rp.pl 8 packages

Last scanned on Oct 27 at 06:34 PM
url-parse 1.5.1VulnerableOutdated
Small footprint URL parser that works seamlessly across Node.js and browser environments
License
MIT
Footprint
3 KB
Vulnerabilities
url-parse incorrectly parses hostname / protocol due to unstripped leading control characters.
Affected versions >=0 <1.5.9
Authorization bypass in url-parse
Affected versions >=0 <1.5.6
Open redirect in url-parse
Affected versions >=0 <1.5.2
Authorization Bypass Through User-Controlled Key in url-parse
Affected versions >=0 <1.5.8
url-parse Incorrectly parses URLs that include an '@'
Affected versions >=0 <1.5.7
Matched Modules
Version distribution in production
206
1.5.10
167
1.5.9
50
1.5.3
47
1.4.6
47
1.4.7
23
1.5.1
uuid 7.0.0 - 8.0.0Outdated
RFC4122 (v1, v4, and v5) UUIDs
base64-js 1.3.0 - 1.5.1
Base64 encoding/decoding in pure JS
requires-port 1.0.0
Check if a protocol requires a certain port number to be added to an URL.
querystringify 2.2.0
Querystringify - Small, simple but powerful query string parser.
crypto-browserify 1.0.9 - 2.0.0Outdated
implementation of crypto for the browser
+2
dcousens
ljharb
cwmma
web-vitals 3.0.0 - 3.0.4Outdated
Easily measure performance metrics in JavaScript
local-storage 2.0.0
A simplified localStorage API that just works