter 0.1.2 - 0.1.6
Listen for changes. Like an event emitter that only emits a single event type. Really tiny.
@chakra-ui/hooks 1.7.0 - 2.1.5Outdated
React hooks for Chakra components
@styled-system/core 5.1.2
jxnblk
jxnblk
input-format 0.0.1 - 0.1.15Outdated
Formatting user's text input on-the-fly
styled-system 5.1.2 - 5.1.5
Responsive, theme-based style props for building design systems with React
@styled-system/css 5.1.5
Styled System for the `css` prop
@styled-system/color 5.0.0 - 5.1.2
jxnblk
jxnblk
@styled-system/border 5.1.5
jxnblk
jxnblk
@styled-system/layout 5.0.23 - 5.1.2
jxnblk
jxnblk
@styled-system/variant 5.1.0 - 5.1.5
Read the docs: https://styled-system.com/variants
jxnblk
jxnblk
@styled-system/space 5.0.18 - 5.1.2
jxnblk
jxnblk
@styled-system/typography 5.0.0 - 5.1.2
jxnblk
jxnblk
@styled-system/position 5.0.15 - 5.1.2
jxnblk
jxnblk
@styled-system/flexbox 5.0.0 - 5.1.2
jxnblk
jxnblk
@styled-system/grid 5.0.0 - 5.1.2
jxnblk
jxnblk
@styled-system/background 5.0.0 - 5.1.2
jxnblk
jxnblk
@styled-system/shadow 5.0.0 - 5.1.2
jxnblk
jxnblk
reduce-reducers 0.4.3Outdated
Reduce multiple reducers into a single reducer
redux-actions 2.6.5Outdated
Flux Standard Action utlities for Redux
normalizr 3.6.0Outdated
Normalizes and denormalizes JSON according to schema for Redux and Flux applications
amplitude-js 5.2.0Outdated
Javascript library for Amplitude Analytics
@next/polyfill-module 10.0.1 - 12.2.4Outdated
A standard library polyfill for ES Modules supporting browsers (Edge 16+, Firefox 60+, Chrome 61+, Safari 10.1+)
+2
matt.straka
vercel-release-bot
rauchg
cross-domain-utils 2.0.38
Javascript module template.
bluepnume
bluepnume
react-facebook 4.2.1 - 5.0.3Outdated
Facebook components like a Login button, Like, Share, Comments, Embedded Post/Video, Messenger Chat and others
@artsy/fresnel 3.1.0 - 3.2.1Outdated
An SSR compatible approach to CSS media query based responsive layouts for React.
react-amphtml 3.1.0 - 4.0.2
Use amphtml components inside your React apps easily!
dfrankland
dfrankland
glints-aries x.x.x
@xstate/react x.x.x
@artsy/detect-responsive-traits x.x.x
@builder.io/react x.x.x
@builder.io/sdk x.x.x
@builder.io/widgets x.x.x
@hapi/joi x.x.x
@mpth/react-no-ssr x.x.x
apollo-link-sentry x.x.x
broadcast-channel x.x.x
@elastic/apm-rum-core x.x.x
@elastic/apm-rum x.x.x
react-favicon x.x.x
react-id-generator x.x.x
awesome-phonenumber x.x.x