About
Community
myer.com.au
90 packages
Last scanned on Jan 19 at 08:25 AM
Update
Name
Size
Popularity
Severity
lodash
4.17.16
Vulnerable
Outdated
Lodash modular utilities.
Script
https://myer.com.au/_next/static/chunks/pages/_app-7e3da3a892cced97c45b.js
License
MIT
Footprint
4 KB
Vulnerabilities
High
GHSA-35jh-r3h4-6jhm
Command Injection in lodash
Affected versions >=0 <4.17.21
Moderate
GHSA-29mw-wpgm-hmr9
Regular Expression Denial of Service (ReDoS) in lodash
Affected versions >=0 <4.17.21
High
GHSA-p6mc-m468-83gw
Prototype Pollution in lodash
Affected versions >=3.7.0 <4.17.19
Matched Modules
Version distribution in production
3 846
4.17.16
946
4.17.21
337
4.17.20
322
4.17.15
302
4.17.19
301
4.17.13
Also used on 4830 websites
skype.com
20 packages
sentry.io
157 packages
pinterest.com
56 packages
pinimg.com
52 packages
Repository
Homepage
More
modules
stdlib
util
next
10.0.0 - 11.1.4
Vulnerable
Outdated
The React Framework
ms
2.1.2 - 2.1.3
Tiny millisecond conversion utility
+5
readable-stream
3.6.0
Outdated
Node.js Streams, a user-land copy of the stream library from Node.js
readable
stream
pipe
string_decoder
1.1.0 - 1.3.0
The string_decoder module from Node core
string
decoder
browser
browserify
+1
react-is
16.3.0 - 17.0.2
Outdated
Brand checking of React Elements.
react
+1
inherits
2.0.4
Browser-friendly inheritance fully compatible with standard node.js inherits()
inheritance
class
klass
oop
object-oriented
+3
isaacs
qs
6.10.2 - 6.10.3
Outdated
A querystring parser that supports nesting and arrays, with a depth limit
querystring
qs
query
url
parse
+1
buffer
5.5.0 - 5.6.1
Outdated
Node.js Buffer API, for the browser
arraybuffer
browser
browserify
buffer
compatible
+2
feross
@babel/runtime
7.16.5 - 7.20.1
Outdated
babel's modular runtime helpers
+1
get-intrinsic
1.1.0 - 1.1.1
Outdated
Get and robustly cache all JS language-level intrinsics at first require time
javascript
ecmascript
es
js
intrinsic
+2
ljharb
function-bind
1.1.0 - 1.1.1
Outdated
Implementation of Function.prototype.bind
function
bind
shim
es5
axios
0.21.4
Outdated
Promise based HTTP client for the browser and node.js
xhr
http
ajax
promise
node
+1
call-bind
1.0.2
Outdated
Robustly `.call.bind()` a function
javascript
ecmascript
es
js
callbind
+8
ljharb
object-inspect
1.12.0 - 1.12.1
Outdated
string representations of objects in node and the browser
inspect
util.inspect
object
stringify
pretty
has-symbols
1.0.2 - 1.0.3
Determine if the JS environment has Symbol support. Supports spec, or shams.
Symbol
symbols
typeof
sham
polyfill
+3
ljharb
rxjs
6.6.2 - 6.6.7
Outdated
Reactive Extensions for modern JavaScript
Rx
RxJS
ReactiveX
ReactiveExtensions
Streams
+5
side-channel
1.0.4
Outdated
Store information about any JS value in a side channel. Uses WeakMap if available.
weakmap
map
side
channel
metadata
ljharb
base64-js
1.3.0 - 1.5.1
Base64 encoding/decoding in pure JS
base64
events
3.0.0 - 3.3.0
Node's event emitter for all engines.
events
eventEmitter
eventDispatcher
listeners
deepmerge
4.2.2
Outdated
A library for deep (recursive) merging of Javascript objects
merge
deep
extend
copy
clone
+1
tehshrike
array-flatten
2.0.0 - 2.1.2
Outdated
Flatten nested arrays
array
flatten
arguments
depth
fast
+1
blakeembrey
core-js
3.20.0 - 3.22.3
Outdated
Standard library
ES3
ES5
ES6
ES7
ES2015
+39
zloirock
scheduler
0.15.0 - 0.23.0
Outdated
Cooperative scheduler for the browser environment.
react
+1
has
1.0.1 - 1.0.3
Outdated
Object.prototype.hasOwnProperty.call shortcut
tarruda
prop-types
15.8.0 - 15.8.1
Runtime type checking for React props and similar objects.
react
react
17.0.0 - 18.2.0
Outdated
React is a JavaScript library for building user interfaces.
react
+1
json-stringify-safe
5.0.1
Like JSON.stringify, but doesn't blow up on circular refs.
json
stringify
circular
safe
dayjs
1.10.6 - 1.10.8
Outdated
2KB immutable date time library alternative to Moment.js with the same modern API
dayjs
date
time
immutable
moment
iamkun
@emotion/memoize
0.7.5 - 0.8.0
Outdated
emotion's memoize utility
+1
hoist-non-react-statics
3.3.1 - 3.3.2
Copies non-react specific statics from a child component to a parent component
react
mridgway
querystring
0.2.1
Node's querystring module for all engines.
commonjs
query
querystring
@emotion/unitless
0.7.2 - 0.8.0
Outdated
An object of css properties that don't accept values with units
+1
har-validator
4.1.1 - 4.1.2
Outdated
Extremely fast HTTP Archive (HAR) validator using JSON Schema
har
cli
ajv
http
archive
+2
ahmadnassri
classnames
2.3.0 - 2.3.1
Outdated
A simple utility for conditionally joining classNames together
react
css
classes
classname
classnames
+2
stylis
4.0.0 - 4.0.5
Outdated
A Light–weight CSS Preprocessor
stackframe
1.2.0 - 1.3.4
JS Object representation of a stack frame
stacktrace
error
debugger
stack frame
+1
sha.js
2.4.9 - 2.4.11
Streamable SHA hashes in pure javascript
@emotion/hash
0.8.0 - 0.9.0
Outdated
A MurmurHash2 implementation
+1
ramda
0.23.0 - 0.28.0
Outdated
A practical functional library for JavaScript programmers.
ramda
functional
utils
utilities
toolkit
+6
+5
@emotion/serialize
1.0.2 - 1.1.1
Outdated
serialization utils for emotion
+1
immer
7.0.7 - 9.0.18
Outdated
Create your next immutable state by mutating the current one
immutable
mutable
copy-on-write
@emotion/utils
1.0.0 - 1.2.0
Outdated
internal utils for emotion
+1
hash-base
3.0.4 - 3.1.0
abstract base class for hash-streams
hash
stream
+1
memoize-one
5.2.0 - 5.2.1
Outdated
A memoization library which only remembers the latest invocation
memoize
memoization
cache
performance
alexreardon
react-router
1.0.0
Outdated
Declarative routing for React
react
router
route
routing
history
+1
is-promise
2.1.0 - 4.0.0
Test whether an object looks like a promises-a+ promise
lodash-es
4.17.20 - 4.17.21
Lodash exported as ES modules.
es6
modules
stdlib
util
redux
4.1.0 - 4.2.0
Outdated
Predictable state container for JavaScript apps
redux
reducer
state
predictable
functional
+6
+3
react-fast-compare
3.1.0 - 3.2.0
Outdated
Fastest deep equal comparison for React. Great for React.memo & shouldComponentUpdate. Also really fast general-purpose deep comparison.
fast
equal
react
compare
shouldComponentUpdate
+1
+12
md5.js
1.1.0 - 1.3.5
node style md5 on pure JavaScript
crypto
md5
+2
cipher-base
1.0.4
abstract base class for crypto-streams
cipher
stream
@emotion/react
11.6.0 - 11.10.5
Outdated
> Simple styling in React.
+1
json-stable-stringify
1.0.1 - 1.0.2
Outdated
deterministic JSON.stringify() with custom sorting to get deterministic hashes from stringified results
json
stringify
deterministic
hash
sort
+1
ljharb
jsonify
0.0.0
Outdated
JSON without touching any globals
json
browser
ljharb
libphonenumber-js
1.7.34 - 1.10.18
Outdated
A simpler (and smaller) rewrite of Google Android's libphonenumber library in javascript
telephone
phone
number
input
mobile
+1
catamphetamine
intl-messageformat
2.1.0 - 2.2.0
Outdated
Formats ICU Message strings with number, date, plural, and select placeholders to create localized messages.
i18n
intl
internationalization
localization
globalization
+4
+9
promise-polyfill
6.0.0 - 6.0.2
Outdated
Lightweight promise polyfill. A+ compliant
promise
promise-polyfill
ES6
promises-aplus
taylorhakes
d3
4.2.2 - 6.7.0
Outdated
Data-Driven Documents
d3
dom
visualization
svg
animation
+1
@hookform/resolvers
1.0.0
Outdated
React Hook Form validation resolvers: Yup, Joi, Superstruct, Zod, Vest, Class Validator, io-ts, Nope, computed-types, TypeBox, arktype and Typanion
scheme
validation
scheme-validation
hookform
react-hook-form
+14
@emotion/core
0.11.0 - 0.12.0
Outdated
+1
lit-element
3.0.1 - 3.2.2
Outdated
A simple base class for creating fast, lightweight web components
+11
@firebase/auth
0.19.6 - 0.20.2
Outdated
The Firebase Authenticaton component of the Firebase JS SDK.
+1
react-beautiful-dnd
1.0.0 - 6.0.2
Outdated
Beautiful and accessible drag and drop for lists with React
drag and drop
dnd
sortable
reorder
reorderable
+5
@ant-design/colors
3.0.0 - 7.0.0
Outdated
Color palettes calculator of Ant Design
+4
focus-trap
6.7.0 - 6.7.3
Outdated
Trap focus within a DOM node.
focus
accessibility
trap
capture
keyboard
+1
intl-messageformat-parser
1.3.0 - 1.5.1
Outdated
Parses ICU Message strings into an AST via JavaScript.
i18n
intl
internationalization
localization
globalization
+4
+3
load-script
1.0.0 - 2.0.0
Dynamic script loading for browser
browser
script
load
rc-align
2.4.0 - 2.4.5
Outdated
align ui component for react
react
react-component
react-align
align
+1
detect-browser
4.0.1 - 4.8.0
Outdated
Unpack a browser type and version from the useragent string
browser
detect
useragent
@reach/utils
0.4.0 - 0.6.1
Outdated
Internal, shared utilities for Reach UI.
+1
redux-devtools-extension
2.0.0 - 2.13.9
Wrappers for Redux DevTools Extension.
+1
react-player
2.9.0
Outdated
A React component for playing a variety of URLs, including file paths, YouTube, Facebook, Twitch, SoundCloud, Streamable, Vimeo, Wistia and DailyMotion
react
media
player
video
audio
+11
cookpete
@auth0/auth0-spa-js
2.0.0 - 2.0.2
Outdated
Auth0 SDK for Single Page Applications using Authorization Code Grant Flow with PKCE
auth0
login
Authorization Code Grant Flow
PKCE
Single Page Application authentication
+1
+41
emotion
9.0.0 - 10.0.27
Outdated
The Next Generation of CSS-in-JS.
styles
emotion
react
css
css-in-js
+2
smoothscroll-polyfill
0.4.4
Smooth Scroll behavior polyfill
smooth
scroll
CSSOM
polyfill
document.contains
1.0.0 - 1.0.1
Outdated
Polyfill/shim for `document.contains`
contains
document
element
node
polyfill
+1
ljharb
redux-form
8.3.4 - 8.3.9
Outdated
A higher order component decorator for forms using Redux and React
react
reactjs
flux
redux
react-redux
+3
use-query-params
2.0.0 - 2.1.2
Outdated
React Hook for managing state in URL query parameters with easy serialization.
react
url
query
parameters
hook
+3
pbeshai
intl-relativeformat
2.2.0
Outdated
Formats JavaScript dates to relative time strings.
intl
i18n
relative
moment
format
+1
+1
react-lazyload
2.4.0 - 2.5.0
Outdated
Lazyload your components, images or anything where performance matters.
react-component
react
lazyload
+1
store
2.0.12
A localStorage wrapper for all browsers without using cookies or flash. Uses localStorage, globalStorage, and userData behavior under the hood
marcuswestin
jump.js
1.0.2
A modern smooth scrolling library.
smooth
scroll
callmecavs
@tannin/plural-forms
1.0.0 - 1.1.0
Compiles a function to compute the plural forms index for a given value
aduth
cross-domain-utils
2.0.38
Javascript module template.
template
bluepnume
redux-beacon
2.1.0
Analytics integration for Redux and ngrx/store
redux-beacon
redux
analytics
redux-analytics
redux-gtm
+2
ttmarek
react-facebook
4.1.1 - 5.0.3
Outdated
Facebook components like a Login button, Like, Share, Comments, Embedded Post/Video, Messenger Chat and others
react
react-component
facebook
login
login button
+12
zlatkofedor
react-scrollable-anchor
0.1.0 - 0.6.1
Provide smooth scrolling anchors in React.
react
reactjs
scroll
hash
scrollable
+9
gabergg
@redux-beacon/google-tag-manager
1.0.1
Google Tag Manager integration for Redux
ttmarek
react-amphtml
3.1.0 - 4.0.2
Use amphtml components inside your React apps easily!
react
amphtml
dfrankland
Popular search queries
webpack.js.org
url
react-scripts
react
lottie-api
react-helmet-async
+7 packages
github.com
color-convert
@headlessui/react
hoist-non-react-statics
reactstrap
lit-html
+60 packages
pinterest.com
lodash
relay-runtime
react-relay
react-use
lodash-es
+51 packages
Popular packages
react
React is a JavaScript library for building user interfaces.
+6 634 websites
core-js
Standard library
+10 238 websites
es5-ext
ECMAScript extensions and shims
+10 229 websites
@babel/runtime
babel's modular runtime helpers
+8 352 websites
lodash
Lodash modular utilities.
+4 826 websites
axios
Promise based HTTP client for the browser and node.js
+4 742 websites