About
Community
ncoa.org
25 packages
Last scanned on Oct 27 at 06:39 PM
Update
Name
Size
Popularity
Severity
crypto-js
3.1.8 - 3.3.0
Vulnerable
Outdated
JavaScript library of crypto standards.
Script
https://ncoa.org/main-es2015.1f8edbc99d754fb8f7b6.js
License
MIT
Footprint
41 KB
Vulnerabilities
Critical
GHSA-xwcq-pm8m-c4vf
crypto-js PBKDF2 1,000 times weaker than specified in 1993 and 1.3M times weaker than current standard
Affected versions >=0 <4.2.0
Matched Modules
Version distribution in production
457
4.1.0
457
4.1.1
185
3.3.0
162
3.1.8
143
3.2.1
143
4.0.0
Also used on 738 websites
pubmatic.com
4 packages
tiktok.com
91 packages
redd.it
180 packages
www.reddit.com
183 packages
Repository
Homepage
More
security
crypto
Hash
MD5
SHA1
+15
evanvosberg
axios
0.21.1
Vulnerable
Outdated
Promise based HTTP client for the browser and node.js
xhr
http
ajax
promise
node
+1
uuid
7.0.0 - 8.0.0
Outdated
RFC4122 (v1, v4, and v5) UUIDs
uuid
guid
rfc4122
isarray
1.0.0 - 2.0.5
Array#isArray for older browsers
browser
isarray
array
juliangruber
buffer
4.6.0 - 4.9.2
Outdated
Node.js Buffer API, for the browser
arraybuffer
browser
browserify
buffer
compatible
+2
feross
rxjs
5.5.7 - 6.6.7
Outdated
Reactive Extensions for modern JavaScript
Rx
RxJS
ReactiveX
ReactiveExtensions
Streams
+5
parse5
6.0.0 - 6.0.1
Outdated
HTML parser and serializer.
html
parser
html5
WHATWG
specification
+10
+1
base64-js
1.3.1 - 1.5.1
Base64 encoding/decoding in pure JS
base64
core-js
3.6.3 - 3.6.5
Outdated
Standard library
ES3
ES5
ES6
ES7
ES2015
+39
zloirock
util
0.10.0 - 0.12.5
Node.js's util module for all engines
util
+3
url
0.10.0 - 0.10.3
Outdated
The core `url` packaged standalone for use with Browserify.
parsing
url
analyze
dayjs
1.10.2 - 1.10.4
Outdated
2KB immutable date time library alternative to Moment.js with the same modern API
dayjs
date
time
immutable
moment
iamkun
querystring
0.2.0
Outdated
Node's querystring module for all engines.
commonjs
query
querystring
whatwg-fetch
3.4.0 - 3.6.2
Outdated
A window.fetch polyfill.
aws-sdk
2.775.0 - 2.852.0
Outdated
AWS SDK for JavaScript
api
amazon
aws
ec2
simpledb
+30
+2
crypto-browserify
1.0.9 - 2.0.0
Outdated
implementation of crypto for the browser
+2
p-is-promise
3.0.0 - 4.0.0
Check if something is a promise
promise
is
detect
check
kind
+7
sindresorhus
workbox-precaching
6.0.0 - 6.5.4
Outdated
This module efficiently precaches assets.
workbox
workboxjs
service worker
sw
+3
@angular/core
2.0.1 - 14.2.8
Outdated
Angular - the core framework
@angular/common
9.0.0 - 14.2.8
Outdated
Angular - commonly needed directives and services
@angular/forms
10.0.0 - 11.2.5
Outdated
Angular - directives and services for creating forms
@angular/router
10.0.0 - 14.1.3
Outdated
Angular - the routing library
angular
router
@auth0/auth0-spa-js
2.0.0
Outdated
Auth0 SDK for Single Page Applications using Authorization Code Grant Flow with PKCE
auth0
login
Authorization Code Grant Flow
PKCE
Single Page Application authentication
+1
+41
litepicker
2.0.5 - 2.0.8
Outdated
Date range picker - lightweight, no dependencies
datepicker
date
daterange
date
picker
+3
waki
postscribe
2.0.8
Asynchronously write javascript, even with document.write.
document.write
tag writer
asynchronous
javascript
after load
+2
Popular search queries
webpack.js.org
url
react-scripts
react
lottie-api
react-helmet-async
+7 packages
github.com
color-convert
@headlessui/react
hoist-non-react-statics
reactstrap
lit-html
+60 packages
pinterest.com
lodash
relay-runtime
react-relay
react-use
lodash-es
+51 packages
Popular packages
react
React is a JavaScript library for building user interfaces.
+6 634 websites
core-js
Standard library
+10 238 websites
es5-ext
ECMAScript extensions and shims
+10 229 websites
@babel/runtime
babel's modular runtime helpers
+8 352 websites
lodash
Lodash modular utilities.
+4 826 websites
axios
Promise based HTTP client for the browser and node.js
+4 742 websites