74 packages

Last scanned on Jan 19 at 12:09 PM
url-parse 1.5.1VulnerableOutdated
Small footprint URL parser that works seamlessly across Node.js and browser environments
3 KB
url-parse incorrectly parses hostname / protocol due to unstripped leading control characters.
Affected versions >=0 <1.5.9
Authorization bypass in url-parse
Affected versions >=0 <1.5.6
Open redirect in url-parse
Affected versions >=0 <1.5.2
Authorization Bypass Through User-Controlled Key in url-parse
Affected versions >=0 <1.5.8
url-parse Incorrectly parses URLs that include an '@'
Affected versions >=0 <1.5.7
Matched Modules
Version distribution in production
algoliasearch-helper 3.3.4 - 3.5.5VulnerableOutdated
Helper for implementing advanced search features with algolia
lodash 4.17.16VulnerableOutdated
Lodash modular utilities.
axios 0.19.1 - 0.19.2VulnerableOutdated
Promise based HTTP client for the browser and node.js
es5-ext 0.10.24 - 0.10.49VulnerableOutdated
ECMAScript extensions and shims
sweetalert2 9.3.5 - 11.4.18VulnerableOutdated
A beautiful, responsive, customizable and accessible (WAI-ARIA) replacement for JavaScript's popup boxes, supported fork of sweetalert
readable-stream 3.6.0Outdated
Node.js Streams, a user-land copy of the stream library from Node.js
uuid 7.0.0 - 8.0.0Outdated
RFC4122 (v1, v4, and v5) UUIDs
string_decoder 1.1.0 - 1.3.0
The string_decoder module from Node core
isarray 1.0.0 - 2.0.5
Array#isArray for older browsers
react-is 16.3.0 - 16.13.1Outdated
Brand checking of React Elements.
inherits 2.0.3Outdated
Browser-friendly inheritance fully compatible with standard node.js inherits()
is-stream 1.0.0 - 3.0.0Outdated
Check if something is a Node.js stream
buffer 4.6.0 - 4.9.2Outdated
Node.js Buffer API, for the browser
@babel/runtime 7.0.0 - 7.18.0Outdated
babel's modular runtime helpers
core-util-is 1.0.2 - 1.0.3
The `*` functions introduced in Node v0.12.
base64-js 1.3.0 - 1.5.1
Base64 encoding/decoding in pure JS
events 3.0.0 - 3.3.0
Node's event emitter for all engines.
util 0.10.0 - 0.12.5
Node.js's util module for all engines
pako 1.0.6 - 1.0.11Outdated
zlib port to javascript - fast, modularized, with browser support
requires-port 1.0.0
Check if a protocol requires a certain port number to be added to an URL.
scheduler 0.15.0 - 0.23.0Outdated
Cooperative scheduler for the browser environment.
prop-types 15.7.0 - 15.7.2Outdated
Runtime type checking for React props and similar objects.
react 16.13.0 - 17.0.2Outdated
React is a JavaScript library for building user interfaces.
querystringify 2.2.0
Querystringify - Small, simple but powerful query string parser.
url 0.11.0Outdated
The core `url` packaged standalone for use with Browserify.
dayjs 1.10.2 - 1.10.4Outdated
2KB immutable date time library alternative to Moment.js with the same modern API
clsx 1.1.1 - 1.2.1Outdated
A tiny (239B) utility for constructing className strings conditionally.
hoist-non-react-statics 2.5.1 - 3.3.2
Copies non-react specific statics from a child component to a parent component
path-browserify 0.0.0 - 0.0.1Outdated
the path module from node core for browsers
classnames 2.2.6Outdated
A simple utility for conditionally joining classNames together
assert 1.0.0 - 1.5.0Outdated
The assert module from Node.js, for the browser.
fast-safe-stringify 2.0.7Outdated
Safely and quickly serialize JavaScript objects
graphql 16.0.0 - 16.6.0Outdated
A Query Language and Runtime which can target any service.
browserify-zlib 0.2.0
Full zlib module for the browser
stack-trace 0.0.10Outdated
Get v8 stack traces as an array of CallSite objects.
winston 3.3.0 - 3.3.3Outdated
A logger for just about everything.
lodash-es 4.17.21
Lodash exported as ES modules.
redux 4.0.1 - 4.2.0Outdated
Predictable state container for JavaScript apps
react-fast-compare 3.1.0 - 3.2.0Outdated
Fastest deep equal comparison for React. Great for React.memo & shouldComponentUpdate. Also really fast general-purpose deep comparison.
winston-transport 4.4.0 - 4.5.0Outdated
Base stream implementations for winston@3 and up.
stream-http 2.8.2 - 2.8.3Outdated
Streaming http in the browser
logform 2.3.0 - 2.3.2Outdated
An mutable object-based log format designed for chaining & objectMode streams.
crypto-browserify 1.0.9 - 2.0.0Outdated
implementation of crypto for the browser
fecha 4.0.0 - 4.2.3
Date formatting and parsing
triple-beam 1.2.0 - 1.3.0Outdated
Definitions of levels for logging purposes & shareable Symbol constants.
querystring-es3 0.2.1
Node's querystring module for all engines. (ES3 compat fork)
one-time 1.0.0
Run the supplied function exactly one time (once)
reselect 3.0.0 - 4.0.0Outdated
Selectors for Redux.
@dabh/diagnostics 2.0.2 - 2.0.3
Tools for debugging your node.js modules and event loop 1.0.1 - 1.1.0
Extract names from functions
jwt-decode 2.2.0Outdated
Decode JWT tokens, mostly useful for browser applications.
react-lifecycles-compat 3.0.4
Backwards compatibility polyfill for React class components
to-arraybuffer 1.0.1
Get an ArrayBuffer from a Buffer as fast as possible
p-is-promise 3.0.0 - 4.0.0
Check if something is a promise
d3-timer 1.0.2 - 3.0.1
An efficient queue capable of managing thousands of concurrent animations.
redux-thunk 2.1.0 - 2.4.2Outdated
Thunk middleware for Redux.
d3-ease 0.0.1 - 3.0.1
Easing functions for smooth animation.
web-vitals 3.0.0 - 3.0.4Outdated
Easily measure performance metrics in JavaScript
exenv 1.1.0 - 1.2.2
React's ExecutionEnvironment module extracted for use in other packages & components
qrcode 0.8.0 - 0.8.2Outdated
QRCode / 2d Barcode api with both server side and client side support using canvas
react-side-effect 2.1.0 - 2.1.2
Create components whose prop changes map to a global side effect
react-helmet 6.0.0 - 6.1.0
A document head manager for React
react-modal 3.14.1 - 3.16.1
Accessible modal dialog component for React.JS
recompose 0.17.0 - 0.30.0
A React utility belt for function components and higher-order components
change-emitter 0.1.2 - 0.1.6
Listen for changes. Like an event emitter that only emits a single event type. Really tiny.
emotion 10.0.1 - 10.0.27Outdated
The Next Generation of CSS-in-JS.
instantsearch.js 4.46.0 - 4.49.4Outdated
InstantSearch.js is a JavaScript library for building performant and instant search experiences with Algolia.
react-from-dom 0.6.0 - 0.6.2Outdated
Convert HTML/XML source code or DOM nodes to React elements
react-lazyload 2.4.0 - 3.2.0Outdated
Lazyload your components, images or anything where performance matters.
mailcheck 1.1.1
A standalone module that suggests a right domain when your users misspell it in an email address.
react-move 5.0.0 - 6.5.0
Beautiful, data-driven animations for React.
redux-promise-middleware 5.0.0 - 5.1.1Outdated
Enables simple, yet robust handling of async action creators in Redux
botframework-webchat-component 4.9.2 - 4.15.6Outdated
React component of botframework-webchat