manpowergroup.com 63 packages

Last scanned on Jan 19 at 09:09 AM
url-parse 1.4.5 - 1.4.7VulnerableOutdated
Small footprint URL parser that works seamlessly across Node.js and browser environments
License
MIT
Footprint
3 KB
Vulnerabilities
url-parse incorrectly parses hostname / protocol due to unstripped leading control characters.
Affected versions >=0 <1.5.9
Authorization bypass in url-parse
Affected versions >=0 <1.5.6
Path traversal in url-parse
Affected versions >=0 <1.5.0
Open redirect in url-parse
Affected versions >=0 <1.5.2
Authorization Bypass Through User-Controlled Key in url-parse
Affected versions >=0 <1.5.8
url-parse Incorrectly parses URLs that include an '@'
Affected versions >=0 <1.5.7
Matched Modules
Version distribution in production
206
1.5.10
167
1.5.9
50
1.5.3
47
1.4.6
47
1.4.7
24
1.5.4
lodash-es 4.10.0VulnerableOutdated
Lodash exported as ES modules.
lodash 4.17.16VulnerableOutdated
Lodash modular utilities.
axios 0.19.1 - 0.19.2VulnerableOutdated
Promise based HTTP client for the browser and node.js
es5-ext 0.10.24 - 0.10.49VulnerableOutdated
ECMAScript extensions and shims
next 7.0.0 - 13.1.2VulnerableOutdated
The React Framework
rauchg
timneutkens
vercel-release-bot
sweetalert2 9.3.1VulnerableOutdated
A beautiful, responsive, customizable and accessible (WAI-ARIA) replacement for JavaScript's popup boxes, supported fork of sweetalert
tslib 1.6.0 - 2.4.1Outdated
Runtime library for TypeScript helper functions
isarray 0.0.0 - 0.0.1Outdated
Array#isArray for older browsers
react-is 16.3.0 - 18.2.0Outdated
Brand checking of React Elements.
inherits 2.0.4
Browser-friendly inheritance fully compatible with standard node.js inherits()
@babel/runtime 7.9.0 - 7.13.10Outdated
babel's modular runtime helpers
+1
hzoo
existentialism
nicolo-ribaudo
path-to-regexp 1.7.0 - 1.8.0Outdated
Express style path to RegExp utility
cookie 0.2.4 - 0.4.2Outdated
HTTP server cookie parsing and serialization
dougwilson
dougwilson
fast-json-stable-stringify 2.0.0 - 2.1.0
deterministic `JSON.stringify()` - a faster version of substack's json-stable-strigify without jsonify
core-js 3.6.3 - 3.6.5Outdated
Standard library
requires-port 1.0.0
Check if a protocol requires a certain port number to be added to an URL.
scheduler 0.21.0 - 0.23.0Outdated
Cooperative scheduler for the browser environment.
prop-types 15.7.0 - 15.8.1
Runtime type checking for React props and similar objects.
react 17.0.0 - 17.0.2Outdated
React is a JavaScript library for building user interfaces.
react-dom 16.13.0 - 18.2.0Outdated
React package for working with the DOM.
querystringify 2.1.1Outdated
Querystringify - Small, simple but powerful query string parser.
clsx 1.0.4Outdated
A tiny (239B) utility for constructing className strings conditionally.
minimalistic-assert 1.0.0 - 1.0.1
minimalistic-assert ===
cwmma
indutny
hoist-non-react-statics 3.3.1 - 3.3.2
Copies non-react specific statics from a child component to a parent component
mridgway
mridgway
promise 8.1.0Outdated
Bare bones Promises/A+ implementation
forbeslindesay
then-promise-bot
classnames 2.2.6Outdated
A simple utility for conditionally joining classNames together
graphql 15.0.0Outdated
A Query Language and Runtime which can target any service.
whatwg-fetch 3.0.0 - 3.1.1Outdated
A window.fetch polyfill.
jakechampion
mattandrews
mislav
tiny-invariant 0.0.2 - 1.3.1Outdated
A tiny invariant function
@sentry/utils 7.2.0Outdated
Utilities for all Sentry JavaScript SDKs
+8
benvinegar
billyvg
mitsuhiko
hash.js 1.1.2 - 1.1.7
Various hash functions that could be run by both browser and node
immediate 2.4.3 - 2.6.1Outdated
A cross browser microtask library
cwmma
cwmma
react-router 5.1.1 - 5.3.4Outdated
Declarative routing for React
redux 4.0.5Outdated
Predictable state container for JavaScript apps
react-router-dom 5.1.0 - 5.3.4Outdated
Declarative routing for React web applications
react-fast-compare 2.0.4Outdated
Fastest deep equal comparison for React. Great for React.memo & shouldComponentUpdate. Also really fast general-purpose deep comparison.
shallowequal 1.0.1 - 1.1.0
Like lodash isEqualWith but for shallow equal.
history 4.0.0 - 4.5.1Outdated
Manage session history with JavaScript
zen-observable 0.8.15Outdated
An Implementation of ES Observables
zenparsing
zenparsing
@wry/equality 0.1.8 - 0.1.11Outdated
Structural equality checking for JavaScript values
benjamn
benjamn
framer-motion 3.8.0 - 8.5.0Outdated
A simple and powerful JavaScript animation library
react-i18next 10.4.1 - 11.9.0Outdated
Internationalization for react done right. Using the i18next i18n ecosystem.
react-scripts 0.4.2Outdated
Configuration and scripts for Create React App.
+1
fb
timer
iansu
faker 2.0.1 - 2.1.5Outdated
Generate massive amounts of fake contextual data
marak
marak
react-side-effect 1.2.0Outdated
Create components whose prop changes map to a global side effect
react-helmet 5.0.0 - 5.2.1Outdated
A document head manager for React
mini-create-react-context 0.3.2Outdated
Smaller Polyfill for the proposed React context API
rc-trigger 4.3.0 - 4.3.4Outdated
base abstract trigger component for react
lodash.unescape 4.0.1
The lodash method `_.unescape` exported as a module.
react-cookie 3.1.0 - 4.1.1Outdated
Universal cookies for React
redux-form 0.3.0 - 3.1.7Outdated
A higher order component decorator for forms using Redux and React
react-loadable 5.2.0 - 5.5.0
A higher order component for loading components with promises
miksu
thejameskyle
@atlaskit/icon 14.0.2 - 18.0.5Outdated
An icon is a visual representation of a command, device, directory, or common action.
atlaskit
atlaskit
react-schemaorg 0.1.0 - 2.0.0
Typed Schema.org JSON-LD in React
@sitecore-jss/sitecore-jss 11.0.0 - 15.0.2Outdated
This module is provided as a part of Sitecore JavaScript Rendering SDK. It contains the core JSS APIs (layout service) and utilities.
+7
sc-yavorkrastev
sitecorecorporation
sc-maximnakhod
@sitecore-jss/sitecore-jss-react 12.0.1 - 14.0.0Outdated
This module is provided as a part of Sitecore JavaScript Rendering SDK (JSS). It contains React components and integration for JSS.
+7
sc-yavorkrastev
sitecorecorporation
sc-maximnakhod
lottie-api 1.0.0 - 1.0.2Outdated
A library to edit lottie-web animations dynamically
airnan
airnan
gatsby-background-image 0.7.0 - 1.6.0
Lazy-loading React background-image component with optional support for the blur-up effect.
@rmwc/base 4.0.0 - 4.0.6Outdated
RMWC base module
jamesmfriedman
jamesmfriedman
woothee 0.3.0 - 1.11.1
User-Agent string parser (js implementation)
tagomoris
tagomoris
botframework-webchat-component 4.7.0 - 4.15.6Outdated
React component of botframework-webchat
+2
botframework
sgellock
cwhitten
react-amphtml 3.0.0 - 3.0.1Outdated
Use amphtml components inside your React apps easily!
dfrankland
dfrankland