About
Community
thriftbooks.com
41 packages
Last scanned on Oct 27 at 06:41 PM
Update
Name
Size
Popularity
Severity
lodash
4.17.16
Vulnerable
Outdated
Lodash modular utilities.
Script
https://static.thriftbooks.com/prod/scripts/client/desktop/bundle.shared-vbid-65950.js
License
MIT
Footprint
376 B
Vulnerabilities
High
GHSA-35jh-r3h4-6jhm
Command Injection in lodash
Affected versions >=0 <4.17.21
Moderate
GHSA-29mw-wpgm-hmr9
Regular Expression Denial of Service (ReDoS) in lodash
Affected versions >=0 <4.17.21
High
GHSA-p6mc-m468-83gw
Prototype Pollution in lodash
Affected versions >=3.7.0 <4.17.19
Matched Modules
Version distribution in production
3 846
4.17.16
946
4.17.21
337
4.17.20
322
4.17.15
302
4.17.19
301
4.17.13
Also used on 4830 websites
skype.com
20 packages
sentry.io
157 packages
pinterest.com
56 packages
pinimg.com
52 packages
Repository
Homepage
More
modules
stdlib
util
react
0.10.0 - 0.13.3
Vulnerable
Outdated
React is a JavaScript library for building user interfaces.
react
+1
react-dom
16.4.0
Vulnerable
Outdated
React package for working with the DOM.
react
+2
next
3.0.2 - 5.1.0
Vulnerable
Outdated
The React Framework
es5-ext
0.10.24 - 0.10.49
Vulnerable
Outdated
ECMAScript extensions and shims
ecmascript
ecmascript5
ecmascript6
es5
es6
+11
medikoo
function-bind
1.1.0 - 1.1.1
Outdated
Implementation of Function.prototype.bind
function
bind
shim
es5
es-abstract
1.12.0
Outdated
ECMAScript spec abstract operations.
ECMAScript
ES
abstract
operation
abstract operation
+4
ljharb
define-properties
1.1.0 - 1.1.2
Outdated
Define multiple non-enumerable properties at once. Uses `Object.defineProperty` when available; falls back to standard assignment in older engines.
Object.defineProperty
Object.defineProperties
object
property descriptor
descriptor
+2
ljharb
is-callable
1.1.3
Outdated
Is this JS value callable? Works with Functions and GeneratorFunctions, despite ES6 @@toStringTag.
Function
function
callable
generator
generator function
+5
ljharb
object-keys
0.6.0 - 1.0.12
Outdated
An Object.keys replacement, in case Object.keys is not available. From https://github.com/es-shims/es5-shim
Object.keys
keys
ES5
shim
ljharb
is-regex
1.0.4 - 1.0.5
Outdated
Is this value a JS regex? Works cross-realm/iframe, and despite ES6 @@toStringTag
regex
regexp
is
regular expression
regular
+1
ljharb
is-date-object
1.0.1 - 1.0.3
Outdated
Is this value a JS Date object? This module works cross-realm/iframe, and despite ES6 @@toStringTag.
Date
ES6
toStringTag
@@toStringTag
Date object
ljharb
es-to-primitive
1.1.1
Outdated
ECMAScript “ToPrimitive” algorithm. Provides ES5 and ES2015 versions.
primitive
abstract
ecmascript
es5
es6
+11
ljharb
array-includes
3.0.3
Outdated
An ES7/ES2016 spec-compliant `Array.prototype.includes` shim/polyfill/replacement that works as far down as ES3.
Array.prototype.includes
includes
array
ES7
shim
+4
ljharb
has
1.0.1 - 1.0.3
Outdated
Object.prototype.hasOwnProperty.call shortcut
tarruda
prop-types
15.6.0 - 15.6.1
Outdated
Runtime type checking for React props and similar objects.
react
performance-now
0.1.3 - 2.1.0
Implements performance.now (based on process.hrtime).
meryn
hoist-non-react-statics
2.5.0
Outdated
Copies non-react specific statics from a child component to a parent component
react
mridgway
classnames
2.2.6
Outdated
A simple utility for conditionally joining classNames together
react
css
classes
classname
classnames
+2
lodash-es
4.17.3 - 4.17.21
Lodash exported as ES modules.
es6
modules
stdlib
util
redux
3.7.1 - 3.7.2
Outdated
Predictable state container for JavaScript apps
redux
reducer
state
predictable
functional
+6
+3
superagent
3.8.0 - 8.0.3
Outdated
elegant & feature rich browser / node HTTP with a fluent API
agent
ajax
ajax
api
async
+25
+4
react-redux
5.0.3 - 5.0.7
Outdated
Official React bindings for Redux
react
reactjs
redux
+2
raf
3.0.0 - 3.1.0
Outdated
requestAnimationFrame polyfill for node and the browser
requestAnimationFrame
polyfill
react-lifecycles-compat
3.0.4
Backwards compatibility polyfill for React class components
redux-thunk
2.1.0 - 2.4.1
Outdated
Thunk middleware for Redux.
redux
thunk
middleware
redux-middleware
flux
+2
formik
1.0.0 - 2.2.9
Outdated
Build forms in React, without the tears
formik
form
forms
react
react-dom
+7
jaredpalmer
foreach
2.0.4 - 2.0.6
foreach component + npm package
shim
Array.prototype.forEach
forEach
Array#forEach
each
manuelstofer
exenv
1.1.0 - 1.2.2
React's ExecutionEnvironment module extracted for use in other packages & components
react
browser
server
environment
env
+2
jedwatson
react-modal
3.3.1 - 3.16.1
Accessible modal dialog component for React.JS
react
react-component
modal
dialog
diasbruno
to-no-case
1.0.2
Remove any existing casing from a string.
camel
camelcase
case
pascal
pascalcase
+9
ianstormtaylor
to-space-case
1.0.0
Convert a string to space case.
camel
case
slug
space
spacecase
+1
ianstormtaylor
to-camel-case
0.2.1 - 1.0.0
Convert a string to camel case.
camel
case
camelcase
string
reactstrap
7.0.1 - 8.10.1
Outdated
React Bootstrap components
reactstrap
bootstrap
react
component
components
+2
+4
add-px-to-style
1.0.0
Will add px to the end of style values which are Numbers
css,px,style,pixel,value
mikkoh
dom-css
2.1.0
fast dom CSS styling
dom
css
style
sheet
animate
+3
mattdesl
prefix-style
2.0.0 - 2.0.1
gets a prefixed name for a css style
prefix
css
style
rule
prefixes
+8
mattdesl
detect-passive-events
1.0.0 - 1.0.5
Outdated
Detect if the browser supports passive events
detect
passive
passive events
rafgraph
react-custom-scrollbars
4.1.2 - 4.2.1
React scrollbars component
scroll
scroller
scrollbars
react-component
react
+1
malte-wessel
@atlaskit/theme
2.2.4 - 12.2.1
Outdated
Theme contains solutions for global theming, colors, typography and other useful mixins.
atlaskit
css
theme
react
ui
atlaskit
cookies-js
1.1.0 - 1.2.3
Client-Side Cookie Manipulation API
cookies
client
browser
scotthamper
Popular search queries
webpack.js.org
url
react-scripts
react
lottie-api
react-helmet-async
+7 packages
github.com
color-convert
@headlessui/react
hoist-non-react-statics
reactstrap
lit-html
+60 packages
pinterest.com
lodash
relay-runtime
react-relay
react-use
lodash-es
+51 packages
Popular packages
react
React is a JavaScript library for building user interfaces.
+6 634 websites
core-js
Standard library
+10 238 websites
es5-ext
ECMAScript extensions and shims
+10 229 websites
@babel/runtime
babel's modular runtime helpers
+8 352 websites
lodash
Lodash modular utilities.
+4 826 websites
axios
Promise based HTTP client for the browser and node.js
+4 742 websites