About
Community
news12.com
166 packages
Last scanned on Oct 27 at 06:26 PM
Update
Name
Size
Popularity
Severity
moment
2.29.1
Vulnerable
Outdated
Parse, validate, manipulate, and display dates
License
MIT
Vulnerabilities
High
GHSA-wc69-rhjr-hc9g
Moment.js vulnerable to Inefficient Regular Expression Complexity
Affected versions >=2.18.0 <2.29.4
High
GHSA-8hfj-j24r-96c4
Path Traversal: 'dir/../../filename' in moment.locale
Affected versions >=0 <2.29.2
Version distribution in production
241
2.25.1
240
2.19.0
240
2.25.0
127
2.29.1
112
2.29.3
90
2.29.4
Also used on 778 websites
sentry.io
157 packages
behance.net
30 packages
brightcove.com
94 packages
newyorker.com
29 packages
Repository
Homepage
More
moment
date
time
parse
format
+4
+2
browserify-sign
4.2.0 - 4.2.1
Vulnerable
Outdated
adds node crypto signing for browsers
+2
sanitize-html
1.27.5
Vulnerable
Outdated
Clean up user-submitted HTML, preserving allowlisted elements and allowlisted attributes on a per-element basis
html
parser
sanitizer
sanitize
+15
elliptic
6.5.3
Vulnerable
Outdated
EC cryptography
EC
Elliptic
curve
Cryptography
indutny
moment-timezone
0.5.34
Vulnerable
Outdated
Parse and display moments in any timezone.
moment
date
time
timezone
olson
+3
+4
next
11.1.1 - 11.1.4
Vulnerable
Outdated
The React Framework
es5-ext
0.10.24 - 0.10.49
Vulnerable
Outdated
ECMAScript extensions and shims
ecmascript
ecmascript5
ecmascript6
es5
es6
+11
medikoo
tslib
1.13.0 - 1.14.1
Outdated
Runtime library for TypeScript helper functions
TypeScript
Microsoft
compiler
language
javascript
+2
+5
readable-stream
3.6.0
Outdated
Node.js Streams, a user-land copy of the stream library from Node.js
readable
stream
pipe
safe-buffer
5.1.1 - 5.1.2
Outdated
Safer Node.js Buffer API
buffer
buffer allocate
node security
safe
safe-buffer
+2
string_decoder
1.1.0 - 1.3.0
The string_decoder module from Node core
string
decoder
browser
browserify
+1
uuid
8.3.2
Outdated
RFC4122 (v1, v4, and v5) UUIDs
uuid
guid
rfc4122
isarray
1.0.0 - 2.0.5
Array#isArray for older browsers
browser
isarray
array
juliangruber
inherits
2.0.4
Browser-friendly inheritance fully compatible with standard node.js inherits()
inheritance
class
klass
oop
object-oriented
+3
isaacs
is-stream
2.0.1
Outdated
Check if something is a Node.js stream
stream
type
streams
writable
readable
+5
sindresorhus
buffer
4.9.2
Outdated
Node.js Buffer API, for the browser
arraybuffer
browser
browserify
buffer
compatible
+2
feross
regenerator-runtime
0.13.9
Outdated
Runtime for Regenerator-compiled generator and async functions.
regenerator
runtime
generator
async
benjamn
entities
1.1.2
Outdated
Encode & decode XML and HTML entities with ease & speed
entity
decoding
encoding
html
xml
+1
feedic
@babel/runtime
7.13.9 - 7.16.3
Outdated
babel's modular runtime helpers
+1
async
3.2.0
Outdated
Higher-order functions and common patterns for asynchronous code
async
callback
module
utility
+2
depd
1.1.1 - 2.0.0
Deprecate all the things
deprecate
deprecated
dougwilson
core-util-is
1.0.2
Outdated
The `util.is*` functions introduced in Node v0.12.
util
isBuffer
isArray
isNumber
isString
+4
isaacs
ieee754
1.1.9 - 1.1.13
Outdated
Read/write IEEE754 floating point numbers from/to a Buffer or array-like object
IEEE 754
buffer
convert
floating point
ieee754
feross
util-deprecate
1.0.2
The Node.js `util.deprecate()` function with browser support
util
deprecate
browserify
browser
node
tootallnate
domutils
1.7.0
Outdated
Utilities for working with htmlparser2's dom
dom
htmlparser2
feedic
base64-js
1.3.1
Outdated
Base64 encoding/decoding in pure JS
base64
fast-json-stable-stringify
2.0.0 - 2.1.0
deterministic `JSON.stringify()` - a faster version of substack's json-stable-strigify without jsonify
json
stringify
deterministic
hash
stable
esp
dom-serializer
0.2.2
Outdated
render domhandler DOM nodes to a string
html
xml
render
feedic
domhandler
2.4.2
Outdated
Handler for htmlparser2 that turns pages into a dom
dom
htmlparser2
feedic
bn.js
5.1.2
Outdated
Big number implementation in pure javascript
BN
Big number
BigNum
Modulo
Montgomery
+1
events
3.1.0
Outdated
Node's event emitter for all engines.
events
eventEmitter
eventDispatcher
listeners
domelementtype
1.2.0 - 1.3.1
Outdated
all the types of nodes in htmlparser2's dom
dom
element
types
htmlparser2
feedic
process-nextick-args
2.0.1
process.nextTick but always with args
cwmma
util
0.11.1
Outdated
Node.js's util module for all engines
util
+3
htmlparser2
3.10.1
Outdated
Fast & forgiving HTML/XML parser
html
parser
streams
xml
dom
+3
feedic
xtend
4.0.1 - 4.0.2
extend like a boss
extend
merge
options
opts
object
+1
raynos
pako
1.0.8 - 1.0.11
Outdated
zlib port to javascript - fast, modularized, with browser support
zlib
deflate
inflate
gzip
vitaly
scheduler
0.20.2
Outdated
Cooperative scheduler for the browser environment.
react
+1
randombytes
2.1.0
random bytes from browserify stand alone
crypto
random
+2
prop-types
15.7.0 - 15.7.2
Outdated
Runtime type checking for React props and similar objects.
react
react
17.0.2
Outdated
React is a JavaScript library for building user interfaces.
react
+1
process
0.11.10
process information for node.js and browsers
process
react-dom
17.0.2
Outdated
React package for working with the DOM.
react
+2
minimalistic-assert
1.0.0 - 1.0.1
minimalistic-assert ===
setimmediate
1.0.5
A shim for the setImmediate efficient script yielding API
domenic
path-browserify
0.0.1
Outdated
the path module from node core for browsers
browser
browserify
path
+36
assert
1.5.0
Outdated
The assert module from Node.js, for the browser.
assert
browser
+3
symbol-observable
1.1.0 - 1.2.0
Outdated
Symbol.observable ponyfill
symbol
observable
observables
ponyfill
polyfill
+1
fast-safe-stringify
2.0.7
Outdated
Safely and quickly serialize JavaScript objects
stable
stringify
JSON
JSON.stringify
safe
+1
sha.js
2.4.10 - 2.4.11
Streamable SHA hashes in pure javascript
graphql
14.5.5 - 14.7.0
Outdated
A Query Language and Runtime which can target any service.
graphql
graphql-js
+5
browserify-zlib
0.2.0
Full zlib module for the browser
zlib
browserify
stack-trace
0.0.10
Outdated
Get v8 stack traces as an array of CallSite objects.
+3
stream-browserify
1.0.0 - 2.0.2
Outdated
the stream module from node core for browsers
stream
browser
browserify
+36
@sentry/types
5.27.0 - 6.3.6
Outdated
Types for all Sentry JavaScript SDKs
+8
asn1.js
4.9.2 - 4.10.1
Outdated
ASN.1 encoder and decoder
asn.1
der
hash-base
3.1.0
abstract base class for hash-streams
hash
stream
+1
winston
3.3.2 - 3.3.3
Outdated
A logger for just about everything.
winston
logger
logging
logs
sysadmin
+6
+5
@sentry/utils
5.30.0 - 6.0.2
Outdated
Utilities for all Sentry JavaScript SDKs
+8
hash.js
1.1.7
Various hash functions that could be run by both browser and node
hash
sha256
sha224
hmac
indutny
@sentry/core
5.30.0
Outdated
Base implementation for all Sentry JavaScript SDKs
+8
brorand
1.1.0
Random number generator for browsers and node.js
Random
RNG
browser
crypto
indutny
hmac-drbg
1.0.1
Deterministic random bit generator (hmac)
hmac
drbg
prng
indutny
minimalistic-crypto-utils
1.0.1
Minimalistic tools for JS crypto modules
minimalistic
utils
crypto
indutny
des.js
1.0.1
Outdated
DES implementation
DES
3DES
EDE
CBC
indutny
ripemd160
2.0.2
Compute ripemd160 of bytes or strings.
string
strings
ripemd160
ripe160
bitcoin
+2
+4
md5.js
1.3.5
node style md5 on pure JavaScript
crypto
md5
+2
pbkdf2
3.1.1
Outdated
This library provides the functionality of PBKDF2 with the ability to use any supported hashing algorithm returned from crypto.getHashes()
pbkdf2
kdf
salt
hash
+3
cipher-base
1.0.4
abstract base class for crypto-streams
cipher
stream
parse-asn1
5.1.4 - 5.1.5
Outdated
utility library for parsing asn1 files for use with browserify-sign.
+2
winston-transport
4.4.0
Outdated
Base stream implementations for winston@3 and up.
winston
transport
winston3
+2
buffer-xor
1.0.0 - 1.0.3
Outdated
A simple module for bitwise-xor on buffers
bits
bitwise
buffer
buffer-xor
crypto
+5
create-hash
1.2.0
create hashes for browserify
crypto
+2
browserify-aes
1.2.0
aes, for browserify
aes
crypto
browserify
+2
stream-http
2.8.3
Outdated
Streaming http in the browser
http
stream
streaming
xhr
http-browserify
create-hmac
1.1.6 - 1.1.7
node style hmacs in the browser
crypto
hmac
+2
logform
2.2.0
Outdated
An mutable object-based log format designed for chaining & objectMode streams.
winston
logging
format
winstonjs
+3
evp_bytestokey
1.0.3
The insecure key derivation algorithm from OpenSSL
crypto
openssl
browserify-rsa
3.0.0 - 4.0.1
Outdated
RSA for browserify
+2
timers-browserify
2.0.10 - 2.0.12
timers module for browserify
timers
browserify
browser
+36
crypto-browserify
3.12.0
implementation of crypto for the browser
+2
create-ecdh
4.0.2 - 4.0.4
createECDH but browserifiable
diffie
hellman
diffiehellman
ECDH
+2
fecha
4.2.0 - 4.2.1
Outdated
Date formatting and parsing
date
parse
moment
format
fecha
+1
taylorhakes
https-browserify
1.0.0
https module compatability for browserify
browser
browserify
https
js-cookie
2.2.1
Outdated
A simple, lightweight JavaScript API for handling cookies
cookie
cookies
browser
amd
commonjs
+3
public-encrypt
4.0.3
browserify version of publicEncrypt & privateDecrypt
+2
diffie-hellman
5.0.2 - 5.0.3
pure js diffie-hellman
diffie
hellman
diffiehellman
dh
+2
browserify-des
1.0.2
browserify-des ===
browserify-cipher
1.0.1
ciphers for the browser
cwmma
miller-rabin
4.0.1
Miller Rabin algorithm for primality test
prime
miller-rabin
bignumber
os-browserify
0.3.0
The [os](https://nodejs.org/api/os.html) module from node.js, but for browsers.
triple-beam
1.3.0
Outdated
Definitions of levels for logging purposes & shareable Symbol constants.
winstonjs
winston
logging
logform
symbols
+2
randomfill
1.0.3 - 1.0.4
random fill from browserify stand alone
crypto
random
vm-browserify
1.1.0 - 1.1.2
vm module for the browser
vm
browser
eval
+36
builtin-status-codes
3.0.0
The map of HTTP status codes from the builtin http module
http
status
codes
builtin
map
bendrucker
querystring-es3
0.2.1
Node's querystring module for all engines. (ES3 compat fork)
commonjs
query
querystring
spaintrain
one-time
1.0.0
Run the supplied function exactly one time (once)
once
function
single
one
one-time
+2
@dabh/diagnostics
2.0.2 - 2.0.3
Tools for debugging your node.js modules and event loop
debug
debugger
debugging
diagnostic
diagnostics
+4
dabh
fn.name
1.1.0
Extract names from functions
fn.name
function.name
name
function
extract
+2
@xmldom/xmldom
0.7.5
Outdated
A pure JavaScript W3C standard-based (XML DOM Level 2 Core) DOMParser and XMLSerializer module.
w3c
dom
xml
parser
javascript
+3
karfau
style-to-object
0.2.3 - 0.3.0
Outdated
Parse CSS inline style to JavaScript object.
style-to-object
inline
style
parser
css
+2
remarkablemark
graphql-tag
2.9.1 - 2.11.0
Outdated
A JavaScript template literal tag that parses GraphQL queries
to-arraybuffer
1.0.1
Get an ArrayBuffer from a Buffer as fast as possible
buffer
to
arraybuffer
fast
read
+1
jhiesey
inline-style-parser
0.1.0 - 0.1.1
Outdated
An inline style parser.
inline-style-parser
inline-style
style
parser
css
remarkablemark
p-is-promise
3.0.0 - 4.0.0
Check if something is a promise
promise
is
detect
check
kind
+7
sindresorhus
@sentry/browser
5.30.0
Outdated
Official Sentry SDK for browsers
+8
styled-jsx
4.0.0 - 4.0.1
Outdated
Full CSS support for JSX without compromises
babel-plugin-macros
vercel
zeit
css-in-js
css
global
4.3.2 - 4.4.0
Require global variables
zen-observable-ts
0.8.14 - 0.8.21
Outdated
Thin wrapper around zen-observable and @types/zen-observable, to support ESM exports as well as CommonJS exports
ts-invariant
0.4.3 - 0.4.4
Outdated
TypeScript implementation of invariant(condition, message)
invariant
assertion
precondition
TypeScript
benjamn
zen-observable
0.8.15
Outdated
An Implementation of ES Observables
zenparsing
@wry/equality
0.1.9 - 0.1.11
Outdated
Structural equality checking for JavaScript values
benjamn
is-function
1.0.2
is that thing a function? Use this module to find out
polyfill
is-function
ie6
grncdr
@wry/context
0.4.4 - 0.6.1
Outdated
Manage contextual information needed by (a)synchronous tasks without explicitly passing objects around
benjamn
optimism
0.10.3
Outdated
Composable reactive caching with efficient invalidation.
caching
cache
invalidation
reactive
reactivity
+4
benjamn
@sentry/hub
5.27.6 - 6.0.4
Outdated
Sentry hub which handles global state managment.
+8
react-scripts
0.4.2
Outdated
Configuration and scripts for Create React App.
+1
@sentry/minimal
5.29.1 - 6.16.1
Outdated
Sentry minimal library that can be used in other packages
+8
fp-ts
2.6.6 - 2.9.5
Outdated
Functional programming in TypeScript
typescript
algebraic-data-types
functional-programming
gcanti
string-hash
1.1.3
fast string hashing function
string
hashing
qrcode
0.8.0 - 0.8.2
Outdated
QRCode / 2d Barcode api with both server side and client side support using canvas
qr
code
canvas
qrcode
@sentry/webpack-plugin
x.x.x
Official Sentry Webpack plugin
Sentry
Webpack
bundler
plugin
+8
react-use
16.0.0 - 17.4.0
Outdated
Collection of React Hooks
streamich
xstate
4.7.0 - 4.19.1
Outdated
Finite State Machines and Statecharts for the Modern Web.
statechart
state machine
finite state machine
finite automata
scxml
+2
@fortawesome/fontawesome-svg-core
1.2.36
Outdated
The iconic font, CSS, and SVG framework
font
awesome
fontawesome
icon
svg
+1
+4
@fortawesome/free-solid-svg-icons
5.15.4
Outdated
The iconic font, CSS, and SVG framework
font
awesome
fontawesome
icon
svg
+1
+4
apollo-utilities
1.3.4
Utilities for working with GraphQL ASTs
+1
html-react-parser
0.10.5 - 0.11.0
Outdated
HTML to React parser.
html-react-parser
html
react
parser
dom
remarkablemark
html-dom-parser
0.2.3
Outdated
HTML to DOM parser.
html-dom-parser
html
dom
parser
htmlparser2
+1
remarkablemark
apollo-link
1.2.12 - 1.2.14
Flexible, lightweight transport layer for GraphQL
react-property
1.0.1
Outdated
HTML and SVG DOM property configs used by React.
react-property
html
svg
dom
property
+4
remarkablemark
safe-json-parse
2.0.0 - 4.0.0
Parse JSON safely without throwing
raynos
keycode
2.2.0
Outdated
Convert between keyboard keycodes and keynames and vice versa.
keyboard
keycode
keyboardevent
ascii
keydown
+4
timoxley
native-url
0.3.4
Brings the node url api layer to whatwg-url class
url
uri
normalization
normalisation
query
+6
janicklas-ralph
@fortawesome/react-fontawesome
0.1.15 - 0.1.16
Outdated
Official React component for Font Awesome 5
+4
apollo-link-http-common
0.2.14 - 0.2.16
Http utilities for Apollo Link shared across all links using http
apollo
http
network
use-subscription
1.5.1
Outdated
Reusable hooks
+1
apollo-link-http
1.5.15 - 1.5.17
HTTP transport layer for GraphQL
apollo-bot
@chakra-ui/theme
1.0.0 - 1.3.0
Outdated
The default theme for chakra components
theme
theming
ui mode
ui
@videojs/vhs-utils
3.0.3 - 3.0.4
Outdated
Objects and functions shared throughtout @videojs/http-streaming code
videojs
videojs-plugin
+17
apollo-cache
1.2.0 - 1.3.5
Core abstract of Caching layer for Apollo Client
+3
@fortawesome/free-brands-svg-icons
5.15.4
Outdated
The iconic font, CSS, and SVG framework
font
awesome
fontawesome
icon
svg
+1
+4
mux.js
5.7.0 - 5.14.1
Outdated
A collection of lightweight utilities for inspecting and manipulating video container formats.
video
container
transmux
mux
player
+5
+19
apollo-client
2.6.10
A simple yet functional GraphQL client.
ecmascript
es2015
jsnext
javascript
relay
+2
+5
video.js
7.17.0
Outdated
An HTML5 video player that supports HLS and DASH with a common API and skin.
dash
hls
html5
player
video
+1
+18
apollo-cache-inmemory
1.6.6
Core abstract of Caching layer for Apollo Client
+1
url-toolkit
2.2.3
Outdated
Build an absolute URL from a base URL and a relative URL (RFC 1808). No dependencies!
url
relative
absolute
parser
tjenkinson
m3u8-parser
4.7.0
Outdated
m3u8 parser
videojs
videojs-plugin
+19
react-gtm-module
2.0.9 - 2.0.11
React Google Tag Manager Module
react
reactjs
react-component
google tag manager
tag manager
+1
alinemorelli
mpd-parser
0.19.2
Outdated
mpd parser
videojs
videojs-plugin
+18
videojs-vtt.js
0.15.3
Outdated
A JavaScript implementation of the WebVTT specification, forked from vtt.js for use with Video.js
vtt
webvtt
track
captions
subtitles
+1
+17
moment-duration-format
2.3.2
A moment.js plugin for formatting durations.
moment
duration
format
jsmreese
@videojs/xhr
2.6.0
small xhr abstraction
xhr
http
xmlhttprequest
xhr2
browserify
+17
react-from-dom
0.6.0 - 0.6.2
Outdated
Convert HTML/XML source code or DOM nodes to React elements
string
DOM
converter
react
component
+1
gilbarbara
react-html-parser
2.0.2
Parse HTML into React components
react
html
htmlparser
htmlparser2
inner html
+1
wrakky
@apollo/react-hooks
3.1.5
Outdated
React Apollo Hooks.
apollo
graphql
react
hooks
+1
@apollo/react-common
3.0.0 - 3.1.4
React Apollo common utilities.
apollo
graphql
react
+1
videojs-contrib-ads
6.9.0
Outdated
A framework that provides common functionality needed by video advertisement libraries working with video.js.
videojs
videojs-plugin
+24
react-universal-component
1.5.0 - 4.5.0
A higher order component for loading components with promises
universal
ruc
unviersal react
ssr
code splitting
+7
videojs-ima
1.11.0
Outdated
[![Build Status](https://travis-ci.org/googleads/videojs-ima.svg?branch=main)](https://travis-ci.org/googleads/videojs-ima)
videojs
videojs-plugin
videojs-overlay
2.1.5
Outdated
A plugin to display simple overlays during video playback.
videojs
videojs-plugin
+174
feathers-commons
0.8.5 - 0.8.7
Shared Feathers utility functions
feathers
colors
x.x.x
tsscmp
x.x.x
cookies
x.x.x
keygrip
x.x.x
Popular search queries
webpack.js.org
url
react-scripts
react
lottie-api
react-helmet-async
+7 packages
github.com
color-convert
@headlessui/react
hoist-non-react-statics
reactstrap
lit-html
+60 packages
pinterest.com
lodash
relay-runtime
react-relay
react-use
lodash-es
+51 packages
Popular packages
react
React is a JavaScript library for building user interfaces.
+6 634 websites
core-js
Standard library
+10 238 websites
es5-ext
ECMAScript extensions and shims
+10 229 websites
@babel/runtime
babel's modular runtime helpers
+8 352 websites
lodash
Lodash modular utilities.
+4 826 websites
axios
Promise based HTTP client for the browser and node.js
+4 742 websites