About
Community
telus.com
117 packages
Last scanned on Oct 27 at 06:47 PM
Update
Name
Size
Popularity
Severity
lodash
4.17.16
Vulnerable
Outdated
Lodash modular utilities.
Script
https://cdn.telus.digital/global/builder/static/vendor_833f8c6b135ce6056dc1.js
https://cdn.telus.digital/global/builder/static/vendors~BlockAccordion~BlockArticle~BlockCards~BlockCatalog~BlockCommunityAccordion~BlockCommunityFo~b8ed4ea7_401a72f1dc23a11c141e.js
https://cdn.telus.digital/global/elements/v2/dist/no-lib/elements.713d79ebf3639cf99617.js
License
MIT
Footprint
13 KB
Vulnerabilities
High
GHSA-35jh-r3h4-6jhm
Command Injection in lodash
Affected versions >=0 <4.17.21
Moderate
GHSA-29mw-wpgm-hmr9
Regular Expression Denial of Service (ReDoS) in lodash
Affected versions >=0 <4.17.21
High
GHSA-p6mc-m468-83gw
Prototype Pollution in lodash
Affected versions >=3.7.0 <4.17.19
Matched Modules
Version distribution in production
3 846
4.17.16
946
4.17.21
337
4.17.20
322
4.17.15
302
4.17.19
301
4.17.13
Also used on 4830 websites
skype.com
20 packages
sentry.io
157 packages
pinterest.com
56 packages
pinimg.com
52 packages
Repository
Homepage
More
modules
stdlib
util
axios
0.17.1 - 0.18.0
Vulnerable
Outdated
Promise based HTTP client for the browser and node.js
xhr
http
ajax
promise
node
+1
markdown-it
8.4.1 - 8.4.2
Vulnerable
Outdated
Markdown-it - modern pluggable markdown parser.
markdown
parser
commonmark
markdown-it
markdown-it-plugin
vitaly
es5-ext
0.10.24 - 0.10.49
Vulnerable
Outdated
ECMAScript extensions and shims
ecmascript
ecmascript5
ecmascript6
es5
es6
+11
medikoo
semver
7.3.7 - 7.3.8
Outdated
The semantic version parser used by npm.
+2
debug
2.3.1 - 3.1.0
Outdated
Lightweight debugging utility for Node.js and the browser
debug
log
debugger
+1
ms
0.7.2 - 2.1.3
Tiny millisecond conversion utility
+5
lru-cache
5.1.1 - 6.0.0
Outdated
A cache object that deletes the least-recently-used items.
mru
lru
cache
isaacs
yallist
3.0.3 - 4.0.0
Outdated
Yet Another Linked List
isaacs
readable-stream
3.6.0
Outdated
Node.js Streams, a user-land copy of the stream library from Node.js
readable
stream
pipe
string_decoder
1.1.0 - 1.3.0
The string_decoder module from Node core
string
decoder
browser
browserify
+1
isarray
1.0.0 - 2.0.5
Array#isArray for older browsers
browser
isarray
array
juliangruber
react-is
16.3.0 - 16.13.1
Outdated
Brand checking of React Elements.
react
+1
inherits
2.0.3
Outdated
Browser-friendly inheritance fully compatible with standard node.js inherits()
inheritance
class
klass
oop
object-oriented
+3
isaacs
is-stream
1.0.0 - 3.0.0
Outdated
Check if something is a Node.js stream
stream
type
streams
writable
readable
+5
sindresorhus
qs
6.10.2 - 6.10.3
Outdated
A querystring parser that supports nesting and arrays, with a depth limit
querystring
qs
query
url
parse
+1
buffer
4.6.0 - 4.9.2
Outdated
Node.js Buffer API, for the browser
arraybuffer
browser
browserify
buffer
compatible
+2
feross
get-intrinsic
1.0.2 - 1.1.1
Outdated
Get and robustly cache all JS language-level intrinsics at first require time
javascript
ecmascript
es
js
intrinsic
+2
ljharb
function-bind
1.1.0 - 1.1.1
Outdated
Implementation of Function.prototype.bind
function
bind
shim
es5
cookie
0.2.4 - 0.4.1
Outdated
HTTP server cookie parsing and serialization
cookie
cookies
dougwilson
call-bind
1.0.1 - 1.0.2
Outdated
Robustly `.call.bind()` a function
javascript
ecmascript
es
js
callbind
+8
ljharb
object-inspect
1.9.0
Outdated
string representations of objects in node and the browser
inspect
util.inspect
object
stringify
pretty
core-util-is
1.0.2 - 1.0.3
The `util.is*` functions introduced in Node v0.12.
util
isBuffer
isArray
isNumber
isString
+4
isaacs
has-symbols
1.0.2 - 1.0.3
Determine if the JS environment has Symbol support. Supports spec, or shams.
Symbol
symbols
typeof
sham
polyfill
+3
ljharb
side-channel
1.0.4
Outdated
Store information about any JS value in a side channel. Uses WeakMap if available.
weakmap
map
side
channel
metadata
ljharb
base64-js
1.3.0 - 1.5.1
Base64 encoding/decoding in pure JS
base64
events
3.0.0 - 3.3.0
Node's event emitter for all engines.
events
eventEmitter
eventDispatcher
listeners
is-buffer
1.1.4 - 1.1.6
Outdated
Determine if an object is a Buffer
arraybuffer
browser
browser buffer
browserify
buffer
+10
feross
core-js
3.0.0 - 3.1.3
Outdated
Standard library
ES3
ES5
ES6
ES7
ES2015
+39
zloirock
util
0.10.0 - 0.12.5
Node.js's util module for all engines
util
+3
has
1.0.1 - 1.0.3
Outdated
Object.prototype.hasOwnProperty.call shortcut
tarruda
pako
0.2.6 - 1.0.11
Outdated
zlib port to javascript - fast, modularized, with browser support
zlib
deflate
inflate
gzip
vitaly
scheduler
0.15.0 - 0.23.0
Cooperative scheduler for the browser environment.
react
+1
prop-types
15.7.0 - 15.7.2
Outdated
Runtime type checking for React props and similar objects.
react
react
16.12.0 - 18.2.0
React is a JavaScript library for building user interfaces.
react
+1
json-stringify-safe
5.0.1
Like JSON.stringify, but doesn't blow up on circular refs.
json
stringify
circular
safe
lodash.debounce
4.0.8
The lodash method `_.debounce` exported as a module.
lodash-modularized
debounce
url
0.11.0
Outdated
The core `url` packaged standalone for use with Browserify.
parsing
url
analyze
hoist-non-react-statics
2.5.1 - 3.3.2
Copies non-react specific statics from a child component to a parent component
react
mridgway
querystring
0.2.0
Outdated
Node's querystring module for all engines.
commonjs
query
querystring
path-browserify
0.0.0 - 1.0.1
the path module from node core for browsers
browser
browserify
path
+36
@emotion/unitless
0.7.2 - 0.8.0
Outdated
An object of css properties that don't accept values with units
+1
classnames
2.2.2 - 2.2.6
Outdated
A simple utility for conditionally joining classNames together
react
css
classes
classname
classnames
+2
assert
1.0.0 - 1.5.0
Outdated
The assert module from Node.js, for the browser.
assert
browser
+3
query-string
2.3.0 - 5.0.1
Outdated
Parse and stringify URL query strings
browser
querystring
query
string
qs
+9
sindresorhus
graphql
16.0.0 - 16.6.0
Outdated
A Query Language and Runtime which can target any service.
graphql
graphql-js
+5
browserify-zlib
0.2.0
Full zlib module for the browser
zlib
browserify
stack-trace
0.0.10
Outdated
Get v8 stack traces as an array of CallSite objects.
+3
winston
3.4.0 - 3.8.1
Outdated
A logger for just about everything.
winston
logger
logging
logs
sysadmin
+6
+5
react-router
3.0.4 - 3.2.6
Outdated
Declarative routing for React
react
router
route
routing
history
+1
lodash-es
4.17.21
Lodash exported as ES modules.
es6
modules
stdlib
util
redux
4.0.1 - 4.2.0
Outdated
Predictable state container for JavaScript apps
redux
reducer
state
predictable
functional
+6
+3
react-fast-compare
2.0.4
Outdated
Fastest deep equal comparison for React. Great for React.memo & shouldComponentUpdate. Also really fast general-purpose deep comparison.
fast
equal
react
compare
shouldComponentUpdate
+1
+12
winston-transport
4.4.0 - 4.5.0
Outdated
Base stream implementations for winston@3 and up.
winston
transport
winston3
+2
stream-http
2.8.2 - 2.8.3
Outdated
Streaming http in the browser
http
stream
streaming
xhr
http-browserify
logform
2.4.0 - 2.4.2
Outdated
An mutable object-based log format designed for chaining & objectMode streams.
winston
logging
format
winstonjs
+3
remark-parse
2.0.0 - 2.2.0
Outdated
remark plugin to add support for parsing markdown input
abstract
ast
markdown
mdast
parse
+6
timers-browserify
2.0.9
Outdated
timers module for browserify
timers
browserify
browser
+36
fecha
4.0.0 - 4.2.3
Date formatting and parsing
date
parse
moment
format
fecha
+1
taylorhakes
triple-beam
1.2.0 - 1.3.0
Outdated
Definitions of levels for logging purposes & shareable Symbol constants.
winstonjs
winston
logging
logform
symbols
+2
mdurl
1.0.0 - 1.0.1
Outdated
URL utilities for markdown-it
vitaly
querystring-es3
0.2.1
Node's querystring module for all engines. (ES3 compat fork)
commonjs
query
querystring
spaintrain
one-time
1.0.0
Run the supplied function exactly one time (once)
once
function
single
one
one-time
+2
@dabh/diagnostics
2.0.2 - 2.0.3
Tools for debugging your node.js modules and event loop
debug
debugger
debugging
diagnostic
diagnostics
+4
dabh
fn.name
1.0.1 - 1.1.0
Extract names from functions
fn.name
function.name
name
function
extract
+2
socket.io-parser
2.1.0 - 3.4.1
Outdated
socket.io protocol parser
shallowequal
1.0.1 - 1.1.0
Like lodash isEqualWith but for shallow equal.
shallowequal
shallow
equal
isequal
compare
+1
dashed
linkify-it
2.0.3 - 3.0.3
Outdated
Links recognition library with FULL unicode support
linkify
linkifier
autolink
autolinker
vitaly
engine.io-parser
2.1.3 - 2.2.1
Outdated
Parser for the client for the realtime Engine
uc.micro
1.0.6
Outdated
Micro subset of unicode data files for markdown-it projects.
vitaly
to-arraybuffer
1.0.1
Get an ArrayBuffer from a Buffer as fast as possible
buffer
to
arraybuffer
fast
read
+1
jhiesey
p-is-promise
3.0.0 - 4.0.0
Check if something is a promise
promise
is
detect
check
kind
+7
sindresorhus
styled-components
5.2.0 - 5.3.6
Outdated
CSS for the <Component> Age. Style components your way with speed, strong typing, and flexibility.
react
css
css-in-js
styled-components
styling
+1
lodash.throttle
4.1.1
The lodash method `_.throttle` exported as a module.
lodash-modularized
throttle
@emotion/stylis
0.8.1 - 0.8.5
A custom build of Stylis
+1
hyphenate-style-name
1.0.3 - 1.0.4
Hyphenates a camelcased CSS property name
hyphenate
style
css
camelcase
rexxars
socket.io-client
2.2.0 - 2.5.0
Outdated
Realtime application framework client
realtime
framework
websocket
tcp
events
+1
base64-arraybuffer
0.1.5 - 1.0.2
Encode/decode base64 data into ArrayBuffers
niklasvh
engine.io-client
3.3.2 - 3.3.3
Outdated
Client for the realtime Engine
@mui/system
5.0.0 - 5.10.10
Outdated
MUI System is a set of CSS utilities to help you build custom designs more efficiently. It makes it possible to rapidly lay out custom designs.
react
react-component
mui
system
+7
inline-style-prefixer
5.1.2 - 6.0.1
Outdated
Run-time Autoprefixer for JavaScript style objects
react
react styling
prefixer
inline styles
autoprefixer
+2
rofrischmann
exenv
1.1.0 - 1.2.2
React's ExecutionEnvironment module extracted for use in other packages & components
react
browser
server
environment
env
+2
jedwatson
string-hash
1.1.1 - 1.1.3
fast string hashing function
string
hashing
string-convert
0.2.0 - 0.2.1
String convertions
akiran
json2mq
0.2.0
Generate media query string from JSON or javascript object
akiran
qrcode
0.8.0 - 0.8.2
Outdated
QRCode / 2d Barcode api with both server side and client side support using canvas
qr
code
canvas
qrcode
react-side-effect
1.1.5
Outdated
Create components whose prop changes map to a global side effect
react
component
side
effect
react-helmet
5.2.0 - 5.2.1
Outdated
A document head manager for React
react-helmet
nfl
react
document
head
+7
+2
parseuri
0.0.4 - 0.0.5
Outdated
Method that parses a URI and returns an array of its components
gal
create-react-class
15.6.3 - 15.7.0
Legacy API for creating React components.
react
react-resize-detector
3.2.1 - 4.2.3
Outdated
React resize detector
react
resize
detector
resizeObserver
observer
yeast
0.1.2
Tiny but linear growing unique id generator
yeast
id
generator
unique
blob
0.0.5 - 0.1.0
Abstracts out Blob and uses BlobBuilder in cases where it is supported with any vendor prefix.
airbnb-prop-types
2.16.0
Custom React PropType validators that we use at Airbnb.
react
propTypes
airbnb
prop
types
+2
+1
universal-cookie
2.0.1 - 4.0.4
Outdated
Universal cookies for JavaScript
universal
isomophic
cookie
exon
after
0.8.1 - 0.8.2
after - tiny flow control
flowcontrol
after
flow
control
arch
component-bind
1.0.0
function binding utility
bind
utility
+24
arraybuffer.slice
0.0.6 - 0.0.7
Exports a function for slicing ArrayBuffers (no polyfilling)
rase-
component-inherit
0.0.3
Prototype inheritance utility
coreh
to-array
0.1.3 - 0.1.4
Turn an array like into an array
raynos
has-binary2
1.0.3
Outdated
A function that takes anything in javascript and returns true if its argument contains binary data.
darrachequesne
leaflet
1.3.2 - 1.9.1
Outdated
JavaScript library for mobile-friendly interactive maps
gis
map
+3
@contentful/rich-text-types
4.1.0 - 15.0.0
Outdated
Type definitions and constants for the Contentful rich text field type.
recompose
0.21.1 - 0.30.0
A React utility belt for function components and higher-order components
react
higher-order
components
microcomponentization
toolkit
+2
react-device-detect
1.8.6 - 1.16.0
Outdated
Detect device type and render your component according to it
useragent
mobile
phone
tablet
detect
+7
duskload
contentful-sdk-core
6.4.0 - 6.4.6
Outdated
Core modules for the Contentful JS SDKs
+1
change-emitter
0.1.2 - 0.1.6
Listen for changes. Like an event emitter that only emits a single event type. Really tiny.
change
event
emitter
contentful
6.1.2 - 7.10.0
Outdated
Client for Contentful's Content Delivery API
@loadable/component
5.9.0 - 5.10.2
Outdated
React code splitting made easy.
react
ssr
webpack
code-splitting
react-router
+4
react-from-dom
0.6.0 - 0.6.2
Outdated
Convert HTML/XML source code or DOM nodes to React elements
string
DOM
converter
react
component
+1
gilbarbara
normalize-css-color
1.0.1 - 1.0.2
Normalize a subset of CSS color values into integers
css
color
convert
hex
intelligibabble
react-visibility-sensor
3.10.1 - 3.11.1
Outdated
Sensor component for React that notifies you when it goes in or out of the window viewport.
react
react-component
visibility
+1
react-lazyload
2.3.0
Outdated
Lazyload your components, images or anything where performance matters.
react-component
react
lazyload
+1
eventlistener
0.0.1
Super-simple wrapper around addEventListener and attachEvent (old IE). Does not handle different Event-objects.
browser
addeventlistener
attachevent
eventlistener
events
+1
pure-react-carousel
1.27.5 - 1.27.8
Outdated
A highly impartial suite of React components that can be assembled by the consumer to create a responsive and aria compliant carousel with almost no limits on DOM structure or CSS styles.
react
carousel
aria
responsive
accessibility
+1
+1
react-click-outside
3.0.1
A component wrapper that provides click outside detection.
click outside
higher order component
onclickoutside
react
kentor
@tannin/plural-forms
1.0.0 - 1.1.0
Compiles a function to compute the plural forms index for a given value
aduth
Popular search queries
webpack.js.org
url
react-scripts
react
lottie-api
react-helmet-async
+7 packages
github.com
color-convert
@headlessui/react
hoist-non-react-statics
reactstrap
lit-html
+60 packages
pinterest.com
lodash
relay-runtime
react-relay
react-use
lodash-es
+51 packages
Popular packages
react
React is a JavaScript library for building user interfaces.
+6 634 websites
core-js
Standard library
+10 238 websites
es5-ext
ECMAScript extensions and shims
+10 229 websites
@babel/runtime
babel's modular runtime helpers
+8 352 websites
lodash
Lodash modular utilities.
+4 826 websites
axios
Promise based HTTP client for the browser and node.js
+4 742 websites