noodle.com 129 packages

Last scanned on Jan 19 at 12:49 PM
dompurify 1.0.0VulnerableOutdated
DOMPurify is a DOM-only, super-fast, uber-tolerant XSS sanitizer for HTML, MathML and SVG. It's written in JavaScript and works in all modern browsers (Safari, Opera (15+), Internet Explorer (10+), Firefox and Chrome - as well as almost anything else usin
License
(MPL-2.0 OR Apache-2.0)
Footprint
20 KB
Vulnerabilities
Cross-Site Scripting in dompurify
Affected versions >=0 <2.0.3
DOMPurify Open Redirect vulnerability
Affected versions >=0 <1.0.11
Cross-Site Scripting in dompurify
Affected versions >=0 <2.0.7
Cross-site Scripting in dompurify
Affected versions >=0 <2.0.17
Matched Modules
Version distribution in production
27
1.0.0
23
2.3.6
23
2.3.8
16
2.3.7
7
2.3.3
5
2.2.9
d3-color 0.0.2 - 0.2.7VulnerableOutdated
Color spaces! RGB, HSL, Cubehelix, Lab and HCL (Lch).
moment-timezone 0.5.33VulnerableOutdated
Parse and display moments in any timezone.
es5-ext 0.10.1 - 0.10.62VulnerableOutdated
ECMAScript extensions and shims
debug 2.6.8 - 2.6.9Outdated
Lightweight debugging utility for Node.js and the browser
tslib 1.13.0 - 1.14.1Outdated
Runtime library for TypeScript helper functions
ms 2.0.0Outdated
Tiny millisecond conversion utility
+5
gdborton
matheuss
rauchg
isarray 0.0.0 - 0.0.1Outdated
Array#isArray for older browsers
react-is 16.13.1Outdated
Brand checking of React Elements.
qs 6.10.3Outdated
A querystring parser that supports nesting and arrays, with a depth limit
form-data 2.1.2 - 4.0.0
A library to create readable "multipart/form-data" streams. Can be used to submit forms and file uploads to other web applications.
+2
mikeal
niftylettuce
alexindigo
regenerator-runtime 0.13.9Outdated
Runtime for Regenerator-compiled generator and async functions.
@babel/runtime 7.18.0Outdated
babel's modular runtime helpers
+1
hzoo
existentialism
nicolo-ribaudo
get-intrinsic 1.1.1Outdated
Get and robustly cache all JS language-level intrinsics at first require time
function-bind 1.1.1Outdated
Implementation of Function.prototype.bind
path-to-regexp 1.8.0Outdated
Express style path to RegExp utility
axios 0.21.4Outdated
Promise based HTTP client for the browser and node.js
call-bind 1.0.2Outdated
Robustly `.call.bind()` a function
object-inspect 1.11.0Outdated
string representations of objects in node and the browser
has-symbols 1.0.2 - 1.0.3
Determine if the JS environment has Symbol support. Supports spec, or shams.
side-channel 1.0.4Outdated
Store information about any JS value in a side channel. Uses WeakMap if available.
object-assign 4.1.1
ES2015 `Object.assign()` ponyfill
events 3.3.0
Node's event emitter for all engines.
core-js 3.21.0Outdated
Standard library
scheduler 0.20.2Outdated
Cooperative scheduler for the browser environment.
has 1.0.2 - 1.0.3Outdated
Object.prototype.hasOwnProperty.call shortcut
tarruda
tarruda
prop-types 15.8.1
Runtime type checking for React props and similar objects.
react 17.0.0Outdated
React is a JavaScript library for building user interfaces.
process 0.11.10
process information for node.js and browsers
react-dom 17.0.0Outdated
React package for working with the DOM.
lodash.debounce 4.0.8
The lodash method `_.debounce` exported as a module.
moment 2.29.4Outdated
Parse, validate, manipulate, and display dates
asap 2.0.5 - 2.0.6
High-priority task queue for Node.js and browsers
immutable 3.8.2Outdated
Immutable Data Collections
clsx 1.1.1 - 1.2.1Outdated
A tiny (239B) utility for constructing className strings conditionally.
jsonc-parser 2.3.1 - 3.2.0Outdated
Scanner and parser for JSON with comments.
+4
alexandrudima
joaomoreno.ms
kaimaetzel
@emotion/memoize 0.6.6 - 0.7.4Outdated
emotion's memoize utility
+1
emmatown
tkh44
emotion-release-bot
hoist-non-react-statics 3.3.2
Copies non-react specific statics from a child component to a parent component
mridgway
mridgway
@emotion/unitless 0.7.2 - 0.7.5Outdated
An object of css properties that don't accept values with units
+1
emmatown
tkh44
emotion-release-bot
classnames 2.3.0 - 2.3.1Outdated
A simple utility for conditionally joining classNames together
stylis 4.0.10Outdated
A Light–weight CSS Preprocessor
andarist
thysultan
@emotion/is-prop-valid 0.8.8Outdated
A function to check whether a prop is valid for HTML and SVG elements
+1
emmatown
tkh44
emotion-release-bot
lodash.get 4.4.2
The lodash method `_.get` exported as a module.
@emotion/hash 0.8.0Outdated
A MurmurHash2 implementation
+1
emmatown
tkh44
emotion-release-bot
react-transition-group 4.4.2Outdated
A react component toolset for managing animations
dom-helpers 3.4.0Outdated
tiny modular DOM lib for ie9+
@emotion/serialize 1.0.2Outdated
serialization utils for emotion
+1
emmatown
tkh44
emotion-release-bot
tiny-invariant 1.1.0Outdated
A tiny invariant function
validator 13.7.0Outdated
String validation and sanitization
@emotion/utils 1.0.0Outdated
internal utils for emotion
+1
emmatown
tkh44
emotion-release-bot
@sentry/utils 7.0.0Outdated
Utilities for all Sentry JavaScript SDKs
+8
benvinegar
billyvg
mitsuhiko
@emotion/cache 11.4.0Outdated
emotion's cache
+1
emmatown
tkh44
emotion-release-bot
react-router 5.2.0 - 5.3.3Outdated
Declarative routing for React
@emotion/sheet 1.0.2Outdated
emotion's stylesheet
+1
emmatown
tkh44
emotion-release-bot
@storybook/theming 5.3.0 - 6.2.9Outdated
Core Storybook Components
redux 4.1.1 - 4.1.2Outdated
Predictable state container for JavaScript apps
react-router-dom 5.1.0 - 5.3.3Outdated
Declarative routing for React web applications
crypto-browserify 0.0.0 - 1.0.3Outdated
implementation of crypto for the browser
+2
dcousens
ljharb
cwmma
@emotion/react 11.4.1Outdated
> Simple styling in React.
+1
emmatown
tkh44
emotion-release-bot
babel-runtime 6.18.0 - 6.26.0
babel selfContained runtime
hzoo
loganfsmyth
existentialism
reselect 4.0.0Outdated
Selectors for Redux.
react-redux 7.2.4Outdated
Official React bindings for Redux
shallowequal 1.1.0
Like lodash isEqualWith but for shallow equal.
socket.io-parser 2.1.0 - 3.1.1Outdated
socket.io protocol parser
rauchg
darrachequesne
fbjs 0.8.16 - 0.8.18Outdated
A collection of utility libraries used by other Facebook JS projects
+5
zpao
eliwhite
yungsters
history 4.10.1Outdated
Manage session history with JavaScript
url-join 1.1.0Outdated
Join urls and normalize as in path.join.
jwt-decode 3.0.0 - 3.1.2Outdated
Decode JWT tokens, mostly useful for browser applications.
react-lifecycles-compat 3.0.4
Backwards compatibility polyfill for React class components
fb
sophiebits
@emotion/styled 11.3.0Outdated
styled API for emotion
+1
emmatown
tkh44
emotion-release-bot
styled-components 5.2.1 - 5.3.5Outdated
CSS for the <Component> Age. Style components your way with speed, strong typing, and flexibility.
@emotion/stylis 0.8.4 - 0.8.5
A custom build of Stylis
+1
emmatown
tkh44
emotion-release-bot
@mui/utils 5.4.1 - 5.10.6Outdated
Utility functions for React components.
resolve-pathname 3.0.0
Resolve URL pathnames using JavaScript
mjackson
mjackson
value-equal 1.0.1
Are these two JavaScript values equal?
mjackson
mjackson
@mui/system 5.0.0 - 5.0.2Outdated
MUI System is a set of CSS utilities to help you build custom designs more efficiently. It makes it possible to rapidly lay out custom designs.
@mui/private-theming 5.0.0 - 5.10.6Outdated
Private - The React theme context to be shared between `@mui/styles` and `@mui/material`.
@mui/material 5.0.1Outdated
Material UI is an open-source React component library that implements Google's Material Design. It's comprehensive and can be used in production out of the box.
@mui/styled-engine 5.0.1Outdated
styled() API wrapper package for emotion.
@angular/core 7.2.6 - 9.1.13Outdated
Angular - the core framework
angular
google-wombot
@sentry/hub 7.0.0 - 7.14.2Outdated
Sentry hub which handles global state managment.
+8
benvinegar
billyvg
mitsuhiko
@sentry/react 7.0.0 - 7.5.1Outdated
Official Sentry SDK for React.js
+8
benvinegar
billyvg
mitsuhiko
@mui/icons-material x.x.x
Material Design icons distributed as SVG React components.
trim 0.0.2 - 1.0.1
Trim string whitespace
@sentry/minimal 4.0.0 - 6.19.7
Sentry minimal library that can be used in other packages
+8
benvinegar
billyvg
mitsuhiko
formik 1.0.0 - 2.2.9Outdated
Build forms in React, without the tears
@sentry/tracing 6.17.0 - 6.19.7Outdated
Sentry Performance Monitoring Package
+8
benvinegar
billyvg
mitsuhiko
swiper 6.8.2 - 6.8.4Outdated
Most modern mobile touch slider and framework with hardware accelerated transitions
lottie-web 5.7.13Outdated
After Effects plugin for exporting animations to SVG + JavaScript or canvas + JavaScript
create-react-class 15.7.0
Legacy API for creating React components.
mini-create-react-context 0.3.3 - 0.4.1
Smaller Polyfill for the proposed React context API
xstate 4.7.0 - 4.19.1Outdated
Finite State Machines and Statecharts for the Modern Web.
blueimp-md5 2.13.0 - 2.19.0
JavaScript MD5 implementation. Compatible with server-side environments like Node.js, module loaders like RequireJS, Browserify or webpack and all web browsers.
@material-ui/utils 4.9.6 - 4.11.3
Material-UI Utils - Utility functions for Material-UI.
rc-trigger 4.3.0 - 4.3.4Outdated
base abstract trigger component for react
@material-ui/core 4.9.10 - 4.12.4
React components that implement Google's Material Design.
ssr-window 3.0.0Outdated
Better handling for window object in SSR environment
nolimits4web
nolimits4web
redux-saga 1.0.0 - 1.1.3Outdated
Saga middleware for Redux to handle Side Effects
mapbox-gl 0.22.0 - 0.26.0Outdated
A WebGL interactive maps library
+25
mbx-npm-ci-production
mbx-npm-ci-staging
mbx-npm-advanced-actions-production
@redux-saga/core 1.1.2 - 1.1.3Outdated
Saga middleware for Redux to handle Side Effects
dom7 3.0.0Outdated
Minimalistic JavaScript library for DOM manipulation, with a jQuery-compatible API
@redux-saga/symbols 1.1.0 - 1.1.2Outdated
Redux-saga internal symbol "registry".
@redux-saga/is 1.1.0 - 1.1.2Outdated
Runtime type checking helpers
yelouafi
andarist
redux-saga-release-bot
@redux-saga/delay-p 1.0.0 - 1.1.2Outdated
Promisified setTimeout
@redux-saga/deferred 1.0.0 - 1.1.2Outdated
Helper for creating "exposed" promise object (with resolve & reject methods).
humps 2.0.1
Underscore-to-camelCase converter (and vice versa) for strings and object keys in JavaScript.
jsonp 0.2.0 - 0.2.1
A sane JSONP implementation.
tootallnate
rauchg
feross
reactstrap 8.6.0 - 8.10.0Outdated
React Bootstrap components
react-native-web 0.6.0 - 0.6.1Outdated
React Native for Web
react-gtm-module 2.0.9 - 2.0.11
React Google Tag Manager Module
connected-react-router 6.9.0 - 6.9.2Outdated
A Redux binding for React Router v4 and v5
supasate
supasate
lodash.isequalwith 4.4.0
The lodash method `_.isEqualWith` exported as a module.
bootstrap-vue 2.0.0 - 2.15.0Outdated
With more than 85 components, over 45 available plugins, several directives, and 1000+ icons, BootstrapVue provides one of the most comprehensive implementations of the Bootstrap v4 component and grid system available for Vue.js v2.6, complete with extens
react-loadable 5.5.0
A higher order component for loading components with promises
miksu
thejameskyle
react-lottie 1.2.2 - 1.2.3Outdated
lottie animation view for React
qchen
qchen
auth0-js 9.19.0Outdated
Auth0 headless browser sdk
twitter-text 3.1.0
official twitter text linkification
+6
bigloser
catia3045
ded
react-meta-tags 0.7.4 - 1.0.0Outdated
Handle document meta/head tags in isomorphic react with ease.
lottie-api 1.0.0 - 1.0.2Outdated
A library to edit lottie-web animations dynamically
airnan
airnan
@rmwc/base 5.1.0 - 8.0.4Outdated
RMWC base module
jamesmfriedman
jamesmfriedman
@sentry/src x.x.x
src x.x.x
@mui/core x.x.x
auth0-lock x.x.x
auth0-password-policies x.x.x
faye x.x.x
getstream x.x.x
jsonapi-normalizer x.x.x
password-sheriff x.x.x