hackmd.io 45 packages

Last scanned on Oct 27 at 06:45 PM
lodash 4.17.16VulnerableOutdated
Lodash modular utilities.
License
MIT
Footprint
4 KB
Vulnerabilities
Prototype Pollution in lodash
Affected versions >=3.7.0 <4.17.19
Command Injection in lodash
Affected versions >=0 <4.17.21
Regular Expression Denial of Service (ReDoS) in lodash
Affected versions >=0 <4.17.21
Matched Modules
Version distribution in production
3 846
4.17.16
946
4.17.21
337
4.17.20
322
4.17.15
302
4.17.19
301
4.17.13
axios 0.27.2VulnerableOutdated
Promise based HTTP client for the browser and node.js
next 10.1.3 - 12.0.3VulnerableOutdated
The React Framework
rauchg
timneutkens
vercel-release-bot
html-parse-stringify2 2.0.1Vulnerable
Parses well-formed HTML (meaning all tags closed) into an AST and back. quickly.
uuid 7.0.0 - 8.0.0Outdated
RFC4122 (v1, v4, and v5) UUIDs
isarray 0.0.0 - 2.0.5
Array#isArray for older browsers
react-is 16.3.0 - 16.13.1Outdated
Brand checking of React Elements.
buffer 4.9.1 - 4.9.2Outdated
Node.js Buffer API, for the browser
@babel/runtime 7.18.2 - 7.20.0Outdated
babel's modular runtime helpers
+1
hzoo
existentialism
nicolo-ribaudo
path-to-regexp 1.7.0 - 1.8.0Outdated
Express style path to RegExp utility
base64-js 1.3.0 - 1.5.1
Base64 encoding/decoding in pure JS
core-js 2.6.5Outdated
Standard library
scheduler 0.9.0 - 0.15.0Outdated
Cooperative scheduler for the browser environment.
prop-types 15.7.0 - 15.7.2Outdated
Runtime type checking for React props and similar objects.
react 16.8.6Outdated
React is a JavaScript library for building user interfaces.
hoist-non-react-statics 3.2.0 - 3.3.0Outdated
Copies non-react specific statics from a child component to a parent component
mridgway
mridgway
react-transition-group 2.0.0 - 2.2.1Outdated
A react component toolset for managing animations
dom-helpers 5.0.1 - 5.2.1
tiny modular DOM lib for ie9+
classnames 2.3.0 - 2.3.1Outdated
A simple utility for conditionally joining classNames together
object.getownpropertydescriptors 2.0.0 - 2.1.4Outdated
ES2017 spec-compliant shim for `Object.getOwnPropertyDescriptors` that works in ES5.
react-fast-compare 2.0.4Outdated
Fastest deep equal comparison for React. Great for React.memo & shouldComponentUpdate. Also really fast general-purpose deep comparison.
es5-ext 0.10.1 - 0.10.62
ECMAScript extensions and shims
shallowequal 1.0.1 - 1.1.0
Like lodash isEqualWith but for shallow equal.
react-lifecycles-compat 3.0.4
Backwards compatibility polyfill for React class components
fb
sophiebits
babel-runtime 6.18.0 - 6.26.0
babel selfContained runtime
hzoo
loganfsmyth
existentialism
void-elements 2.0.1Outdated
Array of "void elements" defined by the HTML specification.
i18next 19.5.0 - 20.2.4Outdated
i18next internationalization framework
engine.io-client 6.2.2 - 6.2.3Outdated
Client for the realtime Engine
rauchg
darrachequesne
react-i18next 9.0.7 - 9.0.10Outdated
Internationalization for react done right. Using the i18next i18n ecosystem.
exenv 1.1.0 - 1.2.2
React's ExecutionEnvironment module extracted for use in other packages & components
array.prototype.find 2.0.1 - 2.0.3Outdated
Array.prototype.find ES6 polyfill.
react-side-effect 1.1.5Outdated
Create components whose prop changes map to a global side effect
react-helmet 5.0.0 - 5.2.1Outdated
A document head manager for React
fp-ts 0.2.1 - 0.2.9Outdated
Functional programming in TypeScript
@datadog/browser-core 1.5.0 - 1.9.2Outdated
Datadog browser core utilities.
datadog
datadog
react-modal 3.4.1 - 3.11.2Outdated
Accessible modal dialog component for React.JS
react-query 3.32.2 - 3.34.2Outdated
Hooks for managing, caching and syncing asynchronous and remote data in React
tannerlinsley
tkdodo
@chakra-ui/theme 2.1.0 - 2.1.3Outdated
The default theme for chakra components
component-classes 1.2.5Outdated
Cross-browser element class list
bootstrap-vue 2.0.0 - 2.15.0Outdated
With more than 85 components, over 45 available plugins, several directives, and 1000+ icons, BootstrapVue provides one of the most comprehensive implementations of the Bootstrap v4 component and grid system available for Vue.js v2.6, complete with extens
spin.js 2.1.1 - 2.3.2Outdated
A spinning activity indicator
store 2.0.12
A localStorage wrapper for all browsers without using cookies or flash. Uses localStorage, globalStorage, and userData behavior under the hood
marcuswestin
marcuswestin
owl.carousel 0.0.1Outdated
Touch enabled jQuery plugin that lets you create beautiful responsive carousel slider.
@tannin/plural-forms 1.0.0 - 1.1.0
Compiles a function to compute the plural forms index for a given value
aduth
aduth
woothee 0.3.0 - 0.4.2Outdated
User-Agent string parser (js implementation)
tagomoris
tagomoris