redbubble.com 166 packages

Last scanned on Oct 27 at 06:03 PM
url-parse 1.4.5VulnerableOutdated
Small footprint URL parser that works seamlessly across Node.js and browser environments
License
MIT
Footprint
3 KB
Vulnerabilities
url-parse incorrectly parses hostname / protocol due to unstripped leading control characters.
Affected versions >=0 <1.5.9
Authorization bypass in url-parse
Affected versions >=0 <1.5.6
Path traversal in url-parse
Affected versions >=0 <1.5.0
Open redirect in url-parse
Affected versions >=0 <1.5.2
Authorization Bypass Through User-Controlled Key in url-parse
Affected versions >=0 <1.5.8
url-parse Incorrectly parses URLs that include an '@'
Affected versions >=0 <1.5.7
Matched Modules
Version distribution in production
206
1.5.10
167
1.5.9
50
1.5.3
47
1.4.6
47
1.4.7
23
1.4.5
lodash 4.17.11 - 4.17.20VulnerableOutdated
Lodash modular utilities.
axios 0.21.1VulnerableOutdated
Promise based HTTP client for the browser and node.js
serialize-javascript 1.8.0 - 1.9.1VulnerableOutdated
Serialize JavaScript to a superset of JSON that includes regular expressions and functions.
moment 2.24.0VulnerableOutdated
Parse, validate, manipulate, and display dates
lodash-es 4.17.12 - 4.17.15VulnerableOutdated
Lodash exported as ES modules.
debug 4.1.1VulnerableOutdated
Lightweight debugging utility for Node.js and the browser
es5-ext 0.10.24 - 0.10.49VulnerableOutdated
ECMAScript extensions and shims
tslib 1.13.0 - 1.14.1Outdated
Runtime library for TypeScript helper functions
ms 2.1.2Outdated
Tiny millisecond conversion utility
+5
gdborton
matheuss
rauchg
uuid 3.3.0 - 3.3.3Outdated
RFC4122 (v1, v4, and v5) UUIDs
isarray 0.0.0 - 0.0.1Outdated
Array#isArray for older browsers
react-is 16.13.1Outdated
Brand checking of React Elements.
inherits 2.0.4
Browser-friendly inheritance fully compatible with standard node.js inherits()
qs 6.7.0Outdated
A querystring parser that supports nesting and arrays, with a depth limit
buffer 4.9.1Outdated
Node.js Buffer API, for the browser
regenerator-runtime 0.13.4 - 0.13.5Outdated
Runtime for Regenerator-compiled generator and async functions.
@babel/runtime 7.0.0 - 7.16.3Outdated
babel's modular runtime helpers
+1
hzoo
existentialism
nicolo-ribaudo
function-bind 1.1.1Outdated
Implementation of Function.prototype.bind
path-to-regexp 1.7.0Outdated
Express style path to RegExp utility
cookie 0.4.0Outdated
HTTP server cookie parsing and serialization
dougwilson
dougwilson
has-symbols 1.0.2 - 1.0.3
Determine if the JS environment has Symbol support. Supports spec, or shams.
ieee754 1.1.9 - 1.1.13Outdated
Read/write IEEE754 floating point numbers from/to a Buffer or array-like object
object-assign 4.1.1
ES2015 `Object.assign()` ponyfill
es-abstract 1.17.3 - 1.17.5Outdated
ECMAScript spec abstract operations.
base64-js 1.2.3Outdated
Base64 encoding/decoding in pure JS
fast-json-stable-stringify 2.0.0 - 2.1.0
deterministic `JSON.stringify()` - a faster version of substack's json-stable-strigify without jsonify
define-properties 1.1.3Outdated
Define multiple non-enumerable properties at once. Uses `Object.defineProperty` when available; falls back to standard assignment in older engines.
object-keys 1.1.1
An Object.keys replacement, in case Object.keys is not available. From https://github.com/es-shims/es5-shim
util 0.11.1Outdated
Node.js's util module for all engines
xtend 4.0.1 - 4.0.2
extend like a boss
object.values 1.1.1Outdated
ES2017 spec-compliant Object.values shim.
has 1.0.2 - 1.0.3Outdated
Object.prototype.hasOwnProperty.call shortcut
tarruda
tarruda
requires-port 1.0.0
Check if a protocol requires a certain port number to be added to an URL.
scheduler 0.15.0Outdated
Cooperative scheduler for the browser environment.
prop-types 15.7.0 - 15.7.2Outdated
Runtime type checking for React props and similar objects.
react 16.13.0Outdated
React is a JavaScript library for building user interfaces.
process 0.11.10
process information for node.js and browsers
react-dom 16.9.0Outdated
React package for working with the DOM.
querystringify 2.1.0Outdated
Querystringify - Small, simple but powerful query string parser.
date-fns 1.30.1Outdated
Modern JavaScript date utility library
kossnocorp
kossnocorp
minimalistic-assert 1.0.0 - 1.0.1
minimalistic-assert ===
cwmma
indutny
@emotion/memoize 0.6.6 - 0.7.4Outdated
emotion's memoize utility
+1
emmatown
tkh44
emotion-release-bot
hoist-non-react-statics 2.5.1 - 2.5.5Outdated
Copies non-react specific statics from a child component to a parent component
mridgway
mridgway
invariant 2.2.3 - 2.2.4
invariant
classnames 2.2.6Outdated
A simple utility for conditionally joining classNames together
symbol-observable 1.1.0 - 1.2.0Outdated
Symbol.observable ponyfill
@emotion/is-prop-valid 0.7.3Outdated
A function to check whether a prop is valid for HTML and SVG elements
+1
emmatown
tkh44
emotion-release-bot
stackframe 0.3.0 - 0.3.1Outdated
JS Object representation of a stack frame
react-transition-group 4.2.2 - 4.3.0Outdated
A react component toolset for managing animations
graphql 0.13.2Outdated
A Query Language and Runtime which can target any service.
@popperjs/core 2.4.4Outdated
Tooltip and Popover Positioning Engine
tiny-invariant 1.1.0Outdated
A tiny invariant function
hash.js 1.1.7
Various hash functions that could be run by both browser and node
react-router 5.0.1Outdated
Declarative routing for React
react-router-dom 5.0.1Outdated
Declarative routing for React web applications
redux 3.7.1 - 3.7.2Outdated
Predictable state container for JavaScript apps
react-fast-compare 2.0.4Outdated
Fastest deep equal comparison for React. Great for React.memo & shouldComponentUpdate. Also really fast general-purpose deep comparison.
crypto-browserify 1.0.9 - 2.0.0Outdated
implementation of crypto for the browser
+2
dcousens
ljharb
cwmma
react-redux 7.1.1Outdated
Official React bindings for Redux
shallowequal 1.1.0
Like lodash isEqualWith but for shallow equal.
history 4.9.0Outdated
Manage session history with JavaScript
graphql-tag 2.9.1 - 2.11.0Outdated
A JavaScript template literal tag that parses GraphQL queries
jnwng
abernix
apollo-bot
toposort 2.0.2
Topological sort of directed ascyclic graphs (like dependecy lists)
react-remove-scroll 2.2.0 - 2.3.0Outdated
Disables scroll outside of `children` node.
kashey
kashey
yup 0.29.2 - 0.29.3Outdated
Dead simple Object schema validation
monastic.panic
monastic.panic
use-callback-ref 1.2.4 - 1.2.5Outdated
The same useRef, but with callback
p-is-promise 3.0.0 - 4.0.0
Check if something is a promise
use-sidecar 1.0.0 - 1.0.5Outdated
Sidecar code splitting utils
defu 0.0.3 - 1.0.0Outdated
Recursively assign default properties. Lightweight and Fast!
pi0
pi0
react-remove-scroll-bar 2.0.0 - 2.1.1Outdated
Removes body scroll without content _shake_
kashey
kashey
property-expr 2.0.4Outdated
tiny util for getting and setting deep object props safely
redux-thunk 2.1.1 - 2.3.0Outdated
Thunk middleware for Redux.
react-style-singleton 2.1.0 - 2.1.1Outdated
Just create a single stylesheet...
get-nonce 1.0.0 - 1.0.1
returns nonce
react-popper 2.2.3 - 2.2.4Outdated
Official library to use Popper on React projects
synchronous-promise 2.0.15Outdated
Synchronous Promise-like prototype to use in testing where you would have used an ES6 Promise
fluffynuts
fluffynuts
zen-observable-ts 0.8.14 - 0.8.21Outdated
Thin wrapper around zen-observable and @types/zen-observable, to support ESM exports as well as CommonJS exports
jbaxleyiii
apollo-bot
ts-invariant 0.4.3 - 0.4.4Outdated
TypeScript implementation of invariant(condition, message)
zen-observable 0.8.11 - 0.8.14Outdated
An Implementation of ES Observables
zenparsing
zenparsing
compute-scroll-into-view 1.0.14Outdated
The engine that powers scroll-into-view-if-needed
resolve-pathname 2.2.0Outdated
Resolve URL pathnames using JavaScript
mjackson
mjackson
value-equal 0.4.0Outdated
Are these two JavaScript values equal?
mjackson
mjackson
@wry/equality 0.1.9 - 0.1.11Outdated
Structural equality checking for JavaScript values
benjamn
benjamn
intl-messageformat 2.1.0 - 2.2.0Outdated
Formats ICU Message strings with number, date, plural, and select placeholders to create localized messages.
tabbable 3.1.2Outdated
Returns an array of all tabbable DOM nodes within a containing node.
davidtheclark
stefcameron
@wry/context 0.4.4 - 0.6.1Outdated
Manage contextual information needed by (a)synchronous tasks without explicitly passing objects around
benjamn
benjamn
optimism 0.10.2Outdated
Composable reactive caching with efficient invalidation.
@sentry/react 7.0.0 - 7.17.1Outdated
Official Sentry SDK for React.js
+8
benvinegar
billyvg
mitsuhiko
iterall 1.2.0 - 1.2.2Outdated
Minimal zero-dependency utilities for using JavaScript Iterables in all environments.
exenv 1.2.1 - 1.2.2
React's ExecutionEnvironment module extracted for use in other packages & components
framesync 4.0.2 - 4.0.4Outdated
A frame-synced render loop for JavaScript
popmotion
popmotion
gud 1.0.0
Create a 'gud nuff' (not cryptographically secure) globally unique id
swr 0.2.3 - 0.5.7Outdated
React Hooks library for remote data fetching
react-side-effect 1.1.4 - 1.1.5Outdated
Create components whose prop changes map to a global side effect
react-toastify 5.4.1Outdated
React notification made easy
react-helmet 5.2.1Outdated
A document head manager for React
mini-create-react-context 0.3.2Outdated
Smaller Polyfill for the proposed React context API
react-intersection-observer 8.26.1Outdated
Monitor if a component is inside the viewport, using IntersectionObserver API
hey-listen 1.0.3 - 1.0.5Outdated
Warning and invariant dev-ex messaging.
react-beautiful-dnd 1.0.0 - 6.0.2Outdated
Beautiful and accessible drag and drop for lists with React
focus-trap 3.0.0Outdated
Trap focus within a DOM node.
airbnb-prop-types 2.4.0 - 2.13.2Outdated
Custom React PropType validators that we use at Airbnb.
downshift 5.4.6Outdated
🏎 A set of primitives to build simple, flexible, WAI-ARIA compliant React autocomplete, combobox or select dropdown components.
universal-cookie 4.0.1 - 4.0.2Outdated
Universal cookies for JavaScript
react-intl 2.8.0 - 2.9.0Outdated
Internationalize React apps. This library provides React components and an API to format dates, numbers, and strings, including pluralization and handling translations.
intl-messageformat-parser 1.3.0 - 1.5.1Outdated
Parses ICU Message strings into an AST via JavaScript.
apollo-utilities 1.3.2Outdated
Utilities for working with GraphQL ASTs
+1
apollo-bot
benjamn
jbaxleyiii
popmotion 8.6.1 - 8.6.2Outdated
The animator's toolbox
apollo-link 1.2.12 - 1.2.14
Flexible, lightweight transport layer for GraphQL
jbaxleyiii
peggyrayzis
apollo-bot
style-value-types 3.0.7Outdated
Parsers, transformers and tests for special value types, eg: %, hex codes etc.
consolidated-events 2.0.2
Manage multiple event handlers using few event listeners
apollo-link-http-common 0.2.14 - 0.2.16
Http utilities for Apollo Link shared across all links using http
apollo-link-http 1.5.15 - 1.5.17
HTTP transport layer for GraphQL
apollo-bot
apollo-bot
focus-trap-react 4.0.1Outdated
A React component that traps focus.
apollo-link-error 1.1.11 - 1.1.13
Error Apollo Link for GraphQL Network Stack
apollo-bot
apollo-bot
react-cookie 4.0.1 - 4.0.3Outdated
Universal cookies for React
apollo-cache 1.2.0 - 1.3.5
Core abstract of Caching layer for Apollo Client
+3
apollo-bot
benjamn
jbaxleyiii
document.contains 1.0.1Outdated
Polyfill/shim for `document.contains`
react-outside-click-handler 1.2.4Outdated
A React component for dealing with clicks outside its subtree
+2
brieb
airbnbeng
lencioni
apollo-client 2.6.10
A simple yet functional GraphQL client.
apollo-cache-inmemory 1.6.3Outdated
Core abstract of Caching layer for Apollo Client
+1
apollo-bot
benjamn
jbaxleyiii
intl-format-cache 2.2.2 - 3.0.2Outdated
A memoizer factory for Intl format constructors.
react-dates 1.0.0 - 21.8.0
A responsive and accessible date range picker component built with React
+4
lencioni
ljharb
ahuth
rollbar 2.7.1Outdated
Effortlessly track and debug errors in your JavaScript applications with Rollbar. This package includes advanced error tracking features and an intuitive interface to help you identify and fix issues more quickly.
react-highlight-words 0.15.1Outdated
React component to highlight words within a larger body of text
react-ga 2.7.0Outdated
React Google Analytics Module
react-loadable 5.5.0
A higher order component for loading components with promises
miksu
thejameskyle
semantic-ui-react 0.53.0 - 2.1.3Outdated
The official Semantic-UI-React integration.
layershifter
levithomason
@apollo/react-hooks 3.1.0Outdated
React Apollo Hooks.
intl-relativeformat 2.2.0Outdated
Formats JavaScript dates to relative time strings.
@splidejs/splide 3.0.0 - 4.1.3Outdated
Splide is a lightweight, flexible and accessible slider/carousel. No dependencies, no Lighthouse errors.
@popmotion/easing 1.0.0 - 1.0.1Outdated
Easing functions, modifiers and generators compatible with most animation libraries.
@popmotion/popcorn 0.3.0 - 0.3.1Outdated
Utility functions for animation and interactions.
popmotion
popmotion
@apollo/react-common 3.1.0Outdated
React Apollo common utilities.
stylefire 2.4.0Outdated
Performant, simplified stylers for CSS, SVG, path and DOM scroll.
@apollo/react-components 3.0.0 - 3.1.5Outdated
React Apollo Query, Mutation and Subscription components.
no-scroll 2.1.1
Disable the document's scrolling
@atlaskit/spinner 4.0.3 - 12.1.7Outdated
A spinner is an animated spinning icon that lets users know content is being loaded.
atlaskit
atlaskit
react-click-outside 3.0.1
A component wrapper that provides click outside detection.
@tannin/plural-forms 1.0.0 - 1.1.0
Compiles a function to compute the plural forms index for a given value
aduth
aduth
pose-core 2.1.0Outdated
Factory for Pose animation state machines
popmotion-pose 3.4.6Outdated
A declarative animation library for HTML and SVG
react-pose 4.0.5 - 4.0.7Outdated
A declarative animation library for React
react-aria-modal 3.0.1Outdated
A fully accessible and flexible React modal built according WAI-ARIA Authoring Practices
react-displace 2.3.0
A higher order component that displaces your component into a remote region of the DOM
@most/scheduler 0.7.0 - 1.3.0
Reactive programming with lean, functions-only, curried, tree-shakeable API
jpex 2.0.0 - 2.1.0Outdated
Javascript Prototype Extension
jackmellis
jackmellis
@redbubble/design-system x.x.x
@redbubble/boom-analytics x.x.x
@apollo/react-hoc x.x.x
graphql-tools x.x.x
@redbubble/boom-session-context x.x.x
base64-url x.x.x
@redbubble/react-segment x.x.x
textile-js x.x.x
@redbubble/babel-plugin-transform-design-system-adoption x.x.x
@reach/component-component x.x.x
@redbubble/boom-utils x.x.x
@redbubble/boom-config x.x.x
@redbubble/ga-client-settings x.x.x
marshal x.x.x
@redbubble/boom-attribution x.x.x
easy-ease x.x.x
@redbubble/react-marketing x.x.x
deprecated-decorator x.x.x