superside.com 62 packages

Last scanned on Jan 19 at 04:33 PM
url-parse 1.5.4VulnerableOutdated
Small footprint URL parser that works seamlessly across Node.js and browser environments
License
MIT
Footprint
4 KB
Vulnerabilities
url-parse incorrectly parses hostname / protocol due to unstripped leading control characters.
Affected versions >=0 <1.5.9
Authorization bypass in url-parse
Affected versions >=0 <1.5.6
Authorization Bypass Through User-Controlled Key in url-parse
Affected versions >=0 <1.5.8
url-parse Incorrectly parses URLs that include an '@'
Affected versions >=0 <1.5.7
Matched Modules
Version distribution in production
206
1.5.10
167
1.5.9
50
1.5.3
47
1.4.6
47
1.4.7
24
1.5.4
lodash 4.17.16VulnerableOutdated
Lodash modular utilities.
es5-ext 0.10.1 - 0.10.62VulnerableOutdated
ECMAScript extensions and shims
next 13.0.0 - 13.1.2VulnerableOutdated
The React Framework
rauchg
timneutkens
vercel-release-bot
string_decoder 1.1.0 - 1.3.0
The string_decoder module from Node core
react-is 18.0.0 - 18.2.0Outdated
Brand checking of React Elements.
inherits 2.0.3Outdated
Browser-friendly inheritance fully compatible with standard node.js inherits()
buffer 5.7.0 - 6.0.3
Node.js Buffer API, for the browser
@babel/runtime 7.13.17 - 7.16.3Outdated
babel's modular runtime helpers
+1
hzoo
existentialism
nicolo-ribaudo
path-to-regexp 6.1.0 - 6.2.0Outdated
Express style path to RegExp utility
isobject 3.0.0 - 4.0.0
Returns true if the value is an object and not an array or null.
rxjs 6.6.1 - 6.6.7Outdated
Reactive Extensions for modern JavaScript
is-plain-object 2.0.0 - 3.0.0Outdated
Returns true if an object was created by the `Object` constructor, or Object.create(null).
uri-js 3.0.0 - 4.2.1Outdated
An RFC 3986/3987 compliant, scheme extendable URI/IRI parsing/validating/resolving library for JavaScript.
garycourt
garycourt
base64-js 1.3.0 - 1.5.1
Base64 encoding/decoding in pure JS
events 3.0.0 - 3.3.0
Node's event emitter for all engines.
core-js 2.6.12Outdated
Standard library
util 0.10.0 - 0.12.5
Node.js's util module for all engines
scheduler 0.21.0 - 0.23.0Outdated
Cooperative scheduler for the browser environment.
requires-port 1.0.0
Check if a protocol requires a certain port number to be added to an URL.
prop-types 15.8.0 - 15.8.1
Runtime type checking for React props and similar objects.
react 17.0.0 - 18.2.0Outdated
React is a JavaScript library for building user interfaces.
is-obj 1.0.0 - 1.0.1Outdated
Check if a value is an object
react-dom 18.0.0 - 18.2.0Outdated
React package for working with the DOM.
make-error 1.3.4 - 1.3.6
Make your own error types!
querystringify 2.2.0
Querystringify - Small, simple but powerful query string parser.
date-fns 2.19.0 - 2.28.0Outdated
Modern JavaScript date utility library
kossnocorp
kossnocorp
clsx 1.2.0 - 1.2.1Outdated
A tiny (239B) utility for constructing className strings conditionally.
jsonc-parser 2.3.1 - 3.2.0Outdated
Scanner and parser for JSON with comments.
+4
alexandrudima
joaomoreno.ms
kaimaetzel
querystring 0.2.0Outdated
Node's querystring module for all engines.
classnames 2.3.0 - 2.3.1Outdated
A simple utility for conditionally joining classNames together
assert 1.0.0 - 1.5.0Outdated
The assert module from Node.js, for the browser.
@emotion/is-prop-valid 0.8.8Outdated
A function to check whether a prop is valid for HTML and SVG elements
+1
emmatown
tkh44
emotion-release-bot
query-string 6.5.0 - 7.1.3Outdated
Parse and stringify URL query strings
ramda 0.26.0 - 0.28.0Outdated
A practical functional library for JavaScript programmers.
lodash-es 4.17.21
Lodash exported as ES modules.
filter-obj 1.1.0Outdated
Filter object keys and values into a new object
babel-runtime 6.18.0 - 6.26.0
babel selfContained runtime
hzoo
loganfsmyth
existentialism
split-on-first 1.0.0 - 2.0.0Outdated
Split a string on the first occurance of a given separator
p-is-promise 3.0.0 - 4.0.0
Check if something is a promise
react-hook-form 7.17.1 - 7.28.1Outdated
Performant, flexible and extensible forms library for React Hooks
@reduxjs/toolkit 1.8.0 - 1.9.1Outdated
The official, opinionated, batteries-included toolset for efficient Redux development
@angular/router 10.0.0 - 14.1.3Outdated
Angular - the routing library
react-draggable 4.4.1 - 4.4.5Outdated
React draggable component
react-focus-lock 2.3.0 - 2.9.2Outdated
It is a trap! (for a focus)
parse-headers 2.0.3 - 2.0.5
Parse http headers, works with browserify/xhr
react-dnd 15.0.0 - 16.0.1
Drag and Drop for React
+2
jordangens
gaearon
darthtrevino
dom7 3.0.0 - 4.0.4Outdated
Minimalistic JavaScript library for DOM manipulation, with a jQuery-compatible API
email-validator 1.0.4 - 2.0.3Outdated
Provides a fast, pretty robust e-mail validator. Only checks form, not function.
react-share 2.0.0 - 3.0.1Outdated
Social media share buttons and share counts for React.
bootstrap-vue 1.0.0 - 2.15.0Outdated
With more than 85 components, over 45 available plugins, several directives, and 1000+ icons, BootstrapVue provides one of the most comprehensive implementations of the Bootstrap v4 component and grid system available for Vue.js v2.6, complete with extens
amplitude-js 5.2.0Outdated
Javascript library for Amplitude Analytics
react-lazyload 2.4.0 - 2.5.0Outdated
Lazyload your components, images or anything where performance matters.
analytics 0.0.2Outdated
Lightweight analytics library for tracking events, page views, & identifying users. Works with any third party analytics provider via an extendable plugin system.
@sanity/generate-help-url 0.0.1 - 3.0.0
Generates URLs to specific sections of the Sanity documentation
tesseract.js 2.0.0 - 4.0.2Outdated
Pure Javascript Multilingual OCR
+1
antimatter15
jeromewu
bijection
vue-resource 0.5.0 - 0.6.0Outdated
The HTTP client for Vue.js
@sanity/block-content-to-hyperscript 2.0.8 - 2.0.10Outdated
Function for transforming Sanity block content to HyperScript
+48
armandocerna
daniel.malmer
jordanl17
@sanity/block-content-to-react 1.3.8 - 3.0.0
React component for transforming Sanity block content to React components
+48
armandocerna
daniel.malmer
jordanl17
@most/scheduler 0.7.0 - 1.3.0
Reactive programming with lean, functions-only, curried, tree-shakeable API
react-dictate-button 2.0.0 - 2.0.1
A button to start dictation using Web Speech API, with an easy to understand event lifecycle.
react-amphtml 3.1.0 - 4.0.2
Use amphtml components inside your React apps easily!
dfrankland
dfrankland