thedailybeast.com 82 packages

Last scanned on Oct 27 at 05:55 PM
url-parse 1.4.4VulnerableOutdated
Small footprint URL parser that works seamlessly across Node.js and browser environments
License
MIT
Footprint
26 KB
Vulnerabilities
url-parse incorrectly parses hostname / protocol due to unstripped leading control characters.
Affected versions >=0 <1.5.9
Authorization bypass in url-parse
Affected versions >=0 <1.5.6
Path traversal in url-parse
Affected versions >=0 <1.5.0
Open redirect in url-parse
Affected versions >=0 <1.5.2
Authorization Bypass Through User-Controlled Key in url-parse
Affected versions >=0 <1.5.8
url-parse Incorrectly parses URLs that include an '@'
Affected versions >=0 <1.5.7
Improper Validation and Sanitization in url-parse
Affected versions >=0 <1.4.5
Matched Modules
Version distribution in production
206
1.5.10
167
1.5.9
50
1.5.3
47
1.4.6
47
1.4.7
4
1.4.4
lodash 4.17.13VulnerableOutdated
Lodash modular utilities.
moment 2.22.2VulnerableOutdated
Parse, validate, manipulate, and display dates
jquery 3.4.0VulnerableOutdated
JavaScript library for DOM operations
moment-timezone 0.5.23VulnerableOutdated
Parse and display moments in any timezone.
next 9.0.6 - 13.0.0VulnerableOutdated
The React Framework
rauchg
timneutkens
vercel-release-bot
tslib 1.11.0 - 1.11.1Outdated
Runtime library for TypeScript helper functions
uuid 3.1.0Outdated
RFC4122 (v1, v4, and v5) UUIDs
isarray 1.0.0 - 2.0.5
Array#isArray for older browsers
react-is 16.13.0Outdated
Brand checking of React Elements.
inherits 1.0.1 - 2.0.3Outdated
Browser-friendly inheritance fully compatible with standard node.js inherits()
buffer 4.9.2Outdated
Node.js Buffer API, for the browser
node-fetch 2.3.0 - 2.6.0Outdated
A light-weight module that brings Fetch API to node.js
@babel/runtime 7.8.4 - 7.8.7Outdated
babel's modular runtime helpers
+1
hzoo
existentialism
nicolo-ribaudo
ieee754 1.1.9 - 1.1.13Outdated
Read/write IEEE754 floating point numbers from/to a Buffer or array-like object
object-assign 4.1.1
ES2015 `Object.assign()` ponyfill
base64-js 1.3.1Outdated
Base64 encoding/decoding in pure JS
fast-json-stable-stringify 2.0.0 - 2.1.0
deterministic `JSON.stringify()` - a faster version of substack's json-stable-strigify without jsonify
core-js 2.6.7 - 2.6.12Outdated
Standard library
htmlparser2 1.5.0Outdated
Fast & forgiving HTML/XML parser
requires-port 1.0.0
Check if a protocol requires a certain port number to be added to an URL.
scheduler 0.13.6Outdated
Cooperative scheduler for the browser environment.
prop-types 15.7.0 - 15.7.2Outdated
Runtime type checking for React props and similar objects.
react 16.8.6Outdated
React is a JavaScript library for building user interfaces.
process 0.11.10
process information for node.js and browsers
react-dom 16.8.6Outdated
React package for working with the DOM.
querystringify 2.1.1Outdated
Querystringify - Small, simple but powerful query string parser.
minimalistic-assert 1.0.0 - 1.0.1
minimalistic-assert ===
cwmma
indutny
setimmediate 1.0.5
A shim for the setImmediate efficient script yielding API
domenic
domenic
hoist-non-react-statics 3.3.2
Copies non-react specific statics from a child component to a parent component
mridgway
mridgway
classnames 2.2.6Outdated
A simple utility for conditionally joining classNames together
symbol-observable 1.1.0 - 1.2.0Outdated
Symbol.observable ponyfill
graphql 0.11.4 - 0.11.7Outdated
A Query Language and Runtime which can target any service.
tiny-invariant 1.1.0Outdated
A tiny invariant function
hash.js 1.1.7
Various hash functions that could be run by both browser and node
timers-browserify 2.0.10 - 2.0.12
timers module for browserify
fbjs 0.8.16 - 0.8.18Outdated
A collection of utility libraries used by other Facebook JS projects
+5
zpao
eliwhite
yungsters
graphql-tag 2.9.1 - 2.11.0Outdated
A JavaScript template literal tag that parses GraphQL queries
jnwng
abernix
apollo-bot
zen-observable-ts 0.8.14 - 0.8.21Outdated
Thin wrapper around zen-observable and @types/zen-observable, to support ESM exports as well as CommonJS exports
jbaxleyiii
apollo-bot
ts-invariant 0.4.3 - 0.4.4Outdated
TypeScript implementation of invariant(condition, message)
zen-observable 0.8.15Outdated
An Implementation of ES Observables
zenparsing
zenparsing
@wry/equality 0.1.9 - 0.1.11Outdated
Structural equality checking for JavaScript values
benjamn
benjamn
framer-motion 6.5.0 - 7.6.2Outdated
A simple and powerful JavaScript animation library
@wry/context 0.4.4 - 0.6.1Outdated
Manage contextual information needed by (a)synchronous tasks without explicitly passing objects around
benjamn
benjamn
optimism 0.10.3Outdated
Composable reactive caching with efficient invalidation.
web-vitals 0.2.3Outdated
Easily measure performance metrics in JavaScript
@angular/forms 0.3.0Outdated
Angular - directives and services for creating forms
angular
google-wombot
@angular/animations 4.2.0 - 14.2.8Outdated
Angular - animations integration with web-animations
angular
google-wombot
exenv 1.2.1 - 1.2.2
React's ExecutionEnvironment module extracted for use in other packages & components
fp-ts 2.10.0 - 2.10.5Outdated
Functional programming in TypeScript
react-intersection-observer 8.26.1Outdated
Monitor if a component is inside the viewport, using IntersectionObserver API
create-react-class 15.6.3Outdated
Legacy API for creating React components.
lit-element 3.0.1 - 3.2.2Outdated
A simple base class for creating fast, lightweight web components
+11
aomarks
emarquez
sorvell
subscriptions-transport-ws 0.5.0 - 0.6.0Outdated
A websocket transport for GraphQL subscriptions
apollo-bot
apollo-bot
intersection-observer 0.7.0Outdated
A polyfill for IntersectionObserver
apollo-utilities 1.3.3Outdated
Utilities for working with GraphQL ASTs
+1
apollo-bot
benjamn
jbaxleyiii
apollo-link 1.2.12 - 1.2.14
Flexible, lightweight transport layer for GraphQL
jbaxleyiii
peggyrayzis
apollo-bot
react-device-detect 1.8.6 - 1.17.0Outdated
Detect device type and render your component according to it
apollo-link-http-common 0.2.14 - 0.2.16
Http utilities for Apollo Link shared across all links using http
apollo-link-http 1.5.15 - 1.5.17
HTTP transport layer for GraphQL
apollo-bot
apollo-bot
@auth0/auth0-spa-js 2.0.0Outdated
Auth0 SDK for Single Page Applications using Authorization Code Grant Flow with PKCE
apollo-cache 1.2.0 - 1.3.5
Core abstract of Caching layer for Apollo Client
+3
apollo-bot
benjamn
jbaxleyiii
apollo-client 2.6.8Outdated
A simple yet functional GraphQL client.
apollo-cache-inmemory 1.6.5Outdated
Core abstract of Caching layer for Apollo Client
+1
apollo-bot
benjamn
jbaxleyiii
react-native-web 0.0.14 - 0.11.1Outdated
React Native for Web
url-polyfill 1.1.10Outdated
Polyfill URL and URLSearchParams
lifaon74
lifaon74
cloudinary-core 2.5.0Outdated
Cloudinary Client Side JS library. Cloudinary streamlines your web application’s image manipulation needs. Cloudinary's cloud-based servers automate image uploading, resizing, cropping, optimizing, sprite generation and more.
cloudinary
cloudinary
react-visibility-sensor 3.14.0 - 4.0.0Outdated
Sensor component for React that notifies you when it goes in or out of the window viewport.
@apollo/react-hooks 3.1.3Outdated
React Apollo Hooks.
@apollo/react-common 3.0.0 - 3.1.4
React Apollo common utilities.
cookies-js 1.2.3
Client-Side Cookie Manipulation API
eventlistener 0.0.1
Super-simple wrapper around addEventListener and attachEvent (old IE). Does not handle different Event-objects.
@atlaskit/spinner 12.0.0 - 12.1.7Outdated
A spinner is an animated spinning icon that lets users know content is being loaded.
atlaskit
atlaskit
isomorphic-style-loader 5.1.0Outdated
CSS style loader for Webpack optimized for critical path CSS rendering and isomoprhic web apps
@tannin/plural-forms 1.0.0 - 1.1.0
Compiles a function to compute the plural forms index for a given value
aduth
aduth
apollo-link-persisted-queries 0.2.2Outdated
Use persisted queries with Apollo Link
+1
glasser
benjamn
jbaxleyiii
reactour 1.8.2 - 1.13.1Outdated
Tourist Guide into your React Components
lottie-api 1.0.0 - 1.0.2Outdated
A library to edit lottie-web animations dynamically
airnan
airnan
node-forge x.x.x
tracking-link x.x.x
sticky-events x.x.x
@dailybeast/react-media-query x.x.x