msg.com 161 packages

Last scanned on Jan 19 at 09:31 AM
lodash 4.17.16VulnerableOutdated
Lodash modular utilities.
License
MIT
Footprint
1 KB
Vulnerabilities
Command Injection in lodash
Affected versions >=0 <4.17.21
Regular Expression Denial of Service (ReDoS) in lodash
Affected versions >=0 <4.17.21
Prototype Pollution in lodash
Affected versions >=3.7.0 <4.17.19
Matched Modules
Version distribution in production
3 846
4.17.16
946
4.17.21
337
4.17.20
322
4.17.15
302
4.17.19
301
4.17.13
yaml 2.0.0 - 2.2.1VulnerableOutdated
JavaScript parser and stringifier for YAML
moment 2.19.0VulnerableOutdated
Parse, validate, manipulate, and display dates
elliptic 6.3.1 - 6.4.1VulnerableOutdated
EC cryptography
aws-sdk 2.387.0 - 2.423.0VulnerableOutdated
AWS SDK for JavaScript
parse-link-header 0.4.1VulnerableOutdated
Parses a link header and returns paging information for each contained link.
markdown-it 2.0.0 - 3.1.0VulnerableOutdated
Markdown-it - modern pluggable markdown parser.
es5-ext 0.10.24 - 0.10.49VulnerableOutdated
ECMAScript extensions and shims
supports-color 1.1.0Outdated
Detect whether a terminal supports color
readable-stream 2.3.4 - 2.3.7Outdated
Node.js Streams, a user-land copy of the stream library from Node.js
string_decoder 1.1.0 - 1.3.0
The string_decoder module from Node core
uuid 7.0.0 - 8.0.0Outdated
RFC4122 (v1, v4, and v5) UUIDs
isarray 1.0.0 - 2.0.5
Array#isArray for older browsers
react-is 16.3.0 - 16.13.1Outdated
Brand checking of React Elements.
inherits 2.0.3Outdated
Browser-friendly inheritance fully compatible with standard node.js inherits()
qs 6.6.0Outdated
A querystring parser that supports nesting and arrays, with a depth limit
buffer 4.6.0 - 4.9.2Outdated
Node.js Buffer API, for the browser
entities 1.1.1 - 1.1.2Outdated
Encode & decode XML and HTML entities with ease & speed
function-bind 1.1.0 - 1.1.1Outdated
Implementation of Function.prototype.bind
path-to-regexp 1.7.0 - 1.8.0Outdated
Express style path to RegExp utility
core-util-is 1.0.2 - 1.0.3
The `util.is*` functions introduced in Node v0.12.
has-symbols 1.0.0 - 1.0.1Outdated
Determine if the JS environment has Symbol support. Supports spec, or shams.
domutils 1.7.0Outdated
Utilities for working with htmlparser2's dom
es-abstract 1.13.0Outdated
ECMAScript spec abstract operations.
base64-js 1.3.0 - 1.5.1
Base64 encoding/decoding in pure JS
define-properties 1.1.3 - 1.1.4Outdated
Define multiple non-enumerable properties at once. Uses `Object.defineProperty` when available; falls back to standard assignment in older engines.
dom-serializer 0.1.1Outdated
render domhandler DOM nodes to a string
is-callable 1.1.4 - 1.1.5Outdated
Is this JS value callable? Works with Functions and GeneratorFunctions, despite ES6 @@toStringTag.
domhandler 2.4.0 - 2.4.2Outdated
Handler for htmlparser2 that turns pages into a dom
object.assign 4.0.4 - 4.1.0Outdated
ES6 spec-compliant Object.assign shim. From https://github.com/es-shims/es6-shim
is-buffer 1.1.4 - 1.1.6Outdated
Determine if an object is a Buffer
object-keys 1.1.0 - 1.1.1
An Object.keys replacement, in case Object.keys is not available. From https://github.com/es-shims/es5-shim
domelementtype 1.2.0 - 1.3.1Outdated
all the types of nodes in htmlparser2's dom
core-js 2.5.6Outdated
Standard library
is-regex 1.0.4 - 1.0.5Outdated
Is this value a JS regex? Works cross-realm/iframe, and despite ES6 @@toStringTag
is-date-object 1.0.1 - 1.0.3Outdated
Is this value a JS Date object? This module works cross-realm/iframe, and despite ES6 @@toStringTag.
util 0.10.0 - 0.12.5
Node.js's util module for all engines
es-to-primitive 1.2.0 - 1.2.1
ECMAScript “ToPrimitive” algorithm. Provides ES5 and ES2015 versions.
htmlparser2 3.9.1 - 3.9.2Outdated
Fast & forgiving HTML/XML parser
object.values 1.0.0 - 1.1.6Outdated
ES2017 spec-compliant Object.values shim.
pako 1.0.6 - 1.0.11Outdated
zlib port to javascript - fast, modularized, with browser support
scheduler 0.9.0 - 0.14.0Outdated
Cooperative scheduler for the browser environment.
has 1.0.1 - 1.0.3Outdated
Object.prototype.hasOwnProperty.call shortcut
tarruda
tarruda
prop-types 15.6.0 - 15.6.1Outdated
Runtime type checking for React props and similar objects.
react 16.8.6Outdated
React is a JavaScript library for building user interfaces.
lodash.debounce 4.0.8
The lodash method `_.debounce` exported as a module.
url 0.11.0Outdated
The core `url` packaged standalone for use with Browserify.
date-fns 2.0.0 - 2.5.1Outdated
Modern JavaScript date utility library
kossnocorp
kossnocorp
minimalistic-assert 1.0.0 - 1.0.1
minimalistic-assert ===
cwmma
indutny
html-entities 2.0.4 - 2.3.3Outdated
Fastest HTML entities encode/decode library.
hoist-non-react-statics 1.2.0 - 3.3.2
Copies non-react specific statics from a child component to a parent component
mridgway
mridgway
lodash.uniq 4.4.0 - 4.5.0
The lodash method `_.uniq` exported as a module.
path-browserify 0.0.0 - 0.0.1Outdated
the path module from node core for browsers
classnames 2.2.6Outdated
A simple utility for conditionally joining classNames together
stylis 3.1.0 - 3.5.4Outdated
A Light–weight CSS Preprocessor
andarist
thysultan
assert 1.0.0 - 1.5.0Outdated
The assert module from Node.js, for the browser.
query-string 2.3.0 - 5.0.1Outdated
Parse and stringify URL query strings
sha.js 2.4.9 - 2.4.11
Streamable SHA hashes in pure javascript
dcousens
ljharb
cwmma
common-tags 1.4.0 - 1.8.2
a few common utility template tags for ES2015
browserify-zlib 0.2.0
Full zlib module for the browser
stack-trace 0.0.10Outdated
Get v8 stack traces as an array of CallSite objects.
+3
felixge
sebastianhoitz
tim-smart
asn1.js 4.6.0 - 4.10.1Outdated
ASN.1 encoder and decoder
hash-base 3.0.4 - 3.1.0
abstract base class for hash-streams
@sentry/utils 7.2.0 - 7.31.0Outdated
Utilities for all Sentry JavaScript SDKs
+8
benvinegar
billyvg
mitsuhiko
winston 2.3.0 - 2.4.1Outdated
A logger for just about everything.
hash.js 1.1.2 - 1.1.7
Various hash functions that could be run by both browser and node
hmac-drbg 1.0.1
Deterministic random bit generator (hmac)
lodash-es 4.16.5 - 4.17.21
Lodash exported as ES modules.
css.escape 1.5.1
A robust polyfill for the `CSS.escape` utility method as defined in CSSOM.
redux 3.7.1 - 3.7.2Outdated
Predictable state container for JavaScript apps
des.js 1.0.0Outdated
DES implementation
superagent 3.8.0 - 8.0.8Outdated
elegant & feature rich browser / node HTTP with a fluent API
md5.js 1.1.0 - 1.3.5
node style md5 on pure JavaScript
pbkdf2 3.0.16 - 3.0.17Outdated
This library provides the functionality of PBKDF2 with the ability to use any supported hashing algorithm returned from crypto.getHashes()
cipher-base 1.0.4
abstract base class for crypto-streams
parse-asn1 5.1.1Outdated
utility library for parsing asn1 files for use with browserify-sign.
+2
dcousens
ljharb
cwmma
browserify-sign 2.4.0 - 2.8.0Outdated
adds node crypto signing for browsers
+2
dcousens
ljharb
cwmma
browserify-aes 0.4.0 - 0.8.1Outdated
aes, for browserify
stream-http 2.8.2 - 2.8.3Outdated
Streaming http in the browser
evp_bytestokey 1.0.3
The insecure key derivation algorithm from OpenSSL
moment-timezone 0.5.29 - 0.5.40Outdated
Parse and display moments in any timezone.
browserify-rsa 3.0.0 - 4.0.1Outdated
RSA for browserify
+2
dcousens
ljharb
cwmma
timers-browserify 2.0.9Outdated
timers module for browserify
crypto-browserify 1.0.9 - 2.0.0Outdated
implementation of crypto for the browser
+2
dcousens
ljharb
cwmma
create-ecdh 3.0.0 - 4.0.4
createECDH but browserifiable
public-encrypt 2.0.0 - 4.0.2Outdated
browserify version of publicEncrypt & privateDecrypt
+2
dcousens
ljharb
cwmma
diffie-hellman 1.1.2Outdated
pure js diffie-hellman
browserify-des 1.0.0 - 1.0.1Outdated
browserify-des ===
dcousens
ljharb
cwmma
miller-rabin 1.1.0 - 4.0.1
Miller Rabin algorithm for primality test
randomfill 1.0.0 - 1.0.4
random fill from browserify stand alone
vm-browserify 0.0.1 - 1.1.2
vm module for the browser
character-entities-legacy 2.0.0Outdated
List of legacy HTML named character references that don’t need a trailing semicolon
querystring-es3 0.2.1
Node's querystring module for all engines. (ES3 compat fork)
babel-runtime 6.18.0 - 6.26.0
babel selfContained runtime
hzoo
loganfsmyth
existentialism
react-redux 5.1.2Outdated
Official React bindings for Redux
shallowequal 1.0.1 - 1.1.0
Like lodash isEqualWith but for shallow equal.
@xmldom/xmldom 0.7.0 - 0.8.6Outdated
A pure JavaScript W3C standard-based (XML DOM Level 2 Core) DOMParser and XMLSerializer module.
change-case 2.0.0 - 2.1.0Outdated
Transform a string between `camelCase`, `PascalCase`, `Capital Case`, `snake_case`, `kebab-case`, `CONSTANT_CASE` and others
history 4.6.2Outdated
Manage session history with JavaScript
crypt 0.0.0 - 0.0.2
utilities for encryption and hashing
pvorb
pvorb
charenc 0.0.0 - 0.0.2
character encoding utilities
pvorb
pvorb
debounce 1.1.0Outdated
Delay function calls until a set time elapses after the last invocation
to-arraybuffer 1.0.1
Get an ArrayBuffer from a Buffer as fast as possible
p-is-promise 3.0.0 - 4.0.0
Check if something is a promise
styled-components 3.2.0 - 3.4.10Outdated
CSS for the <Component> Age. Style components your way with speed, strong typing, and flexibility.
redux-thunk 2.1.0 - 2.4.2Outdated
Thunk middleware for Redux.
lodash.throttle 4.1.1
The lodash method `_.throttle` exported as a module.
compute-scroll-into-view 1.0.11Outdated
The engine that powers scroll-into-view-if-needed
resolve-pathname 2.1.0 - 2.2.0Outdated
Resolve URL pathnames using JavaScript
mjackson
mjackson
value-equal 0.2.1 - 0.3.0Outdated
Are these two JavaScript values equal?
mjackson
mjackson
framer-motion 6.5.0 - 8.5.0Outdated
A simple and powerful JavaScript animation library
web-vitals 3.0.0 - 3.0.4Outdated
Easily measure performance metrics in JavaScript
rc-util 4.2.0 - 4.20.2Outdated
Common Utils For React Component
@apollo/client 3.0.0 - 3.7.4Outdated
A fully-featured caching GraphQL client.
fp-ts 2.6.6 - 2.9.5Outdated
Functional programming in TypeScript
string-convert 0.2.0 - 0.2.1
String convertions
akiran
akiran
json2mq 0.2.0
Generate media query string from JSON or javascript object
akiran
akiran
react-focus-lock 1.16.1 - 2.9.2Outdated
It is a trap! (for a focus)
react-side-effect 1.1.5Outdated
Create components whose prop changes map to a global side effect
react-helmet 5.0.0 - 5.2.1Outdated
A document head manager for React
rc-tooltip 3.3.3 - 5.3.1Outdated
React Tooltip
rc-slider 8.6.2 - 8.6.3Outdated
Slider UI component for React
create-react-class 15.6.3Outdated
Legacy API for creating React components.
airbnb-prop-types 2.9.0 - 2.10.0Outdated
Custom React PropType validators that we use at Airbnb.
downshift 3.2.0 - 3.4.7Outdated
🏎 A set of primitives to build simple, flexible, WAI-ARIA compliant React autocomplete, combobox or select dropdown components.
antd 4.4.2 - 5.1.2Outdated
An enterprise-class UI design language and React components implementation
rc-trigger 2.4.0 - 2.5.4Outdated
base abstract trigger component for react
@material-ui/core 1.5.1 - 4.12.4
React components that implement Google's Material Design.
rc-align 2.4.0 - 4.0.15
align ui component for react
dom-align 1.7.0 - 1.8.0Outdated
Align DOM Node Flexibly
react-bootstrap 0.30.2 - 0.33.1Outdated
Bootstrap 5 components built with React
enquire.js 2.1.6
Awesome Media Queries in JavaScript
react-slick 0.22.0 - 0.27.1Outdated
React port of slick carousel
@fortawesome/react-fontawesome 0.1.10 - 0.1.19Outdated
Official React component for Font Awesome 5
+4
jasonlundien
devoto13
jrjohnson
redux-logger 2.10.0 - 3.0.0Outdated
Logger for Redux
consolidated-events 1.1.0 - 1.1.1Outdated
Manage multiple event handlers using few event listeners
stylis-rule-sheet 0.0.9 - 0.0.10
stylis plugin to extract individual rules to use with insertRule API
thysultan
thysultan
rc-animate 2.4.0 - 2.11.1Outdated
css-transition ui component for react
sweetalert2 8.11.5 - 11.4.18Outdated
A beautiful, responsive, customizable and accessible (WAI-ARIA) replacement for JavaScript's popup boxes, supported fork of sweetalert
@fortawesome/free-brands-svg-icons 5.1.0 - 6.1.1Outdated
The iconic font, CSS, and SVG framework
component-indexof 0.0.3
Microsoft sucks
react-moment-proptypes 1.5.0Outdated
React proptype for moment module
react-dates 12.2.3 - 12.2.4Outdated
A responsive and accessible date range picker component built with React
+4
lencioni
ljharb
ahuth
component-classes 1.2.5Outdated
Cross-browser element class list
css-animation 1.0.0 - 1.4.1Outdated
css-animation
react-gtm-module 2.0.8 - 2.0.11
React Google Tag Manager Module
redux-form 6.0.3 - 6.4.3Outdated
A higher order component decorator for forms using Redux and React
bootstrap-vue 1.0.0 - 2.15.0Outdated
With more than 85 components, over 45 available plugins, several directives, and 1000+ icons, BootstrapVue provides one of the most comprehensive implementations of the Bootstrap v4 component and grid system available for Vue.js v2.6, complete with extens
react-date-range 1.0.3 - 1.1.3Outdated
A React component for choosing dates and date ranges.
react-visibility-sensor 3.10.0 - 3.11.1Outdated
Sensor component for React that notifies you when it goes in or out of the window viewport.
iframe-resizer-react 0.0.2 - 1.1.0Outdated
React interface for iframe-resizer
davidjbradshaw
davidjbradshaw
deepcopy 2.0.0 - 2.1.0
deep copy data
sasaplus1
sasaplus1
react-schemaorg 0.1.0 - 2.0.0
Typed Schema.org JSON-LD in React
react-click-outside 2.3.0 - 2.3.1Outdated
A component wrapper that provides click outside detection.
@tannin/plural-forms 1.0.0 - 1.1.0
Compiles a function to compute the plural forms index for a given value
aduth
aduth
picturefill 3.0.0 - 3.0.3
A responsive image polyfill.
@stimulus/core 0.6.0Outdated
Stimulus JavaScript framework: Core library
dhh
dhh
react-bootstrap-table2-toolkit 2.1.0 - 2.1.3
The toolkit for react-bootstrap-table2
lottie-api 1.0.0 - 1.0.2Outdated
A library to edit lottie-web animations dynamically
airnan
airnan
prebid.js 6.15.0 - 7.32.0Outdated
Header Bidding Management Library
tg-core-components 2.17.0 - 6.3.0Outdated
tg-core-components
+4
albinadolfsson
codebetniklas
sebost