loom.com 75 packages

Last scanned on Oct 27 at 06:09 PM
lodash 4.17.16VulnerableOutdated
Lodash modular utilities.
License
MIT
Footprint
1 KB
Vulnerabilities
Command Injection in lodash
Affected versions >=0 <4.17.21
Regular Expression Denial of Service (ReDoS) in lodash
Affected versions >=0 <4.17.21
Prototype Pollution in lodash
Affected versions >=3.7.0 <4.17.19
Matched Modules
Version distribution in production
3 846
4.17.16
946
4.17.21
337
4.17.20
322
4.17.15
302
4.17.19
301
4.17.13
next 12.1.6VulnerableOutdated
The React Framework
rauchg
timneutkens
vercel-release-bot
react-is 17.0.0 - 17.0.2Outdated
Brand checking of React Elements.
path-to-regexp 6.1.0 - 6.2.0Outdated
Express style path to RegExp utility
isobject 3.0.0 - 4.0.0
Returns true if the value is an object and not an array or null.
rxjs 6.5.0 - 6.6.7Outdated
Reactive Extensions for modern JavaScript
is-plain-object 2.0.0 - 3.0.0Outdated
Returns true if an object was created by the `Object` constructor, or Object.create(null).
uri-js 3.0.0 - 4.2.1Outdated
An RFC 3986/3987 compliant, scheme extendable URI/IRI parsing/validating/resolving library for JavaScript.
garycourt
garycourt
domhandler 4.2.2 - 4.3.1Outdated
Handler for htmlparser2 that turns pages into a dom
is-buffer 2.0.0 - 2.0.5
Determine if an object is a Buffer
domelementtype 2.2.0 - 2.3.0
all the types of nodes in htmlparser2's dom
extend 3.0.2
Port of jQuery.extend for node.js and the browser
requires-port 1.0.0
Check if a protocol requires a certain port number to be added to an URL.
scheduler 0.15.0 - 0.23.0
Cooperative scheduler for the browser environment.
prop-types 15.8.0 - 15.8.1
Runtime type checking for React props and similar objects.
react 17.0.0 - 18.2.0
React is a JavaScript library for building user interfaces.
url-parse 1.5.9 - 1.5.10
Small footprint URL parser that works seamlessly across Node.js and browser environments
make-error 1.3.1 - 1.3.6
Make your own error types!
querystringify 2.2.0
Querystringify - Small, simple but powerful query string parser.
table 0.0.5 - 6.8.0Outdated
Formats data into a string table.
unist-util-visit-parents 4.0.0 - 4.1.0Outdated
unist utility to recursively walk over nodes, with ancestral information
unist-util-is 4.0.4 - 4.1.0Outdated
unist utility to check if a node passes a test
unist-util-visit 1.4.0 - 2.0.3Outdated
unist utility to visit nodes
classnames 2.3.0 - 2.3.1Outdated
A simple utility for conditionally joining classNames together
mdast-util-to-string 2.0.0Outdated
mdast utility to get the plain text content of a node
unist-util-stringify-position 2.0.0 - 2.0.3Outdated
unist utility to serialize a node, position, or point as a human readable location
klona 2.0.5Outdated
A tiny (240B to 501B) and fast utility to "deep clone" Objects, Arrays, Dates, RegExps, and more!
vfile-message 1.0.0 - 2.0.4Outdated
vfile utility to create a virtual message
@emotion/serialize 0.11.12 - 0.11.16Outdated
serialization utils for emotion
+1
emmatown
tkh44
emotion-release-bot
@emotion/utils 0.0.4 - 0.11.3Outdated
internal utils for emotion
+1
emmatown
tkh44
emotion-release-bot
unified 9.2.2Outdated
parse, inspect, transform, and serialize content through syntax trees
vfile 2.1.0 - 4.2.0Outdated
Virtual file format for text processing
lodash-es 4.17.21
Lodash exported as ES modules.
space-separated-tokens 1.1.3 - 2.0.1Outdated
Parse and stringify space separated tokens
remark-parse 9.0.0Outdated
remark plugin to add support for parsing markdown input
trough 1.0.3 - 1.0.5Outdated
`trough` is middleware
bail 1.0.0 - 2.0.2
Throw a given error
mdurl 0.0.1 - 1.0.1Outdated
URL utilities for markdown-it
vitaly
vitaly
micromark 2.11.4Outdated
small commonmark compliant markdown parser with positional info and concrete tokens
mdast-util-from-markdown 0.8.5Outdated
mdast utility to parse markdown
mdast-util-definitions 4.0.0Outdated
mdast utility to find definition nodes in a tree
property-information 5.6.0Outdated
Info on the properties and attributes of the web platform
comma-separated-tokens 1.0.6 - 1.0.8Outdated
Parse and stringify comma-separated tokens
polished 3.0.0 - 3.4.4Outdated
A lightweight toolset for writing styles in Javascript.
style-to-object 0.2.3 - 0.3.0Outdated
Parse CSS inline style to JavaScript object.
unist-util-position 3.1.0Outdated
unist utility to get the position of a node
mdast-util-to-hast 10.2.0Outdated
mdast utility to transform to hast
inline-style-parser 0.1.0 - 0.1.1Outdated
An inline style parser.
unist-util-generated 1.1.6 - 2.0.0Outdated
unist utility to check if a node is generated
remark-rehype 2.0.0 - 8.1.0Outdated
remark plugin that turns markdown into HTML to support rehype
unist-builder 2.0.1 - 2.0.3Outdated
unist utility to create a new trees with a nice syntax
@reduxjs/toolkit 1.8.0 - 1.8.6Outdated
The official, opinionated, batteries-included toolset for efficient Redux development
rc-util 4.20.3 - 5.3.0Outdated
Common Utils For React Component
react-markdown 6.0.3Outdated
React component to render markdown
@emotion/core 0.13.0 - 10.3.1Outdated
+1
emmatown
tkh44
emotion-release-bot
string-convert 0.2.0 - 0.2.1
String convertions
akiran
akiran
react-focus-lock 2.3.0 - 2.9.1Outdated
It is a trap! (for a focus)
parse-headers 2.0.3 - 2.0.5
Parse http headers, works with browserify/xhr
react-intersection-observer 8.33.0 - 9.0.0Outdated
Monitor if a component is inside the viewport, using IntersectionObserver API
html-react-parser 1.4.5 - 3.0.4Outdated
HTML to React parser.
react-property 2.0.0Outdated
HTML and SVG DOM property configs used by React.
style-to-js 1.1.1Outdated
Parses CSS inline style to JavaScript object (camelCased).
@heroicons/react 0.1.0Outdated
<p align="center"> <a href="https://heroicons.com" target="_blank"> <picture> <source media="(prefers-color-scheme: dark)" srcset="https://raw.githubusercontent.com/tailwindlabs/heroicons/HEAD/.github/logo-dark.svg"> <source media="(pref
+1
thecrypticace
reinink
adamwathan
redux-persist 4.4.0 - 4.5.0Outdated
persist and rehydrate redux stores
andarist
rt2zz
@contentful/rich-text-types 15.9.1 - 15.13.2Outdated
Type definitions and constants for the Contentful rich text field type.
+1
michaelpearce
it-internal
whydah-gally
scriptjs 2.5.6 - 2.5.9
Asyncronous JavaScript loader and dependency manager
@contentful/rich-text-react-renderer 15.11.0 - 15.12.1Outdated
React renderer for the Contentful rich text field type.
+1
michaelpearce
it-internal
whydah-gally
analytics 0.0.2Outdated
Lightweight analytics library for tracking events, page views, & identifying users. Works with any third party analytics provider via an extendable plugin system.
@sanity/generate-help-url 0.0.1 - 3.0.0
Generates URLs to specific sections of the Sanity documentation
@contentful/rich-text-plain-text-renderer 15.9.1 - 15.12.1Outdated
Plain text renderer for the Rich Text document.
+1
michaelpearce
it-internal
whydah-gally
vue-resource 0.5.0 - 0.6.0Outdated
The HTTP client for Vue.js
@tannin/plural-forms 1.0.0 - 1.1.0
Compiles a function to compute the plural forms index for a given value
aduth
aduth
@sanity/block-content-to-hyperscript 2.0.8 - 2.0.10Outdated
Function for transforming Sanity block content to HyperScript
+46
jordanl17
tambet
jtpetty
@sanity/block-content-to-react 1.3.8 - 3.0.0
React component for transforming Sanity block content to React components
+46
jordanl17
tambet
jtpetty
react-dictate-button 2.0.0 - 2.0.1
A button to start dictation using Web Speech API, with an easy to understand event lifecycle.