About
Community
smashwords.com
83 packages
Last scanned on Oct 27 at 06:14 PM
Update
Name
Size
Popularity
Severity
lodash
4.17.16
Vulnerable
Outdated
Lodash modular utilities.
Script
https://smashwords.com/static/dist/js/5.5d398d3d.chunk.js
https://smashwords.com/static/dist/js/14.2b714396.chunk.js
License
MIT
Footprint
3 KB
Vulnerabilities
High
GHSA-35jh-r3h4-6jhm
Command Injection in lodash
Affected versions >=0 <4.17.21
Moderate
GHSA-29mw-wpgm-hmr9
Regular Expression Denial of Service (ReDoS) in lodash
Affected versions >=0 <4.17.21
High
GHSA-p6mc-m468-83gw
Prototype Pollution in lodash
Affected versions >=3.7.0 <4.17.19
Matched Modules
Version distribution in production
3 846
4.17.16
946
4.17.21
337
4.17.20
322
4.17.15
302
4.17.19
301
4.17.13
Also used on 4830 websites
skype.com
20 packages
sentry.io
157 packages
pinterest.com
55 packages
pinimg.com
52 packages
Repository
Homepage
More
modules
stdlib
util
angular
1.2.29 - 1.8.3
Vulnerable
HTML enhanced for web apps
angular
framework
browser
client-side
angular
es5-ext
0.10.24 - 0.10.49
Vulnerable
Outdated
ECMAScript extensions and shims
ecmascript
ecmascript5
ecmascript6
es5
es6
+11
medikoo
isarray
0.0.0 - 2.0.5
Array#isArray for older browsers
browser
isarray
array
juliangruber
react-is
16.3.0 - 17.0.2
Outdated
Brand checking of React Elements.
react
+1
buffer
4.6.0 - 4.9.2
Outdated
Node.js Buffer API, for the browser
arraybuffer
browser
browserify
buffer
compatible
+2
feross
balanced-match
0.4.2 - 1.0.2
Outdated
Match balanced character pairs, like "{" and "}"
match
regexp
test
balanced
parse
juliangruber
@babel/runtime
7.12.13 - 7.12.18
Outdated
babel's modular runtime helpers
+1
get-intrinsic
1.1.0 - 1.1.1
Outdated
Get and robustly cache all JS language-level intrinsics at first require time
javascript
ecmascript
es
js
intrinsic
+2
ljharb
function-bind
1.1.0 - 1.1.1
Outdated
Implementation of Function.prototype.bind
function
bind
shim
es5
path-to-regexp
1.7.0 - 1.8.0
Outdated
Express style path to RegExp utility
express
regexp
route
routing
+2
cookie
0.2.4 - 0.4.2
Outdated
HTTP server cookie parsing and serialization
cookie
cookies
dougwilson
call-bind
1.0.2
Outdated
Robustly `.call.bind()` a function
javascript
ecmascript
es
js
callbind
+8
ljharb
has-symbols
1.0.2 - 1.0.3
Determine if the JS environment has Symbol support. Supports spec, or shams.
Symbol
symbols
typeof
sham
polyfill
+3
ljharb
rxjs
6.3.3
Outdated
Reactive Extensions for modern JavaScript
Rx
RxJS
ReactiveX
ReactiveExtensions
Streams
+5
base64-js
1.3.0 - 1.5.1
Base64 encoding/decoding in pure JS
base64
define-properties
1.1.3 - 1.1.4
Outdated
Define multiple non-enumerable properties at once. Uses `Object.defineProperty` when available; falls back to standard assignment in older engines.
Object.defineProperty
Object.defineProperties
object
property descriptor
descriptor
+2
ljharb
events
3.0.0 - 3.3.0
Node's event emitter for all engines.
events
eventEmitter
eventDispatcher
listeners
object-keys
1.1.0 - 1.1.1
An Object.keys replacement, in case Object.keys is not available. From https://github.com/es-shims/es5-shim
Object.keys
keys
ES5
shim
ljharb
regexp.prototype.flags
1.2.0 - 1.3.2
Outdated
ES6 spec-compliant RegExp.prototype.flags shim.
RegExp.prototype.flags
regex
regular expression
ES6
shim
+6
ljharb
is-regex
1.1.2
Outdated
Is this value a JS regex? Works cross-realm/iframe, and despite ES6 @@toStringTag
regex
regexp
is
regular expression
regular
+1
ljharb
is-date-object
1.0.1 - 1.0.3
Outdated
Is this value a JS Date object? This module works cross-realm/iframe, and despite ES6 @@toStringTag.
Date
ES6
toStringTag
@@toStringTag
Date object
ljharb
has
1.0.1 - 1.0.3
Outdated
Object.prototype.hasOwnProperty.call shortcut
tarruda
scheduler
0.15.0 - 0.23.0
Cooperative scheduler for the browser environment.
react
+1
prop-types
15.7.0 - 15.8.1
Runtime type checking for React props and similar objects.
react
is-arguments
1.1.0
Outdated
Is this an arguments object? It's a harder question than you think.
arguments
js
javascript
is-arguments
is
+1
ljharb
react
16.13.0 - 17.0.2
Outdated
React is a JavaScript library for building user interfaces.
react
+1
deep-equal
1.1.0 - 1.1.1
Outdated
node's assert.deepEqual algorithm
equality
equal
compare
ljharb
performance-now
0.1.3 - 2.1.0
Implements performance.now (based on process.hrtime).
meryn
is-generator-function
1.0.0 - 1.0.4
Outdated
Determine if a function is a native generator function.
generator
generator function
es6
es2015
yield
+2
ljharb
date-fns
2.19.0 - 2.22.1
Outdated
Modern JavaScript date utility library
kossnocorp
object-is
1.1.0 - 1.1.5
Outdated
ES2015-compliant shim for Object.is - differentiates between -0 and +0
is
Object.is
equality
sameValueZero
ES6
+4
ljharb
hoist-non-react-statics
3.3.1 - 3.3.2
Copies non-react specific statics from a child component to a parent component
react
mridgway
classnames
2.3.0 - 2.3.1
Outdated
A simple utility for conditionally joining classNames together
react
css
classes
classname
classnames
+2
react-transition-group
2.4.0 - 3.0.0
Outdated
A react component toolset for managing animations
react
transition
addons
transition-group
animation
+2
dom-helpers
5.0.1 - 5.2.1
tiny modular DOM lib for ie9+
dom-helpers
react-component
dom
api
cross-browser
+8
tiny-invariant
0.0.2 - 1.3.1
Outdated
A tiny invariant function
invariant
error
assert
asserts
alexreardon
react-router-dom
5.1.0 - 5.3.4
Outdated
Declarative routing for React web applications
react
router
route
routing
history
+1
is-promise
2.1.0 - 4.0.0
Test whether an object looks like a promises-a+ promise
react-fast-compare
3.1.0 - 3.2.0
Outdated
Fastest deep equal comparison for React. Great for React.memo & shouldComponentUpdate. Also really fast general-purpose deep comparison.
fast
equal
react
compare
shouldComponentUpdate
+1
+12
d
1.0.1
Outdated
Property descriptor factory
descriptor
es
ecmascript
ecma
property
+3
medikoo
redux
4.1.0 - 4.2.0
Outdated
Predictable state container for JavaScript apps
redux
reducer
state
predictable
functional
+6
+3
lodash-es
4.17.20 - 4.17.21
Lodash exported as ES modules.
es6
modules
stdlib
util
filesize
4.2.1 - 6.0.1
Outdated
JavaScript library to generate a human readable String describing the file size
file
filesize
size
readable
file system
+2
avoidwork
pluralize
8.0.0
Pluralize and singularize any word
plural
plurals
pluralize
singular
singularize
+1
blakeembrey
timers-browserify
2.0.9
Outdated
timers module for browserify
timers
browserify
browser
+36
d3-array
1.0.1 - 3.2.0
Outdated
Array manipulation, ordering, searching, summarizing, etc.
d3
d3-module
histogram
bisect
shuffle
+4
history
4.0.0 - 4.10.1
Outdated
Manage session history with JavaScript
history
location
mjackson
@xmldom/xmldom
0.7.0 - 0.8.3
Outdated
A pure JavaScript W3C standard-based (XML DOM Level 2 Core) DOMParser and XMLSerializer module.
w3c
dom
xml
parser
javascript
+3
karfau
raf
3.0.0 - 3.1.0
Outdated
requestAnimationFrame polyfill for node and the browser
requestAnimationFrame
polyfill
react-lifecycles-compat
3.0.4
Backwards compatibility polyfill for React class components
event-emitter
0.3.0 - 0.3.5
Environment agnostic event emitter
event
events
trigger
observer
listener
+2
medikoo
d3-shape
1.0.2 - 3.1.0
Outdated
Graphical primitives for visualization, such as lines and areas.
d3
d3-module
graphics
visualization
canvas
+1
react-popper
1.3.2 - 1.3.11
Outdated
Official library to use Popper on React projects
react
react-popper
popperjs
component
drop
+2
popper.js
1.12.6 - 1.16.1
A kickass library to manage your poppers
popperjs
component
drop
tooltip
popover
+2
fezvrasta
slugify
1.5.0
Outdated
Slugifies a String
slugify
slug
url
urlify
localforage
1.5.4 - 1.10.0
Offline storage, improved.
indexeddb
localstorage
storage
websql
tofumatt
attr-accept
2.2.2
JavaScript implementation of the "accept" attribute for HTML5 <input type="file">
html5
input
tag
attribute
attr
+2
date-fns-tz
1.1.3 - 1.1.4
Outdated
Time zone support for date-fns v2 with the Intl API
date-fns
timezone
time zone
date
time
+3
marnusw
gud
1.0.0
Create a 'gud nuff' (not cryptographically secure) globally unique id
global
unique
id
identifier
number
+2
thejameskyle
mini-create-react-context
0.3.2
Outdated
Smaller Polyfill for the proposed React context API
react
context
contextTypes
polyfill
ponyfill
stringepsilon
reduce-css-calc
1.3.0
Outdated
Reduce CSS calc() function to the maximum
css
calculation
calc
fp-ts
1.19.0 - 1.19.5
Outdated
Functional programming in TypeScript
typescript
algebraic-data-types
functional-programming
gcanti
match-sorter
6.3.0 - 6.3.1
Outdated
Simple, expected, and deterministic best-match sorting of an array in JavaScript
autocomplete
filter list
sort
advanced sort
user intuitive sort
kentcdodds
react-day-picker
7.4.1 - 7.4.10
Outdated
Customizable Date Picker for React
react-beautiful-dnd
1.0.0 - 6.0.2
Outdated
Beautiful and accessible drag and drop for lists with React
drag and drop
dnd
sortable
reorder
reorderable
+5
decimal.js-light
2.2.5 - 2.3.1
Outdated
An arbitrary-precision Decimal type for JavaScript.
arbitrary
precision
arithmetic
big
number
+7
mikemcl
universal-cookie
4.0.1 - 4.0.4
Outdated
Universal cookies for JavaScript
universal
isomophic
cookie
exon
recharts
1.8.3 - 1.8.5
Outdated
React charts
react
reactjs
chart
react-component
react-smooth
1.0.1 - 2.0.1
Outdated
react animation library
react
reactjs
animation
react-component
+1
rc-trigger
4.3.0 - 4.3.4
Outdated
base abstract trigger component for react
react
react-component
react-trigger
trigger
+2
io-ts
1.8.6 - 2.1.0
Outdated
TypeScript runtime type system for IO decoding/encoding
typescript
runtime
decoder
encoder
schema
gcanti
math-expression-evaluator
1.2.2 - 1.4.0
Outdated
A flexible math expression evaluator
math
expression
evaluator
parser
bugwheels94
reduce-function-call
1.0.2 - 1.0.3
Reduce function calls in a string, using a callback
string
reduce
replacement
function
call
+2
moox
svelte
3.0.0 - 3.52.0
Outdated
Cybernetically enhanced web apps
UI
framework
templates
templating
@chakra-ui/theme
1.13.0 - 2.1.3
Outdated
The default theme for chakra components
theme
theming
ui mode
ui
reactstrap
7.0.1
Outdated
React Bootstrap components
reactstrap
bootstrap
react
component
components
+2
+4
redux-form
8.3.7 - 8.3.8
Outdated
A higher order component decorator for forms using Redux and React
react
reactjs
flux
redux
react-redux
+3
use-query-params
2.0.0 - 2.1.2
Outdated
React Hook for managing state in URL query parameters with easy serialization.
react
url
query
parameters
hook
+3
pbeshai
react-truncate
2.3.0 - 2.4.0
React component for truncating multi-line spans and adding an ellipsis
react
truncate
ellipsis
multiline
@atlaskit/button
7.2.1 - 11.0.11
Outdated
A button triggers an event or action. They let users know what will happen next.
atlaskit
lottie-api
1.0.0 - 1.0.2
Outdated
A library to edit lottie-web animations dynamically
airnan
react-amphtml
3.0.0 - 4.0.2
Use amphtml components inside your React apps easily!
react
amphtml
dfrankland
Popular search queries
webpack.js.org
url
react-scripts
react
lottie-api
react-helmet-async
+7 packages
github.com
color-convert
@headlessui/react
hoist-non-react-statics
reactstrap
lit-html
+60 packages
pinterest.com
libphonenumber-js
react-relay
jss
@babel/runtime
redux-form
+50 packages
Popular packages
react
React is a JavaScript library for building user interfaces.
+6 634 websites
core-js
Standard library
+10 238 websites
es5-ext
ECMAScript extensions and shims
+10 229 websites
@babel/runtime
babel's modular runtime helpers
+8 352 websites
lodash
Lodash modular utilities.
+4 826 websites
axios
Promise based HTTP client for the browser and node.js
+4 742 websites