About
Community
society6.com
55 packages
Last scanned on Oct 27 at 06:11 PM
Update
Name
Size
Popularity
Severity
lodash-es
3.6.0 - 3.10.1
Vulnerable
Outdated
Lodash exported as ES modules.
Script
https://ctl.s6img.com/dist/swordpress.36dd110ba5d2f2ac1240.js
License
MIT
Footprint
1 KB
Vulnerabilities
Critical
GHSA-jf85-cpcp-j695
Prototype Pollution in lodash
Affected versions >=0 <4.17.14
Moderate
GHSA-x5rq-j2xg-h7qm
Regular Expression Denial of Service (ReDoS) in lodash
Affected versions >=0 <4.17.11
High
GHSA-35jh-r3h4-6jhm
Command Injection in lodash
Affected versions >=0 <4.17.21
Moderate
GHSA-29mw-wpgm-hmr9
Regular Expression Denial of Service (ReDoS) in lodash
Affected versions >=0 <4.17.21
Matched Modules
Version distribution in production
3 519
4.17.21
1 221
4.17.20
526
4.10.0
420
4.17.11
419
4.17.15
181
3.10.1
Also used on 4452 websites
skype.com
20 packages
snapchat.com
69 packages
sentry.io
157 packages
pinterest.com
56 packages
Repository
Homepage
More
es6
modules
stdlib
util
es5-ext
0.10.24 - 0.10.49
Vulnerable
Outdated
ECMAScript extensions and shims
ecmascript
ecmascript5
ecmascript6
es5
es6
+11
medikoo
uuid
7.0.0
Outdated
RFC4122 (v1, v4, and v5) UUIDs
uuid
guid
rfc4122
isarray
0.0.0 - 0.0.1
Outdated
Array#isArray for older browsers
browser
isarray
array
juliangruber
react-is
16.3.0 - 16.13.1
Outdated
Brand checking of React Elements.
react
+1
@babel/runtime
7.13.6 - 7.13.7
Outdated
babel's modular runtime helpers
+1
path-to-regexp
1.7.0 - 1.8.0
Outdated
Express style path to RegExp utility
express
regexp
route
routing
+2
object-assign
3.0.0
Outdated
ES2015 `Object.assign()` ponyfill
object
assign
extend
properties
es2015
+7
@typescript-eslint/eslint-plugin
2.16.0 - 5.41.0
Outdated
TypeScript plugin for ESLint
eslint
eslintplugin
eslint-plugin
typescript
scheduler
0.15.0 - 0.23.0
Cooperative scheduler for the browser environment.
react
+1
prop-types
15.7.0 - 15.7.2
Outdated
Runtime type checking for React props and similar objects.
react
react
17.0.0 - 17.0.2
Outdated
React is a JavaScript library for building user interfaces.
react
+1
lodash.debounce
4.0.8
The lodash method `_.debounce` exported as a module.
lodash-modularized
debounce
date-fns
2.19.0 - 2.29.3
Outdated
Modern JavaScript date utility library
kossnocorp
hoist-non-react-statics
2.5.1 - 3.3.2
Copies non-react specific statics from a child component to a parent component
react
mridgway
classnames
2.2.2 - 2.3.1
Outdated
A simple utility for conditionally joining classNames together
react
css
classes
classname
classnames
+2
gaxios
2.0.1
Outdated
A simple common HTTP client specifically for Google APIs and services.
google
google-wombot
underscore
1.11.0 - 1.13.6
JavaScript's functional programming helper library.
util
functional
server
client
browser
tiny-invariant
0.0.2 - 1.3.1
Outdated
A tiny invariant function
invariant
error
assert
asserts
alexreardon
react-router
2.0.0 - 3.2.6
Outdated
Declarative routing for React
react
router
route
routing
history
+1
redux
4.0.1
Outdated
Predictable state container for JavaScript apps
redux
reducer
state
predictable
functional
+6
+3
react-fast-compare
2.0.4
Outdated
Fastest deep equal comparison for React. Great for React.memo & shouldComponentUpdate. Also really fast general-purpose deep comparison.
fast
equal
react
compare
shouldComponentUpdate
+1
+12
es6-promise
4.1.0
Outdated
A lightweight library that provides tools for organizing asynchronous code
futures
polyfill
promise
promises
crypto-browserify
1.0.9 - 2.0.0
Outdated
implementation of crypto for the browser
+2
reselect
2.3.0 - 2.5.4
Outdated
Selectors for Redux.
react
redux
+3
shallowequal
1.0.1 - 1.1.0
Like lodash isEqualWith but for shallow equal.
shallowequal
shallow
equal
isequal
compare
+1
dashed
history
4.0.0 - 4.10.1
Outdated
Manage session history with JavaScript
history
location
mjackson
redux-thunk
2.1.0 - 2.4.1
Outdated
Thunk middleware for Redux.
redux
thunk
middleware
redux-middleware
flux
+2
lodash.throttle
4.1.1
The lodash method `_.throttle` exported as a module.
lodash-modularized
throttle
resolve-pathname
3.0.0
Resolve URL pathnames using JavaScript
mjackson
value-equal
1.0.1
Are these two JavaScript values equal?
mjackson
intl-messageformat
2.1.0 - 2.2.0
Outdated
Formats ICU Message strings with number, date, plural, and select placeholders to create localized messages.
i18n
intl
internationalization
localization
globalization
+4
+9
xss
1.0.7 - 1.0.10
Outdated
Sanitize untrusted HTML (to prevent XSS) with a configuration specified by a Whitelist
sanitization
xss
sanitize
sanitisation
input
+8
leizongmin
cssfilter
0.0.10
Sanitize untrusted CSS with a configuration specified by a Whitelist. 根据白名单过滤CSS
sanitization
xss
sanitize
sanitisation
input
+9
leizongmin
react-onclickoutside
6.2.0 - 6.12.2
Outdated
An onClickOutside wrapper for React components
react
onclick
outside
onclickoutside
string-convert
0.2.0 - 0.2.1
String convertions
akiran
json2mq
0.2.0
Generate media query string from JSON or javascript object
akiran
react-side-effect
2.1.0 - 2.1.2
Create components whose prop changes map to a global side effect
react
component
side
effect
react-dnd
14.0.3 - 14.0.5
Outdated
Drag and Drop for React
+2
react-dnd-html5-backend
1.0.0 - 16.0.1
HTML5 backend for React DnD
+2
create-react-class
15.7.0
Legacy API for creating React components.
react
react-intl
2.1.5 - 2.9.0
Outdated
Internationalize React apps. This library provides React components and an API to format dates, numbers, and strings, including pluralization and handling translations.
intl
i18n
internationalization
locale
localization
+7
+5
intl-messageformat-parser
1.3.0 - 1.5.1
Outdated
Parses ICU Message strings into an AST via JavaScript.
i18n
intl
internationalization
localization
globalization
+4
+3
enquire.js
2.1.6
Awesome Media Queries in JavaScript
media query
media queries
matchMedia
enquire
enquire.js
wickynilliams
redux-saga
0.15.0 - 0.15.6
Outdated
Saga middleware for Redux to handle Side Effects
javascript
redux
middleware
saga
effects
+1
react-slick
0.24.0 - 0.26.1
Outdated
React port of slick carousel
slick
carousel
Image slider
orbit
slider
+1
akiran
immutability-helper
2.1.1 - 2.1.2
Outdated
mutate a copy of data without changing the original source
immutability
connected-react-router
6.1.0 - 6.9.3
A Redux binding for React Router v4 and v5
supasate
hex-rgb
4.3.0 - 5.0.0
Convert HEX color to RGBA
hex
rgb
rgba
color
colour
+4
sindresorhus
react-loadable
5.2.0 - 5.5.0
A higher order component for loading components with promises
react-visibility-sensor
3.10.1 - 3.11.1
Outdated
Sensor component for React that notifies you when it goes in or out of the window viewport.
react
react-component
visibility
+1
react-router-hash-link
1.2.0 - 1.2.2
Outdated
Hash link scroll functionality for React Router v4/5
react
react-router
link
hash-link
scroll
rafgraph
intl-relativeformat
2.2.0
Outdated
Formats JavaScript dates to relative time strings.
intl
i18n
relative
moment
format
+1
+1
deepcopy
2.0.0 - 2.1.0
deep copy data
sasaplus1
@quintype/components
1.6.0 - 1.34.1
Outdated
Components to help build Quintype Node.js apps
quintype
+27
Popular search queries
webpack.js.org
url
react-scripts
react
lottie-api
react-helmet-async
+7 packages
github.com
color-convert
@headlessui/react
hoist-non-react-statics
reactstrap
lit-html
+60 packages
pinterest.com
lodash
relay-runtime
react-relay
react-use
lodash-es
+51 packages
Popular packages
react
React is a JavaScript library for building user interfaces.
+6 634 websites
core-js
Standard library
+10 238 websites
es5-ext
ECMAScript extensions and shims
+10 229 websites
@babel/runtime
babel's modular runtime helpers
+8 352 websites
lodash
Lodash modular utilities.
+4 826 websites
axios
Promise based HTTP client for the browser and node.js
+4 742 websites