weatherbug.com 138 packages

Last scanned on Jan 19 at 08:03 AM
crypto-js 4.1.0 - 4.1.1VulnerableOutdated
JavaScript library of crypto standards.
License
MIT
Footprint
17 KB
Vulnerabilities
crypto-js PBKDF2 1,000 times weaker than specified in 1993 and 1.3M times weaker than current standard
Affected versions >=0 <4.2.0
Matched Modules
Version distribution in production
457
4.1.0
457
4.1.1
185
3.3.0
162
3.1.8
143
3.2.1
143
4.0.0
axios 0.21.1VulnerableOutdated
Promise based HTTP client for the browser and node.js
moment 2.24.0VulnerableOutdated
Parse, validate, manipulate, and display dates
urijs 1.19.0 - 1.19.8VulnerableOutdated
URI.js is a Javascript library for working with URLs.
moment-timezone 0.5.26 - 0.5.27VulnerableOutdated
Parse and display moments in any timezone.
html-parse-stringify 1.0.0 - 1.0.3VulnerableOutdated
Parses well-formed HTML (meaning all tags closed) into an AST and back. quickly.
angular 1.2.29 - 1.8.3Vulnerable
HTML enhanced for web apps
es5-ext 0.10.24 - 0.10.49VulnerableOutdated
ECMAScript extensions and shims
uuid 7.0.0 - 8.0.0Outdated
RFC4122 (v1, v4, and v5) UUIDs
react-is 16.3.0 - 16.13.1Outdated
Brand checking of React Elements.
regenerator-runtime x.x.x
Runtime for Regenerator-compiled generator and async functions.
@babel/runtime 7.12.0 - 7.12.18Outdated
babel's modular runtime helpers
+1
hzoo
existentialism
nicolo-ribaudo
function-bind 1.1.0 - 1.1.1Outdated
Implementation of Function.prototype.bind
lodash x.x.x
Lodash modular utilities.
object-inspect 1.6.0Outdated
string representations of objects in node and the browser
has-symbols 1.0.0 - 1.0.1Outdated
Determine if the JS environment has Symbol support. Supports spec, or shams.
object-assign 4.1.0 - 4.1.1
ES2015 `Object.assign()` ponyfill
es-abstract 1.16.0Outdated
ECMAScript spec abstract operations.
define-properties 1.1.3Outdated
Define multiple non-enumerable properties at once. Uses `Object.defineProperty` when available; falls back to standard assignment in older engines.
is-callable 1.1.4 - 1.1.5Outdated
Is this JS value callable? Works with Functions and GeneratorFunctions, despite ES6 @@toStringTag.
object-keys 1.1.0 - 1.1.1
An Object.keys replacement, in case Object.keys is not available. From https://github.com/es-shims/es5-shim
core-js 2.6.10Outdated
Standard library
is-regex 1.0.4 - 1.0.5Outdated
Is this value a JS regex? Works cross-realm/iframe, and despite ES6 @@toStringTag
is-date-object 1.0.1 - 1.0.3Outdated
Is this value a JS Date object? This module works cross-realm/iframe, and despite ES6 @@toStringTag.
is-symbol 1.0.0 - 1.0.4
Determine if a value is an ES6 Symbol or not.
es-to-primitive 1.2.0 - 1.2.1
ECMAScript “ToPrimitive” algorithm. Provides ES5 and ES2015 versions.
xtend 4.0.1 - 4.0.2
extend like a boss
object.values 1.0.4 - 1.1.0Outdated
ES2017 spec-compliant Object.values shim.
scheduler 0.20.0 - 0.20.2Outdated
Cooperative scheduler for the browser environment.
has 1.0.1 - 1.0.3Outdated
Object.prototype.hasOwnProperty.call shortcut
tarruda
tarruda
prop-types 15.7.0 - 15.7.2Outdated
Runtime type checking for React props and similar objects.
react 16.13.0 - 18.2.0Outdated
React is a JavaScript library for building user interfaces.
process x.x.x
process information for node.js and browsers
react-dom 17.0.0 - 17.0.2Outdated
React package for working with the DOM.
lodash.debounce 4.0.8
The lodash method `_.debounce` exported as a module.
@emotion/memoize 0.6.1 - 0.7.4Outdated
emotion's memoize utility
+1
emmatown
tkh44
emotion-release-bot
hoist-non-react-statics 1.2.0Outdated
Copies non-react specific statics from a child component to a parent component
mridgway
mridgway
invariant 2.2.0 - 2.2.4
invariant
lodash.once 4.1.1
The lodash method `_.once` exported as a module.
@emotion/unitless 0.7.2 - 0.8.0Outdated
An object of css properties that don't accept values with units
+1
emmatown
tkh44
emotion-release-bot
classnames 2.2.6Outdated
A simple utility for conditionally joining classNames together
@emotion/is-prop-valid 0.8.8Outdated
A function to check whether a prop is valid for HTML and SVG elements
+1
emmatown
tkh44
emotion-release-bot
react-transition-group 2.5.3 - 4.4.5
A react component toolset for managing animations
dom-helpers 5.0.1 - 5.2.1
tiny modular DOM lib for ie9+
lodash.sortby 4.7.0
The lodash method `_.sortBy` exported as a module.
object.getownpropertydescriptors 2.0.0 - 2.1.5Outdated
ES2017 spec-compliant shim for `Object.getOwnPropertyDescriptors` that works in ES5.
lodash.clonedeep 4.5.0
The lodash method `_.cloneDeep` exported as a module.
react-router 0.5.3Outdated
Declarative routing for React
redux 4.0.1 - 4.2.0Outdated
Predictable state container for JavaScript apps
crypto-browserify 1.0.9 - 2.0.0Outdated
implementation of crypto for the browser
+2
dcousens
ljharb
cwmma
react-redux 5.1.0Outdated
Official React bindings for Redux
shallowequal 1.0.1 - 1.1.0
Like lodash isEqualWith but for shallow equal.
void-elements 3.1.0
Array of "void elements" defined by the HTML specification.
resize-observer-polyfill 1.5.1
A polyfill for the Resize Observer API
styled-components 4.0.0 - 5.3.6Outdated
CSS for the <Component> Age. Style components your way with speed, strong typing, and flexibility.
i18next 20.3.0 - 20.6.1Outdated
i18next internationalization framework
redux-thunk 2.1.0 - 2.4.2Outdated
Thunk middleware for Redux.
react-select 4.1.0 - 5.5.4Outdated
A Select control built with and for ReactJS
@emotion/stylis 0.8.1Outdated
A custom build of Stylis
+1
emmatown
tkh44
emotion-release-bot
framer-motion 5.0.0 - 8.5.0Outdated
A simple and powerful JavaScript animation library
tabbable 3.1.1 - 3.1.2Outdated
Returns an array of all tabbable DOM nodes within a containing node.
davidtheclark
stefcameron
@firebase/util 1.7.0 - 1.8.0Outdated
_NOTE: This is specifically tailored for Firebase JS SDK usage, if you are not a member of the Firebase team, please avoid using this package_
+1
chholland
firebase-ops
feiyang.chen
react-i18next 11.11.0 - 11.16.2Outdated
Internationalization for react done right. Using the i18next i18n ecosystem.
rc-util 5.12.0 - 5.13.2Outdated
Common Utils For React Component
lodash.uniqby 4.7.0
The lodash method `_.uniqBy` exported as a module.
@turf/helpers 5.1.0 - 6.5.0
turf helpers module
fp-ts 0.2.1 - 0.2.9Outdated
Functional programming in TypeScript
rc-tooltip 5.0.2 - 5.1.1Outdated
React Tooltip
rc-slider 9.7.1 - 9.7.5Outdated
Slider UI component for React
@babel/polyfill 7.4.3 - 7.12.1
Provides polyfills necessary for a full ES2015+ environment
+1
hzoo
existentialism
nicolo-ribaudo
react-beautiful-dnd 1.0.0 - 6.0.2Outdated
Beautiful and accessible drag and drop for lists with React
focus-trap 3.0.0Outdated
Trap focus within a DOM node.
rc-motion 2.6.3Outdated
React lifecycle controlled motion library
airbnb-prop-types 2.14.0 - 2.15.0Outdated
Custom React PropType validators that we use at Airbnb.
i18next-browser-languagedetector x.x.x
language detector used in browser environment for i18next
rc-trigger 5.2.3 - 5.2.10Outdated
base abstract trigger component for react
rc-select 10.0.0 - 14.2.0Outdated
React Select
rc-align 4.0.9Outdated
align ui component for react
dom-align 1.10.0 - 1.10.2Outdated
Align DOM Node Flexibly
rc-picker 2.6.10 - 2.7.0Outdated
React date & time picker
react-tooltip x.x.x
react tooltip component
css-mediaquery 0.1.2
Parses and determines if a given CSS Media Query matches a set of values.
ericf
ericf
mapbox-gl x.x.x
A WebGL interactive maps library
+25
mbx-npm-ci-production
mbx-npm-ci-staging
mbx-npm-advanced-actions-production
@reach/utils 0.4.0 - 0.6.1Outdated
Internal, shared utilities for Reach UI.
+1
ryanflorence
mjackson
chancestrickland
consolidated-events 2.0.2
Manage multiple event handlers using few event listeners
redux-devtools-extension 2.0.0 - 2.13.9
Wrappers for Redux DevTools Extension.
+1
jhen0409
methuselah96
timdorr
recompose 0.29.0 - 0.30.0
A React utility belt for function components and higher-order components
focus-trap-react 4.0.1Outdated
A React component that traps focus.
document.contains 1.0.1Outdated
Polyfill/shim for `document.contains`
react-outside-click-handler 1.3.0
A React component for dealing with clicks outside its subtree
+2
brieb
airbnbeng
lencioni
lodash.uniqueid 4.0.1
The lodash method `_.uniqueId` exported as a module.
get-size 1.2.2Outdated
measures element size
desandro
desandro
fizzy-ui-utils 1.0.1Outdated
UI utilities
desandro-matches-selector 1.0.2 - 1.0.3Outdated
matches/matchesSelector helper
react-visibility-sensor 5.1.1
Sensor component for React that notifies you when it goes in or out of the window viewport.
outlayer 1.3.0Outdated
the brains and guts of a layout library
desandro
desandro
react-lazy-load-image-component 1.5.0 - 1.5.1Outdated
React Component to lazy load images using a HOC to track window scroll position.
wolfy87-eventemitter 4.2.0 - 5.2.9
Event based JavaScript for the browser
deepcopy 2.0.0 - 2.1.0
deep copy data
sasaplus1
sasaplus1
i18next-xhr-backend x.x.x
backend layer for i18next using browsers xhr
unidragger 1.1.5Outdated
Base draggable class
flickity 1.0.1 - 1.0.2Outdated
Touch, responsive, flickable carousels
no-scroll 2.1.1
Disable the document's scrolling
redux-promise-middleware 5.0.0 - 5.1.1Outdated
Enables simple, yet robust handling of async action creators in Redux
unipointer 1.1.0Outdated
Do one thing with one pointer
@tannin/plural-forms 1.0.0 - 1.1.0
Compiles a function to compute the plural forms index for a given value
aduth
aduth
react-responsive-modal x.x.x
A simple responsive and accessible react modal
lottie-api 1.0.0 - 1.0.2Outdated
A library to edit lottie-web animations dynamically
airnan
airnan
@bower_components/flickity x.x.x
@weatherbug/react x.x.x
oidc-client x.x.x
@bower_components/angular-dynamic-locale x.x.x
angulartics x.x.x
matchmediaquery x.x.x
lodash.find x.x.x
desandro-get-style-property x.x.x
react-async-script-loader x.x.x
@bower_components/uri.js x.x.x
@weatherbug/common x.x.x
tap-listener x.x.x
ngreact x.x.x
react-smartbanner x.x.x
@bower_components/outlayer x.x.x
lodash.orderby x.x.x
angular-route x.x.x
eventie x.x.x
@bower_components/object-fit x.x.x
desandro-classie x.x.x
@bower_components/fizzy-ui-utils x.x.x
morphism x.x.x
@bower_components/tap-listener x.x.x
redux-connect-standalone x.x.x
@bower_components/raf.js x.x.x
react-native-storage x.x.x
@bower_components/fastclick x.x.x
doc-ready x.x.x
lodash.tostring x.x.x
jssha x.x.x