sutori.com 46 packages

Last scanned on Jan 19 at 09:44 AM
handlebars 1.1.0 - 1.2.1VulnerableOutdated
Handlebars provides the power necessary to let you build semantic templates effectively with no frustration
License
MIT
Footprint
319 B
Vulnerabilities
Moderate severity vulnerability that affects handlebars
Affected versions >=0 <4.0.0
Cross-Site Scripting in handlebars
Affected versions >=0 <4.0.0
Remote code execution in handlebars when compiling templates
Affected versions >=0 <4.7.7
Prototype Pollution in handlebars
Affected versions >=0 <4.7.7
Remote code execution in Handlebars.js
Affected versions >=0 <4.1.0
Matched Modules
Version distribution in production
182
4.7.7
172
4.7.6
168
4.7.3
166
4.7.2
166
4.7.4
27
1.2.1
lodash-es 4.6.0 - 4.16.4VulnerableOutdated
Lodash exported as ES modules.
urijs 1.19.0 - 1.19.8VulnerableOutdated
URI.js is a Javascript library for working with URLs.
isarray 1.0.0 - 2.0.5
Array#isArray for older browsers
punycode 2.1.1 - 2.2.0Outdated
A robust Punycode converter that fully complies to RFC 3492 and RFC 5891, and works on nearly all JavaScript platforms.
get-intrinsic 1.1.0 - 1.1.1Outdated
Get and robustly cache all JS language-level intrinsics at first require time
function-bind 1.1.0 - 1.1.1Outdated
Implementation of Function.prototype.bind
call-bind 1.0.2Outdated
Robustly `.call.bind()` a function
object-inspect 1.12.0Outdated
string representations of objects in node and the browser
has-symbols 1.0.0 - 1.0.1Outdated
Determine if the JS environment has Symbol support. Supports spec, or shams.
es-abstract 1.18.7 - 1.19.1Outdated
ECMAScript spec abstract operations.
define-properties 1.1.3 - 1.1.4Outdated
Define multiple non-enumerable properties at once. Uses `Object.defineProperty` when available; falls back to standard assignment in older engines.
is-callable 1.1.4 - 1.2.4Outdated
Is this JS value callable? Works with Functions and GeneratorFunctions, despite ES6 @@toStringTag.
has-tostringtag 1.0.0Outdated
Determine if the JS environment has `Symbol.toStringTag` support. Supports spec, or shams.
object-keys 1.1.0 - 1.1.1
An Object.keys replacement, in case Object.keys is not available. From https://github.com/es-shims/es5-shim
is-regex 1.1.4
Is this value a JS regex? Works cross-realm/iframe, and despite ES6 @@toStringTag
is-date-object 1.0.1 - 1.0.3Outdated
Is this value a JS Date object? This module works cross-realm/iframe, and despite ES6 @@toStringTag.
is-string 1.0.4 - 1.0.5Outdated
Is this value a JS String object or primitive? This module works cross-realm/iframe, and despite ES6 @@toStringTag.
es-to-primitive 1.2.0 - 1.2.1
ECMAScript “ToPrimitive” algorithm. Provides ES5 and ES2015 versions.
has 1.0.1 - 1.0.3Outdated
Object.prototype.hasOwnProperty.call shortcut
tarruda
tarruda
is-arguments 1.1.1
Is this an arguments object? It's a harder question than you think.
date-fns 2.24.0 - 2.28.0Outdated
Modern JavaScript date utility library
kossnocorp
kossnocorp
is-set 2.0.1 - 2.0.2Outdated
Is this value a JS Set? This module works cross-realm/iframe, and despite ES6 @@toStringTag.
is-map 2.0.1 - 2.0.2Outdated
Is this value a JS Map? This module works cross-realm/iframe, and despite ES6 @@toStringTag.
lodash.uniq 4.4.0 - 4.5.0
The lodash method `_.uniq` exported as a module.
lodash.isstring 4.0.1
The lodash method `_.isString` exported as a module.
es-get-iterator 1.1.2 - 1.1.3
Get an iterator for any JS language value. Works robustly across all environments, all versions.
lodash.sortby 4.7.0
The lodash method `_.sortBy` exported as a module.
lodash.clonedeep 4.5.0
The lodash method `_.cloneDeep` exported as a module.
lodash.truncate 4.4.2
The lodash method `_.truncate` exported as a module.
os-browserify 0.1.0Outdated
The [os](https://nodejs.org/api/os.html) module from node.js, but for browsers.
coderpuppy
drewyoung1
cheerio 0.8.1 - 0.8.3Outdated
Tiny, fast, and elegant implementation of core jQuery designed specifically for the server
tinycolor2 1.4.0 - 1.5.1Outdated
Fast Color Parsing and Manipulation
iterate-iterator 1.0.0 - 1.0.2
Iterate any JS iterator. Works robustly in all environments, all versions.
string-convert 0.2.0 - 0.2.1
String convertions
akiran
akiran
screenfull 5.0.0 - 5.2.0Outdated
Simple wrapper for cross-browser usage of the JavaScript Fullscreen API, which lets you bring the page or any element into fullscreen.
sindresorhus
sindresorhus
lit-element 3.0.1 - 3.2.2Outdated
A simple base class for creating fast, lightweight web components
+11
aomarks
emarquez
sorvell
intl-messageformat-parser 6.4.0 - 6.4.4
Parses ICU Message strings into an AST via JavaScript.
fast-memoize 2.3.0 - 2.5.2
Fastest memoization lib that supports N arguments
caiogondim
caiogondim
@redux-saga/core 1.0.0 - 1.2.2Outdated
Saga middleware for Redux to handle Side Effects
ev-emitter 1.1.1Outdated
lil' event emitter
imagesloaded 4.1.4Outdated
JavaScript is all like _You images done yet or what?_
detect-it 4.0.0 - 4.0.1
Detect if a device is mouse only, touch only, or hybrid
velocity-animate 1.5.1 - 1.5.2
Accelerated JavaScript animation.
shave 2.5.10Outdated
Shave is a javascript plugin that truncates multi-line text within a html element based on set max height
botframework-webchat 0.4.1 - 0.11.1Outdated
A highly-customizable web-based chat client for Azure Bot Services.
+5
botframework
sgellock
cwhitten