robinhood.com 85 packages

Last scanned on Oct 27 at 07:04 PM
url-parse 1.5.1VulnerableOutdated
Small footprint URL parser that works seamlessly across Node.js and browser environments
License
MIT
Footprint
3 KB
Vulnerabilities
url-parse incorrectly parses hostname / protocol due to unstripped leading control characters.
Affected versions >=0 <1.5.9
Authorization bypass in url-parse
Affected versions >=0 <1.5.6
Open redirect in url-parse
Affected versions >=0 <1.5.2
Authorization Bypass Through User-Controlled Key in url-parse
Affected versions >=0 <1.5.8
url-parse Incorrectly parses URLs that include an '@'
Affected versions >=0 <1.5.7
Matched Modules
Version distribution in production
206
1.5.10
167
1.5.9
50
1.5.3
47
1.4.6
47
1.4.7
23
1.5.1
lodash 4.17.16VulnerableOutdated
Lodash modular utilities.
next 10.2.1 - 10.2.3VulnerableOutdated
The React Framework
rauchg
timneutkens
vercel-release-bot
es5-ext 0.10.1 - 0.10.62VulnerableOutdated
ECMAScript extensions and shims
uuid 7.0.0 - 8.0.0Outdated
RFC4122 (v1, v4, and v5) UUIDs
react-is 16.3.0 - 16.13.1Outdated
Brand checking of React Elements.
qs 6.9.1Outdated
A querystring parser that supports nesting and arrays, with a depth limit
buffer 5.5.0 - 5.6.1Outdated
Node.js Buffer API, for the browser
@babel/runtime 7.12.13 - 7.12.18Outdated
babel's modular runtime helpers
+1
hzoo
existentialism
nicolo-ribaudo
path-to-regexp 6.1.0 - 6.2.0Outdated
Express style path to RegExp utility
base64-js 1.3.0 - 1.5.1
Base64 encoding/decoding in pure JS
is-buffer 2.0.0 - 2.0.5
Determine if an object is a Buffer
core-js 2.6.12Outdated
Standard library
extend 3.0.2
Port of jQuery.extend for node.js and the browser
requires-port 1.0.0
Check if a protocol requires a certain port number to be added to an URL.
scheduler 0.15.0 - 0.23.0
Cooperative scheduler for the browser environment.
prop-types 15.8.0 - 15.8.1
Runtime type checking for React props and similar objects.
react 16.13.0 - 17.0.2Outdated
React is a JavaScript library for building user interfaces.
querystringify 2.2.0
Querystringify - Small, simple but powerful query string parser.
date-fns 2.16.1 - 2.28.0Outdated
Modern JavaScript date utility library
kossnocorp
kossnocorp
immutable 4.0.0 - 4.1.0Outdated
Immutable Data Collections
hoist-non-react-statics 3.3.1 - 3.3.2
Copies non-react specific statics from a child component to a parent component
mridgway
mridgway
querystring 0.2.0Outdated
Node's querystring module for all engines.
unist-util-visit-parents 1.0.0 - 4.1.0Outdated
unist utility to recursively walk over nodes, with ancestral information
unist-util-is 4.0.4 - 4.1.0Outdated
unist utility to check if a node passes a test
unist-util-visit 1.4.0 - 2.0.3Outdated
unist utility to visit nodes
classnames 2.2.6Outdated
A simple utility for conditionally joining classNames together
mdast-util-to-string 2.0.0Outdated
mdast utility to get the plain text content of a node
query-string 6.5.0 - 7.1.1Outdated
Parse and stringify URL query strings
unist-util-stringify-position 2.0.0 - 2.0.3Outdated
unist utility to serialize a node, position, or point as a human readable location
react-transition-group 2.0.0 - 4.4.5
A react component toolset for managing animations
vfile-message 1.0.0 - 2.0.4Outdated
vfile utility to create a virtual message
@emotion/serialize 0.11.12 - 0.11.16Outdated
serialization utils for emotion
+1
emmatown
tkh44
emotion-release-bot
@emotion/utils 0.0.4 - 0.11.3Outdated
internal utils for emotion
+1
emmatown
tkh44
emotion-release-bot
unified 9.2.2Outdated
parse, inspect, transform, and serialize content through syntax trees
vfile 2.1.0 - 4.2.0Outdated
Virtual file format for text processing
@emotion/sheet 0.9.1 - 0.9.4Outdated
emotion's stylesheet
+1
emmatown
tkh44
emotion-release-bot
lodash-es 4.17.21
Lodash exported as ES modules.
react-fast-compare 3.1.0 - 3.2.0Outdated
Fastest deep equal comparison for React. Great for React.memo & shouldComponentUpdate. Also really fast general-purpose deep comparison.
superagent 3.8.0 - 8.0.3Outdated
elegant & feature rich browser / node HTTP with a fluent API
remark-parse 9.0.0Outdated
remark plugin to add support for parsing markdown input
crypto-browserify 1.0.9 - 2.0.0Outdated
implementation of crypto for the browser
+2
dcousens
ljharb
cwmma
js-cookie 3.0.1Outdated
A simple, lightweight JavaScript API for handling cookies
trough 1.0.3 - 1.0.5Outdated
`trough` is middleware
bail 1.0.0 - 2.0.2
Throw a given error
micromark 2.11.4Outdated
small commonmark compliant markdown parser with positional info and concrete tokens
babel-runtime 6.18.0 - 6.26.0
babel selfContained runtime
hzoo
loganfsmyth
existentialism
mdast-util-from-markdown 0.8.5Outdated
mdast utility to parse markdown
url-join 4.0.0Outdated
Join urls and normalize as in path.join.
split-on-first 1.0.0 - 1.1.0Outdated
Split a string on the first occurance of a given separator
react-remove-scroll 2.1.0 - 2.5.5Outdated
Disables scroll outside of `children` node.
kashey
kashey
use-sidecar 1.0.0 - 1.1.2
Sidecar code splitting utils
intl-messageformat 9.5.0 - 9.9.6Outdated
Formats ICU Message strings with number, date, plural, and select placeholders to create localized messages.
react-markdown 5.0.3Outdated
React component to render markdown
@formatjs/fast-memoize 1.1.0 - 1.2.6Outdated
fork of fast-memoize and support esm
focus-lock 0.2.0 - 0.11.3Outdated
DOM trap for a focus
fp-ts 1.16.0 - 2.4.2Outdated
Functional programming in TypeScript
@emotion/core 0.13.0 - 10.3.1Outdated
+1
emmatown
tkh44
emotion-release-bot
react-focus-lock 2.0.0 - 2.9.1Outdated
It is a trap! (for a focus)
react-dnd 15.0.0 - 16.0.1
Drag and Drop for React
+2
jordangens
gaearon
darthtrevino
xstate 4.26.1 - 4.33.6Outdated
Finite State Machines and Statecharts for the Modern Web.
downshift 6.0.5 - 6.0.14Outdated
🏎 A set of primitives to build simple, flexible, WAI-ARIA compliant React autocomplete, combobox or select dropdown components.
react-intl 5.15.8 - 5.20.8Outdated
Internationalize React apps. This library provides React components and an API to format dates, numbers, and strings, including pluralization and handling translations.
react-query 3.34.3 - 3.39.2Outdated
Hooks for managing, caching and syncing asynchronous and remote data in React
tannerlinsley
tkdodo
@formatjs/intl 1.3.4 - 1.14.3Outdated
Internationalize JS apps. This library provides an API to format dates, numbers, and strings, including pluralization and handling translations.
keycode 2.1.2 - 2.2.1
Convert between keyboard keycodes and keynames and vice versa.
react-player 1.12.0 - 1.15.3Outdated
A React component for playing a variety of URLs, including file paths, YouTube, Facebook, Twitch, SoundCloud, Streamable, Vimeo, Wistia and DailyMotion
react-device-detect 2.0.0 - 2.2.2Outdated
Detect device type and render your component according to it
flatpickr 4.6.7 - 4.6.13
A lightweight, powerful javascript datetime picker
use-subscription 1.3.0 - 1.5.1Outdated
Reusable hooks
+1
gnoff
fb
sophiebits
emotion 9.0.0 - 10.0.27Outdated
The Next Generation of CSS-in-JS.
smoothscroll-polyfill 0.4.4
Smooth Scroll behavior polyfill
@chakra-ui/media-query 1.2.0Outdated
A React hook for changing properties or visibility of a component based on css media query
react-native-web 0.0.72 - 0.18.9Outdated
React Native for Web
mdast-add-list-metadata 1.0.1 - 1.1.0
Enhances the metadata of list and listItem nodes
serialize-query-params 0.1.1 - 0.1.2Outdated
A library for simplifying encoding and decoding URL query parameters.
bootstrap-vue 1.0.0 - 2.15.0Outdated
With more than 85 components, over 45 available plugins, several directives, and 1000+ icons, BootstrapVue provides one of the most comprehensive implementations of the Bootstrap v4 component and grid system available for Vue.js v2.6, complete with extens
amplitude-js 5.2.0Outdated
Javascript library for Amplitude Analytics
reakit-utils 0.6.1 - 0.10.0Outdated
Reakit utils
cross-domain-utils 2.0.38
Javascript module template.
bluepnume
bluepnume
react-facebook 4.1.1 - 5.0.3Outdated
Facebook components like a Login button, Like, Share, Comments, Embedded Post/Video, Messenger Chat and others
lottie-api 1.0.3
A library to edit lottie-web animations dynamically
airnan
airnan
lottie-react-web 2.2.2
Lottie wrapper for React on the web.
felippenardi
felippenardi
react-amphtml 3.1.0 - 4.0.2
Use amphtml components inside your React apps easily!
dfrankland
dfrankland
@quintype/components 1.6.0 - 1.34.1Outdated
Components to help build Quintype Node.js apps