jcrew.com 67 packages

Last scanned on Oct 27 at 07:03 PM
dompurify 1.0.0VulnerableOutdated
DOMPurify is a DOM-only, super-fast, uber-tolerant XSS sanitizer for HTML, MathML and SVG. It's written in JavaScript and works in all modern browsers (Safari, Opera (15+), Internet Explorer (10+), Firefox and Chrome - as well as almost anything else usin
License
(MPL-2.0 OR Apache-2.0)
Footprint
622 B
Vulnerabilities
Cross-Site Scripting in dompurify
Affected versions >=0 <2.0.3
DOMPurify Open Redirect vulnerability
Affected versions >=0 <1.0.11
Cross-Site Scripting in dompurify
Affected versions >=0 <2.0.7
Cross-site Scripting in dompurify
Affected versions >=0 <2.0.17
Matched Modules
Version distribution in production
27
1.0.0
23
2.3.6
23
2.3.8
16
2.3.7
7
2.3.3
5
2.2.9
lodash 4.17.16VulnerableOutdated
Lodash modular utilities.
next 12.1.6VulnerableOutdated
The React Framework
rauchg
timneutkens
vercel-release-bot
react-is 16.3.0 - 17.0.2Outdated
Brand checking of React Elements.
qs 6.11.0Outdated
A querystring parser that supports nesting and arrays, with a depth limit
is-number 7.0.0
Returns true if a number or string value is a finite number. Useful for regex matches, parsing, user input, etc.
@babel/runtime 7.13.6 - 7.13.7Outdated
babel's modular runtime helpers
+1
hzoo
existentialism
nicolo-ribaudo
get-intrinsic 1.1.0 - 1.1.1Outdated
Get and robustly cache all JS language-level intrinsics at first require time
function-bind 1.1.0 - 1.1.1Outdated
Implementation of Function.prototype.bind
path-to-regexp 2.4.0Outdated
Express style path to RegExp utility
call-bind 1.0.2Outdated
Robustly `.call.bind()` a function
object-inspect 1.11.0 - 1.11.1Outdated
string representations of objects in node and the browser
has-symbols 1.0.2 - 1.0.3
Determine if the JS environment has Symbol support. Supports spec, or shams.
isobject 3.0.0 - 4.0.0
Returns true if the value is an object and not an array or null.
rxjs 6.6.2 - 6.6.7Outdated
Reactive Extensions for modern JavaScript
is-plain-object 2.0.0 - 3.0.0Outdated
Returns true if an object was created by the `Object` constructor, or Object.create(null).
side-channel 1.0.4Outdated
Store information about any JS value in a side channel. Uses WeakMap if available.
lodash.merge 4.6.1 - 4.6.2
The Lodash method `_.merge` exported as a module.
eventemitter3 2.0.0 - 4.0.7Outdated
EventEmitter3 focuses on performance while maintaining a Node.js AND browser compatible interface.
has 1.0.1 - 1.0.3Outdated
Object.prototype.hasOwnProperty.call shortcut
tarruda
tarruda
scheduler 0.15.0 - 0.23.0
Cooperative scheduler for the browser environment.
prop-types 15.7.0 - 15.7.2Outdated
Runtime type checking for React props and similar objects.
react 17.0.0 - 18.2.0
React is a JavaScript library for building user interfaces.
lodash.debounce 4.0.8
The lodash method `_.debounce` exported as a module.
is-generator-function 1.0.0 - 1.0.4Outdated
Determine if a function is a native generator function.
dayjs 1.10.6 - 1.10.8Outdated
2KB immutable date time library alternative to Moment.js with the same modern API
hoist-non-react-statics 3.3.1 - 3.3.2
Copies non-react specific statics from a child component to a parent component
mridgway
mridgway
querystring 0.2.1
Node's querystring module for all engines.
set-value 3.0.1 - 3.0.2Outdated
Create nested values and any intermediaries using dot notation (`'a.b.c'`) paths.
classnames 2.3.0 - 2.3.1Outdated
A simple utility for conditionally joining classNames together
get-value 3.0.1
Use property paths like 'a.b.c' to get a nested value from an object. Even works when keys have dots in them (no other dot-prop library can do this!).
graphql 14.0.0 - 15.8.0Outdated
A Query Language and Runtime which can target any service.
ramda 0.27.0 - 0.27.2Outdated
A practical functional library for JavaScript programmers.
memoize-one 5.1.0 - 5.1.1Outdated
A memoization library which only remembers the latest invocation
@storybook/theming 5.3.0 - 6.2.9Outdated
Core Storybook Components
lodash-es 4.17.21
Lodash exported as ES modules.
redux 4.1.0 - 4.2.0Outdated
Predictable state container for JavaScript apps
react-fast-compare 3.1.0 - 3.2.0Outdated
Fastest deep equal comparison for React. Great for React.memo & shouldComponentUpdate. Also really fast general-purpose deep comparison.
dlv 1.1.3
Safely get a dot-notated property within an object.
reselect 4.1.1 - 4.1.6Outdated
Selectors for Redux.
jwt-decode 2.2.0Outdated
Decode JWT tokens, mostly useful for browser applications.
debounce 1.2.0 - 1.2.1Outdated
Delay function calls until a set time elapses after the last invocation
toposort 2.0.2
Topological sort of directed ascyclic graphs (like dependecy lists)
resize-observer-polyfill 1.5.0 - 1.5.1
A polyfill for the Resize Observer API
libphonenumber-js 1.10.10 - 1.10.14Outdated
A simpler (and smaller) rewrite of Google Android's libphonenumber library in javascript
property-expr 2.0.5Outdated
tiny util for getting and setting deep object props safely
hash-sum 2.0.0
Blazing fast unique hash generator
bevacqua
bevacqua
react-draggable 4.4.1 - 4.4.5Outdated
React draggable component
string-convert 0.2.0 - 0.2.1
String convertions
akiran
akiran
json2mq 0.2.0
Generate media query string from JSON or javascript object
akiran
akiran
react-dnd 15.0.0 - 16.0.1
Drag and Drop for React
+2
jordangens
gaearon
darthtrevino
lit-element 3.0.1 - 3.2.2Outdated
A simple base class for creating fast, lightweight web components
+11
aomarks
emarquez
sorvell
xstate 4.7.0 - 4.33.6Outdated
Finite State Machines and Statecharts for the Modern Web.
subscriptions-transport-ws 0.9.18 - 0.11.0
A websocket transport for GraphQL subscriptions
apollo-bot
apollo-bot
react-bootstrap 0.30.2 - 0.33.1Outdated
Bootstrap 5 components built with React
enquire.js 2.1.6
Awesome Media Queries in JavaScript
react-slick 0.23.0 - 0.23.2Outdated
React port of slick carousel
shortid 2.2.15 - 2.2.16
Amazingly short non-sequential url-friendly unique id generator.
@aws-amplify/auth 1.2.21 - 1.2.25Outdated
Auth category of aws-amplify
+6
amplify-data-dev-npm
amplify-studio-uibuilder
amplify-codegen
contentful 8.0.0 - 8.1.7Outdated
Client for Contentful's Content Delivery API
hungryblank
cf-admin
contentful-ecosystem
humps 0.5.1 - 2.0.1
Underscore-to-camelCase converter (and vice versa) for strings and object keys in JavaScript.
instantsearch.js 4.46.0 - 4.49.0Outdated
InstantSearch.js is a JavaScript library for building performant and instant search experiences with Algolia.
react-lazyload 2.4.0 - 3.2.0Outdated
Lazyload your components, images or anything where performance matters.
analytics-utils 0.0.12 - 0.0.15Outdated
Analytics utility functions used by 'analytics' module
fg-loadcss 2.1.0 - 3.1.0
A function for loading CSS asynchronously
+3
filamentgroup-admin
jlembeck
johnmbender
web-speech-cognitive-services 4.0.0Outdated
Polyfill Web Speech API with Cognitive Services Speech-to-Text service
react-amphtml 3.1.0 - 4.0.2
Use amphtml components inside your React apps easily!
dfrankland
dfrankland