graphcommons.com 272 packages

Last scanned on Jan 19 at 10:33 AM
handlebars 4.4.5VulnerableOutdated
Handlebars provides the power necessary to let you build semantic templates effectively with no frustration
License
MIT
Vulnerabilities
Arbitrary Code Execution in handlebars
Affected versions >=0 <3.0.8, >=4.0.0 <4.5.3
Arbitrary Code Execution in Handlebars
Affected versions >=0 <3.0.8, >=4.0.0 <4.5.3
Remote code execution in handlebars when compiling templates
Affected versions >=0 <4.7.7
Prototype Pollution in handlebars
Affected versions >=0 <4.7.7
Prototype Pollution in handlebars
Affected versions >=0 <3.0.8, >=4.0.0 <4.5.3
Arbitrary Code Execution in handlebars
Affected versions >=0 <3.0.8, >=4.0.0 <4.5.2
Version distribution in production
182
4.7.7
172
4.7.6
168
4.7.3
166
4.7.2
166
4.7.4
69
4.4.5
algoliasearch-helper 2.26.0 - 2.28.1VulnerableOutdated
Helper for implementing advanced search features with algolia
+2
jasonberry
dhaya.b
instantsearch-bot
sanitize-html 2.7.0VulnerableOutdated
Clean up user-submitted HTML, preserving allowlisted elements and allowlisted attributes on a per-element basis
postcss 8.4.12VulnerableOutdated
Tool for transforming styles with JS plugins
graphql 16.3.0VulnerableOutdated
A Query Language and Runtime which can target any service.
es5-ext 0.10.24 - 0.10.49VulnerableOutdated
ECMAScript extensions and shims
tslib 2.4.0Outdated
Runtime library for TypeScript helper functions
escape-string-regexp 4.0.0Outdated
Escape RegExp special characters
safe-buffer 5.1.1 - 5.1.2Outdated
Safer Node.js Buffer API
string_decoder 1.1.0 - 1.3.0
The string_decoder module from Node core
uuid 3.4.0Outdated
RFC4122 (v1, v4, and v5) UUIDs
isarray 1.0.0 - 2.0.5
Array#isArray for older browsers
react-is 16.13.1Outdated
Brand checking of React Elements.
punycode 1.4.1Outdated
A robust Punycode converter that fully complies to RFC 3492 and RFC 5891, and works on nearly all JavaScript platforms.
buffer 4.9.2Outdated
Node.js Buffer API, for the browser
regenerator-runtime 0.13.9Outdated
Runtime for Regenerator-compiled generator and async functions.
picocolors 0.2.0 - 1.0.0
The tiniest and the fastest library for terminal output formatting with ANSI colors
entities 2.2.0Outdated
Encode & decode XML and HTML entities with ease & speed
@babel/runtime 7.16.7 - 7.17.9Outdated
babel's modular runtime helpers
+1
hzoo
existentialism
nicolo-ribaudo
lodash 4.17.21
Lodash modular utilities.
axios 0.26.1Outdated
Promise based HTTP client for the browser and node.js
cookie 0.4.2Outdated
HTTP server cookie parsing and serialization
dougwilson
dougwilson
rxjs 6.6.2 - 6.6.7Outdated
Reactive Extensions for modern JavaScript
ieee754 1.2.0 - 1.2.1
Read/write IEEE754 floating point numbers from/to a Buffer or array-like object
is-plain-obj 4.0.0Outdated
Check if a value is a plain object
sindresorhus
sindresorhus
is-plain-object 5.0.0
Returns true if an object was created by the `Object` constructor, or Object.create(null).
object-assign 4.1.1
ES2015 `Object.assign()` ponyfill
domutils 2.8.0Outdated
Utilities for working with htmlparser2's dom
parse5 6.0.1Outdated
HTML parser and serializer.
base64-js 1.5.1
Base64 encoding/decoding in pure JS
dom-serializer 1.3.2 - 1.4.1Outdated
render domhandler DOM nodes to a string
nanoid 3.3.0 - 3.3.4Outdated
A tiny (116 bytes), secure URL-friendly unique string ID generator
domhandler 4.3.1Outdated
Handler for htmlparser2 that turns pages into a dom
events 3.3.0
Node's event emitter for all engines.
is-buffer 2.0.0 - 2.0.5
Determine if an object is a Buffer
deepmerge 4.2.2Outdated
A library for deep (recursive) merging of Javascript objects
domelementtype 2.3.0
all the types of nodes in htmlparser2's dom
core-js 0.9.0 - 0.9.18Outdated
Standard library
htmlparser2 6.1.0Outdated
Fast & forgiving HTML/XML parser
xtend 4.0.1 - 4.0.2
extend like a boss
extend 3.0.2
Port of jQuery.extend for node.js and the browser
scheduler 0.20.2Outdated
Cooperative scheduler for the browser environment.
prop-types 15.8.0 - 15.8.1
Runtime type checking for React props and similar objects.
react 17.0.2Outdated
React is a JavaScript library for building user interfaces.
process 0.11.10
process information for node.js and browsers
react-dom 17.0.2Outdated
React package for working with the DOM.
lodash.debounce 4.0.8
The lodash method `_.debounce` exported as a module.
clsx 1.1.1Outdated
A tiny (239B) utility for constructing className strings conditionally.
@emotion/memoize 0.7.5Outdated
emotion's memoize utility
+1
emmatown
tkh44
emotion-release-bot
hoist-non-react-statics 3.3.2
Copies non-react specific statics from a child component to a parent component
mridgway
mridgway
unist-util-visit-parents 4.1.1Outdated
unist utility to recursively walk over nodes, with ancestral information
unist-util-is 5.1.1Outdated
unist utility to check if a node passes a test
invariant 2.2.3 - 2.2.4
invariant
@emotion/unitless 0.7.2 - 0.7.5Outdated
An object of css properties that don't accept values with units
+1
emmatown
tkh44
emotion-release-bot
unist-util-visit 3.1.0Outdated
unist utility to visit nodes
classnames 2.3.0 - 2.3.1Outdated
A simple utility for conditionally joining classNames together
stylis 4.0.13Outdated
A Light–weight CSS Preprocessor
andarist
thysultan
mdast-util-to-string 3.1.0Outdated
mdast utility to get the plain text content of a node
@emotion/is-prop-valid 1.1.2Outdated
A function to check whether a prop is valid for HTML and SVG elements
+1
emmatown
tkh44
emotion-release-bot
unist-util-stringify-position 3.0.2Outdated
unist utility to serialize a node, position, or point as a human readable location
@emotion/hash 0.8.0Outdated
A MurmurHash2 implementation
+1
emmatown
tkh44
emotion-release-bot
react-transition-group 4.4.2Outdated
A react component toolset for managing animations
dom-helpers 5.2.1
tiny modular DOM lib for ie9+
underscore 1.11.0 - 1.13.6
JavaScript's functional programming helper library.
vfile-message 3.1.2Outdated
vfile utility to create a virtual message
@emotion/serialize 1.0.3Outdated
serialization utils for emotion
+1
emmatown
tkh44
emotion-release-bot
immer 1.6.0 - 5.3.6Outdated
Create your next immutable state by mutating the current one
unified 10.1.2Outdated
parse, inspect, transform, and serialize content through syntax trees
@emotion/utils 1.1.0Outdated
internal utils for emotion
+1
emmatown
tkh44
emotion-release-bot
vfile 5.3.2Outdated
Virtual file format for text processing
memoize-one 5.2.1Outdated
A memoization library which only remembers the latest invocation
@emotion/cache 11.7.1Outdated
emotion's cache
+1
emmatown
tkh44
emotion-release-bot
react-router 6.3.0Outdated
Declarative routing for React
@emotion/sheet 1.1.0Outdated
emotion's stylesheet
+1
emmatown
tkh44
emotion-release-bot
@emotion/weak-memoize 0.2.1 - 0.2.5Outdated
A memoization function that uses a WeakMap
+1
emmatown
tkh44
emotion-release-bot
character-entities 2.0.0 - 2.0.1Outdated
Map of named character references
lodash-es 4.17.21
Lodash exported as ES modules.
react-router-dom 6.3.0Outdated
Declarative routing for React web applications
space-separated-tokens 1.1.3 - 1.1.5Outdated
Parse and stringify space separated tokens
react-fast-compare 3.1.0 - 3.2.0Outdated
Fastest deep equal comparison for React. Great for React.memo & shouldComponentUpdate. Also really fast general-purpose deep comparison.
remark-parse 10.0.0 - 10.0.1Outdated
remark plugin to add support for parsing markdown input
crypto-browserify 1.0.9 - 2.0.0Outdated
implementation of crypto for the browser
+2
dcousens
ljharb
cwmma
parse-entities 2.0.0Outdated
Parse HTML character references
trough 2.1.0Outdated
`trough` is middleware
bail 2.0.2
Throw a given error
mdurl 1.0.1Outdated
URL utilities for markdown-it
vitaly
vitaly
is-alphabetical 1.0.3 - 1.0.4Outdated
Check if a character is alphabetical
is-decimal 1.0.3 - 1.0.4Outdated
Check if a character is decimal
is-alphanumerical 1.0.3 - 1.0.4Outdated
Check if a character is alphanumerical
@emotion/react 11.9.0Outdated
> Simple styling in React.
+1
emmatown
tkh44
emotion-release-bot
micromark 3.0.10Outdated
small commonmark compliant markdown parser with positional info and concrete tokens
is-hexadecimal 1.0.3 - 1.0.4Outdated
Check if a character is hexadecimal
mdast-util-from-markdown 1.2.0Outdated
mdast utility to parse markdown
linkify-it 3.0.3Outdated
Links recognition library with FULL unicode support
shallowequal 1.1.0
Like lodash isEqualWith but for shallow equal.
property-information 5.6.0Outdated
Info on the properties and attributes of the web platform
mdast-util-definitions 5.1.0Outdated
mdast utility to find definition nodes in a tree
comma-separated-tokens 1.0.7 - 1.0.8Outdated
Parse and stringify comma-separated tokens
history 5.3.0
Manage session history with JavaScript
zwitch 2.0.2Outdated
Handle values based on a property
prismjs 1.27.0 - 1.28.0Outdated
Lightweight, robust, elegant syntax highlighting. A spin-off project from Dabblet.
style-to-object 0.2.3 - 0.3.0Outdated
Parse CSS inline style to JavaScript object.
uc.micro 1.0.6Outdated
Micro subset of unicode data files for markdown-it projects.
vitaly
vitaly
is-retry-allowed 1.0.0 - 1.2.0Outdated
Check whether a request can be retried based on the `error.code`
micromark-util-character 1.0.0 - 1.1.0Outdated
micromark utility to handle character codes
graphql-tag 2.12.0 - 2.12.6
A JavaScript template literal tag that parses GraphQL queries
jnwng
abernix
apollo-bot
unist-util-position 4.0.3Outdated
unist utility to get the position of a node
github-slugger 1.4.0Outdated
Generate a slug just like GitHub does for markdown headings.
ccount 2.0.1
Count how often a character (or substring) is used in a string
markdown-it 12.3.2Outdated
Markdown-it - modern pluggable markdown parser.
mdast-util-to-hast 11.3.0Outdated
mdast utility to transform to hast
inline-style-parser 0.1.0 - 0.1.1Outdated
An inline style parser.
resize-observer-polyfill 1.5.1
A polyfill for the Resize Observer API
mdast-util-to-markdown 1.3.0Outdated
mdast utility to serialize markdown
micromark-factory-space 1.0.0Outdated
micromark factory to parse markdown space (found in lots of places)
hastscript 6.0.0Outdated
hast utility to create trees
styled-components 5.3.3 - 5.3.5Outdated
CSS for the <Component> Age. Style components your way with speed, strong typing, and flexibility.
copy-to-clipboard 3.3.0 - 3.3.1Outdated
Copy stuff into clipboard using JS with fallbacks
toggle-selection 1.0.5 - 1.0.6
Toggle current selected content in browser
hast-util-parse-selector 2.2.5Outdated
hast utility to create an element from a simple CSS selector
throttle-debounce 2.1.0Outdated
Throttle and debounce functions.
vfile-location 4.0.0 - 4.0.1Outdated
vfile utility to convert between positional (line and column-based) and offset (range-based) locations
micromark-util-chunked 1.0.0Outdated
micromark utility to splice and push with giant arrays
micromark-util-decode-numeric-character-reference 1.0.0Outdated
micromark utility to decode numeric character references
react-select 4.3.0 - 4.3.1Outdated
A Select control built with and for ReactJS
micromark-util-resolve-all 1.0.0Outdated
micromark utility to resolve subtokens
micromark-core-commonmark 1.0.6Outdated
The CommonMark markdown constructs
micromark-util-classify-character 1.0.0Outdated
micromark utility to classify whether a character is whitespace or punctuation
micromark-util-normalize-identifier 1.0.0Outdated
micromark utility normalize identifiers (as found in references, definitions)
micromark-util-subtokenize 1.0.0 - 1.0.2Outdated
micromark utility to tokenize subtokens
micromark-util-decode-string 1.0.2Outdated
micromark utility to decode markdown strings
micromark-factory-whitespace 1.0.0Outdated
micromark factory to parse markdown whitespace (found in lots of places)
@emotion/stylis 0.8.4 - 0.8.5
A custom build of Stylis
+1
emmatown
tkh44
emotion-release-bot
micromark-factory-label 1.0.2Outdated
micromark factory to parse labels (found in media, definitions)
micromark-util-combine-extensions 1.0.0Outdated
micromark utility to combine syntax or html extensions
micromark-factory-destination 1.0.0Outdated
micromark factory to parse destinations (found in resources, definitions)
micromark-factory-title 1.0.0 - 1.0.2Outdated
micromark factory to parse markdown titles (found in resources, definitions)
micromark-util-html-tag-name 1.0.0Outdated
micromark utility with list of html tag names
zen-observable-ts 1.1.0 - 1.2.3
Thin wrapper around zen-observable and @types/zen-observable, to support ESM exports as well as CommonJS exports
jbaxleyiii
apollo-bot
unist-util-generated 2.0.0Outdated
unist utility to check if a node is generated
ts-invariant 0.9.4 - 0.10.3
TypeScript implementation of invariant(condition, message)
extract-files 11.0.0Outdated
A function to recursively extract files and their object paths within a value, replacing them with null in a deep clone without mutating the original value. FileList instances are treated as File instance arrays. Files are typically File and Blob instance
compute-scroll-into-view 1.0.17Outdated
The engine that powers scroll-into-view-if-needed
@wry/trie 0.2.1 - 0.3.2Outdated
https://en.wikipedia.org/wiki/Trie
tinycolor2 1.4.2Outdated
Fast Color Parsing and Manipulation
markdown-table 3.0.2Outdated
Generate a markdown (GFM) table
@wry/equality 0.5.1 - 0.5.2Outdated
Structural equality checking for JavaScript values
benjamn
benjamn
decode-named-character-reference 1.0.0 - 1.0.2
Decode named character references
hast-util-whitespace 2.0.0Outdated
hast utility to check if a node is inter-element whitespace
hast-util-from-parse5 7.1.0Outdated
hast utility to transform from Parse5’s AST
web-namespaces 2.0.1
Map of web namespaces
remark-rehype 9.1.0Outdated
remark plugin that turns markdown into HTML to support rehype
hast-util-raw 7.2.1Outdated
hast utility to reparse a tree
@wry/context 0.6.1Outdated
Manage contextual information needed by (a)synchronous tasks without explicitly passing objects around
benjamn
benjamn
hast-util-to-parse5 7.0.0Outdated
hast utility to transform to a `parse5` AST
unist-builder 3.0.0Outdated
unist utility to create a new trees with a nice syntax
optimism 0.16.1Outdated
Composable reactive caching with efficient invalidation.
mdast-util-find-and-replace 2.1.0Outdated
mdast utility to find and replace text in a tree
@apollo/client 3.5.9 - 3.5.10Outdated
A fully-featured caching GraphQL client.
rc-util 5.19.6 - 5.21.2Outdated
Common Utils For React Component
micromark-extension-gfm-table 1.0.5Outdated
micromark extension to support GFM tables
mdast-util-gfm-table 1.0.3 - 1.0.6Outdated
mdast extension to parse and serialize GFM tables
slugify 1.6.0 - 1.6.5Outdated
Slugifies a String
micromark-extension-gfm-strikethrough 1.0.4Outdated
micromark extension to support GFM strikethrough
mdast-util-gfm-strikethrough 1.0.1Outdated
mdast extension to parse and serialize GFM strikethrough
micromark-extension-gfm-autolink-literal 1.0.3Outdated
micromark extension to support GFM autolink literals
react-dropzone 11.7.1Outdated
Simple HTML5 drag-drop zone with React.js
mdast-util-gfm-autolink-literal 1.0.2Outdated
mdast extension to parse and serialize GFM autolink literals
micromark-extension-gfm-task-list-item 1.0.3Outdated
micromark extension to support GFM task list items
mdast-util-gfm-task-list-item 1.0.1Outdated
mdast extension to parse and serialize GFM task list items
micromark-extension-gfm 2.0.0 - 2.0.1Outdated
micromark extension to support GFM (GitHub Flavored Markdown)
mdast-util-gfm 2.0.1Outdated
mdast extension to parse and serialize GFM (GitHub Flavored Markdown)
remark-gfm 3.0.1Outdated
remark plugin to support GFM (autolink literals, footnotes, strikethrough, tables, tasklists)
react-scripts 0.4.2Outdated
Configuration and scripts for Create React App.
+1
fb
timer
iansu
attr-accept 2.2.2
JavaScript implementation of the "accept" attribute for HTML5 <input type="file">
file-saver 2.0.5
An HTML5 saveAs() FileSaver implementation
react-markdown 7.1.2Outdated
React component to render markdown
scroll-into-view-if-needed 2.2.29Outdated
Ponyfill for upcoming Element.scrollIntoView() APIs like scrollMode: if-needed, behavior: smooth and block: center
refractor 3.6.0Outdated
Lightweight, robust, elegant virtual syntax highlighting using Prism
hast-to-hyperscript 10.0.1Outdated
Deprecated: use [`hast-util-to-jsx-runtime`][hast-util-to-jsx-runtime] instead, which is much better :)
wooorm
kmck
string-convert 0.1.0 - 0.2.1
String convertions
akiran
akiran
json2mq 0.2.0
Generate media query string from JSON or javascript object
akiran
akiran
react-icons 4.3.1Outdated
SVG React icons of popular icon packs using ES6 imports
+2
nwwells
tusbar
gorangajic
dnd-core 3.0.0 - 4.0.4Outdated
Drag and drop sans the GUI
+2
jordangens
gaearon
darthtrevino
react-input-autosize 3.0.0
Auto-resizing Input Component for React
react-side-effect 2.1.0Outdated
Create components whose prop changes map to a global side effect
react-helmet 6.1.0
A document head manager for React
react-dnd 15.0.0 - 16.0.1
Drag and Drop for React
+2
jordangens
gaearon
darthtrevino
parse-srcset 1.0.0 - 1.0.2
A spec-conformant JavaScript parser for the HTML5 srcset attribute
albell
albell
rc-tooltip 5.1.0 - 5.1.1Outdated
React Tooltip
rc-slider 9.7.5Outdated
Slider UI component for React
react-resize-detector 7.1.0 - 7.1.2Outdated
React resize detector
rc-motion 2.5.1Outdated
React lifecycle controlled motion library
antd 2.10.3 - 2.13.14Outdated
An enterprise-class UI design language and React components implementation
universal-cookie 4.0.4Outdated
Universal cookies for JavaScript
popmotion 3.1.6 - 3.6.3Outdated
The animator's toolbox
rc-trigger 5.2.17Outdated
base abstract trigger component for react
rc-align 4.0.11Outdated
align ui component for react
dom-align 1.12.2Outdated
Align DOM Node Flexibly
react-bootstrap 0.30.2 - 0.33.1Outdated
Bootstrap 5 components built with React
material-colors 1.2.5 - 1.2.6
Colors of Google's Material Design made available to coders
rehype-raw 6.1.1Outdated
rehype plugin to reparse the tree (and raw nodes)
react-color 2.19.3
A Collection of Color Pickers from Sketch, Photoshop, Chrome & more
reactcss 1.2.2 - 1.2.3
Bringing Classes to Inline Styles
@icons/material 0.2.0 - 0.4.1
> materialdesignicons.com
icons-admin
case
enquire.js 2.1.6
Awesome Media Queries in JavaScript
react-slick 0.28.1Outdated
React port of slick carousel
@chakra-ui/utils 1.8.2 - 2.0.15
Common utilities and types for Chakra UI
segunadebayo
_codebender828
email-validator 2.0.4
Provides a fast, pretty robust e-mail validator. Only checks form, not function.
style-inject 0.3.0
Inject style tag to document head.
react-portal 4.2.1 - 4.2.2
To make your life with React Portals easier.
react-infinite-scroll-component 6.1.0
An Infinite Scroll component in react.
apollo-upload-client 17.0.0Outdated
A terminating Apollo Link for Apollo Client that fetches a GraphQL multipart request if the GraphQL variables contain files (by default FileList, File, or Blob instances), or else fetches a regular GraphQL POST or GET request (depending on the config and
react-cookie 4.1.1Outdated
Universal cookies for React
react-sortable-hoc 2.0.0
Set of higher-order components to turn any list into a sortable, touch-friendly, animated list
bootstrap-vue 2.0.0 - 2.15.0Outdated
With more than 85 components, over 45 available plugins, several directives, and 1000+ icons, BootstrapVue provides one of the most comprehensive implementations of the Bootstrap v4 component and grid system available for Vue.js v2.6, complete with extens
react-animate-height 2.1.2Outdated
Lightweight React component for animating height using CSS transitions.
tether 1.4.7Outdated
A client-side library to make absolutely positioned elements attach to elements in the page efficiently.
rwwagner90
chuckcarpenter
deepcopy 2.0.0 - 2.1.0
deep copy data
sasaplus1
sasaplus1
@wordpress/i18n 1.0.0Outdated
WordPress internationalization (i18n) library.
@tannin/plural-forms 1.0.0 - 1.1.0
Compiles a function to compute the plural forms index for a given value
aduth
aduth
react-tether 2.0.4 - 2.0.8Outdated
A positioning engine to make overlays, tooltips and dropdowns better
woothee 0.3.0 - 1.11.1
User-Agent string parser (js implementation)
tagomoris
tagomoris
react-amphtml 3.1.0 - 4.0.2
Use amphtml components inside your React apps easily!
dfrankland
dfrankland
@carbon/icons-react x.x.x
@carbon/pictograms-react x.x.x
orderedmap x.x.x
outline-icons x.x.x
neo4j-driver-core x.x.x
@carbon/icon-helpers x.x.x
graphology-utils x.x.x
obliterator x.x.x
sigma x.x.x
graphology x.x.x
jotai x.x.x
chroma-js x.x.x
graphology-layout-forceatlas2 x.x.x
react-linkify x.x.x
neo4j-driver-bolt-connection x.x.x
mnemonist x.x.x
w3c-keyname x.x.x
graphology-indices x.x.x
react-medium-image-zoom x.x.x
graphology-metrics x.x.x
@yomguithereal/helpers x.x.x
graphology-operators x.x.x
neo4j-driver x.x.x
klaro x.x.x
smooth-scroll-into-view-if-needed x.x.x
typology x.x.x
graphology-communities-louvain x.x.x
graphology-layout-force x.x.x
graphology-layout x.x.x
graphology-layout-noverlap x.x.x
graphology-shortest-path x.x.x
micromark-extension-gfm-footnote x.x.x
micromark-extension-gfm-tagfilter x.x.x
mdast-util-gfm-footnote x.x.x
html-void-elements x.x.x
hast-util-has-property x.x.x
hast-util-to-string x.x.x
rehype-slug x.x.x
hast-util-heading-rank x.x.x
check-password-strength x.x.x
graphology-gexf x.x.x
xml-writer x.x.x
papaparse x.x.x
pandemonium x.x.x
markdown-it-emoji x.x.x
markdown-it-container x.x.x
fuzzy-search x.x.x
rope-sequence x.x.x