telus.com 117 packages

Last scanned on Oct 27 at 06:47 PM
lodash 4.17.16VulnerableOutdated
Lodash modular utilities.
License
MIT
Footprint
13 KB
Vulnerabilities
Command Injection in lodash
Affected versions >=0 <4.17.21
Regular Expression Denial of Service (ReDoS) in lodash
Affected versions >=0 <4.17.21
Prototype Pollution in lodash
Affected versions >=3.7.0 <4.17.19
Matched Modules
Version distribution in production
3 846
4.17.16
946
4.17.21
337
4.17.20
322
4.17.15
302
4.17.19
301
4.17.13
axios 0.17.1 - 0.18.0VulnerableOutdated
Promise based HTTP client for the browser and node.js
markdown-it 8.4.1 - 8.4.2VulnerableOutdated
Markdown-it - modern pluggable markdown parser.
es5-ext 0.10.24 - 0.10.49VulnerableOutdated
ECMAScript extensions and shims
semver 7.3.7 - 7.3.8Outdated
The semantic version parser used by npm.
+2
npm-cli-ops
saquibkhan
fritzy
debug 2.3.1 - 3.1.0Outdated
Lightweight debugging utility for Node.js and the browser
ms 0.7.2 - 2.1.3
Tiny millisecond conversion utility
+5
gdborton
matheuss
rauchg
lru-cache 5.1.1 - 6.0.0Outdated
A cache object that deletes the least-recently-used items.
yallist 3.0.3 - 4.0.0Outdated
Yet Another Linked List
isaacs
isaacs
readable-stream 3.6.0Outdated
Node.js Streams, a user-land copy of the stream library from Node.js
string_decoder 1.1.0 - 1.3.0
The string_decoder module from Node core
isarray 1.0.0 - 2.0.5
Array#isArray for older browsers
react-is 16.3.0 - 16.13.1Outdated
Brand checking of React Elements.
inherits 2.0.3Outdated
Browser-friendly inheritance fully compatible with standard node.js inherits()
is-stream 1.0.0 - 3.0.0Outdated
Check if something is a Node.js stream
qs 6.10.2 - 6.10.3Outdated
A querystring parser that supports nesting and arrays, with a depth limit
buffer 4.6.0 - 4.9.2Outdated
Node.js Buffer API, for the browser
get-intrinsic 1.0.2 - 1.1.1Outdated
Get and robustly cache all JS language-level intrinsics at first require time
function-bind 1.1.0 - 1.1.1Outdated
Implementation of Function.prototype.bind
cookie 0.2.4 - 0.4.1Outdated
HTTP server cookie parsing and serialization
dougwilson
dougwilson
call-bind 1.0.1 - 1.0.2Outdated
Robustly `.call.bind()` a function
object-inspect 1.9.0Outdated
string representations of objects in node and the browser
core-util-is 1.0.2 - 1.0.3
The `util.is*` functions introduced in Node v0.12.
has-symbols 1.0.2 - 1.0.3
Determine if the JS environment has Symbol support. Supports spec, or shams.
side-channel 1.0.4Outdated
Store information about any JS value in a side channel. Uses WeakMap if available.
base64-js 1.3.0 - 1.5.1
Base64 encoding/decoding in pure JS
events 3.0.0 - 3.3.0
Node's event emitter for all engines.
is-buffer 1.1.4 - 1.1.6Outdated
Determine if an object is a Buffer
core-js 3.0.0 - 3.1.3Outdated
Standard library
util 0.10.0 - 0.12.5
Node.js's util module for all engines
has 1.0.1 - 1.0.3Outdated
Object.prototype.hasOwnProperty.call shortcut
tarruda
tarruda
pako 0.2.6 - 1.0.11Outdated
zlib port to javascript - fast, modularized, with browser support
scheduler 0.15.0 - 0.23.0
Cooperative scheduler for the browser environment.
prop-types 15.7.0 - 15.7.2Outdated
Runtime type checking for React props and similar objects.
react 16.12.0 - 18.2.0
React is a JavaScript library for building user interfaces.
json-stringify-safe 5.0.1
Like JSON.stringify, but doesn't blow up on circular refs.
lodash.debounce 4.0.8
The lodash method `_.debounce` exported as a module.
url 0.11.0Outdated
The core `url` packaged standalone for use with Browserify.
hoist-non-react-statics 2.5.1 - 3.3.2
Copies non-react specific statics from a child component to a parent component
mridgway
mridgway
querystring 0.2.0Outdated
Node's querystring module for all engines.
path-browserify 0.0.0 - 1.0.1
the path module from node core for browsers
@emotion/unitless 0.7.2 - 0.8.0Outdated
An object of css properties that don't accept values with units
+1
emmatown
tkh44
emotion-release-bot
classnames 2.2.2 - 2.2.6Outdated
A simple utility for conditionally joining classNames together
assert 1.0.0 - 1.5.0Outdated
The assert module from Node.js, for the browser.
query-string 2.3.0 - 5.0.1Outdated
Parse and stringify URL query strings
graphql 16.0.0 - 16.6.0Outdated
A Query Language and Runtime which can target any service.
browserify-zlib 0.2.0
Full zlib module for the browser
stack-trace 0.0.10Outdated
Get v8 stack traces as an array of CallSite objects.
+3
felixge
sebastianhoitz
tim-smart
winston 3.4.0 - 3.8.1Outdated
A logger for just about everything.
react-router 3.0.4 - 3.2.6Outdated
Declarative routing for React
lodash-es 4.17.21
Lodash exported as ES modules.
redux 4.0.1 - 4.2.0Outdated
Predictable state container for JavaScript apps
react-fast-compare 2.0.4Outdated
Fastest deep equal comparison for React. Great for React.memo & shouldComponentUpdate. Also really fast general-purpose deep comparison.
winston-transport 4.4.0 - 4.5.0Outdated
Base stream implementations for winston@3 and up.
stream-http 2.8.2 - 2.8.3Outdated
Streaming http in the browser
logform 2.4.0 - 2.4.2Outdated
An mutable object-based log format designed for chaining & objectMode streams.
remark-parse 2.0.0 - 2.2.0Outdated
remark plugin to add support for parsing markdown input
timers-browserify 2.0.9Outdated
timers module for browserify
fecha 4.0.0 - 4.2.3
Date formatting and parsing
triple-beam 1.2.0 - 1.3.0Outdated
Definitions of levels for logging purposes & shareable Symbol constants.
mdurl 1.0.0 - 1.0.1Outdated
URL utilities for markdown-it
vitaly
vitaly
querystring-es3 0.2.1
Node's querystring module for all engines. (ES3 compat fork)
one-time 1.0.0
Run the supplied function exactly one time (once)
@dabh/diagnostics 2.0.2 - 2.0.3
Tools for debugging your node.js modules and event loop
fn.name 1.0.1 - 1.1.0
Extract names from functions
socket.io-parser 2.1.0 - 3.4.1Outdated
socket.io protocol parser
rauchg
darrachequesne
shallowequal 1.0.1 - 1.1.0
Like lodash isEqualWith but for shallow equal.
linkify-it 2.0.3 - 3.0.3Outdated
Links recognition library with FULL unicode support
engine.io-parser 2.1.3 - 2.2.1Outdated
Parser for the client for the realtime Engine
rauchg
darrachequesne
uc.micro 1.0.6Outdated
Micro subset of unicode data files for markdown-it projects.
vitaly
vitaly
to-arraybuffer 1.0.1
Get an ArrayBuffer from a Buffer as fast as possible
p-is-promise 3.0.0 - 4.0.0
Check if something is a promise
styled-components 5.2.0 - 5.3.6Outdated
CSS for the <Component> Age. Style components your way with speed, strong typing, and flexibility.
lodash.throttle 4.1.1
The lodash method `_.throttle` exported as a module.
@emotion/stylis 0.8.1 - 0.8.5
A custom build of Stylis
+1
emmatown
tkh44
emotion-release-bot
hyphenate-style-name 1.0.3 - 1.0.4
Hyphenates a camelcased CSS property name
socket.io-client 2.2.0 - 2.5.0Outdated
Realtime application framework client
base64-arraybuffer 0.1.5 - 1.0.2
Encode/decode base64 data into ArrayBuffers
niklasvh
niklasvh
engine.io-client 3.3.2 - 3.3.3Outdated
Client for the realtime Engine
rauchg
darrachequesne
@mui/system 5.0.0 - 5.10.10Outdated
MUI System is a set of CSS utilities to help you build custom designs more efficiently. It makes it possible to rapidly lay out custom designs.
inline-style-prefixer 5.1.2 - 6.0.1Outdated
Run-time Autoprefixer for JavaScript style objects
exenv 1.1.0 - 1.2.2
React's ExecutionEnvironment module extracted for use in other packages & components
string-hash 1.1.1 - 1.1.3
fast string hashing function
string-convert 0.2.0 - 0.2.1
String convertions
akiran
akiran
json2mq 0.2.0
Generate media query string from JSON or javascript object
akiran
akiran
qrcode 0.8.0 - 0.8.2Outdated
QRCode / 2d Barcode api with both server side and client side support using canvas
react-side-effect 1.1.5Outdated
Create components whose prop changes map to a global side effect
react-helmet 5.2.0 - 5.2.1Outdated
A document head manager for React
parseuri 0.0.4 - 0.0.5Outdated
Method that parses a URI and returns an array of its components
gal
gal
create-react-class 15.6.3 - 15.7.0
Legacy API for creating React components.
react-resize-detector 3.2.1 - 4.2.3Outdated
React resize detector
yeast 0.1.2
Tiny but linear growing unique id generator
blob 0.0.5 - 0.1.0
Abstracts out Blob and uses BlobBuilder in cases where it is supported with any vendor prefix.
amitport
rase-
airbnb-prop-types 2.16.0
Custom React PropType validators that we use at Airbnb.
universal-cookie 2.0.1 - 4.0.4Outdated
Universal cookies for JavaScript
after 0.8.1 - 0.8.2
after - tiny flow control
component-bind 1.0.0
function binding utility
arraybuffer.slice 0.0.6 - 0.0.7
Exports a function for slicing ArrayBuffers (no polyfilling)
rase-
rase-
component-inherit 0.0.3
Prototype inheritance utility
coreh
coreh
to-array 0.1.3 - 0.1.4
Turn an array like into an array
raynos
raynos
has-binary2 1.0.3Outdated
A function that takes anything in javascript and returns true if its argument contains binary data.
darrachequesne
darrachequesne
leaflet 1.3.2 - 1.9.1Outdated
JavaScript library for mobile-friendly interactive maps
@contentful/rich-text-types 4.1.0 - 15.0.0Outdated
Type definitions and constants for the Contentful rich text field type.
it-internal
whydah-gally
contentful-ecosystem
recompose 0.21.1 - 0.30.0
A React utility belt for function components and higher-order components
react-device-detect 1.8.6 - 1.16.0Outdated
Detect device type and render your component according to it
contentful-sdk-core 6.4.0 - 6.4.6Outdated
Core modules for the Contentful JS SDKs
+1
cf-admin
kgarbaya
contentful-ecosystem
change-emitter 0.1.2 - 0.1.6
Listen for changes. Like an event emitter that only emits a single event type. Really tiny.
contentful 6.1.2 - 7.10.0Outdated
Client for Contentful's Content Delivery API
hungryblank
cf-admin
contentful-ecosystem
@loadable/component 5.9.0 - 5.10.2Outdated
React code splitting made easy.
react-from-dom 0.6.0 - 0.6.2Outdated
Convert HTML/XML source code or DOM nodes to React elements
normalize-css-color 1.0.1 - 1.0.2
Normalize a subset of CSS color values into integers
intelligibabble
intelligibabble
react-visibility-sensor 3.10.1 - 3.11.1Outdated
Sensor component for React that notifies you when it goes in or out of the window viewport.
react-lazyload 2.3.0Outdated
Lazyload your components, images or anything where performance matters.
eventlistener 0.0.1
Super-simple wrapper around addEventListener and attachEvent (old IE). Does not handle different Event-objects.
pure-react-carousel 1.27.5 - 1.27.8Outdated
A highly impartial suite of React components that can be assembled by the consumer to create a responsive and aria compliant carousel with almost no limits on DOM structure or CSS styles.
react-click-outside 3.0.1
A component wrapper that provides click outside detection.
@tannin/plural-forms 1.0.0 - 1.1.0
Compiles a function to compute the plural forms index for a given value
aduth
aduth