hotel.info 137 packages

Last scanned on Jan 19 at 12:01 PM
url-parse 1.4.3VulnerableOutdated
Small footprint URL parser that works seamlessly across Node.js and browser environments
License
MIT
Footprint
3 KB
Vulnerabilities
url-parse incorrectly parses hostname / protocol due to unstripped leading control characters.
Affected versions >=0 <1.5.9
Authorization bypass in url-parse
Affected versions >=0 <1.5.6
Path traversal in url-parse
Affected versions >=0 <1.5.0
Open redirect in url-parse
Affected versions >=0 <1.5.2
Authorization Bypass Through User-Controlled Key in url-parse
Affected versions >=0 <1.5.8
url-parse Incorrectly parses URLs that include an '@'
Affected versions >=0 <1.5.7
Improper Validation and Sanitization in url-parse
Affected versions >=0 <1.4.5
Matched Modules
Version distribution in production
206
1.5.10
167
1.5.9
50
1.5.3
47
1.4.6
47
1.4.7
21
1.4.3
crypto-js 3.1.8 - 3.3.0VulnerableOutdated
JavaScript library of crypto standards.
lodash 4.17.16VulnerableOutdated
Lodash modular utilities.
fast-xml-parser 3.17.0 - 3.17.5VulnerableOutdated
Validate XML, Parse XML, Build XML without C/C++ based libraries
es5-ext 0.10.24 - 0.10.49VulnerableOutdated
ECMAScript extensions and shims
tslib 1.2.0 - 2.4.1Outdated
Runtime library for TypeScript helper functions
uuid 7.0.0 - 8.0.0Outdated
RFC4122 (v1, v4, and v5) UUIDs
isarray 1.0.0 - 2.0.5
Array#isArray for older browsers
qs 6.10.2 - 6.10.3Outdated
A querystring parser that supports nesting and arrays, with a depth limit
buffer 4.6.0 - 4.9.2Outdated
Node.js Buffer API, for the browser
get-intrinsic 1.1.0 - 1.1.1Outdated
Get and robustly cache all JS language-level intrinsics at first require time
function-bind 1.1.0 - 1.1.1Outdated
Implementation of Function.prototype.bind
path-to-regexp 3.2.0Outdated
Express style path to RegExp utility
axios 0.21.4Outdated
Promise based HTTP client for the browser and node.js
cookie 0.4.1 - 0.4.2Outdated
HTTP server cookie parsing and serialization
dougwilson
dougwilson
call-bind 1.0.2Outdated
Robustly `.call.bind()` a function
object-inspect 1.12.0 - 1.12.1Outdated
string representations of objects in node and the browser
has-symbols 1.0.2 - 1.0.3
Determine if the JS environment has Symbol support. Supports spec, or shams.
yaml 1.0.0 - 2.2.1Outdated
JavaScript parser and stringifier for YAML
side-channel 1.0.4Outdated
Store information about any JS value in a side channel. Uses WeakMap if available.
es-abstract 1.19.0 - 1.19.1Outdated
ECMAScript spec abstract operations.
base64-js 1.1.0 - 1.2.3Outdated
Base64 encoding/decoding in pure JS
fast-json-stable-stringify 2.0.0 - 2.1.0
deterministic `JSON.stringify()` - a faster version of substack's json-stable-strigify without jsonify
define-properties 1.1.3 - 1.1.4Outdated
Define multiple non-enumerable properties at once. Uses `Object.defineProperty` when available; falls back to standard assignment in older engines.
is-callable 1.1.4 - 1.1.5Outdated
Is this JS value callable? Works with Functions and GeneratorFunctions, despite ES6 @@toStringTag.
object.assign 4.0.4 - 4.1.0Outdated
ES6 spec-compliant Object.assign shim. From https://github.com/es-shims/es6-shim
events 3.0.0 - 3.3.0
Node's event emitter for all engines.
object-keys 1.1.0 - 1.1.1
An Object.keys replacement, in case Object.keys is not available. From https://github.com/es-shims/es5-shim
deepmerge 1.5.2Outdated
A library for deep (recursive) merging of Javascript objects
core-js 2.6.11Outdated
Standard library
is-regex 1.0.4 - 1.0.5Outdated
Is this value a JS regex? Works cross-realm/iframe, and despite ES6 @@toStringTag
is-date-object 1.0.1 - 1.0.3Outdated
Is this value a JS Date object? This module works cross-realm/iframe, and despite ES6 @@toStringTag.
es-to-primitive 1.2.0 - 1.2.1
ECMAScript “ToPrimitive” algorithm. Provides ES5 and ES2015 versions.
object.values 1.0.0 - 1.1.6Outdated
ES2017 spec-compliant Object.values shim.
requires-port 1.0.0
Check if a protocol requires a certain port number to be added to an URL.
has 1.0.1 - 1.0.3Outdated
Object.prototype.hasOwnProperty.call shortcut
tarruda
tarruda
prop-types 15.6.2Outdated
Runtime type checking for React props and similar objects.
array.prototype.flat 1.2.2 - 1.2.5Outdated
An ES2019 spec-compliant `Array.prototype.flat` shim/polyfill/replacement that works as far down as ES3.
react 0.11.0 - 16.5.2Outdated
React is a JavaScript library for building user interfaces.
react-dom 16.5.1 - 16.6.3Outdated
React package for working with the DOM.
querystringify 2.0.0 - 2.1.0Outdated
Querystringify - Small, simple but powerful query string parser.
performance-now 0.1.3 - 2.1.0
Implements performance.now (based on process.hrtime).
meryn
meryn
url 0.11.0Outdated
The core `url` packaged standalone for use with Browserify.
@aws-sdk/util-user-agent-browser 3.0.0Outdated
[![NPM version](https://img.shields.io/npm/v/@aws-sdk/util-user-agent-browser/latest.svg)](https://www.npmjs.com/package/@aws-sdk/util-user-agent-browser) [![NPM downloads](https://img.shields.io/npm/dm/@aws-sdk/util-user-agent-browser.svg)](https://www.n
+2
mattsb42-aws
kuhe
amzn-oss
hoist-non-react-statics 2.5.0Outdated
Copies non-react specific statics from a child component to a parent component
mridgway
mridgway
@aws-crypto/sha256-js 1.0.0 - 2.0.2Outdated
A pure JS implementation SHA256.
+5
amzn-oss
seebees
agray256
har-validator 4.1.1 - 4.1.2Outdated
Extremely fast HTTP Archive (HAR) validator using JSON Schema
classnames 2.3.0 - 2.3.1Outdated
A simple utility for conditionally joining classNames together
@aws-sdk/middleware-signing 3.18.0 - 3.226.0Outdated
[![NPM version](https://img.shields.io/npm/v/@aws-sdk/middleware-signing/latest.svg)](https://www.npmjs.com/package/@aws-sdk/middleware-signing) [![NPM downloads](https://img.shields.io/npm/dm/@aws-sdk/middleware-signing.svg)](https://www.npmjs.com/packag
+2
mattsb42-aws
kuhe
amzn-oss
gaxios 2.0.1Outdated
A simple common HTTP client specifically for Google APIs and services.
google-wombot
google-wombot
ramda 0.23.0 - 0.27.2Outdated
A practical functional library for JavaScript programmers.
graphql 14.3.1Outdated
A Query Language and Runtime which can target any service.
@aws-crypto/supports-web-crypto 0.1.0 - 3.0.0Outdated
Provides functions for detecting if the host environment supports the WebCrypto API
+5
amzn-oss
seebees
agray256
@aws-crypto/sha256-browser 0.1.0 - 1.1.0Outdated
SHA256 wrapper for browsers that prefers `window.crypto.subtle` but will fall back to a pure JS implementation in @aws-crypto/sha256-js to provide a consistent interface for SHA256.
+5
amzn-oss
seebees
agray256
@aws-crypto/ie11-detection 0.1.0 - 3.0.0Outdated
Provides functions and types for detecting if the host environment is IE11
+5
amzn-oss
seebees
agray256
object.getownpropertydescriptors 2.0.0 - 2.1.5Outdated
ES2017 spec-compliant shim for `Object.getOwnPropertyDescriptors` that works in ES5.
react-router 4.3.0 - 4.3.1Outdated
Declarative routing for React
is-promise 2.1.0 - 4.0.0
Test whether an object looks like a promises-a+ promise
forbeslindesay
then-bot
lodash-es 4.17.21
Lodash exported as ES modules.
redux 4.0.0Outdated
Predictable state container for JavaScript apps
remark-parse 0.0.0 - 8.0.3Outdated
remark plugin to add support for parsing markdown input
proto-list 1.0.0 - 1.1.0Outdated
A utility for managing a prototype chain
isaacs
isaacs
querystring-es3 0.2.1
Node's querystring module for all engines. (ES3 compat fork)
reselect 3.0.0 - 3.0.1Outdated
Selectors for Redux.
babel-runtime 6.18.0 - 6.26.0
babel selfContained runtime
hzoo
loganfsmyth
existentialism
shallowequal 1.0.1 - 1.1.0
Like lodash isEqualWith but for shallow equal.
history 4.0.0 - 4.10.1Outdated
Manage session history with JavaScript
raf 3.0.0 - 3.1.0Outdated
requestAnimationFrame polyfill for node and the browser
react-lifecycles-compat 3.0.4
Backwards compatibility polyfill for React class components
fb
sophiebits
@aws-sdk/protocol-http 3.0.0 - 3.12.0Outdated
[![NPM version](https://img.shields.io/npm/v/@aws-sdk/protocol-http/latest.svg)](https://www.npmjs.com/package/@aws-sdk/protocol-http) [![NPM downloads](https://img.shields.io/npm/dm/@aws-sdk/protocol-http.svg)](https://www.npmjs.com/package/@aws-sdk/prot
+2
amzn-oss
aws-sdk-bot
kuhe
lodash.throttle 4.1.1
The lodash method `_.throttle` exported as a module.
unfetch 4.2.0Outdated
Bare minimum fetch polyfill in 500 bytes
@aws-sdk/signature-v4 3.0.0 - 3.162.0Outdated
A standalone implementation of the AWS Signature V4 request signing algorithm
+2
amzn-oss
aws-sdk-bot
kuhe
@aws-sdk/is-array-buffer 3.0.0 - 3.201.0Outdated
Provides a function for detecting if an argument is an ArrayBuffer
+2
amzn-oss
aws-sdk-bot
kuhe
@aws-sdk/util-hex-encoding 3.0.0 - 3.186.0Outdated
Converts binary buffers to and from lowercase hexadecimal encoding
+2
amzn-oss
aws-sdk-bot
kuhe
@aws-sdk/smithy-client 3.0.0 - 3.29.0Outdated
[![NPM version](https://img.shields.io/npm/v/@aws-sdk/smithy-client/latest.svg)](https://www.npmjs.com/package/@aws-sdk/smithy-client) [![NPM downloads](https://img.shields.io/npm/dm/@aws-sdk/smithy-client.svg)](https://www.npmjs.com/package/@aws-sdk/smit
+2
amzn-oss
aws-sdk-bot
kuhe
zen-observable 0.8.10 - 0.8.14Outdated
An Implementation of ES Observables
zenparsing
zenparsing
@aws-sdk/config-resolver 3.29.0 - 3.39.0Outdated
[![NPM version](https://img.shields.io/npm/v/@aws-sdk/config-resolver/latest.svg)](https://www.npmjs.com/package/@aws-sdk/config-resolver) [![NPM downloads](https://img.shields.io/npm/dm/@aws-sdk/config-resolver.svg)](https://www.npmjs.com/package/@aws-sd
+2
amzn-oss
aws-sdk-bot
kuhe
@aws-sdk/querystring-parser 3.0.0 - 3.186.0Outdated
[![NPM version](https://img.shields.io/npm/v/@aws-sdk/querystring-parser/latest.svg)](https://www.npmjs.com/package/@aws-sdk/querystring-parser) [![NPM downloads](https://img.shields.io/npm/dm/@aws-sdk/querystring-parser.svg)](https://www.npmjs.com/packag
+2
amzn-oss
aws-sdk-bot
kuhe
@aws-sdk/url-parser 3.3.0 - 3.170.0Outdated
[![NPM version](https://img.shields.io/npm/v/@aws-sdk/url-parser/latest.svg)](https://www.npmjs.com/package/@aws-sdk/url-parser) [![NPM downloads](https://img.shields.io/npm/dm/@aws-sdk/url-parser.svg)](https://www.npmjs.com/package/@aws-sdk/url-parser)
+2
amzn-oss
aws-sdk-bot
kuhe
@aws-sdk/querystring-builder 3.0.0 - 3.54.1Outdated
[![NPM version](https://img.shields.io/npm/v/@aws-sdk/querystring-builder/latest.svg)](https://www.npmjs.com/package/@aws-sdk/querystring-builder) [![NPM downloads](https://img.shields.io/npm/dm/@aws-sdk/querystring-builder.svg)](https://www.npmjs.com/pac
+2
amzn-oss
aws-sdk-bot
kuhe
@wry/equality 0.1.8 - 0.1.11Outdated
Structural equality checking for JavaScript values
benjamn
benjamn
@aws-sdk/middleware-serde 3.0.0 - 3.3.0Outdated
[![NPM version](https://img.shields.io/npm/v/@aws-sdk/middleware-serde/latest.svg)](https://www.npmjs.com/package/@aws-sdk/middleware-serde) [![NPM downloads](https://img.shields.io/npm/dm/@aws-sdk/middleware-serde.svg)](https://www.npmjs.com/package/@aws
+2
amzn-oss
aws-sdk-bot
kuhe
@aws-sdk/fetch-http-handler 3.0.0 - 3.186.0Outdated
Provides a way to make requests
+2
amzn-oss
aws-sdk-bot
kuhe
intl-messageformat 2.1.0 - 2.2.0Outdated
Formats ICU Message strings with number, date, plural, and select placeholders to create localized messages.
@aws-sdk/invalid-dependency 3.0.0 - 3.226.0Outdated
[![NPM version](https://img.shields.io/npm/v/@aws-sdk/invalid-dependency/latest.svg)](https://www.npmjs.com/package/@aws-sdk/invalid-dependency) [![NPM downloads](https://img.shields.io/npm/dm/@aws-sdk/invalid-dependency.svg)](https://www.npmjs.com/packag
+2
amzn-oss
aws-sdk-bot
kuhe
@aws-sdk/util-body-length-browser 3.0.0 - 3.52.0Outdated
Determines the length of a request body in browsers
+2
amzn-oss
aws-sdk-bot
kuhe
framer-motion 6.5.0 - 8.5.0Outdated
A simple and powerful JavaScript animation library
@apollo/client 3.0.0 - 3.7.4Outdated
A fully-featured caching GraphQL client.
@aws-sdk/util-base64-browser 3.0.0 - 3.186.0Outdated
A pure JS Base64 <-> UInt8Array converter
+2
amzn-oss
aws-sdk-bot
kuhe
react-datepicker 0.59.0Outdated
A simple and reusable datepicker component for React
shallow-equal 1.0.0Outdated
Typescript-compatible minimalistic shallow equality check for arrays/objects
exenv 1.1.0 - 1.2.2
React's ExecutionEnvironment module extracted for use in other packages & components
react-side-effect 1.1.5Outdated
Create components whose prop changes map to a global side effect
react-helmet 5.2.0 - 5.2.1Outdated
A document head manager for React
@firebase/firestore 0.1.0 - 3.8.0Outdated
The Cloud Firestore component of the Firebase JS SDK.
+1
chholland
firebase-ops
feiyang.chen
airbnb-prop-types 2.9.0 - 2.10.0Outdated
Custom React PropType validators that we use at Airbnb.
react-modal 3.4.1 - 3.11.2Outdated
Accessible modal dialog component for React.JS
react-intl 2.1.5 - 2.9.0Outdated
Internationalize React apps. This library provides React components and an API to format dates, numbers, and strings, including pluralization and handling translations.
intl-messageformat-parser 1.3.0 - 1.5.1Outdated
Parses ICU Message strings into an AST via JavaScript.
@mapbox/point-geometry 0.1.0
a point geometry with transforms
apollo-link 1.2.9 - 1.2.14
Flexible, lightweight transport layer for GraphQL
jbaxleyiii
peggyrayzis
apollo-bot
superstruct 0.11.0 - 1.0.3Outdated
A simple and composable way to validate data in JavaScript (and TypeScript).
react-bootstrap 0.30.2 - 0.33.1Outdated
Bootstrap 5 components built with React
consolidated-events 2.0.2
Manage multiple event handlers using few event listeners
@aws-amplify/core 3.5.4 - 3.8.6Outdated
Core category of aws-amplify
+6
amplify-data-dev-npm
amplify-studio-uibuilder
amplify-codegen
@babel/runtime-corejs2 7.14.6 - 7.20.1Outdated
babel's modular runtime helpers with core-js@2 polyfilling
+1
hzoo
existentialism
nicolo-ribaudo
change-emitter 0.1.2 - 0.1.6
Listen for changes. Like an event emitter that only emits a single event type. Really tiny.
@aws-amplify/auth 3.4.4 - 3.4.10Outdated
Auth category of aws-amplify
+6
amplify-data-dev-npm
amplify-studio-uibuilder
amplify-codegen
credit-card-type 8.1.0Outdated
A library for determining credit card type
braintree
braintree
react-outside-click-handler 1.0.0 - 1.2.4Outdated
A React component for dealing with clicks outside its subtree
+2
brieb
airbnbeng
lencioni
component-indexof 0.0.3
Microsoft sucks
react-with-direction 1.0.0 - 1.4.0
Components to provide and consume RTL or LTR direction in React
+4
brieb
airbnbeng
lencioni
react-with-styles 3.2.1 - 3.2.3Outdated
[![Build Status][travis-svg]][travis-url] [![dependency status][deps-svg]][deps-url] [![dev dependency status][dev-deps-svg]][dev-deps-url] [![License][license-image]][license-url] [![Downloads][downloads-image]][downloads-url]
apollo-client 2.6.0 - 2.6.10
A simple yet functional GraphQL client.
intl-format-cache 2.0.5 - 2.1.0Outdated
A memoizer factory for Intl format constructors.
react-moment-proptypes 1.6.0 - 1.8.1
React proptype for moment module
component-classes 1.2.5Outdated
Cross-browser element class list
react-dates 18.1.0 - 18.1.1Outdated
A responsive and accessible date range picker component built with React
+4
lencioni
ljharb
ahuth
global-cache 1.2.0 - 1.2.1
Sometimes you have to do horrible things, like use the global object to share a singleton. Abstract that away, with this!
react-scroll 1.7.10Outdated
A scroll component for React.js
react-with-styles-interface-css 4.0.0 - 4.0.3Outdated
Interface for react-with-styles outputting CSS
scriptjs 2.5.6 - 2.5.9
Asyncronous JavaScript loader and dependency manager
connected-react-router 4.3.0 - 5.0.1Outdated
A Redux binding for React Router v4 and v5
supasate
supasate
redux-form 7.3.0 - 7.4.3Outdated
A higher order component decorator for forms using Redux and React
react-autosuggest 9.4.1 - 9.4.3Outdated
WAI-ARIA compliant React autosuggest component
section-iterator 2.0.0
Simple iterator for flat and multi section lists
bootstrap-vue 1.0.0 - 2.15.0Outdated
With more than 85 components, over 45 available plugins, several directives, and 1000+ icons, BootstrapVue provides one of the most comprehensive implementations of the Bootstrap v4 component and grid system available for Vue.js v2.6, complete with extens
google-map-react 1.1.5 - 1.1.7Outdated
Isomorphic component that allows rendering react components on a google map
intl-relativeformat 2.1.0Outdated
Formats JavaScript dates to relative time strings.
react-instantsearch-dom 5.4.0 - 5.7.0Outdated
⚡ Lightning-fast search for React DOM, by Algolia
react-autowhatever 8.0.0 - 10.2.0Outdated
Accessible rendering layer for Autosuggest and Autocomplete components
react-apollo 2.5.3 - 2.5.8Outdated
React Apollo Hooks, Components, and HOC.
@tannin/plural-forms 1.0.0 - 1.1.0
Compiles a function to compute the plural forms index for a given value
aduth
aduth
js-joda 1.5.3Outdated
a date and time library for javascript
schedule 0.2.0 - 0.5.0
Cooperative scheduler for the browser environment.
lottie-api 1.0.0 - 1.0.2Outdated
A library to edit lottie-web animations dynamically
airnan
airnan