About
Community
vips.pnnl.gov
71 packages
Last scanned on Apr 12 at 02:06 PM
Update
Name
Size
Popularity
Severity
lodash
4.17.16
Vulnerable
Outdated
Lodash modular utilities.
Script
https://vips.pnnl.gov/vendor.5e591fae9e53bb64.js
License
MIT
Footprint
19 KB
Vulnerabilities
High
GHSA-35jh-r3h4-6jhm
Command Injection in lodash
Affected versions >=0 <4.17.21
Moderate
GHSA-29mw-wpgm-hmr9
Regular Expression Denial of Service (ReDoS) in lodash
Affected versions >=0 <4.17.21
High
GHSA-p6mc-m468-83gw
Prototype Pollution in lodash
Affected versions >=3.7.0 <4.17.19
Matched Modules
Version distribution in production
3 846
4.17.16
946
4.17.21
337
4.17.20
322
4.17.15
302
4.17.19
301
4.17.13
Also used on 4830 websites
skype.com
20 packages
sentry.io
157 packages
pinterest.com
56 packages
pinimg.com
52 packages
Repository
Homepage
More
modules
stdlib
util
d3-color
1.4.0 - 3.0.1
Vulnerable
Outdated
Color spaces! RGB, HSL, Cubehelix, Lab and HCL (Lch).
d3
d3-module
color
rgb
hsl
+4
tslib
1.6.0 - 2.6.2
Runtime library for TypeScript helper functions
TypeScript
Microsoft
compiler
language
javascript
+2
+5
react-is
16.3.0 - 18.2.0
Outdated
Brand checking of React Elements.
react
+1
balanced-match
0.4.2 - 1.0.2
Outdated
Match balanced character pairs, like "{" and "}"
match
regexp
test
balanced
parse
juliangruber
@babel/runtime
7.18.2 - 7.24.4
babel's modular runtime helpers
+1
rxjs
7.2.0 - 7.8.1
Reactive Extensions for modern JavaScript
Rx
RxJS
ReactiveX
ReactiveExtensions
Streams
+5
parse5
6.0.0 - 6.0.1
Outdated
HTML parser and serializer.
html
parser
html5
WHATWG
specification
+10
+1
is-buffer
2.0.0 - 2.0.5
Determine if an object is a Buffer
arraybuffer
browser
browser buffer
browserify
buffer
+10
feross
core-js
3.27.2 - 3.32.0
Outdated
Standard library
ES3
ES5
ES6
ES7
ES2015
+39
zloirock
extend
3.0.2
Port of jQuery.extend for node.js and the browser
extend
clone
merge
scheduler
0.21.0 - 0.23.0
Outdated
Cooperative scheduler for the browser environment.
react
+1
prop-types
15.8.0 - 15.8.1
Runtime type checking for React props and similar objects.
react
react
17.0.0 - 18.2.0
Outdated
React is a JavaScript library for building user interfaces.
react
+1
react-dom
18.0.0 - 18.2.0
Outdated
React package for working with the DOM.
react
+2
no-case
3.0.3 - 3.0.4
Outdated
Transform any case string into a lower case string with a space between each word
no
case
space
lower
convert
+1
blakeembrey
date-fns
2.29.3
Outdated
Modern JavaScript date utility library
kossnocorp
@emotion/memoize
0.7.5 - 0.8.1
emotion's memoize utility
+1
hoist-non-react-statics
3.3.1 - 3.3.2
Copies non-react specific statics from a child component to a parent component
react
mridgway
pascal-case
3.1.0 - 3.1.2
Outdated
Transform into a string of capitalized words without separators
pascal
case
camel
capital
convert
+3
blakeembrey
unist-util-is
5.1.1
Outdated
unist utility to check if a node passes a test
unist
unist-util
util
utility
tree
+6
classnames
2.3.2 - 2.3.3
Outdated
A simple utility for conditionally joining classNames together
react
css
classes
classname
classnames
+2
err-code
0.1.1
Outdated
Create an error with a code
error
err
code
properties
property
@emotion/serialize
1.0.2 - 1.1.4
serialization utils for emotion
+1
@emotion/utils
1.0.0 - 1.2.1
internal utils for emotion
+1
react-router
6.4.0 - 6.11.0
Outdated
Declarative routing for React
react
router
route
routing
history
+1
lodash-es
4.17.21
Lodash exported as ES modules.
es6
modules
stdlib
util
react-router-dom
6.8.0 - 6.22.3
Outdated
Declarative routing for React web applications
react
router
route
routing
history
+1
redux
4.1.0 - 4.2.1
Outdated
Predictable state container for JavaScript apps
redux
reducer
state
predictable
functional
+6
+3
@storybook/theming
6.5.0 - 6.5.16
Outdated
Core Storybook Components
storybook
+6
react-fast-compare
3.1.0 - 3.2.0
Outdated
Fastest deep equal comparison for React. Great for React.memo & shouldComponentUpdate. Also really fast general-purpose deep comparison.
fast
equal
react
compare
shouldComponentUpdate
+1
+12
space-separated-tokens
1.1.3 - 2.0.2
Parse and stringify space separated tokens
dom
html
space
separated
tokens
+2
wooorm
d3-array
1.0.1 - 3.2.1
Outdated
Array manipulation, ordering, searching, summarizing, etc.
d3
d3-module
histogram
bisect
shuffle
+4
@emotion/react
11.0.0 - 11.11.4
> Simple styling in React.
+1
micromark
2.9.0 - 2.11.4
Outdated
small commonmark compliant markdown parser with positional info and concrete tokens
commonmark
compiler
gfm
html
lexer
+13
wooorm
property-information
6.1.0 - 6.5.0
Info on the properties and attributes of the web platform
html
svg
aria
property
attribute
+2
wooorm
comma-separated-tokens
2.0.3
Parse and stringify comma-separated tokens
dom
html
comma
separated
tokens
+2
wooorm
d3-interpolate
1.4.0 - 3.0.1
Interpolate numbers, colors, strings, arrays, objects, whatever!
d3
d3-module
interpolate
interpolation
color
style-to-object
0.2.3 - 0.4.4
Outdated
Parse CSS inline style to JavaScript object.
style-to-object
inline
style
parser
css
+2
remarkablemark
polished
4.3.0 - 4.3.1
A lightweight toolset for writing styles in Javascript.
styled-components
polished
emotion
glamor
css-in-js
+9
d3-time
2.1.0 - 3.1.0
A calculator for humanity’s peculiar conventions of time.
d3
d3-module
time
interval
calendar
d3-shape
1.0.2 - 1.3.2
Outdated
Graphical primitives for visualization, such as lines and areas.
d3
d3-module
graphics
visualization
canvas
+1
unist-util-position
4.0.1 - 4.0.4
Outdated
unist utility to get the position of a node
unist
unist-util
util
utility
node
+2
d3-path
1.0.3 - 3.0.1
Outdated
Serialize Canvas path commands to SVG.
d3
d3-module
canvas
path
svg
+4
inline-style-parser
0.1.0 - 0.2.3
An inline style parser.
inline-style-parser
inline-style
style
parser
css
remarkablemark
d3-format
1.4.0 - 3.1.0
Format numbers for human consumption.
d3
d3-module
format
localization
d3-scale
1.0.3 - 3.3.0
Outdated
Encodings that map abstract data to visual representation.
d3
d3-module
scale
visualization
resize-observer-polyfill
1.5.0 - 1.5.1
A polyfill for the Resize Observer API
ResizeObserver
resize
observer
util
client
+3
que-etc
micromark-util-decode-numeric-character-reference
1.0.0 - 2.0.0
Outdated
micromark utility to decode numeric character references
micromark
util
utility
decode
numeric
+3
wooorm
micromark-util-resolve-all
1.0.0 - 2.0.0
micromark utility to resolve subtokens
micromark
util
utility
resolve
wooorm
micromark-util-decode-string
1.0.0 - 2.0.0
micromark utility to decode markdown strings
micromark
util
utility
decode
character
+3
wooorm
micromark-util-combine-extensions
1.0.0 - 2.0.0
micromark utility to combine syntax or html extensions
micromark
util
utility
extension
combine
+1
wooorm
intl-messageformat
3.0.0
Outdated
Formats ICU Message strings with number, date, plural, and select placeholders to create localized messages.
i18n
intl
internationalization
localization
globalization
+4
+9
@reduxjs/toolkit
1.8.4 - 1.9.7
Outdated
The official, opinionated, batteries-included toolset for efficient Redux development
redux
react
starter
toolkit
reducer
+4
+2
reduce-css-calc
1.3.0
Outdated
Reduce CSS calc() function to the maximum
css
calculation
calc
react-dnd
0.1.2 - 0.9.8
Outdated
Drag and Drop for React
+2
@react-spring/shared
9.0.0 - 9.7.3
Globals and shared modules
animated
animation
hooks
motion
react
+4
tdfka_rick
@react-spring/animated
9.0.0 - 9.7.3
Animated component props for React
animated
animation
hooks
motion
react
+4
tdfka_rick
@react-spring/core
9.0.0 - 9.7.3
The platform-agnostic core of `react-spring`
animated
animation
hooks
motion
react
+4
tdfka_rick
xstate
4.26.1 - 4.38.3
Outdated
Finite State Machines and Statecharts for the Modern Web.
statechart
state machine
finite state machine
finite automata
scxml
+2
react-beautiful-dnd
12.0.0 - 13.1.1
Beautiful and accessible drag and drop for lists with React
drag and drop
dnd
sortable
reorder
reorderable
+5
@react-spring/web
9.2.4 - 9.5.5
Outdated
`react-dom` support
animated
animation
hooks
motion
react
+4
tdfka_rick
react-day-picker
8.9.0 - 8.10.0
Outdated
Customizable Date Picker for React
react-number-format
3.2.0 - 4.0.8
Outdated
React component to format number in an input or as a text.
react-component
react
currency
input
number
+2
sudhanshu
math-expression-evaluator
1.2.2 - 1.4.0
Outdated
A flexible math expression evaluator
math
expression
evaluator
parser
bugwheels94
reduce-function-call
1.0.2 - 1.0.3
Reduce function calls in a string, using a callback
string
reduce
replacement
function
call
+2
moox
@redux-saga/core
1.0.0 - 1.3.0
Saga middleware for Redux to handle Side Effects
javascript
redux
middleware
saga
effects
+1
@redux-saga/symbols
1.0.0 - 1.1.3
Redux-saga internal symbol "registry".
redux
saga
redux-saga
@redux-saga/is
1.0.0 - 1.1.3
Runtime type checking helpers
semantic-ui-react
0.80.0 - 0.80.2
Outdated
The official Semantic-UI-React integration.
feathers-commons
0.8.5 - 0.8.7
Shared Feathers utility functions
feathers
Popular search queries
webpack.js.org
url
react-scripts
react
lottie-api
react-helmet-async
+7 packages
github.com
color-convert
@headlessui/react
hoist-non-react-statics
reactstrap
lit-html
+60 packages
pinterest.com
lodash
relay-runtime
react-relay
react-use
lodash-es
+51 packages
Popular packages
react
React is a JavaScript library for building user interfaces.
+6 634 websites
core-js
Standard library
+10 238 websites
es5-ext
ECMAScript extensions and shims
+10 229 websites
@babel/runtime
babel's modular runtime helpers
+8 352 websites
lodash
Lodash modular utilities.
+4 826 websites
axios
Promise based HTTP client for the browser and node.js
+4 742 websites