115 packages

Last scanned on Oct 27 at 07:56 PM
lodash 4.17.16VulnerableOutdated
Lodash modular utilities.
4 KB
Prototype Pollution in lodash
Affected versions >=3.7.0 <4.17.19
Command Injection in lodash
Affected versions >=0 <4.17.21
Regular Expression Denial of Service (ReDoS) in lodash
Affected versions >=0 <4.17.21
Matched Modules
Version distribution in production
3 846
fast-xml-parser 3.0.0 - 3.3.0VulnerableOutdated
Validate XML, Parse XML, Build XML without C/C++ based libraries
prismjs 1.24.0 - 1.25.0VulnerableOutdated
Lightweight, robust, elegant syntax highlighting. A spin-off project from Dabblet.
axios 0.21.4VulnerableOutdated
Promise based HTTP client for the browser and node.js
moment-timezone 0.5.33VulnerableOutdated
Parse and display moments in any timezone.
debug 1.0.2 - 2.0.0Outdated
Lightweight debugging utility for Node.js and the browser
escape-string-regexp 4.0.0 - 5.0.0
Escape RegExp special characters
isarray 1.0.0 - 2.0.5
Array#isArray for older browsers
react-is 16.3.0 - 17.0.2Outdated
Brand checking of React Elements.
camelcase 6.2.0Outdated
Convert a dash/dot/underscore/space separated string to camelCase or PascalCase: `foo-bar` → `fooBar`
buffer 4.6.0 - 4.9.2Outdated
Node.js Buffer API, for the browser
@babel/runtime 7.10.0 - 7.12.18Outdated
babel's modular runtime helpers
parse5 5.1.0 - 6.0.1Outdated
HTML parser and serializer.
base64-js 1.3.0 - 1.5.1
Base64 encoding/decoding in pure JS
is-buffer 2.0.0 - 2.0.5
Determine if an object is a Buffer
extend 3.0.2
Port of jQuery.extend for node.js and the browser
scheduler 0.15.0 - 0.23.0
Cooperative scheduler for the browser environment.
prop-types 15.7.0 - 15.8.1
Runtime type checking for React props and similar objects.
react 17.0.0 - 18.2.0
React is a JavaScript library for building user interfaces.
lodash.debounce 4.0.8
The lodash method `_.debounce` exported as a module.
url 0.11.0Outdated
The core `url` packaged standalone for use with Browserify.
@emotion/memoize 0.7.5 - 0.8.0Outdated
emotion's memoize utility
repeat-string 1.6.0 - 1.6.1
Repeat the given string n times. Fastest implementation for repeating a string.
hoist-non-react-statics 3.3.1 - 3.3.2
Copies non-react specific statics from a child component to a parent component
classnames 2.3.0 - 2.3.1Outdated
A simple utility for conditionally joining classNames together
@emotion/utils 1.0.0 - 1.2.0Outdated
internal utils for emotion
unist-util-is 4.0.4 - 4.1.0Outdated
unist utility to check if a node passes a test
@emotion/is-prop-valid 1.1.2 - 1.2.0Outdated
A function to check whether a prop is valid for HTML and SVG elements
unist-util-visit-parents 4.0.0 - 4.1.0Outdated
unist utility to recursively walk over nodes, with ancestral information
@emotion/serialize 1.0.2 - 1.1.1Outdated
serialization utils for emotion
@aws-sdk/util-utf8-browser 3.0.0 - 3.188.0Outdated
A browser UTF-8 string <-> UInt8Array converter
query-string 6.5.0 - 7.1.1Outdated
Parse and stringify URL query strings
unist-util-visit 1.4.0 - 2.0.3Outdated
unist utility to visit nodes
@emotion/weak-memoize 0.1.1 - 0.3.0Outdated
A memoization function that uses a WeakMap
mdast-util-to-string 2.0.0Outdated
mdast utility to get the plain text content of a node
unist-util-stringify-position 2.0.0 - 2.0.3Outdated
unist utility to serialize a node, position, or point as a human readable location
immer 7.0.7 - 9.0.16Outdated
Create your next immutable state by mutating the current one
es5-ext 0.10.24 - 0.10.49Outdated
ECMAScript extensions and shims
unified 9.2.2Outdated
parse, inspect, transform, and serialize content through syntax trees
vfile-message 1.0.0 - 2.0.4Outdated
vfile utility to create a virtual message
vfile 2.1.0 - 4.2.0Outdated
Virtual file format for text processing
lodash.isboolean 3.0.1 - 3.0.3
The lodash method `_.isBoolean` exported as a module.
lodash-es 4.17.20 - 4.17.21
Lodash exported as ES modules.
querystring-es3 0.2.1
Node's querystring module for all engines. (ES3 compat fork)
space-separated-tokens 1.1.3 - 2.0.1Outdated
Parse and stringify space separated tokens
@emotion/react 11.6.0 - 11.10.5Outdated
> Simple styling in React.
remark-parse 9.0.0Outdated
remark plugin to add support for parsing markdown input
mdurl 0.0.1 - 1.0.1Outdated
URL utilities for markdown-it
trough 1.0.3 - 1.0.5Outdated
Middleware: a channel used to convey a liquid
bail 1.0.0 - 2.0.2
Throw a given error
mdast-util-definitions 4.0.0Outdated
mdast utility to find definition nodes in a tree
is-alphabetical 1.0.0 - 2.0.0Outdated
Check if a character is alphabetical
is-decimal 1.0.0 - 2.0.0Outdated
Check if a character is decimal
is-hexadecimal 1.0.0 - 2.0.0Outdated
Check if a character is hexadecimal
property-information 5.6.0Outdated
Info on the properties and attributes of the web platform
comma-separated-tokens 1.0.6 - 1.0.8Outdated
Parse and stringify comma-separated tokens
popper.js 1.12.6 - 1.16.1
A kickass library to manage your poppers
zwitch 1.0.2 - 1.0.5Outdated
Handle values based on a property
micromark 2.11.4Outdated
small commonmark compliant markdown parser with positional info and concrete tokens
@aws-sdk/util-uri-escape 3.55.0 - 3.186.0Outdated
[![NPM version](]( [![NPM downloads](](
mdast-util-from-markdown 0.8.5Outdated
mdast utility to parse markdown
style-to-object 0.2.3 - 0.3.0Outdated
Converts inline style to object.
split-on-first 1.0.0 - 2.0.0Outdated
Split a string on the first occurance of a given separator
unist-util-position 3.1.0 - 4.0.3Outdated
unist utility to get the position of a node
ccount 1.1.0 - 2.0.0Outdated
Count how often a character (or substring) is used in a string
mdast-util-to-hast 10.2.0Outdated
mdast utility to transform to hast
inline-style-parser 0.1.0 - 0.1.1Outdated
An inline style parser.
hastscript 5.1.0 - 7.1.0Outdated
hast utility to create trees
just-extend 4.1.1 - 5.0.0Outdated
extend an object
vfile-location 3.2.0Outdated
vfile utility to convert between positional (line and column-based) and offset (range-based) locations
hast-util-parse-selector 2.2.5Outdated
hast utility to create an element from a simple CSS selector
unist-util-generated 1.1.6 - 2.0.0Outdated
unist utility to check if a node is generated
longest-streak 2.0.1 - 2.0.4Outdated
Count the longest repeating streak of a substring
dompurify 2.2.8Outdated
DOMPurify is a DOM-only, super-fast, uber-tolerant XSS sanitizer for HTML, MathML and SVG. It's written in JavaScript and works in all modern browsers (Safari, Opera (15+), Internet Explorer (10+), Firefox and Chrome - as well as almost anything else usin
mdast-util-to-markdown 0.6.5Outdated
mdast utility to serialize markdown
hyphenate-style-name 1.0.3 - 1.0.4
Hyphenates a camelcased CSS property name
hast-util-from-parse5 6.0.1Outdated
hast utility to transform from Parse5’s AST
unist-builder 2.0.1 - 2.0.3Outdated
unist utility to create a new trees with a nice syntax
hast-util-raw 6.1.0Outdated
hast utility to reparse a tree
hast-util-to-parse5 4.0.0 - 6.0.0Outdated
hast utility to transform to a `parse5` AST
markdown-table 2.0.0Outdated
Generate a markdown (GFM) table
@angular/core 8.0.0 - 8.2.11Outdated
Angular - the core framework
react-virtualized 9.22.0 - 9.22.2Outdated
React components for efficiently rendering large, scrollable lists and tabular data
remark-rehype 2.0.0 - 8.1.0Outdated
remark plugin that turns markdown into HTML to support rehype
hast-to-hyperscript 9.0.1Outdated
Deprecated: use [`hast-util-to-jsx-runtime`][hast-util-to-jsx-runtime] instead, which is much better :)
refractor 3.5.0Outdated
Lightweight, robust, elegant virtual syntax highlighting using Prism
mdast-util-find-and-replace 1.1.1Outdated
mdast utility to find and replace text in a tree
micromark-extension-gfm-strikethrough 0.6.2 - 0.6.5Outdated
micromark extension to support GFM strikethrough
mdast-util-gfm-strikethrough 0.1.0 - 0.2.3Outdated
mdast extension to parse and serialize GFM strikethrough
micromark-extension-gfm-table 0.4.3Outdated
micromark extension to support GFM tables
mdast-util-gfm-table 0.1.6Outdated
mdast extension to parse and serialize GFM tables
micromark-extension-gfm-task-list-item 0.3.2 - 0.3.3Outdated
micromark extension to support GFM task list items
micromark-extension-gfm 0.2.0 - 1.0.0Outdated
micromark extension to support GFM (GitHub Flavored Markdown)
mdast-util-gfm-autolink-literal 0.1.2 - 0.1.3Outdated
mdast extension to parse and serialize GFM autolink literals
mdast-util-gfm-task-list-item 0.1.5 - 0.1.6Outdated
mdast extension to parse and serialize GFM task list items
mdast-util-gfm 0.1.2Outdated
mdast extension to parse and serialize GFM (GitHub Flavored Markdown)
remark-gfm 1.0.0Outdated
remark plugin to support GFM (autolink literals, footnotes, strikethrough, tables, tasklists)
react-markdown 6.0.3Outdated
React component to render markdown
clipboard 2.0.7Outdated
Modern copy to clipboard. No Flash. Just 2kb
rc-trigger 4.3.0 - 4.3.4Outdated
base abstract trigger component for react
@material-ui/core 4.0.0 - 4.1.0Outdated
React components that implement Google's Material Design.
antd 4.4.2 - 4.23.6Outdated
An enterprise-class UI design language and React components implementation
react-smooth 1.0.1 - 2.0.1Outdated
react animation library
reactcss 1.2.0 - 1.2.3
Bringing Classes to Inline Styles
rc-field-form 0.0.1 - 1.18.0Outdated
React Form Component
rehype-raw 5.1.0Outdated
rehype plugin to reparse the tree (and raw nodes)
react-device-detect 1.17.0 - 2.2.2Outdated
Detect device type and render your component according to it
@chakra-ui/layout 1.0.0 - 1.0.1Outdated
Chakra UI layout components that give you massive speed
react-hotkeys 1.0.4 - 1.1.4Outdated
A declarative library for handling hotkeys and focus within a React application
ramda-adjunct 2.35.0 - 3.3.0Outdated
Ramda Adjunct is the most popular and most comprehensive set of utilities for use with Ramda, providing a variety of useful, well tested functions with excellent documentation.
amplitude-js 5.2.0Outdated
Javascript library for Amplitude Analytics
@hotwired/turbo 7.0.0 - 7.2.4Outdated
The speed of a single-page web application without having to write any JavaScript
react-feather 2.0.8 - 2.0.10
React component for Feather icons
@tannin/plural-forms 1.0.0 - 1.1.0
Compiles a function to compute the plural forms index for a given value
react-amphtml 3.1.0 - 4.0.2
Use amphtml components inside your React apps easily!