verkkokauppa.com 67 packages

Last scanned on Jan 19 at 03:09 PM
lodash 4.17.16VulnerableOutdated
Lodash modular utilities.
License
MIT
Footprint
7 KB
Vulnerabilities
Command Injection in lodash
Affected versions >=0 <4.17.21
Regular Expression Denial of Service (ReDoS) in lodash
Affected versions >=0 <4.17.21
Prototype Pollution in lodash
Affected versions >=3.7.0 <4.17.19
Matched Modules
Version distribution in production
3 846
4.17.16
946
4.17.21
337
4.17.20
322
4.17.15
302
4.17.19
301
4.17.13
next-auth 3.24.1 - 3.29.10VulnerableOutdated
Authentication for Next.js
ajv 0.1.11 - 1.3.1VulnerableOutdated
Another JSON Schema Validator
graphql 16.4.0 - 16.6.0VulnerableOutdated
A Query Language and Runtime which can target any service.
tslib 1.2.0 - 2.4.1Outdated
Runtime library for TypeScript helper functions
isarray 0.0.0 - 0.0.1Outdated
Array#isArray for older browsers
react-is 16.3.0 - 16.13.1Outdated
Brand checking of React Elements.
@babel/runtime 7.18.0 - 7.19.4Outdated
babel's modular runtime helpers
+1
hzoo
existentialism
nicolo-ribaudo
path-to-regexp 1.7.0 - 1.8.0Outdated
Express style path to RegExp utility
cookie 0.4.1 - 0.4.2Outdated
HTTP server cookie parsing and serialization
dougwilson
dougwilson
core-js 3.23.3 - 3.25.0Outdated
Standard library
requires-port 1.0.0
Check if a protocol requires a certain port number to be added to an URL.
scheduler 0.15.0 - 0.23.0Outdated
Cooperative scheduler for the browser environment.
prop-types 15.8.0 - 15.8.1
Runtime type checking for React props and similar objects.
react 16.13.0 - 18.2.0Outdated
React is a JavaScript library for building user interfaces.
url-parse 1.5.9 - 1.5.10
Small footprint URL parser that works seamlessly across Node.js and browser environments
querystringify 2.2.0
Querystringify - Small, simple but powerful query string parser.
date-fns 2.29.2Outdated
Modern JavaScript date utility library
kossnocorp
kossnocorp
hoist-non-react-statics 3.3.1 - 3.3.2
Copies non-react specific statics from a child component to a parent component
mridgway
mridgway
event-target-shim 1.0.1 - 5.0.1Outdated
An implementation of WHATWG EventTarget interface.
abort-controller 2.0.0 - 3.0.0
An implementation of WHATWG AbortController interface.
@popperjs/core 2.11.6Outdated
Tooltip and Popover Positioning Engine
immer 7.0.7 - 9.0.18Outdated
Create your next immutable state by mutating the current one
tiny-invariant 0.0.2 - 1.3.1Outdated
A tiny invariant function
is-promise 2.1.0 - 4.0.0
Test whether an object looks like a promises-a+ promise
forbeslindesay
then-bot
lodash-es 4.17.21
Lodash exported as ES modules.
redux 4.0.1 - 4.2.0Outdated
Predictable state container for JavaScript apps
react-fast-compare 3.1.0 - 3.2.0Outdated
Fastest deep equal comparison for React. Great for React.memo & shouldComponentUpdate. Also really fast general-purpose deep comparison.
stream-http 2.8.0 - 3.2.0
Streaming http in the browser
reselect 4.1.0 - 4.1.7Outdated
Selectors for Redux.
react-redux 5.0.3 - 7.2.9Outdated
Official React bindings for Redux
shallowequal 1.0.1 - 1.1.0
Like lodash isEqualWith but for shallow equal.
history 4.0.0 - 4.10.1Outdated
Manage session history with JavaScript
jwt-decode 2.2.0Outdated
Decode JWT tokens, mostly useful for browser applications.
graphql-tag 2.12.0 - 2.12.6
A JavaScript template literal tag that parses GraphQL queries
jnwng
abernix
apollo-bot
toposort 2.0.2
Topological sort of directed ascyclic graphs (like dependecy lists)
resize-observer-polyfill 1.5.0 - 1.5.1
A polyfill for the Resize Observer API
use-sidecar 1.0.0 - 1.1.2
Sidecar code splitting utils
styled-components 4.0.0 - 5.3.6Outdated
CSS for the <Component> Age. Style components your way with speed, strong typing, and flexibility.
es6-error 4.0.0 - 4.1.1
Easily-extendable error for use with ES6 classes
redux-thunk 2.1.0 - 2.4.2Outdated
Thunk middleware for Redux.
property-expr 2.0.4Outdated
tiny util for getting and setting deep object props safely
@hapi/bourne 1.3.0 - 3.0.0
JSON parse with prototype poisoning protection
framer-motion 3.0.0 - 6.2.10Outdated
A simple and powerful JavaScript animation library
framesync 4.1.0 - 6.1.2
A frame-synced render loop for JavaScript
popmotion
popmotion
react-helmet-async 1.2.2 - 1.3.0Outdated
Thread-safe Helmet for React 16+ and friends
wonderboymusic
wonderboymusic
@fortawesome/free-solid-svg-icons 5.12.0 - 5.15.4Outdated
The iconic font, CSS, and SVG framework
universal-cookie 4.0.1 - 4.0.4Outdated
Universal cookies for JavaScript
react-query 1.0.0 - 2.5.6Outdated
Hooks for managing, caching and syncing asynchronous and remote data in React
tannerlinsley
tkdodo
popmotion 7.3.1 - 11.0.5
The animator's toolbox
style-value-types 1.0.0 - 5.1.2
Parsers, transformers and tests for special value types, eg: %, hex codes etc.
rc-field-form 1.19.0 - 1.27.3Outdated
React Form Component
ssr-window 2.0.0Outdated
Better handling for window object in SSR environment
nolimits4web
nolimits4web
wonka 6.0.0 - 6.1.2Outdated
A tiny but capable push & pull stream library for TypeScript and Flow
@reach/utils 0.10.4 - 0.11.2Outdated
Internal, shared utilities for Reach UI.
+1
ryanflorence
mjackson
chancestrickland
@redux-saga/core 1.0.0 - 1.2.2Outdated
Saga middleware for Redux to handle Side Effects
@redux-saga/symbols 1.0.0 - 1.1.3
Redux-saga internal symbol "registry".
@redux-saga/is 1.0.0 - 1.1.3
Runtime type checking helpers
yelouafi
andarist
redux-saga-release-bot
@fortawesome/free-regular-svg-icons 5.7.0 - 5.15.4Outdated
The iconic font, CSS, and SVG framework
@chakra-ui/theme 2.1.0 - 2.1.3Outdated
The default theme for chakra components
@fortawesome/free-brands-svg-icons 5.8.2 - 5.15.4Outdated
The iconic font, CSS, and SVG framework
vue-class-component 6.3.2 - 7.0.2Outdated
ES201X/TypeScript class decorator for Vue components
@loadable/component 5.15.0 - 5.15.2Outdated
React code splitting made easy.
redux-form 8.3.6 - 8.3.9Outdated
A higher order component decorator for forms using Redux and React
accounting 0.4.1
number, money and currency formatting library
@wordpress/url 2.20.0 - 3.26.0Outdated
WordPress URL utilities.
trackjs 3.9.0 - 3.10.1Outdated
TrackJS JavaScript error tracking agent.
trackjs
trackjs