spglobal.com 10 packages

Last scanned on Oct 27 at 06:03 PM
gsap 1.20.5 - 2.1.2VulnerableOutdated
GSAP is a framework-agnostic JavaScript animation library that turns developers into animation superheroes. Build high-performance animations that work in **every** major browser. Animate CSS, SVG, canvas, React, Vue, WebGL, colors, strings, motion paths,
License
Standard 'no charge' license: https://gsap.com/standard-license. Club GSAP members get more: https://gsap.com/licensing/. Why GreenSock doesn't employ an MIT license: https://gsap.com/why-license/
Footprint
77 KB
Vulnerabilities
Prototype pollution in gsap
Affected versions >=0 <3.6.0
Matched Modules
Version distribution in production
187
3.10.4
184
3.9.1
177
3.7.1
175
3.6.0
175
3.10.2
49
2.1.2
es5-ext 0.10.24 - 0.10.49VulnerableOutdated
ECMAScript extensions and shims
core-js 2.6.12Outdated
Standard library
lodash.debounce 4.0.8
The lodash method `_.debounce` exported as a module.
babel-runtime 6.18.0 - 6.26.0
babel selfContained runtime
hzoo
loganfsmyth
existentialism
lodash.throttle 4.1.1
The lodash method `_.throttle` exported as a module.
@apollo/client 3.0.0 - 3.7.1Outdated
A fully-featured caching GraphQL client.
@hookform/resolvers 1.1.0Outdated
React Hook Form validation resolvers: Yup, Joi, Superstruct, Zod, Vest, Class Validator, io-ts, Nope, computed-types, TypeBox, arktype and Typanion
bootstrap-vue 1.0.0 - 2.15.0Outdated
With more than 85 components, over 45 available plugins, several directives, and 1000+ icons, BootstrapVue provides one of the most comprehensive implementations of the Bootstrap v4 component and grid system available for Vue.js v2.6, complete with extens
@stimulus/core 0.6.0Outdated
Stimulus JavaScript framework: Core library
dhh
dhh