patch.com 67 packages

Last scanned on Oct 27 at 05:56 PM
lodash 4.17.16VulnerableOutdated
Lodash modular utilities.
License
MIT
Footprint
4 KB
Vulnerabilities
Command Injection in lodash
Affected versions >=0 <4.17.21
Regular Expression Denial of Service (ReDoS) in lodash
Affected versions >=0 <4.17.21
Prototype Pollution in lodash
Affected versions >=3.7.0 <4.17.19
Matched Modules
Version distribution in production
3 846
4.17.16
946
4.17.21
337
4.17.20
322
4.17.15
302
4.17.19
301
4.17.13
sanitize-html 2.5.2 - 2.7.0VulnerableOutdated
Clean up user-submitted HTML, preserving allowlisted elements and allowlisted attributes on a per-element basis
bootstrap-vue 1.0.0 - 1.5.1VulnerableOutdated
With more than 85 components, over 45 available plugins, several directives, and 1000+ icons, BootstrapVue provides one of the most comprehensive implementations of the Bootstrap v4 component and grid system available for Vue.js v2.6, complete with extens
postcss 8.4.5VulnerableOutdated
Tool for transforming styles with JS plugins
next 12.2.0 - 12.2.2VulnerableOutdated
The React Framework
rauchg
timneutkens
vercel-release-bot
semver 7.1.2 - 7.3.8Outdated
The semantic version parser used by npm.
+2
npm-cli-ops
saquibkhan
fritzy
escape-string-regexp 4.0.0 - 5.0.0
Escape RegExp special characters
react-is 16.3.0 - 16.13.1Outdated
Brand checking of React Elements.
entities 2.2.0Outdated
Encode & decode XML and HTML entities with ease & speed
@babel/runtime 7.13.6 - 7.13.7Outdated
babel's modular runtime helpers
+1
hzoo
existentialism
nicolo-ribaudo
path-to-regexp 6.1.0 - 6.2.0Outdated
Express style path to RegExp utility
axios 0.24.0Outdated
Promise based HTTP client for the browser and node.js
is-plain-object 4.1.0 - 5.0.0
Returns true if an object was created by the `Object` constructor, or Object.create(null).
domutils 2.8.0Outdated
Utilities for working with htmlparser2's dom
dom-serializer 1.0.0 - 1.4.1Outdated
render domhandler DOM nodes to a string
domhandler 4.2.2 - 4.3.1Outdated
Handler for htmlparser2 that turns pages into a dom
deepmerge 4.2.2Outdated
A library for deep (recursive) merging of Javascript objects
domelementtype 2.2.0 - 2.3.0
all the types of nodes in htmlparser2's dom
htmlparser2 6.1.0Outdated
Fast & forgiving HTML/XML parser
pako 1.0.8 - 1.0.11Outdated
zlib port to javascript - fast, modularized, with browser support
scheduler 0.15.0 - 0.23.0
Cooperative scheduler for the browser environment.
prop-types 15.8.0 - 15.8.1
Runtime type checking for React props and similar objects.
react 17.0.0 - 18.2.0
React is a JavaScript library for building user interfaces.
performance-now 0.1.3 - 2.1.0
Implements performance.now (based on process.hrtime).
meryn
meryn
date-fns 2.24.0 - 2.28.0Outdated
Modern JavaScript date utility library
kossnocorp
kossnocorp
clsx 1.1.1 - 1.2.1Outdated
A tiny (239B) utility for constructing className strings conditionally.
@emotion/memoize 0.7.5 - 0.8.0Outdated
emotion's memoize utility
+1
emmatown
tkh44
emotion-release-bot
hoist-non-react-statics 3.3.1 - 3.3.2
Copies non-react specific statics from a child component to a parent component
mridgway
mridgway
classnames 2.3.0 - 2.3.1Outdated
A simple utility for conditionally joining classNames together
react-transition-group 2.0.0 - 4.4.5
A react component toolset for managing animations
dom-helpers 5.1.4Outdated
tiny modular DOM lib for ie9+
@emotion/serialize 1.0.2 - 1.1.1Outdated
serialization utils for emotion
+1
emmatown
tkh44
emotion-release-bot
@popperjs/core 2.0.0 - 2.11.6Outdated
Tooltip and Popover Positioning Engine
@emotion/utils 1.0.0 - 1.2.0Outdated
internal utils for emotion
+1
emmatown
tkh44
emotion-release-bot
immer 6.0.8 - 9.0.16Outdated
Create your next immutable state by mutating the current one
@storybook/theming 6.5.0 - 6.5.13Outdated
Core Storybook Components
lodash-es 4.17.20 - 4.17.21
Lodash exported as ES modules.
js-cookie 3.0.1Outdated
A simple, lightweight JavaScript API for handling cookies
jwt-decode 3.0.0 - 3.1.2Outdated
Decode JWT tokens, mostly useful for browser applications.
react-lifecycles-compat 3.0.4
Backwards compatibility polyfill for React class components
fb
sophiebits
@mui/utils 5.8.6 - 5.9.1Outdated
Utility functions for React components.
@mui/system 5.8.1 - 5.10.10Outdated
MUI System is a set of CSS utilities to help you build custom designs more efficiently. It makes it possible to rapidly lay out custom designs.
@mui/material 5.0.0 - 5.10.11Outdated
Material UI is an open-source React component library that implements Google's Material Design. It's comprehensive and can be used in production out of the box.
@angular/platform-browser 2.0.0 - 2.4.10Outdated
Angular - library for using Angular in a web browser
angular
google-wombot
date-fns-tz 1.3.0 - 1.3.7Outdated
Time zone support for date-fns v3 with the Intl API
@angular/router 10.0.0 - 14.1.3Outdated
Angular - the routing library
uncontrollable 7.1.0 - 7.2.1Outdated
Wrap a controlled react component, to allow specific prop/handler pairs to be uncontrolled
fp-ts 0.5.0 - 0.5.4Outdated
Functional programming in TypeScript
react-draggable 4.4.1 - 4.4.5Outdated
React draggable component
react-focus-lock 2.3.0 - 2.9.1Outdated
It is a trap! (for a focus)
faker 1.0.0 - 2.1.5Outdated
Generate massive amounts of fake contextual data
marak
marak
parse-srcset 1.0.0 - 1.0.2
A spec-conformant JavaScript parser for the HTML5 srcset attribute
albell
albell
react-use 6.2.0Outdated
Collection of React Hooks
streamich
streamich
@restart/hooks 0.4.6 - 0.4.7Outdated
A set of utility and general-purpose React hooks.
monastic.panic
taion
kytsang
react-overlays 5.0.0 - 5.2.1
Utilities for creating robust overlay components
react-bootstrap 1.6.2 - 1.6.6Outdated
Bootstrap 5 components built with React
io-ts 0.0.1 - 2.2.19Outdated
TypeScript runtime type system for IO decoding/encoding
body-scroll-lock 2.7.0 - 3.1.5Outdated
Enables body scroll locking (for iOS Mobile and Tablet, Android, desktop Safari/Chrome/Firefox) without breaking scrolling of a target element (eg. modal/lightbox/flyouts/nav-menus)
@chakra-ui/theme 2.1.0 - 2.1.3Outdated
The default theme for chakra components
launchdarkly-react-client-sdk 2.12.5 - 2.29.1Outdated
LaunchDarkly SDK for React
react-google-login 5.2.1 - 5.2.2
A Google Login Component for React
tesseract.js 2.0.0 - 3.0.3Outdated
Pure Javascript Multilingual OCR
+1
antimatter15
jeromewu
bijection
@tannin/plural-forms 1.0.0 - 1.1.0
Compiles a function to compute the plural forms index for a given value
aduth
aduth
@researchgate/react-intersection-observer 1.2.0 - 1.3.5
React component for the Intersection Observer API
react-bootstrap-sweetalert 2.0.0 - 5.2.0
A variant of sweetalert for use with React and Bootstrap
botframework-webchat 0.11.2 - 0.15.0Outdated
A highly-customizable web-based chat client for Azure Bot Services.
+5
botframework
sgellock
cwhitten
react-amphtml 3.1.0 - 4.0.2
Use amphtml components inside your React apps easily!
dfrankland
dfrankland