roverpass.com 163 packages

Last scanned on Jan 19 at 01:56 PM
lodash 4.17.16VulnerableOutdated
Lodash modular utilities.
License
MIT
Footprint
2 KB
Vulnerabilities
Command Injection in lodash
Affected versions >=0 <4.17.21
Regular Expression Denial of Service (ReDoS) in lodash
Affected versions >=0 <4.17.21
Prototype Pollution in lodash
Affected versions >=3.7.0 <4.17.19
Matched Modules
Version distribution in production
3 846
4.17.16
946
4.17.21
337
4.17.20
322
4.17.15
302
4.17.19
301
4.17.13
tslib 1.2.0 - 2.4.1Outdated
Runtime library for TypeScript helper functions
isarray 0.0.0 - 0.0.1Outdated
Array#isArray for older browsers
react-is 17.0.0 - 17.0.2Outdated
Brand checking of React Elements.
@babel/runtime 7.18.2 - 7.18.3Outdated
babel's modular runtime helpers
+1
hzoo
existentialism
nicolo-ribaudo
get-intrinsic 1.1.3Outdated
Get and robustly cache all JS language-level intrinsics at first require time
function-bind 1.1.0 - 1.1.1Outdated
Implementation of Function.prototype.bind
path-to-regexp 1.8.0Outdated
Express style path to RegExp utility
call-bind 1.0.2Outdated
Robustly `.call.bind()` a function
object-inspect 1.12.2Outdated
string representations of objects in node and the browser
has-symbols 1.0.2 - 1.0.3
Determine if the JS environment has Symbol support. Supports spec, or shams.
has-property-descriptors 1.0.0Outdated
Does the environment have full property descriptor support? Handles IE 8's broken defineProperty/gOPD.
es-abstract 1.20.4Outdated
ECMAScript spec abstract operations.
fast-json-stable-stringify 2.0.0 - 2.1.0
deterministic `JSON.stringify()` - a faster version of substack's json-stable-strigify without jsonify
define-properties 1.1.4Outdated
Define multiple non-enumerable properties at once. Uses `Object.defineProperty` when available; falls back to standard assignment in older engines.
is-callable 1.2.7
Is this JS value callable? Works with Functions and GeneratorFunctions, despite ES6 @@toStringTag.
nanoid 3.1.30 - 3.3.4Outdated
A tiny (116 bytes), secure URL-friendly unique string ID generator
object.assign 4.1.3 - 4.1.4Outdated
ES6 spec-compliant Object.assign shim. From https://github.com/es-shims/es6-shim
has-tostringtag 1.0.0Outdated
Determine if the JS environment has `Symbol.toStringTag` support. Supports spec, or shams.
object-keys 1.1.0 - 1.1.1
An Object.keys replacement, in case Object.keys is not available. From https://github.com/es-shims/es5-shim
deepmerge 1.5.2Outdated
A library for deep (recursive) merging of Javascript objects
array-flatten 2.0.0 - 2.1.2Outdated
Flatten nested arrays
is-regex 1.1.4
Is this value a JS regex? Works cross-realm/iframe, and despite ES6 @@toStringTag
is-date-object 1.0.5
Is this value a JS Date object? This module works cross-realm/iframe, and despite ES6 @@toStringTag.
is-symbol 1.0.0 - 1.0.4
Determine if a value is an ES6 Symbol or not.
content-type 1.0.3 - 1.0.4Outdated
Create and parse HTTP Content-Type header
es-to-primitive 1.2.0 - 1.2.1
ECMAScript “ToPrimitive” algorithm. Provides ES5 and ES2015 versions.
function.prototype.name 1.1.2 - 1.1.5Outdated
An ES2015 spec-compliant `Function.prototype.name` shim
functions-have-names 1.1.1 - 1.2.3
Does this JS environment support the `name` property on functions?
object.values 1.1.5 - 1.1.6Outdated
ES2017 spec-compliant Object.values shim.
scheduler 0.21.0 - 0.23.0Outdated
Cooperative scheduler for the browser environment.
has 1.0.1 - 1.0.3Outdated
Object.prototype.hasOwnProperty.call shortcut
tarruda
tarruda
array.prototype.flat 1.3.0 - 1.3.1Outdated
An ES2019 spec-compliant `Array.prototype.flat` shim/polyfill/replacement that works as far down as ES3.
prop-types 15.8.0 - 15.8.1
Runtime type checking for React props and similar objects.
react 17.0.0 - 18.2.0Outdated
React is a JavaScript library for building user interfaces.
process x.x.x
process information for node.js and browsers
react-dom 18.2.0Outdated
React package for working with the DOM.
performance-now 0.1.3 - 2.1.0
Implements performance.now (based on process.hrtime).
meryn
meryn
moment 2.29.4Outdated
Parse, validate, manipulate, and display dates
decode-uri-component 0.2.2Outdated
A better decodeURIComponent
object-is 1.1.2 - 1.1.5Outdated
ES2015-compliant shim for Object.is - differentiates between -0 and +0
setimmediate x.x.x
A shim for the setImmediate efficient script yielding API
domenic
domenic
@emotion/memoize 0.6.1 - 0.7.4Outdated
emotion's memoize utility
+1
emmatown
tkh44
emotion-release-bot
hoist-non-react-statics 3.3.1 - 3.3.2
Copies non-react specific statics from a child component to a parent component
mridgway
mridgway
@emotion/unitless 0.7.2 - 0.8.0Outdated
An object of css properties that don't accept values with units
+1
emmatown
tkh44
emotion-release-bot
classnames 2.3.2Outdated
A simple utility for conditionally joining classNames together
symbol-observable 2.0.0 - 3.0.0Outdated
Symbol.observable ponyfill
query-string 6.5.0 - 7.1.3Outdated
Parse and stringify URL query strings
@emotion/hash 0.8.0 - 0.9.0Outdated
A MurmurHash2 implementation
+1
emmatown
tkh44
emotion-release-bot
graphql 15.7.0 - 15.8.0Outdated
A Query Language and Runtime which can target any service.
react-transition-group 4.4.5
A react component toolset for managing animations
@emotion/serialize 0.11.14 - 0.11.16Outdated
serialization utils for emotion
+1
emmatown
tkh44
emotion-release-bot
@popperjs/core 2.11.3 - 2.11.5Outdated
Tooltip and Popover Positioning Engine
tiny-invariant 0.0.2 - 1.3.1Outdated
A tiny invariant function
@emotion/utils 0.0.4 - 0.11.3Outdated
internal utils for emotion
+1
emmatown
tkh44
emotion-release-bot
strict-uri-encode 2.0.0
A stricter URI encode adhering to RFC 3986
@sentry/utils 7.16.0 - 7.31.1Outdated
Utilities for all Sentry JavaScript SDKs
+8
benvinegar
billyvg
mitsuhiko
memoize-one 5.2.0 - 5.2.1Outdated
A memoization library which only remembers the latest invocation
@emotion/cache x.x.x
emotion's cache
+1
emmatown
tkh44
emotion-release-bot
react-router 5.0.0 - 5.3.4Outdated
Declarative routing for React
@sentry/core 7.16.0 - 7.31.1Outdated
Base implementation for all Sentry JavaScript SDKs
+8
benvinegar
billyvg
mitsuhiko
@emotion/sheet 0.9.1 - 0.9.4Outdated
emotion's stylesheet
+1
emmatown
tkh44
emotion-release-bot
es5-ext 0.3.0 - 0.10.49Outdated
ECMAScript extensions and shims
lodash-es 4.17.20 - 4.17.21
Lodash exported as ES modules.
redux 4.0.1 - 4.2.0Outdated
Predictable state container for JavaScript apps
react-router-dom 5.2.1 - 5.3.4Outdated
Declarative routing for React web applications
react-fast-compare 3.1.0 - 3.2.0Outdated
Fastest deep equal comparison for React. Great for React.memo & shouldComponentUpdate. Also really fast general-purpose deep comparison.
warning 1.0.0 - 4.0.3
A mirror of Facebook's Warning
pluralize 8.0.0
Pluralize and singularize any word
moment-timezone 0.5.39Outdated
Parse and display moments in any timezone.
timers-browserify 2.0.6 - 2.0.12
timers module for browserify
js-cookie 2.2.1Outdated
A simple, lightweight JavaScript API for handling cookies
filter-obj 1.1.0Outdated
Filter object keys and values into a new object
react-redux 7.2.8Outdated
Official React bindings for Redux
tiny-warning 0.0.1 - 1.0.3
A tiny warning function
alexreardon
alexreardon
history 4.0.0 - 4.10.1Outdated
Manage session history with JavaScript
raf 3.2.0 - 3.4.1
requestAnimationFrame polyfill for node and the browser
d3-shape 1.0.2 - 3.2.0
Graphical primitives for visualization, such as lines and areas.
graphql-tag 2.12.6
A JavaScript template literal tag that parses GraphQL queries
jnwng
abernix
apollo-bot
react-lifecycles-compat 3.0.4
Backwards compatibility polyfill for React class components
fb
sophiebits
split-on-first 1.0.0 - 1.1.0Outdated
Split a string on the first occurance of a given separator
toposort 2.0.2
Topological sort of directed ascyclic graphs (like dependecy lists)
yup 0.29.2 - 0.29.3Outdated
Dead simple Object schema validation
monastic.panic
monastic.panic
libphonenumber-js 1.10.14Outdated
A simpler (and smaller) rewrite of Google Android's libphonenumber library in javascript
redux-thunk 2.1.0 - 2.4.2Outdated
Thunk middleware for Redux.
property-expr 2.0.5Outdated
tiny util for getting and setting deep object props safely
lodash.throttle 4.1.1
The lodash method `_.throttle` exported as a module.
react-select 3.1.1 - 3.2.0Outdated
A Select control built with and for ReactJS
@emotion/stylis 0.8.2 - 0.8.5
A custom build of Stylis
+1
emmatown
tkh44
emotion-release-bot
react-popper 2.3.0
Official library to use Popper on React projects
synchronous-promise 2.0.0 - 2.0.16Outdated
Synchronous Promise-like prototype to use in testing where you would have used an ES6 Promise
fluffynuts
fluffynuts
ts-invariant 0.3.0 - 0.10.3
TypeScript implementation of invariant(condition, message)
zen-observable 0.8.15Outdated
An Implementation of ES Observables
zenparsing
zenparsing
resolve-pathname 3.0.0
Resolve URL pathnames using JavaScript
mjackson
mjackson
value-equal 1.0.1
Are these two JavaScript values equal?
mjackson
mjackson
@wry/equality 0.2.0Outdated
Structural equality checking for JavaScript values
benjamn
benjamn
@wry/context 0.4.0 - 0.6.1Outdated
Manage contextual information needed by (a)synchronous tasks without explicitly passing objects around
benjamn
benjamn
optimism 0.11.2 - 0.15.0Outdated
Composable reactive caching with efficient invalidation.
@apollo/client 3.2.0 - 3.2.3Outdated
A fully-featured caching GraphQL client.
@emotion/css 10.0.0 - 10.0.27Outdated
The Next Generation of CSS-in-JS.
formik 1.0.0 - 2.2.9Outdated
Build forms in React, without the tears
react-datepicker 0.59.0Outdated
A simple and reusable datepicker component for React
exenv 1.1.0 - 1.2.2
React's ExecutionEnvironment module extracted for use in other packages & components
@emotion/core 10.0.17 - 10.3.1Outdated
+1
emmatown
tkh44
emotion-release-bot
react-focus-lock 2.3.0 - 2.9.2Outdated
It is a trap! (for a focus)
enzyme-shallow-equal 1.0.4Outdated
Adaptation of react-addons-shallow-compare, for independent usage
react-input-autosize 3.0.0
Auto-resizing Input Component for React
@react-spring/animated 9.0.0 - 9.2.1Outdated
Animated component props for React
react-beautiful-dnd 1.0.0 - 6.0.2Outdated
Beautiful and accessible drag and drop for lists with React
@stripe/stripe-js 1.44.1Outdated
Stripe.js loading utility
@fortawesome/fontawesome-svg-core 6.2.0 - 6.2.1Outdated
The iconic font, CSS, and SVG framework
airbnb-prop-types 2.16.0
Custom React PropType validators that we use at Airbnb.
vuex 2.2.1 - 4.1.0
state management for Vue.js
+1
yyx990803
kiaking
ktsn
react-modal 3.14.1 - 3.16.1
Accessible modal dialog component for React.JS
@fortawesome/free-solid-svg-icons 5.1.0 - 5.15.4Outdated
The iconic font, CSS, and SVG framework
prop-types-exact 1.0.0 - 1.2.0
For use with React PropTypes. Will error on any prop not explicitly specified.
style-value-types 4.1.0 - 5.1.2
Parsers, transformers and tests for special value types, eg: %, hex codes etc.
react-bootstrap 0.30.2 - 0.33.1Outdated
Bootstrap 5 components built with React
@stripe/react-stripe-js x.x.x
React components for Stripe.js and Stripe Elements
use-debounce 8.0.0 - 9.0.3Outdated
Debounce hook for react
@fortawesome/react-fontawesome 0.2.0
Official React component for Font Awesome 5
+4
jasonlundien
devoto13
jrjohnson
@reach/utils 0.4.0 - 0.6.1Outdated
Internal, shared utilities for Reach UI.
+1
ryanflorence
mjackson
chancestrickland
consolidated-events 2.0.2
Manage multiple event handlers using few event listeners
@datadog/browser-logs 4.9.0 - 4.14.0Outdated
Send logs to Datadog from web browser pages with the browser logs SDK.
datadog
datadog
@fortawesome/free-regular-svg-icons 6.0.0 - 6.2.1Outdated
The iconic font, CSS, and SVG framework
react-portal 4.2.1 - 4.2.2
To make your life with React Portals easier.
country-flag-icons x.x.x
Vector (*.svg) country flag icons in 3x2 aspect ratio.
@chakra-ui/theme 2.1.0 - 2.1.3Outdated
The default theme for chakra components
react-phone-number-input 3.2.12 - 3.2.14Outdated
Telephone number input React component
@fortawesome/free-brands-svg-icons 5.1.0 - 6.2.1Outdated
The iconic font, CSS, and SVG framework
input-format 0.3.8Outdated
Formatting user's text input on-the-fly
document.contains 1.0.2
Polyfill/shim for `document.contains`
react-outside-click-handler 1.3.0
A React component for dealing with clicks outside its subtree
+2
brieb
airbnbeng
lencioni
react-with-direction 1.0.0 - 1.4.0
Components to provide and consume RTL or LTR direction in React
+4
brieb
airbnbeng
lencioni
react-with-styles 4.2.0Outdated
[![Build Status][travis-svg]][travis-url] [![dependency status][deps-svg]][deps-url] [![dev dependency status][dev-deps-svg]][dev-deps-url] [![License][license-image]][license-url] [![Downloads][downloads-image]][downloads-url]
react-moment-proptypes 1.6.0 - 1.8.1
React proptype for moment module
reactstrap 7.0.1 - 9.1.5Outdated
React Bootstrap components
react-dates 21.8.0
A responsive and accessible date range picker component built with React
+4
lencioni
ljharb
ahuth
global-cache 1.2.1
Sometimes you have to do horrible things, like use the global object to share a singleton. Abstract that away, with this!
react-native-web 0.0.82 - 0.11.7Outdated
React Native for Web
react-with-styles-interface-css 6.0.0
Interface for react-with-styles outputting CSS
is-touch-device 1.0.0 - 1.0.1
Is the current JS environment a touch device?
react-paginate 6.5.0Outdated
A ReactJS component that creates a pagination.
bootstrap-vue 2.0.0 - 2.15.0Outdated
With more than 85 components, over 45 available plugins, several directives, and 1000+ icons, BootstrapVue provides one of the most comprehensive implementations of the Bootstrap v4 component and grid system available for Vue.js v2.6, complete with extens
@apollo/react-hooks 3.0.0 - 3.1.5Outdated
React Apollo Hooks.
react_ujs 2.6.2Outdated
Rails UJS for the react-rails gem
shakacode-justin
bookofgreg
rmosolgo
@splitsoftware/splitio 10.15.4 - 10.17.3Outdated
Split SDK
analytics-utils 0.0.7 - 0.0.11Outdated
Analytics utility functions used by 'analytics' module
react-image-lightbox 5.1.3 - 5.1.4
A lightbox component for React.js
react-facebook-login 4.1.1
A Component React for Facebook Login
redux-beacon 2.1.0
Analytics integration for Redux and ngrx/store
react-bootstrap-sweetalert 2.0.0 - 5.2.0
A variant of sweetalert for use with React and Bootstrap
lottie-api 1.0.0 - 1.0.2Outdated
A library to edit lottie-web animations dynamically
airnan
airnan
botframework-webchat 0.11.2 - 0.15.0Outdated
A highly-customizable web-based chat client for Azure Bot Services.
+5
botframework
sgellock
cwhitten
botframework-webchat-component 4.14.1 - 4.15.6Outdated
React component of botframework-webchat
+2
botframework
sgellock
cwhitten
react-amphtml 3.1.0 - 4.0.2
Use amphtml components inside your React apps easily!
dfrankland
dfrankland
@redux-beacon/segment x.x.x
@tanem/svg-injector x.x.x
react-svg x.x.x
safe-regex-test x.x.x
es-shim-unscopables x.x.x
timemachine x.x.x
@redux-beacon/google-analytics x.x.x