topshop.com 69 packages

Last scanned on Oct 27 at 07:05 PM
lodash 4.17.16VulnerableOutdated
Lodash modular utilities.
License
MIT
Footprint
2 KB
Vulnerabilities
Command Injection in lodash
Affected versions >=0 <4.17.21
Regular Expression Denial of Service (ReDoS) in lodash
Affected versions >=0 <4.17.21
Prototype Pollution in lodash
Affected versions >=3.7.0 <4.17.19
Matched Modules
Version distribution in production
3 846
4.17.16
946
4.17.21
337
4.17.20
322
4.17.15
302
4.17.19
301
4.17.13
es5-ext 0.10.24 - 0.10.49VulnerableOutdated
ECMAScript extensions and shims
next 12.2.0 - 13.0.0VulnerableOutdated
The React Framework
rauchg
timneutkens
vercel-release-bot
uuid 3.4.0Outdated
RFC4122 (v1, v4, and v5) UUIDs
react-is 16.3.0 - 16.13.1Outdated
Brand checking of React Elements.
@babel/runtime 7.9.0 - 7.9.2Outdated
babel's modular runtime helpers
+1
hzoo
existentialism
nicolo-ribaudo
get-intrinsic 1.1.0 - 1.1.1Outdated
Get and robustly cache all JS language-level intrinsics at first require time
function-bind 1.1.0 - 1.1.1Outdated
Implementation of Function.prototype.bind
axios 0.21.4Outdated
Promise based HTTP client for the browser and node.js
call-bind 1.0.2Outdated
Robustly `.call.bind()` a function
has-symbols 1.0.0 - 1.0.1Outdated
Determine if the JS environment has Symbol support. Supports spec, or shams.
es-abstract 1.17.0 - 1.20.4Outdated
ECMAScript spec abstract operations.
define-properties 1.1.3 - 1.1.4Outdated
Define multiple non-enumerable properties at once. Uses `Object.defineProperty` when available; falls back to standard assignment in older engines.
is-callable 1.1.4 - 1.1.5Outdated
Is this JS value callable? Works with Functions and GeneratorFunctions, despite ES6 @@toStringTag.
object-keys 1.1.0 - 1.1.1
An Object.keys replacement, in case Object.keys is not available. From https://github.com/es-shims/es5-shim
core-js 3.22.6 - 3.22.7Outdated
Standard library
for-each 0.3.3
A better forEach
ljharb
raynos
has 1.0.1 - 1.0.3Outdated
Object.prototype.hasOwnProperty.call shortcut
tarruda
tarruda
string.prototype.trim 1.2.1 - 1.2.5Outdated
ES5 spec-compliant shim for String.prototype.trim
scheduler 0.15.0 - 0.23.0
Cooperative scheduler for the browser environment.
prop-types 15.7.0 - 15.7.2Outdated
Runtime type checking for React props and similar objects.
react 0.11.0 - 0.14.10Outdated
React is a JavaScript library for building user interfaces.
json-stringify-safe 5.0.1
Like JSON.stringify, but doesn't blow up on circular refs.
react-dom 18.0.0 - 18.2.0
React package for working with the DOM.
performance-now 0.1.3 - 2.1.0
Implements performance.now (based on process.hrtime).
meryn
meryn
hoist-non-react-statics 3.3.1 - 3.3.2
Copies non-react specific statics from a child component to a parent component
mridgway
mridgway
classnames 2.2.6Outdated
A simple utility for conditionally joining classNames together
query-string 5.0.1 - 5.1.1Outdated
Parse and stringify URL query strings
react-transition-group 2.0.0 - 4.4.5
A react component toolset for managing animations
dom-helpers 5.0.1 - 5.2.1
tiny modular DOM lib for ie9+
lodash-es 4.17.20 - 4.17.21
Lodash exported as ES modules.
redux 3.7.0 - 3.7.2Outdated
Predictable state container for JavaScript apps
crypto-browserify 1.0.9 - 2.0.0Outdated
implementation of crypto for the browser
+2
dcousens
ljharb
cwmma
luxon 0.2.1 - 1.28.0Outdated
Immutable date wrapper
reselect 3.0.0 - 3.0.1Outdated
Selectors for Redux.
shallowequal 0.2.2Outdated
Like lodash isEqualWith but for shallow equal.
react-redux 7.1.0 - 7.2.9Outdated
Official React bindings for Redux
history 1.2.0 - 1.4.0Outdated
Manage session history with JavaScript
raf 3.0.0 - 3.1.0Outdated
requestAnimationFrame polyfill for node and the browser
is-retry-allowed 2.2.0Outdated
Check whether a request can be retried based on the `error.code`
react-lifecycles-compat 3.0.4
Backwards compatibility polyfill for React class components
fb
sophiebits
lodash.isarguments 3.1.0
The lodash method `_.isArguments` exported as a module.
redux-thunk 2.1.0 - 2.4.1Outdated
Thunk middleware for Redux.
framer-motion 6.5.0 - 7.6.2Outdated
A simple and powerful JavaScript animation library
lodash.keys 3.1.1 - 3.1.2Outdated
The lodash method `_.keys` exported as a module.
web-vitals 0.1.0 - 0.2.0Outdated
Easily measure performance metrics in JavaScript
@angular/core 2.0.0 - 2.4.10Outdated
Angular - the core framework
angular
google-wombot
axios-retry 3.2.5 - 3.2.6Outdated
Axios plugin that intercepts failed requests and retries them whenever posible.
softonic
softonic
focus-lock 0.6.1 - 0.6.6Outdated
DOM trap for a focus
lodash.isarray 3.0.0 - 3.0.2Outdated
The lodash method `_.isArray` exported as a module.
lodash._getnative 3.9.1
The modern build of lodash’s internal `getNative` as a module.
jdalton
mathias
react-focus-lock 1.19.1Outdated
It is a trap! (for a focus)
react-beautiful-dnd 1.0.0 - 6.0.2Outdated
Beautiful and accessible drag and drop for lists with React
fbemitter 2.1.1Outdated
Facebook's EventEmitter is a simple emitter implementation that prioritizes speed and simplicity. It is conceptually similar to other emitters like Node's EventEmitter, but the precise APIs differ. More complex abstractions like the event systems used on
mapbox-gl 0.3.1 - 0.4.1Outdated
A WebGL interactive maps library
+25
mbx-npm-ci-production
mbx-npm-ci-staging
mbx-npm-advanced-actions-production
redux-persist 4.8.2 - 4.10.2Outdated
persist and rehydrate redux stores
andarist
rt2zz
redux-devtools-extension 2.0.0 - 2.13.9
Wrappers for Redux DevTools Extension.
+1
jhen0409
methuselah96
timdorr
@chakra-ui/modal 1.0.0 - 1.9.4Outdated
An accessible dialog (modal) component for React & Chakra UI
vee-validate 2.0.0 - 2.0.9Outdated
Painless forms for Vue.js
react-dates 5.2.0 - 10.0.1Outdated
A responsive and accessible date range picker component built with React
+4
lencioni
ljharb
ahuth
gatsby-link 2.1.1 - 2.4.3Outdated
An enhanced Link component for Gatsby sites with support for resource prefetching
@optimizely/js-sdk-datafile-manager 0.1.0 - 0.9.5
Optimizely Full Stack Datafile Manager
optimizely-fullstack
optimizely-fullstack
node-polyglot 2.4.0Outdated
Give your JavaScript the ability to speak many languages.
analytics-utils 0.0.11 - 0.0.15Outdated
Analytics utility functions used by 'analytics' module
react-headroom 2.2.2 - 2.2.6Outdated
Hide your header until you need it. React.js port of headroom.js
hoverintent 0.2.0 - 0.2.2Outdated
Fire mouse events when the user intends it
davidtheclark
tristen
botframework-webchat-component 4.8.0 - 4.10.1Outdated
React component of botframework-webchat
+2
botframework
sgellock
cwhitten
asos-web-logging x.x.x
@asosteam/asos-web-request x.x.x