tronscan.org 165 packages

Last scanned on Jan 19 at 10:46 AM
lodash 4.17.16VulnerableOutdated
Lodash modular utilities.
License
MIT
Footprint
8 KB
Vulnerabilities
Command Injection in lodash
Affected versions >=0 <4.17.21
Regular Expression Denial of Service (ReDoS) in lodash
Affected versions >=0 <4.17.21
Prototype Pollution in lodash
Affected versions >=3.7.0 <4.17.19
Matched Modules
Version distribution in production
3 846
4.17.16
946
4.17.21
337
4.17.20
322
4.17.15
302
4.17.19
301
4.17.13
next-auth 4.0.1 - 4.18.8VulnerableOutdated
Authentication for Next.js
es5-ext 0.10.24 - 0.10.49VulnerableOutdated
ECMAScript extensions and shims
semver 7.3.7Outdated
The semantic version parser used by npm.
+2
npm-cli-ops
saquibkhan
fritzy
debug 2.3.1 - 3.1.0Outdated
Lightweight debugging utility for Node.js and the browser
ms 2.0.0Outdated
Tiny millisecond conversion utility
+5
gdborton
matheuss
rauchg
yallist 1.0.0 - 4.0.0Outdated
Yet Another Linked List
isaacs
isaacs
readable-stream 3.6.0Outdated
Node.js Streams, a user-land copy of the stream library from Node.js
string_decoder 1.1.0 - 1.3.0
The string_decoder module from Node core
uuid 7.0.0 - 8.0.0Outdated
RFC4122 (v1, v4, and v5) UUIDs
isarray 1.0.0 - 2.0.5
Array#isArray for older browsers
react-is 16.3.0 - 16.13.1Outdated
Brand checking of React Elements.
inherits 2.0.4
Browser-friendly inheritance fully compatible with standard node.js inherits()
buffer 5.7.0 - 6.0.3
Node.js Buffer API, for the browser
get-intrinsic 1.1.3Outdated
Get and robustly cache all JS language-level intrinsics at first require time
function-bind 1.1.0 - 1.1.1Outdated
Implementation of Function.prototype.bind
@babel/runtime 7.18.2 - 7.19.4Outdated
babel's modular runtime helpers
+1
hzoo
existentialism
nicolo-ribaudo
path-to-regexp 1.7.0 - 1.8.0Outdated
Express style path to RegExp utility
axios 0.26.1Outdated
Promise based HTTP client for the browser and node.js
call-bind 1.0.2Outdated
Robustly `.call.bind()` a function
has-symbols 1.0.2 - 1.0.3
Determine if the JS environment has Symbol support. Supports spec, or shams.
has-property-descriptors 1.0.0Outdated
Does the environment have full property descriptor support? Handles IE 8's broken defineProperty/gOPD.
es-abstract 1.18.7 - 1.20.4Outdated
ECMAScript spec abstract operations.
base64-js 1.3.0 - 1.5.1
Base64 encoding/decoding in pure JS
define-properties 1.1.4Outdated
Define multiple non-enumerable properties at once. Uses `Object.defineProperty` when available; falls back to standard assignment in older engines.
is-callable 1.2.5Outdated
Is this JS value callable? Works with Functions and GeneratorFunctions, despite ES6 @@toStringTag.
has-tostringtag 1.0.0Outdated
Determine if the JS environment has `Symbol.toStringTag` support. Supports spec, or shams.
events 3.0.0 - 3.3.0
Node's event emitter for all engines.
is-buffer 2.0.0 - 2.0.5
Determine if an object is a Buffer
which-typed-array 1.1.6 - 1.1.9Outdated
Which kind of Typed Array is this JavaScript value? Works cross-realm, without `instanceof`, and despite Symbol.toStringTag.
object-keys 1.1.0 - 1.1.1
An Object.keys replacement, in case Object.keys is not available. From https://github.com/es-shims/es5-shim
is-typed-array 1.1.7 - 1.1.10Outdated
Is this value a JS Typed Array? This module works cross-realm/iframe, does not depend on `instanceof` or mutable properties, and despite ES6 Symbol.toStringTag.
core-js 3.25.1 - 3.27.1Outdated
Standard library
available-typed-arrays 1.0.5Outdated
Returns an array of Typed Array names that are available in the current environment
util 0.12.0 - 0.12.5
Node.js's util module for all engines
eventemitter3 2.0.0 - 5.0.0Outdated
EventEmitter3 focuses on performance while maintaining a Node.js AND browser compatible interface.
for-each 0.3.3
A better forEach
ljharb
raynos
has 1.0.1 - 1.0.3Outdated
Object.prototype.hasOwnProperty.call shortcut
tarruda
tarruda
prop-types 15.8.0 - 15.8.1
Runtime type checking for React props and similar objects.
is-arguments 1.1.1
Is this an arguments object? It's a harder question than you think.
react 17.0.0 - 18.2.0Outdated
React is a JavaScript library for building user interfaces.
is-generator-function 1.0.10
Determine if a function is a native generator function.
date-fns 1.30.1Outdated
Modern JavaScript date utility library
kossnocorp
kossnocorp
minimalistic-assert 1.0.0 - 1.0.1
minimalistic-assert ===
cwmma
indutny
object-is 1.1.0 - 1.1.5Outdated
ES2015-compliant shim for Object.is - differentiates between -0 and +0
hoist-non-react-statics 3.3.1 - 3.3.2
Copies non-react specific statics from a child component to a parent component
mridgway
mridgway
querystring 0.2.0Outdated
Node's querystring module for all engines.
assert 2.0.0Outdated
The assert module from Node.js, for the browser.
classnames 2.3.2Outdated
A simple utility for conditionally joining classNames together
query-string 6.5.0 - 7.1.3Outdated
Parse and stringify URL query strings
sha.js 2.4.9 - 2.4.11
Streamable SHA hashes in pure javascript
dcousens
ljharb
cwmma
validator 13.7.0Outdated
String validation and sanitization
hash-base 3.0.4 - 3.1.0
abstract base class for hash-streams
asn1.js 5.2.0 - 5.4.1
ASN.1 encoder and decoder
elliptic 6.5.4Outdated
EC cryptography
memoize-one 6.0.0
A memoization library which only remembers the latest invocation
hash.js 1.1.2 - 1.1.7
Various hash functions that could be run by both browser and node
react-router 4.3.0 - 4.3.1Outdated
Declarative routing for React
lodash-es 4.17.21
Lodash exported as ES modules.
hmac-drbg 1.0.1
Deterministic random bit generator (hmac)
redux 4.0.1Outdated
Predictable state container for JavaScript apps
react-router-dom 4.3.0 - 4.3.1Outdated
Declarative routing for React web applications
des.js 1.0.1Outdated
DES implementation
md5.js 1.1.0 - 1.3.5
node style md5 on pure JavaScript
pbkdf2 3.1.0 - 3.1.1Outdated
This library provides the functionality of PBKDF2 with the ability to use any supported hashing algorithm returned from crypto.getHashes()
cipher-base 1.0.4
abstract base class for crypto-streams
parse-asn1 5.1.6Outdated
utility library for parsing asn1 files for use with browserify-sign.
+2
dcousens
ljharb
cwmma
browserify-sign 2.4.0 - 2.8.0Outdated
adds node crypto signing for browsers
+2
dcousens
ljharb
cwmma
browserify-aes 0.4.0 - 0.8.1Outdated
aes, for browserify
@storybook/router 6.5.0 - 6.5.15Outdated
Core Storybook Router
evp_bytestokey 1.0.3
The insecure key derivation algorithm from OpenSSL
browserify-rsa 4.1.0
RSA for browserify
+2
dcousens
ljharb
cwmma
crypto-browserify 1.0.9 - 2.0.0Outdated
implementation of crypto for the browser
+2
dcousens
ljharb
cwmma
create-ecdh 3.0.0 - 4.0.4
createECDH but browserifiable
public-encrypt 4.0.3
browserify version of publicEncrypt & privateDecrypt
+2
dcousens
ljharb
cwmma
diffie-hellman 1.1.2Outdated
pure js diffie-hellman
browserify-des 1.0.2
browserify-des ===
dcousens
ljharb
cwmma
miller-rabin 1.1.0 - 4.0.1
Miller Rabin algorithm for primality test
randomfill 1.0.0 - 1.0.4
random fill from browserify stand alone
filter-obj 1.1.0Outdated
Filter object keys and values into a new object
shallowequal 1.0.1 - 1.1.0
Like lodash isEqualWith but for shallow equal.
socket.io-parser 3.3.0 - 3.4.2Outdated
socket.io protocol parser
rauchg
darrachequesne
history 4.0.0 - 4.10.1Outdated
Manage session history with JavaScript
engine.io-parser 2.1.3 - 2.2.1Outdated
Parser for the client for the realtime Engine
rauchg
darrachequesne
split-on-first 1.0.0 - 2.0.0Outdated
Split a string on the first occurance of a given separator
is-nan 1.3.1 - 1.3.2
ES2015-compliant shim for Number.isNaN - the global isNaN returns false positives.
resize-observer-polyfill 1.5.0 - 1.5.1
A polyfill for the Resize Observer API
p-is-promise 3.0.0 - 4.0.0
Check if something is a promise
copy-to-clipboard 3.3.2 - 3.3.3
Copy stuff into clipboard using JS with fallbacks
d3-timer 1.0.2 - 3.0.1
An efficient queue capable of managing thousands of concurrent animations.
redux-thunk 2.1.0 - 2.4.2Outdated
Thunk middleware for Redux.
toggle-selection 1.0.5 - 1.0.6
Toggle current selected content in browser
lodash.isfunction 3.0.9
The Lodash method `_.isFunction` exported as a module.
react-popper 0.8.1 - 0.10.4Outdated
Official library to use Popper on React projects
popper.js 1.12.6 - 1.16.1
A kickass library to manage your poppers
@aws-sdk/util-uri-escape 3.55.0 - 3.186.0Outdated
[![NPM version](https://img.shields.io/npm/v/@aws-sdk/util-uri-escape/latest.svg)](https://www.npmjs.com/package/@aws-sdk/util-uri-escape) [![NPM downloads](https://img.shields.io/npm/dm/@aws-sdk/util-uri-escape.svg)](https://www.npmjs.com/package/@aws-sd
+2
amzn-oss
aws-sdk-bot
kuhe
base64-arraybuffer 0.1.0 - 0.1.4Outdated
Encode/decode base64 data into ArrayBuffers
niklasvh
niklasvh
socket.io-client 2.2.0 - 2.5.0Outdated
Realtime application framework client
engine.io-client 3.4.1 - 3.5.3Outdated
Client for the realtime Engine
rauchg
darrachequesne
d3-dispatch 1.0.6 - 3.0.1
Register named callbacks and call them with arguments.
intl-messageformat 2.1.0 - 2.2.0Outdated
Formats ICU Message strings with number, date, plural, and select placeholders to create localized messages.
@angular/core 7.2.0 - 8.2.11Outdated
Angular - the core framework
angular
google-wombot
rc-util 5.24.2Outdated
Common Utils For React Component
react-scripts 0.4.2Outdated
Configuration and scripts for Create React App.
+1
fb
timer
iansu
btoa 1.2.1
btoa for Node.JS (it's a one-liner)
coolaj86
coolaj86
es6-object-assign 1.0.0 - 1.1.0
ECMAScript 2015 (ES6) Object.assign polyfill and ponyfill
fp-ts 2.6.6 - 2.9.5Outdated
Functional programming in TypeScript
rc-tooltip 5.2.0 - 5.3.1Outdated
React Tooltip
firebase 4.1.4 - 4.5.0Outdated
Firebase JavaScript library for web and Node.js
@ctrl/tinycolor 3.4.1Outdated
Fast, small color manipulation and conversion for JavaScript
react-beautiful-dnd 1.0.0 - 6.0.2Outdated
Beautiful and accessible drag and drop for lists with React
yeast 0.1.2
Tiny but linear growing unique id generator
blob 0.0.5 - 0.1.0
Abstracts out Blob and uses BlobBuilder in cases where it is supported with any vendor prefix.
amitport
rase-
@ant-design/colors 4.0.0 - 5.1.1Outdated
Color palettes calculator of Ant Design
+4
madccc
afc163
vthinkxie
antd 4.23.0 - 4.23.2Outdated
An enterprise-class UI design language and React components implementation
react-intl 1.1.0 - 2.9.0Outdated
Internationalize React apps. This library provides React components and an API to format dates, numbers, and strings, including pluralization and handling translations.
@ant-design/icons 4.6.4 - 5.0.0Outdated
[![NPM version](https://img.shields.io/npm/v/@ant-design/icons.svg?style=flat)](https://npmjs.org/package/@ant-design/icons) [![NPM downloads](http://img.shields.io/npm/dm/@ant-design/icons.svg?style=flat)](https://npmjs.org/package/@ant-design/icons)
+4
madccc
afc163
vthinkxie
after 0.8.1 - 0.8.2
after - tiny flow control
component-bind 1.0.0
function binding utility
intl-messageformat-parser 1.3.0 - 1.5.1Outdated
Parses ICU Message strings into an AST via JavaScript.
arraybuffer.slice 0.0.6 - 0.0.7
Exports a function for slicing ArrayBuffers (no polyfilling)
rase-
rase-
qrcode.react 0.8.0Outdated
React component to generate QR codes
component-inherit 0.0.3
Prototype inheritance utility
coreh
coreh
react-query 0.0.11 - 0.0.15Outdated
Hooks for managing, caching and syncing asynchronous and remote data in React
tannerlinsley
tkdodo
to-array 0.1.3 - 0.1.4
Turn an array like into an array
raynos
raynos
rc-trigger 4.3.0 - 4.3.4Outdated
base abstract trigger component for react
rc-pagination 3.1.11 - 3.2.0Outdated
pagination ui component for react
rc-dialog 8.9.0 - 9.0.2Outdated
dialog ui component for react
material-colors 1.2.2 - 1.2.6
Colors of Google's Material Design made available to coders
rc-collapse 1.7.5 - 3.5.1Outdated
rc-collapse ui component for react
has-binary2 1.0.3Outdated
A function that takes anything in javascript and returns true if its argument contains binary data.
darrachequesne
darrachequesne
@ant-design/icons-svg 4.2.0 - 4.2.1Outdated
Abstract nodes for ant design icons.
+4
madccc
afc163
vthinkxie
rc-notification 4.5.6 - 4.6.0Outdated
notification ui component for react
rc-picker 2.6.9 - 3.1.4Outdated
React date & time picker
rc-checkbox 2.3.0 - 2.3.2Outdated
checkbox ui component for react
react-copy-to-clipboard 5.1.0
Copy-to-clipboard React component
rc-field-form 1.19.0 - 1.27.3Outdated
React Form Component
react-slick 0.24.0 - 0.26.1Outdated
React port of slick carousel
perfect-scrollbar 1.5.2 - 1.5.5
Minimalistic but perfect custom scrollbar plugin
@reach/utils 0.10.4 - 0.11.2Outdated
Internal, shared utilities for Reach UI.
+1
ryanflorence
mjackson
chancestrickland
redux-logger 2.7.0 - 3.0.1Outdated
Logger for Redux
recompose 0.17.0 - 0.30.0
A React utility belt for function components and higher-order components
@ethersproject/bytes 5.0.0 - 5.7.0
Bytes utility functions for ethers.
react-player 1.12.0 - 1.15.2Outdated
A React component for playing a variety of URLs, including file paths, YouTube, Facebook, Twitch, SoundCloud, Streamable, Vimeo, Wistia and DailyMotion
change-emitter 0.1.2 - 0.1.6
Listen for changes. Like an event emitter that only emits a single event type. Really tiny.
emotion 7.0.1 - 8.0.12Outdated
The Next Generation of CSS-in-JS.
qr.js 0.0.0
qrcode encoding in javascript
defunctzombie
defunctzombie
@chakra-ui/theme 2.1.0 - 2.1.3Outdated
The default theme for chakra components
@chakra-ui/hooks 1.0.0 - 1.0.2Outdated
React hooks for Chakra components
intl-format-cache 2.2.2 - 4.1.16Outdated
A memoizer factory for Intl format constructors.
reactstrap 5.0.0 - 8.10.1Outdated
React Bootstrap components
react-dates 15.1.0 - 18.1.1Outdated
A responsive and accessible date range picker component built with React
+4
lencioni
ljharb
ahuth
scriptjs 2.5.6 - 2.5.9
Asyncronous JavaScript loader and dependency manager
react-final-form 6.5.4Outdated
🏁 High performance subscription-based form state management for React
erikras
erikras
bootstrap-vue 2.0.0 - 2.15.0Outdated
With more than 85 components, over 45 available plugins, several directives, and 1000+ icons, BootstrapVue provides one of the most comprehensive implementations of the Bootstrap v4 component and grid system available for Vue.js v2.6, complete with extens
react-loadable 5.2.0 - 5.5.0
A higher order component for loading components with promises
miksu
thejameskyle
semantic-ui-react 0.64.0 - 0.79.1Outdated
The official Semantic-UI-React integration.
layershifter
levithomason
amplitude-js 5.2.0Outdated
Javascript library for Amplitude Analytics
intl-relativeformat 2.2.0Outdated
Formats JavaScript dates to relative time strings.
crypto-hash 2.0.0 - 2.0.1Outdated
Tiny hashing module that uses the native crypto API in Node.js and the browser
@tannin/plural-forms 1.0.0 - 1.1.0
Compiles a function to compute the plural forms index for a given value
aduth
aduth
react-bootstrap-sweetalert 4.4.1Outdated
A variant of sweetalert for use with React and Bootstrap
lottie-api 1.0.0 - 1.0.2Outdated
A library to edit lottie-web animations dynamically
airnan
airnan
botframework-webchat-component 4.1.0 - 4.7.1Outdated
React component of botframework-webchat
+2
botframework
sgellock
cwhitten
feathers-commons 0.8.5 - 0.8.7
Shared Feathers utility functions