About
Community
orange.pl
69 packages
Last scanned on Jan 19 at 10:23 AM
Update
Name
Size
Popularity
Severity
lodash
4.17.16
Vulnerable
Outdated
Lodash modular utilities.
Script
https://orange.pl/_next/static/chunks/pages/_app-76e23b70ae594603.js
https://orange.pl/_next/static/chunks/vendors-libs_components_node_modules_react-stately_collections_dist_module_js-libs_components-0d621c-51cfe5ee447da331.js
https://orange.pl/_next/static/chunks/vendors-node_modules_lodash__baseIteratee_js-ed66becc04104125.js
License
MIT
Footprint
3 KB
Vulnerabilities
High
GHSA-35jh-r3h4-6jhm
Command Injection in lodash
Affected versions >=0 <4.17.21
Moderate
GHSA-29mw-wpgm-hmr9
Regular Expression Denial of Service (ReDoS) in lodash
Affected versions >=0 <4.17.21
High
GHSA-p6mc-m468-83gw
Prototype Pollution in lodash
Affected versions >=3.7.0 <4.17.19
Matched Modules
Version distribution in production
3 846
4.17.16
946
4.17.21
337
4.17.20
322
4.17.15
302
4.17.19
301
4.17.13
Also used on 4830 websites
skype.com
20 packages
sentry.io
157 packages
pinterest.com
56 packages
pinimg.com
52 packages
Repository
Homepage
More
modules
stdlib
util
next
12.3.0 - 12.3.4
Vulnerable
Outdated
The React Framework
react-is
16.3.0 - 16.13.1
Outdated
Brand checking of React Elements.
react
+1
qs
6.11.0
Outdated
A querystring parser that supports nesting and arrays, with a depth limit
querystring
qs
query
url
parse
+1
@babel/runtime
7.14.0 - 7.20.7
Outdated
babel's modular runtime helpers
+1
get-intrinsic
1.1.2
Outdated
Get and robustly cache all JS language-level intrinsics at first require time
javascript
ecmascript
es
js
intrinsic
+2
ljharb
function-bind
1.1.0 - 1.1.1
Outdated
Implementation of Function.prototype.bind
function
bind
shim
es5
path-to-regexp
6.1.0 - 6.2.0
Outdated
Express style path to RegExp utility
express
regexp
route
routing
+2
cookie
0.5.0
Outdated
HTTP server cookie parsing and serialization
cookie
cookies
dougwilson
call-bind
1.0.2
Outdated
Robustly `.call.bind()` a function
javascript
ecmascript
es
js
callbind
+8
ljharb
object-inspect
1.12.2 - 1.12.3
Outdated
string representations of objects in node and the browser
inspect
util.inspect
object
stringify
pretty
has-symbols
1.0.2 - 1.0.3
Determine if the JS environment has Symbol support. Supports spec, or shams.
Symbol
symbols
typeof
sham
polyfill
+3
ljharb
side-channel
1.0.4
Outdated
Store information about any JS value in a side channel. Uses WeakMap if available.
weakmap
map
side
channel
metadata
ljharb
core-js
3.23.3 - 3.27.1
Outdated
Standard library
ES3
ES5
ES6
ES7
ES2015
+39
zloirock
lodash.merge
4.6.1 - 4.6.2
The Lodash method `_.merge` exported as a module.
lodash-modularized
merge
scheduler
0.15.0 - 0.23.0
Outdated
Cooperative scheduler for the browser environment.
react
+1
has
1.0.1 - 1.0.3
Outdated
Object.prototype.hasOwnProperty.call shortcut
tarruda
prop-types
15.8.0 - 15.8.1
Runtime type checking for React props and similar objects.
react
react
16.13.0 - 18.2.0
Outdated
React is a JavaScript library for building user interfaces.
react
+1
lodash.debounce
4.0.8
The lodash method `_.debounce` exported as a module.
lodash-modularized
debounce
lodash.memoize
4.1.0 - 4.1.2
The lodash method `_.memoize` exported as a module.
lodash-modularized
memoize
clsx
1.1.1 - 1.2.1
Outdated
A tiny (239B) utility for constructing className strings conditionally.
classes
classname
classnames
lukeed
@emotion/memoize
0.7.5 - 0.8.0
Outdated
emotion's memoize utility
+1
hoist-non-react-statics
3.3.1 - 3.3.2
Copies non-react specific statics from a child component to a parent component
react
mridgway
ua-parser-js
0.7.28
Outdated
Detect Browser, Engine, OS, CPU, and Device type/model from User-Agent & Client Hints data. Supports browser & node.js environment
user-agent
client-hints
parser
browser
engine
+9
faisalman
@emotion/serialize
1.0.2 - 1.1.1
Outdated
serialization utils for emotion
+1
@emotion/utils
1.0.0 - 1.2.0
Outdated
internal utils for emotion
+1
@sentry/utils
7.0.0 - 7.15.0
Outdated
Utilities for all Sentry JavaScript SDKs
+8
@sentry/core
5.10.2 - 6.16.1
Outdated
Base implementation for all Sentry JavaScript SDKs
+8
lodash-es
4.17.20 - 4.17.21
Lodash exported as ES modules.
es6
modules
stdlib
util
@storybook/theming
6.5.0 - 6.5.15
Outdated
Core Storybook Components
storybook
+8
tailwindcss
3.0.3 - 3.1.6
Outdated
A utility-first CSS framework for rapidly building custom user interfaces.
@emotion/react
11.6.0 - 11.10.5
Outdated
> Simple styling in React.
+1
history
4.0.0 - 4.10.1
Outdated
Manage session history with JavaScript
history
location
mjackson
polished
1.0.0 - 2.0.3
Outdated
A lightweight toolset for writing styles in Javascript.
styled-components
polished
emotion
glamor
css-in-js
+9
debounce
1.2.0 - 1.2.1
Outdated
Delay function calls until a set time elapses after the last invocation
debounce
debouncing
function
throttle
invoke
+6
sindresorhus
@emotion/styled
11.0.0 - 11.10.5
Outdated
styled API for emotion
+1
@sentry/browser
6.7.0 - 6.12.0
Outdated
Official Sentry SDK for browsers
+8
lodash.throttle
4.1.1
The lodash method `_.throttle` exported as a module.
lodash-modularized
throttle
set-cookie-parser
2.5.1
Outdated
Parses set-cookie headers into objects
set-cookie
set
cookie
cookies
header
+1
nfriedly
react-popper
1.0.0
Outdated
Official library to use Popper on React projects
react
react-popper
popperjs
component
drop
+2
@vue/runtime-core
3.1.3 - 3.2.19
Outdated
@vue/runtime-core
vue
focus-lock
0.10.2 - 0.11.4
Outdated
DOM trap for a focus
focus
trap
vanilla
kashey
@react-spring/shared
9.0.0 - 9.6.1
Outdated
Globals and shared modules
animated
animation
hooks
motion
react
+4
tdfka_rick
@react-spring/animated
9.0.0 - 9.6.1
Outdated
Animated component props for React
animated
animation
hooks
motion
react
+4
tdfka_rick
@react-spring/core
9.0.0 - 9.6.1
Outdated
The platform-agnostic core of `react-spring`
animated
animation
hooks
motion
react
+4
tdfka_rick
react-use
5.2.3 - 17.4.0
Outdated
Collection of React Hooks
streamich
xstate
4.26.1 - 4.35.2
Outdated
Finite State Machines and Statecharts for the Modern Web.
statechart
state machine
finite state machine
finite automata
scxml
+2
@react-aria/utils
3.4.0 - 3.14.2
Outdated
Spectrum UI components in React
react-day-picker
8.0.0 - 8.4.1
Outdated
Customizable Date Picker for React
@react-stately/utils
3.4.0 - 3.5.2
Outdated
Spectrum UI components in React
@react-aria/interactions
3.8.0 - 3.13.1
Outdated
Spectrum UI components in React
@react-aria/focus
3.5.1 - 3.10.1
Outdated
Spectrum UI components in React
@reach/utils
0.12.0 - 0.18.0
Internal, shared utilities for Reach UI.
+1
recompose
0.3.1
Outdated
A React utility belt for function components and higher-order components
react
higher-order
components
microcomponentization
toolkit
+2
@auth0/auth0-spa-js
2.0.0 - 2.0.2
Outdated
Auth0 SDK for Single Page Applications using Authorization Code Grant Flow with PKCE
auth0
login
Authorization Code Grant Flow
PKCE
Single Page Application authentication
+1
+41
@chakra-ui/theme
2.1.0 - 2.1.3
Outdated
The default theme for chakra components
theme
theming
ui mode
ui
smoothscroll-polyfill
0.4.4
Smooth Scroll behavior polyfill
smooth
scroll
CSSOM
polyfill
@reach/portal
0.18.0
Declarative portals for React
+1
styled-system
3.1.0 - 3.1.2
Outdated
Responsive, theme-based style props for building design systems with React
react
css-in-js
styled-components
emotion
react-native-web
0.18.0 - 0.18.10
Outdated
React Native for Web
react
react-component
react-native
web
necolas
gatsby
4.24.0 - 5.4.2
Outdated
Blazing fast modern site generator for React
blog
generator
jekyll
markdown
react
+2
+10
react-instantsearch-dom
5.2.0 - 6.38.3
Outdated
⚡ Lightning-fast search for React DOM, by Algolia
algolia
components
fast
instantsearch
react
+2
+2
tesseract.js
2.0.0 - 4.0.2
Outdated
Pure Javascript Multilingual OCR
+1
react-scroll-parallax
2.4.0 - 2.4.1
Outdated
React hooks and components to create parallax scroll effects for banners, images or any other DOM elements.
react
scroll
effects
parallax
banner
+3
jscottsmith
react-tracking
4.1.0 - 5.4.0
Outdated
Declarative tracking for React apps.
declarative
layer
metrics
nyt
react
+1
tizmagik
lottie-api
1.0.0 - 1.0.2
Outdated
A library to edit lottie-web animations dynamically
airnan
gatsby-background-image
0.2.5 - 1.6.0
Lazy-loading React background-image component with optional support for the blur-up effect.
gatsby
gatsby-component
gatsby-image
background-image
backgroundImage
+3
timhagn
react-amphtml
3.1.0 - 4.0.2
Use amphtml components inside your React apps easily!
react
amphtml
dfrankland
Popular search queries
webpack.js.org
url
react-scripts
react
lottie-api
react-helmet-async
+7 packages
github.com
color-convert
@headlessui/react
hoist-non-react-statics
reactstrap
lit-html
+60 packages
pinterest.com
lodash
relay-runtime
react-relay
react-use
lodash-es
+51 packages
Popular packages
react
React is a JavaScript library for building user interfaces.
+6 634 websites
core-js
Standard library
+10 238 websites
es5-ext
ECMAScript extensions and shims
+10 229 websites
@babel/runtime
babel's modular runtime helpers
+8 352 websites
lodash
Lodash modular utilities.
+4 826 websites
axios
Promise based HTTP client for the browser and node.js
+4 742 websites