About
Community
pixiv.net
71 packages
Last scanned on Oct 27 at 06:15 PM
Update
Name
Size
Popularity
Severity
lodash
4.17.16
Vulnerable
Outdated
Lodash modular utilities.
Script
https://source.pixiv.net/www/js/build/pixiv.6784e34cf880dc334eed.js
License
MIT
Footprint
1 KB
Vulnerabilities
High
GHSA-35jh-r3h4-6jhm
Command Injection in lodash
Affected versions >=0 <4.17.21
Moderate
GHSA-29mw-wpgm-hmr9
Regular Expression Denial of Service (ReDoS) in lodash
Affected versions >=0 <4.17.21
High
GHSA-p6mc-m468-83gw
Prototype Pollution in lodash
Affected versions >=3.7.0 <4.17.19
Matched Modules
Version distribution in production
3 846
4.17.16
946
4.17.21
337
4.17.20
322
4.17.15
302
4.17.19
301
4.17.13
Also used on 4830 websites
skype.com
20 packages
sentry.io
157 packages
pinterest.com
56 packages
pinimg.com
52 packages
Repository
Homepage
More
modules
stdlib
util
moment
2.19.0 - 2.25.2
Vulnerable
Outdated
Parse, validate, manipulate, and display dates
moment
date
time
parse
format
+4
+2
tslib
1.6.0 - 2.4.0
Outdated
Runtime library for TypeScript helper functions
TypeScript
Microsoft
compiler
language
javascript
+2
+5
react-is
17.0.0 - 17.0.2
Outdated
Brand checking of React Elements.
react
+1
qs
6.10.0 - 6.10.1
Outdated
A querystring parser that supports nesting and arrays, with a depth limit
querystring
qs
query
url
parse
+1
@babel/runtime
7.15.4 - 7.16.0
Outdated
babel's modular runtime helpers
+1
get-intrinsic
1.0.2 - 1.1.1
Outdated
Get and robustly cache all JS language-level intrinsics at first require time
javascript
ecmascript
es
js
intrinsic
+2
ljharb
function-bind
1.1.0 - 1.1.1
Outdated
Implementation of Function.prototype.bind
function
bind
shim
es5
path-to-regexp
3.2.0
Outdated
Express style path to RegExp utility
express
regexp
route
routing
+2
call-bind
1.0.0 - 1.0.2
Outdated
Robustly `.call.bind()` a function
javascript
ecmascript
es
js
callbind
+8
ljharb
object-inspect
1.12.2
Outdated
string representations of objects in node and the browser
inspect
util.inspect
object
stringify
pretty
has-symbols
1.0.2 - 1.0.3
Determine if the JS environment has Symbol support. Supports spec, or shams.
Symbol
symbols
typeof
sham
polyfill
+3
ljharb
side-channel
1.0.4
Outdated
Store information about any JS value in a side channel. Uses WeakMap if available.
weakmap
map
side
channel
metadata
ljharb
domelementtype
2.0.0 - 2.1.0
Outdated
all the types of nodes in htmlparser2's dom
dom
element
types
htmlparser2
feedic
core-js
3.18.0 - 3.18.1
Outdated
Standard library
ES3
ES5
ES6
ES7
ES2015
+39
zloirock
has
1.0.1 - 1.0.3
Outdated
Object.prototype.hasOwnProperty.call shortcut
tarruda
scheduler
0.15.0 - 0.23.0
Cooperative scheduler for the browser environment.
react
+1
prop-types
15.7.0 - 15.7.2
Outdated
Runtime type checking for React props and similar objects.
react
react
17.0.0 - 18.2.0
React is a JavaScript library for building user interfaces.
react
+1
make-error
1.3.4 - 1.3.6
Make your own error types!
create
custom
derive
error
errors
+7
performance-now
0.1.3 - 2.1.0
Implements performance.now (based on process.hrtime).
meryn
hoist-non-react-statics
3.3.1 - 3.3.2
Copies non-react specific statics from a child component to a parent component
react
mridgway
handlebars
4.7.2 - 4.7.7
Outdated
Handlebars provides the power necessary to let you build semantic templates effectively with no frustration
handlebars
mustache
template
html
+3
@emotion/unitless
0.7.2 - 0.8.0
Outdated
An object of css properties that don't accept values with units
+1
classnames
2.3.0 - 2.3.1
Outdated
A simple utility for conditionally joining classNames together
react
css
classes
classname
classnames
+2
ua-parser-js
0.7.28
Outdated
Detect Browser, Engine, OS, CPU, and Device type/model from User-Agent & Client Hints data. Supports browser & node.js environment
user-agent
client-hints
parser
browser
engine
+9
faisalman
@emotion/is-prop-valid
0.8.8
Outdated
A function to check whether a prop is valid for HTML and SVG elements
+1
tiny-invariant
0.0.2 - 1.3.1
Outdated
A tiny invariant function
invariant
error
assert
asserts
alexreardon
immer
1.9.0 - 9.0.16
Outdated
Create your next immutable state by mutating the current one
immutable
mutable
copy-on-write
memoize-one
5.2.0 - 5.2.1
Outdated
A memoization library which only remembers the latest invocation
memoize
memoization
cache
performance
alexreardon
@sentry/utils
5.21.0 - 6.5.1
Outdated
Utilities for all Sentry JavaScript SDKs
+8
react-router
5.1.1 - 5.3.4
Outdated
Declarative routing for React
react
router
route
routing
history
+1
@sentry/core
5.10.2 - 6.16.1
Outdated
Base implementation for all Sentry JavaScript SDKs
+8
es5-ext
0.2.0 - 0.10.49
Outdated
ECMAScript extensions and shims
ecmascript
ecmascript5
ecmascript6
es5
es6
+11
medikoo
react-router-dom
5.1.0 - 5.3.4
Outdated
Declarative routing for React web applications
react
router
route
routing
history
+1
lodash-es
4.17.21
Lodash exported as ES modules.
es6
modules
stdlib
util
redux
4.0.1 - 4.2.0
Outdated
Predictable state container for JavaScript apps
redux
reducer
state
predictable
functional
+6
+3
shallowequal
1.0.1 - 1.1.0
Like lodash isEqualWith but for shallow equal.
shallowequal
shallow
equal
isequal
compare
+1
dashed
void-elements
3.1.0
Array of "void elements" defined by the HTML specification.
html
void
elements
+4
history
4.0.0 - 4.10.1
Outdated
Manage session history with JavaScript
history
location
mjackson
ufo
0.1.0 - 0.1.5
Outdated
URL utils for humans
pi0
polished
3.6.6 - 4.2.2
Outdated
A lightweight toolset for writing styles in Javascript.
styled-components
polished
emotion
glamor
css-in-js
+9
raf
3.0.0 - 3.1.0
Outdated
requestAnimationFrame polyfill for node and the browser
requestAnimationFrame
polyfill
idb
5.0.0 - 7.1.0
Outdated
A small wrapper that makes IndexedDB usable
jaffathecake
react-lifecycles-compat
3.0.4
Backwards compatibility polyfill for React class components
mdast-util-to-hast
2.0.0 - 12.2.4
Outdated
mdast utility to transform to hast
unist
mdast
mdast-util
hast
hast-util
+4
@sentry/browser
5.0.5 - 6.8.0
Outdated
Official Sentry SDK for browsers
+8
i18next
19.5.0 - 20.2.4
Outdated
i18next internationalization framework
i18next
internationalization
i18n
translation
localization
+3
redux-thunk
2.1.0 - 2.4.1
Outdated
Thunk middleware for Redux.
redux
thunk
middleware
redux-middleware
flux
+2
@emotion/stylis
0.8.1 - 0.8.5
A custom build of Stylis
+1
react-i18next
11.10.0 - 11.17.4
Outdated
Internationalization for react done right. Using the i18next i18n ecosystem.
i18next
internationalization
i18n
translation
localization
+4
@sentry/hub
4.3.3 - 6.19.4
Outdated
Sentry hub which handles global state managment.
+8
@sentry/minimal
4.0.0 - 6.19.7
Sentry minimal library that can be used in other packages
+8
mini-create-react-context
0.3.3 - 0.4.1
Smaller Polyfill for the proposed React context API
react
context
contextTypes
polyfill
ponyfill
stringepsilon
react-intersection-observer
8.31.1 - 8.32.5
Outdated
Monitor if a component is inside the viewport, using IntersectionObserver API
react
component
hooks
viewport
intersection
+5
thebuilder
@react-spring/core
9.0.0 - 9.5.5
Outdated
The platform-agnostic core of `react-spring`
animated
animation
hooks
motion
react
+4
tdfka_rick
xstate
4.22.0 - 4.23.1
Outdated
Finite State Machines and Statecharts for the Modern Web.
statechart
state machine
finite state machine
finite automata
scxml
+2
i18next-browser-languagedetector
4.2.0 - 4.3.1
Outdated
language detector used in browser environment for i18next
i18next
i18next-languageDetector
@react-spring/web
9.2.4 - 9.5.5
Outdated
`react-dom` support
animated
animation
hooks
motion
react
+4
tdfka_rick
antd
3.21.3 - 4.23.6
Outdated
An enterprise-class UI design language and React components implementation
ant
component
components
design
framework
+4
+4
redux-devtools-extension
2.12.2
Outdated
Wrappers for Redux DevTools Extension.
+1
react-spring
5.8.0 - 5.9.2
Outdated
<p align="center"> <img src="https://i.imgur.com/QZownhg.png" width="240" /> </p>
animated
animation
hooks
motion
react
+4
smoothscroll-polyfill
0.4.4
Smooth Scroll behavior polyfill
smooth
scroll
CSSOM
polyfill
react-sortable-hoc
1.4.0 - 1.11.0
Outdated
Set of higher-order components to turn any list into a sortable, touch-friendly, animated list
react
reactjs
react-component
sortable
sortable-list
+7
clauderic
canvas-confetti
0.2.0 - 1.6.0
Outdated
performant confetti animation in the browser
canvas
confetti
animation
burst
fireworks
+2
kirilv
@splitsoftware/splitio
10.9.0 - 10.17.3
Outdated
Split SDK
splitio
sdk
javascript
+5
analytics-utils
0.0.7 - 0.0.11
Outdated
Analytics utility functions used by 'analytics' module
analytics
analytics-project
analytics-utilities
davidwells
deepcopy
2.0.0 - 2.1.0
deep copy data
sasaplus1
@tannin/plural-forms
1.0.0 - 1.1.0
Compiles a function to compute the plural forms index for a given value
aduth
react-redux-loading-bar
4.6.0
Outdated
Simple Loading Bar for Redux and React
react
redux
loading
loading-bar
progress
+2
mironov
in-view
0.6.0 - 0.6.1
Get notified when a DOM element enters or exits the viewport.
camwiegert
Popular search queries
webpack.js.org
url
react-scripts
react
lottie-api
react-helmet-async
+7 packages
github.com
color-convert
@headlessui/react
hoist-non-react-statics
reactstrap
lit-html
+60 packages
pinterest.com
lodash
relay-runtime
react-relay
react-use
lodash-es
+51 packages
Popular packages
react
React is a JavaScript library for building user interfaces.
+6 634 websites
core-js
Standard library
+10 238 websites
es5-ext
ECMAScript extensions and shims
+10 229 websites
@babel/runtime
babel's modular runtime helpers
+8 352 websites
lodash
Lodash modular utilities.
+4 826 websites
axios
Promise based HTTP client for the browser and node.js
+4 742 websites