nyti.ms 45 packages

Last scanned on Oct 27 at 06:11 PM
dompurify 1.0.0VulnerableOutdated
DOMPurify is a DOM-only, super-fast, uber-tolerant XSS sanitizer for HTML, MathML and SVG. It's written in JavaScript and works in all modern browsers (Safari, Opera (15+), Internet Explorer (10+), Firefox and Chrome - as well as almost anything else usin
License
(MPL-2.0 OR Apache-2.0)
Vulnerabilities
Cross-Site Scripting in dompurify
Affected versions >=0 <2.0.3
DOMPurify Open Redirect vulnerability
Affected versions >=0 <1.0.11
Cross-Site Scripting in dompurify
Affected versions >=0 <2.0.7
Cross-site Scripting in dompurify
Affected versions >=0 <2.0.17
Version distribution in production
27
1.0.0
23
2.3.6
23
2.3.8
16
2.3.7
7
2.3.3
5
2.2.9
es5-ext 0.10.24 - 0.10.49VulnerableOutdated
ECMAScript extensions and shims
debug 1.0.2 - 2.0.0Outdated
Lightweight debugging utility for Node.js and the browser
tslib 1.9.3Outdated
Runtime library for TypeScript helper functions
color-convert 1.9.2 - 1.9.3Outdated
Plain color conversion functions
color-name 1.1.3 - 1.1.4Outdated
A list of color names and its values
isarray 1.0.0 - 2.0.5
Array#isArray for older browsers
buffer 4.9.1Outdated
Node.js Buffer API, for the browser
regenerator-runtime 0.13.2 - 0.13.3Outdated
Runtime for Regenerator-compiled generator and async functions.
@babel/runtime 7.6.0 - 7.7.4Outdated
babel's modular runtime helpers
+1
hzoo
existentialism
nicolo-ribaudo
ieee754 1.1.9 - 1.1.13Outdated
Read/write IEEE754 floating point numbers from/to a Buffer or array-like object
object-assign 4.1.1
ES2015 `Object.assign()` ponyfill
base64-js 1.3.0Outdated
Base64 encoding/decoding in pure JS
lodash.merge 4.6.2
The Lodash method `_.merge` exported as a module.
scheduler 0.13.6Outdated
Cooperative scheduler for the browser environment.
prop-types 15.7.0 - 15.7.2Outdated
Runtime type checking for React props and similar objects.
react 16.8.6Outdated
React is a JavaScript library for building user interfaces.
process 0.11.10
process information for node.js and browsers
react-dom 16.8.6Outdated
React package for working with the DOM.
lodash.isplainobject 4.0.6
The lodash method `_.isPlainObject` exported as a module.
@emotion/memoize 0.6.6 - 0.7.4Outdated
emotion's memoize utility
+1
emmatown
tkh44
emotion-release-bot
hoist-non-react-statics 2.5.1 - 2.5.5Outdated
Copies non-react specific statics from a child component to a parent component
mridgway
mridgway
@emotion/unitless 0.7.2 - 0.7.5Outdated
An object of css properties that don't accept values with units
+1
emmatown
tkh44
emotion-release-bot
@emotion/is-prop-valid 0.8.8Outdated
A function to check whether a prop is valid for HTML and SVG elements
+1
emmatown
tkh44
emotion-release-bot
@emotion/hash 0.8.0Outdated
A MurmurHash2 implementation
+1
emmatown
tkh44
emotion-release-bot
@sentry/types 6.17.0 - 6.17.4Outdated
Types for all Sentry JavaScript SDKs
+8
benvinegar
billyvg
mitsuhiko
lodash.clonedeep 4.5.0
The lodash method `_.cloneDeep` exported as a module.
@sentry/utils 6.17.0 - 6.17.4Outdated
Utilities for all Sentry JavaScript SDKs
+8
benvinegar
billyvg
mitsuhiko
@sentry/core 6.17.4Outdated
Base implementation for all Sentry JavaScript SDKs
+8
benvinegar
billyvg
mitsuhiko
@emotion/weak-memoize 0.2.1 - 0.2.5Outdated
A memoization function that uses a WeakMap
+1
emmatown
tkh44
emotion-release-bot
@sentry/browser 6.17.4 - 6.17.6Outdated
Official Sentry SDK for browsers
+8
benvinegar
billyvg
mitsuhiko
@emotion/stylis 0.8.4 - 0.8.5
A custom build of Stylis
+1
emmatown
tkh44
emotion-release-bot
@sentry/hub 6.17.0 - 6.17.9Outdated
Sentry hub which handles global state managment.
+8
benvinegar
billyvg
mitsuhiko
@sentry/react 6.10.0Outdated
Official Sentry SDK for React.js
+8
benvinegar
billyvg
mitsuhiko
@sentry/minimal 6.17.0 - 6.18.2Outdated
Sentry minimal library that can be used in other packages
+8
benvinegar
billyvg
mitsuhiko
intersection-observer 0.12.0Outdated
A polyfill for IntersectionObserver
web-speech-cognitive-services 4.0.0Outdated
Polyfill Web Speech API with Cognitive Services Speech-to-Text service
@quintype/components 1.6.0 - 1.34.1Outdated
Components to help build Quintype Node.js apps
slug x.x.x
@nyt/burst x.x.x
@nyt/components x.x.x
@nyt/foundation x.x.x
@nyt/piano x.x.x
@nyt/interactive x.x.x
pretty-lights x.x.x