hackmd.io 45 packages

Last scanned on Oct 27 at 06:45 PM
lodash 4.17.16VulnerableOutdated
Lodash modular utilities.
License
MIT
Footprint
4 KB
Vulnerabilities
Command Injection in lodash
Affected versions >=0 <4.17.21
Regular Expression Denial of Service (ReDoS) in lodash
Affected versions >=0 <4.17.21
Prototype Pollution in lodash
Affected versions >=3.7.0 <4.17.19
Matched Modules
Version distribution in production
3 846
4.17.16
946
4.17.21
337
4.17.20
322
4.17.15
302
4.17.19
301
4.17.13
next 10.1.3 - 12.0.3VulnerableOutdated
The React Framework
rauchg
timneutkens
vercel-release-bot
html-parse-stringify2 2.0.1Vulnerable
Parses well-formed HTML (meaning all tags closed) into an AST and back. quickly.
es5-ext 0.10.1 - 0.10.62VulnerableOutdated
ECMAScript extensions and shims
uuid 7.0.0 - 8.0.0Outdated
RFC4122 (v1, v4, and v5) UUIDs
isarray 0.0.0 - 2.0.5
Array#isArray for older browsers
react-is 16.3.0 - 16.13.1Outdated
Brand checking of React Elements.
buffer 4.9.1 - 4.9.2Outdated
Node.js Buffer API, for the browser
@babel/runtime 7.18.2 - 7.20.0Outdated
babel's modular runtime helpers
+1
hzoo
existentialism
nicolo-ribaudo
path-to-regexp 1.7.0 - 1.8.0Outdated
Express style path to RegExp utility
axios 0.27.2Outdated
Promise based HTTP client for the browser and node.js
base64-js 1.3.0 - 1.5.1
Base64 encoding/decoding in pure JS
core-js 2.6.5Outdated
Standard library
scheduler 0.9.0 - 0.15.0Outdated
Cooperative scheduler for the browser environment.
prop-types 15.7.0 - 15.7.2Outdated
Runtime type checking for React props and similar objects.
react 16.8.6Outdated
React is a JavaScript library for building user interfaces.
hoist-non-react-statics 3.2.0 - 3.3.0Outdated
Copies non-react specific statics from a child component to a parent component
mridgway
mridgway
classnames 2.3.0 - 2.3.1Outdated
A simple utility for conditionally joining classNames together
react-transition-group 2.0.0 - 2.2.1Outdated
A react component toolset for managing animations
dom-helpers 5.0.1 - 5.2.1
tiny modular DOM lib for ie9+
object.getownpropertydescriptors 2.0.0 - 2.1.4Outdated
ES2017 spec-compliant shim for `Object.getOwnPropertyDescriptors` that works in ES5.
react-fast-compare 2.0.4Outdated
Fastest deep equal comparison for React. Great for React.memo & shouldComponentUpdate. Also really fast general-purpose deep comparison.
babel-runtime 6.18.0 - 6.26.0
babel selfContained runtime
hzoo
loganfsmyth
existentialism
shallowequal 1.0.1 - 1.1.0
Like lodash isEqualWith but for shallow equal.
void-elements 2.0.1Outdated
Array of "void elements" defined by the HTML specification.
react-lifecycles-compat 3.0.4
Backwards compatibility polyfill for React class components
fb
sophiebits
i18next 19.5.0 - 20.2.4Outdated
i18next internationalization framework
engine.io-client 6.2.2 - 6.2.3Outdated
Client for the realtime Engine
rauchg
darrachequesne
react-i18next 9.0.7 - 9.0.10Outdated
Internationalization for react done right. Using the i18next i18n ecosystem.
exenv 1.1.0 - 1.2.2
React's ExecutionEnvironment module extracted for use in other packages & components
fp-ts 0.2.1 - 0.2.9Outdated
Functional programming in TypeScript
array.prototype.find 2.0.1 - 2.0.3Outdated
Array.prototype.find ES6 polyfill.
react-side-effect 1.1.5Outdated
Create components whose prop changes map to a global side effect
@datadog/browser-core 1.5.0 - 1.9.2Outdated
Datadog browser core utilities.
datadog
datadog
react-helmet 5.0.0 - 5.2.1Outdated
A document head manager for React
react-modal 3.4.1 - 3.11.2Outdated
Accessible modal dialog component for React.JS
react-query 3.32.2 - 3.34.2Outdated
Hooks for managing, caching and syncing asynchronous and remote data in React
tannerlinsley
tkdodo
@chakra-ui/theme 2.1.0 - 2.1.3Outdated
The default theme for chakra components
component-classes 1.2.5Outdated
Cross-browser element class list
bootstrap-vue 2.0.0 - 2.15.0Outdated
With more than 85 components, over 45 available plugins, several directives, and 1000+ icons, BootstrapVue provides one of the most comprehensive implementations of the Bootstrap v4 component and grid system available for Vue.js v2.6, complete with extens
store 2.0.12
A localStorage wrapper for all browsers without using cookies or flash. Uses localStorage, globalStorage, and userData behavior under the hood
marcuswestin
marcuswestin
spin.js 2.1.1 - 2.3.2Outdated
A spinning activity indicator
owl.carousel 0.0.1Outdated
Touch enabled jQuery plugin that lets you create beautiful responsive carousel slider.
@tannin/plural-forms 1.0.0 - 1.1.0
Compiles a function to compute the plural forms index for a given value
aduth
aduth
woothee 0.3.0 - 0.4.2Outdated
User-Agent string parser (js implementation)
tagomoris
tagomoris