humans.uz 117 packages

Last scanned on Apr 19 at 12:05 PM
lodash 4.17.16VulnerableOutdated
Lodash modular utilities.
License
MIT
Footprint
2 KB
Vulnerabilities
Command Injection in lodash
Affected versions >=0 <4.17.21
Regular Expression Denial of Service (ReDoS) in lodash
Affected versions >=0 <4.17.21
Prototype Pollution in lodash
Affected versions >=3.7.0 <4.17.19
Matched Modules
Version distribution in production
3 846
4.17.16
946
4.17.21
337
4.17.20
322
4.17.15
302
4.17.19
301
4.17.13
html-parse-stringify2 2.0.1Vulnerable
Parses well-formed HTML (meaning all tags closed) into an AST and back. quickly.
tslib 1.9.2 - 2.4.0Outdated
Runtime library for TypeScript helper functions
readable-stream 3.6.0Outdated
Node.js Streams, a user-land copy of the stream library from Node.js
escape-string-regexp 1.0.0 - 1.0.5Outdated
Escape RegExp special characters
string_decoder 1.1.0 - 1.3.0
The string_decoder module from Node core
react-is 16.3.0 - 16.13.1Outdated
Brand checking of React Elements.
camelcase 5.3.1Outdated
Convert a dash/dot/underscore/space separated string to camelCase or PascalCase: `foo-bar` → `fooBar`
inherits 2.0.4
Browser-friendly inheritance fully compatible with standard node.js inherits()
qs 6.10.0 - 6.10.1Outdated
A querystring parser that supports nesting and arrays, with a depth limit
buffer 5.7.0 - 6.0.3
Node.js Buffer API, for the browser
@babel/runtime 7.13.6 - 7.13.7Outdated
babel's modular runtime helpers
+1
hzoo
existentialism
nicolo-ribaudo
get-intrinsic 1.1.0 - 1.1.1Outdated
Get and robustly cache all JS language-level intrinsics at first require time
function-bind 1.1.0 - 1.1.1Outdated
Implementation of Function.prototype.bind
call-bind 1.0.2Outdated
Robustly `.call.bind()` a function
object-inspect 1.10.3Outdated
string representations of objects in node and the browser
has-symbols 1.0.2 - 1.0.3
Determine if the JS environment has Symbol support. Supports spec, or shams.
rxjs 7.2.0 - 7.8.1
Reactive Extensions for modern JavaScript
side-channel 1.0.4Outdated
Store information about any JS value in a side channel. Uses WeakMap if available.
es-abstract 1.17.0 - 1.21.3Outdated
ECMAScript spec abstract operations.
base64-js 1.3.0 - 1.5.1
Base64 encoding/decoding in pure JS
define-properties 1.1.3 - 1.2.1
Define multiple non-enumerable properties at once. Uses `Object.defineProperty` when available; falls back to standard assignment in older engines.
object-keys 1.1.0 - 1.1.1
An Object.keys replacement, in case Object.keys is not available. From https://github.com/es-shims/es5-shim
deepmerge 4.2.2Outdated
A library for deep (recursive) merging of Javascript objects
core-js 3.7.0 - 3.17.3Outdated
Standard library
object.values 1.0.0 - 1.2.0
ES2017 spec-compliant Object.values shim.
array-includes 3.0.0 - 3.1.8
An ES7/ES2016 spec-compliant `Array.prototype.includes` shim/polyfill/replacement that works as far down as ES3.
scheduler 0.15.0 - 0.23.0Outdated
Cooperative scheduler for the browser environment.
has 1.0.1 - 1.0.3Outdated
Object.prototype.hasOwnProperty.call shortcut
tarruda
tarruda
prop-types 15.7.0 - 15.8.1
Runtime type checking for React props and similar objects.
react 17.0.0 - 18.2.0Outdated
React is a JavaScript library for building user interfaces.
date-fns 2.12.0 - 2.30.0Outdated
Modern JavaScript date utility library
kossnocorp
kossnocorp
minimalistic-assert 1.0.0 - 1.0.1
minimalistic-assert ===
cwmma
indutny
clsx 1.2.0 - 2.0.0Outdated
A tiny (239B) utility for constructing className strings conditionally.
rfdc 1.3.0 - 1.3.1
Really Fast Deep Clone
@emotion/memoize 0.7.5 - 0.8.1
emotion's memoize utility
+1
emmatown
tkh44
emotion-release-bot
hoist-non-react-statics 3.3.1 - 3.3.2
Copies non-react specific statics from a child component to a parent component
mridgway
mridgway
querystring 0.2.0Outdated
Node's querystring module for all engines.
path-browserify 1.0.0 - 1.0.1
the path module from node core for browsers
classnames 2.3.0 - 2.3.1Outdated
A simple utility for conditionally joining classNames together
query-string 6.5.0 - 7.1.3Outdated
Parse and stringify URL query strings
sha.js 2.4.9 - 2.4.11
Streamable SHA hashes in pure javascript
dcousens
ljharb
cwmma
graphql 15.4.0 - 15.8.0Outdated
A Query Language and Runtime which can target any service.
core-js-pure 3.4.2 - 3.22.3Outdated
Standard library
@emotion/serialize 1.0.2 - 1.1.4
serialization utils for emotion
+1
emmatown
tkh44
emotion-release-bot
asn1.js 5.2.0 - 5.4.1
ASN.1 encoder and decoder
hash-base 3.0.4 - 3.1.0
abstract base class for hash-streams
elliptic 6.5.4 - 6.5.5
EC cryptography
@sentry/utils 6.19.5 - 7.1.1Outdated
Utilities for all Sentry JavaScript SDKs
+8
benvinegar
billyvg
mitsuhiko
hash.js 1.1.2 - 1.1.7
Various hash functions that could be run by both browser and node
es5-ext 0.4.0 - 0.6.3Outdated
ECMAScript extensions and shims
hmac-drbg 1.0.1
Deterministic random bit generator (hmac)
@storybook/theming 6.5.0 - 6.5.16Outdated
Core Storybook Components
lodash-es 4.17.20 - 4.17.21
Lodash exported as ES modules.
react-fast-compare 3.1.0 - 3.2.0Outdated
Fastest deep equal comparison for React. Great for React.memo & shouldComponentUpdate. Also really fast general-purpose deep comparison.
des.js 1.0.1Outdated
DES implementation
md5.js 1.1.0 - 1.3.5
node style md5 on pure JavaScript
pbkdf2 3.1.0 - 3.1.1Outdated
This library provides the functionality of PBKDF2 with the ability to use any supported hashing algorithm returned from crypto.getHashes()
cipher-base 1.0.4
abstract base class for crypto-streams
parse-asn1 5.1.6 - 5.1.7
utility library for parsing asn1 files for use with browserify-sign.
+2
dcousens
ljharb
cwmma
browserify-sign 2.4.0 - 2.8.0Outdated
adds node crypto signing for browsers
+2
dcousens
ljharb
cwmma
buffer-xor 1.0.0 - 1.0.3Outdated
A simple module for bitwise-xor on buffers
browserify-aes 0.4.0 - 0.8.1Outdated
aes, for browserify
tailwindcss 3.0.0 - 3.1.6Outdated
A utility-first CSS framework for rapidly building custom user interfaces.
malfaitrobin
adamwathan
reinink
evp_bytestokey 1.0.3
The insecure key derivation algorithm from OpenSSL
browserify-rsa 4.1.0
RSA for browserify
+2
dcousens
ljharb
cwmma
create-ecdh 3.0.0 - 4.0.4
createECDH but browserifiable
public-encrypt 4.0.3
browserify version of publicEncrypt & privateDecrypt
+2
dcousens
ljharb
cwmma
diffie-hellman 1.1.2Outdated
pure js diffie-hellman
browserify-des 1.0.2
browserify-des ===
dcousens
ljharb
cwmma
miller-rabin 1.1.0 - 4.0.1
Miller Rabin algorithm for primality test
randomfill 1.0.0 - 1.0.4
random fill from browserify stand alone
filter-obj 1.1.0Outdated
Filter object keys and values into a new object
@babel/runtime-corejs3 7.14.6 - 7.20.1Outdated
babel's modular runtime helpers with core-js@3 polyfilling
+1
hzoo
existentialism
nicolo-ribaudo
void-elements 2.0.1Outdated
Array of "void elements" defined by the HTML specification.
graphql-tag 2.12.2 - 2.12.6
A JavaScript template literal tag that parses GraphQL queries
jnwng
abernix
apollo-bot
split-on-first 1.0.0 - 2.0.0Outdated
Split a string on the first occurance of a given separator
toposort 2.0.2
Topological sort of directed ascyclic graphs (like dependecy lists)
resize-observer-polyfill 1.5.0 - 1.5.1
A polyfill for the Resize Observer API
i18next 17.1.0 - 19.4.1Outdated
i18next internationalization framework
property-expr 2.0.4Outdated
tiny util for getting and setting deep object props safely
zen-observable-ts 1.1.0 - 1.2.3
Thin wrapper around zen-observable and @types/zen-observable, to support ESM exports as well as CommonJS exports
jbaxleyiii
apollo-bot
@aws-sdk/util-uri-escape 3.55.0 - 3.186.0Outdated
[![NPM version](https://img.shields.io/npm/v/@aws-sdk/util-uri-escape/latest.svg)](https://www.npmjs.com/package/@aws-sdk/util-uri-escape) [![NPM downloads](https://img.shields.io/npm/dm/@aws-sdk/util-uri-escape.svg)](https://www.npmjs.com/package/@aws-sd
+2
amzn-oss
aws-sdk-bot
kuhe
react-i18next 10.9.0 - 10.13.2Outdated
Internationalization for react done right. Using the i18next i18n ecosystem.
@sentry/hub 6.19.5 - 6.19.7Outdated
Sentry hub which handles global state managment.
+8
benvinegar
billyvg
mitsuhiko
@apollo/client 3.4.9 - 3.4.17Outdated
A fully-featured caching GraphQL client.
attr-accept 2.2.2
JavaScript implementation of the "accept" attribute for HTML5 <input type="file">
@sentry/minimal 4.0.0 - 6.19.7
Sentry minimal library that can be used in other packages
+8
benvinegar
billyvg
mitsuhiko
react-side-effect 2.1.0 - 2.1.2
Create components whose prop changes map to a global side effect
react-helmet 6.0.0 - 6.1.0
A document head manager for React
tippy.js 5.0.0 - 5.0.1Outdated
The complete tooltip, popover, dropdown, and menu solution for the web
firebase 4.1.4 - 4.5.0Outdated
Firebase JavaScript library for web and Node.js
xstate 4.7.0 - 4.19.1Outdated
Finite State Machines and Statecharts for the Modern Web.
airbnb-prop-types 2.16.0
Custom React PropType validators that we use at Airbnb.
rc-motion 2.0.0 - 2.9.0
React lifecycle controlled motion library
rc-trigger 4.3.0 - 4.3.4Outdated
base abstract trigger component for react
mobx 6.1.6 - 6.12.3
Simple, scalable state management.
rc-select 8.6.2 - 9.2.3Outdated
React Select
consolidated-events 1.0.0 - 1.1.1Outdated
Manage multiple event handlers using few event listeners
react-player 1.12.0 - 1.15.3Outdated
A React component for playing a variety of URLs, including file paths, YouTube, Facebook, Twitch, SoundCloud, Streamable, Vimeo, Wistia and DailyMotion
react-input-mask 2.0.4
Masked input component for React
document.contains 1.0.2
Polyfill/shim for `document.contains`
react-outside-click-handler 1.3.0
A React component for dealing with clicks outside its subtree
+2
brieb
airbnbeng
lencioni
react-responsive-carousel 3.2.22 - 3.2.23
React Responsive Carousel
react-final-form 6.5.4Outdated
🏁 High performance subscription-based form state management for React
erikras
erikras
gatsby 4.24.0 - 5.13.4
Blazing fast modern site generator for React
bootstrap-vue 1.0.0 - 2.15.0Outdated
With more than 85 components, over 45 available plugins, several directives, and 1000+ icons, BootstrapVue provides one of the most comprehensive implementations of the Bootstrap v4 component and grid system available for Vue.js v2.6, complete with extens
gatsby-link 2.4.13 - 4.17.0Outdated
An enhanced Link component for Gatsby sites with support for resource prefetching
gatsby-react-router-scroll 4.4.0 - 6.13.1
React Router scroll management forked from https://github.com/ytase/react-router-scroll for Gatsby
@gatsbyjs/reach-router 1.3.5 - 1.3.9Outdated
Gatsby's fork to modernize reach-router
amplitude-js 5.2.0Outdated
Javascript library for Amplitude Analytics
i18next-xhr-backend 3.0.0 - 3.2.2
backend layer for i18next using browsers xhr
react-move 0.0.1 - 0.0.2Outdated
Beautiful, data-driven animations for React.
gatsby-remark-images 5.4.0 - 7.13.1
Processes images in markdown so they can be used in the production build.
@researchgate/react-intersection-observer 1.2.0 - 1.3.5
React component for the Intersection Observer API
prebid.js 0.7.0 - 3.15.0Outdated
Header Bidding Management Library
feathers-commons 0.8.5 - 0.8.7
Shared Feathers utility functions