wongnai.com 133 packages

Last scanned on Jan 19 at 03:53 PM
url-parse 1.1.9 - 1.4.1VulnerableOutdated
Small footprint URL parser that works seamlessly across Node.js and browser environments
License
MIT
Footprint
3 KB
Vulnerabilities
url-parse incorrectly parses hostname / protocol due to unstripped leading control characters.
Affected versions >=0 <1.5.9
Authorization bypass in url-parse
Affected versions >=0 <1.5.6
Path traversal in url-parse
Affected versions >=0 <1.5.0
Open redirect in url-parse
Affected versions >=0 <1.5.2
Authorization Bypass Through User-Controlled Key in url-parse
Affected versions >=0 <1.5.8
Open Redirect in url-parse
Affected versions >=0 <1.4.3
url-parse Incorrectly parses URLs that include an '@'
Affected versions >=0 <1.5.7
Improper Validation and Sanitization in url-parse
Affected versions >=0 <1.4.5
Matched Modules
Version distribution in production
206
1.5.10
167
1.5.9
50
1.5.3
47
1.4.6
47
1.4.7
1
1.4.1
lodash 4.17.16VulnerableOutdated
Lodash modular utilities.
axios 0.19.1 - 0.19.2VulnerableOutdated
Promise based HTTP client for the browser and node.js
moment 2.19.0 - 2.25.1VulnerableOutdated
Parse, validate, manipulate, and display dates
is-url 1.2.0 - 1.2.2VulnerableOutdated
Check whether a string is a URL.
segmentio
zeke
video.js 5.12.0 - 6.1.0VulnerableOutdated
An HTML5 video player that supports HLS and DASH with a common API and skin.
next 11.1.1 - 12.1.5VulnerableOutdated
The React Framework
rauchg
timneutkens
vercel-release-bot
sweetalert2 10.14.1 - 10.15.3VulnerableOutdated
A beautiful, responsive, customizable and accessible (WAI-ARIA) replacement for JavaScript's popup boxes, supported fork of sweetalert
tslib 1.10.0 - 2.4.1Outdated
Runtime library for TypeScript helper functions
react-is 16.3.0 - 16.13.1Outdated
Brand checking of React Elements.
qs 6.7.0 - 6.9.4Outdated
A querystring parser that supports nesting and arrays, with a depth limit
@babel/runtime 7.0.0 - 7.12.18Outdated
babel's modular runtime helpers
+1
hzoo
existentialism
nicolo-ribaudo
yaml 1.0.0 - 2.2.1Outdated
JavaScript parser and stringifier for YAML
rxjs 5.0.0 - 6.6.7Outdated
Reactive Extensions for modern JavaScript
core-js 3.18.0 - 3.19.3Outdated
Standard library
requires-port 1.0.0
Check if a protocol requires a certain port number to be added to an URL.
scheduler 0.15.0 - 0.23.0Outdated
Cooperative scheduler for the browser environment.
array.prototype.flat 1.3.0 - 1.3.1Outdated
An ES2019 spec-compliant `Array.prototype.flat` shim/polyfill/replacement that works as far down as ES3.
prop-types 15.7.0 - 15.7.2Outdated
Runtime type checking for React props and similar objects.
@webassemblyjs/wasm-parser 1.0.0 - 1.5.8Outdated
WebAssembly binary format parser
react 17.0.0 - 18.2.0Outdated
React is a JavaScript library for building user interfaces.
querystringify 2.2.0
Querystringify - Small, simple but powerful query string parser.
lodash.debounce 4.0.8
The lodash method `_.debounce` exported as a module.
url 0.11.0Outdated
The core `url` packaged standalone for use with Browserify.
date-fns 0.12.0 - 0.15.0Outdated
Modern JavaScript date utility library
kossnocorp
kossnocorp
dayjs 1.10.6 - 1.10.8Outdated
2KB immutable date time library alternative to Moment.js with the same modern API
html-entities 2.3.1 - 2.3.3Outdated
Fastest HTML entities encode/decode library.
hoist-non-react-statics 2.5.1 - 2.5.5Outdated
Copies non-react specific statics from a child component to a parent component
mridgway
mridgway
querystring 0.2.0Outdated
Node's querystring module for all engines.
har-validator 4.1.1 - 4.1.2Outdated
Extremely fast HTTP Archive (HAR) validator using JSON Schema
classnames 2.3.0 - 2.3.1Outdated
A simple utility for conditionally joining classNames together
query-string 2.3.0 - 5.0.1Outdated
Parse and stringify URL query strings
graphql 0.1.0 - 0.1.6Outdated
A Query Language and Runtime which can target any service.
ramda 0.23.0 - 0.27.2Outdated
A practical functional library for JavaScript programmers.
gaxios 2.0.1Outdated
A simple common HTTP client specifically for Google APIs and services.
google-wombot
google-wombot
@sentry/utils 6.8.0 - 6.13.3Outdated
Utilities for all Sentry JavaScript SDKs
+8
benvinegar
billyvg
mitsuhiko
immediate 2.4.3 - 3.3.0
A cross browser microtask library
cwmma
cwmma
react-router 6.4.0 - 6.7.0Outdated
Declarative routing for React
@sentry/core 5.10.2 - 6.16.1Outdated
Base implementation for all Sentry JavaScript SDKs
+8
benvinegar
billyvg
mitsuhiko
es5-ext 0.3.0 - 0.9.2Outdated
ECMAScript extensions and shims
lodash-es 4.17.20 - 4.17.21
Lodash exported as ES modules.
redux 4.0.1Outdated
Predictable state container for JavaScript apps
react-fast-compare 3.1.0 - 3.2.0Outdated
Fastest deep equal comparison for React. Great for React.memo & shouldComponentUpdate. Also really fast general-purpose deep comparison.
js-cookie 3.0.1Outdated
A simple, lightweight JavaScript API for handling cookies
reselect 3.0.0 - 4.0.0Outdated
Selectors for Redux.
react-redux 5.0.3 - 7.2.9Outdated
Official React bindings for Redux
shallowequal 1.0.1 - 1.1.0
Like lodash isEqualWith but for shallow equal.
resize-observer-polyfill 1.5.0 - 1.5.1
A polyfill for the Resize Observer API
yup 0.25.0 - 0.28.0Outdated
Dead simple Object schema validation
monastic.panic
monastic.panic
@sentry/browser 6.13.2 - 6.16.1Outdated
Official Sentry SDK for browsers
+8
benvinegar
billyvg
mitsuhiko
quick-format-unescaped 3.0.3Outdated
Solves a problem with util.format
davidmarkclements
davidmarkclements
styled-components 4.0.0 - 5.3.6Outdated
CSS for the <Component> Age. Style components your way with speed, strong typing, and flexibility.
copy-to-clipboard 3.3.0 - 3.3.1Outdated
Copy stuff into clipboard using JS with fallbacks
redux-thunk 2.1.0 - 2.4.2Outdated
Thunk middleware for Redux.
unfetch 5.0.0
Bare minimum fetch polyfill in 500 bytes
toggle-selection 1.0.5 - 1.0.6
Toggle current selected content in browser
lodash.throttle 4.1.1
The lodash method `_.throttle` exported as a module.
intl-messageformat 2.1.0 - 2.2.0Outdated
Formats ICU Message strings with number, date, plural, and select placeholders to create localized messages.
framer-motion 6.5.0 - 8.5.0Outdated
A simple and powerful JavaScript animation library
@reduxjs/toolkit 1.3.0 - 1.4.0Outdated
The official, opinionated, batteries-included toolset for efficient Redux development
@sentry/hub 4.2.0 - 6.19.7Outdated
Sentry hub which handles global state managment.
+8
benvinegar
billyvg
mitsuhiko
@vue/runtime-core 3.0.0 - 3.2.45Outdated
@vue/runtime-core
@angular/router 10.0.0 - 14.1.3Outdated
Angular - the routing library
@sentry/minimal 4.0.0 - 6.19.7
Sentry minimal library that can be used in other packages
+8
benvinegar
billyvg
mitsuhiko
babel-plugin-emotion 9.2.5 - 9.2.11Outdated
A recommended babel preprocessing plugin for emotion, The Next Generation of CSS-in-JS.
exenv 1.1.0 - 1.2.2
React's ExecutionEnvironment module extracted for use in other packages & components
fp-ts 2.6.3 - 2.6.4Outdated
Functional programming in TypeScript
string-convert 0.2.0 - 0.2.1
String convertions
akiran
akiran
json2mq 0.2.0
Generate media query string from JSON or javascript object
akiran
akiran
react-side-effect 2.1.0 - 2.1.2
Create components whose prop changes map to a global side effect
screenfull 5.0.0 - 5.2.0Outdated
Simple wrapper for cross-browser usage of the JavaScript Fullscreen API, which lets you bring the page or any element into fullscreen.
sindresorhus
sindresorhus
react-helmet 6.0.0 - 6.1.0
A document head manager for React
react-intersection-observer 8.31.1 - 8.32.5Outdated
Monitor if a component is inside the viewport, using IntersectionObserver API
rc-tooltip 5.2.0 - 5.3.1Outdated
React Tooltip
create-react-class 15.7.0
Legacy API for creating React components.
firebase 0.800.5 - 0.900.23Outdated
Firebase JavaScript library for web and Node.js
react-use 15.3.4 - 15.3.8Outdated
Collection of React Hooks
streamich
streamich
xstate 4.7.0 - 4.19.1Outdated
Finite State Machines and Statecharts for the Modern Web.
recharts 2.0.0Outdated
React charts
react-modal 3.3.1 - 3.3.2Outdated
Accessible modal dialog component for React.JS
antd 4.1.0 - 4.2.4Outdated
An enterprise-class UI design language and React components implementation
@xobotyi/scrollbar-width 1.9.1 - 1.9.5
A tool to get browser's scrollbars width.
intl-messageformat-parser 1.3.0 - 1.5.1Outdated
Parses ICU Message strings into an AST via JavaScript.
style-value-types 2.0.0 - 5.1.2
Parsers, transformers and tests for special value types, eg: %, hex codes etc.
fast-memoize 2.3.0 - 2.5.2
Fastest memoization lib that supports N arguments
caiogondim
caiogondim
@material-ui/core 1.5.1 - 4.12.4
React components that implement Google's Material Design.
rc-select 8.6.7 - 8.6.8Outdated
React Select
numeral 2.0.6
Format and manipulate numbers.
react-bootstrap 0.28.0 - 0.33.1Outdated
Bootstrap 5 components built with React
react-tooltip 3.5.0Outdated
react tooltip component
enquire.js 2.1.6
Awesome Media Queries in JavaScript
react-slick 0.24.0 - 0.26.1Outdated
React port of slick carousel
recompose 0.17.0 - 0.30.0
A React utility belt for function components and higher-order components
body-scroll-lock 1.0.1 - 2.1.7Outdated
Enables body scroll locking (for iOS Mobile and Tablet, Android, desktop Safari/Chrome/Firefox) without breaking scrolling of a target element (eg. modal/lightbox/flyouts/nav-menus)
react-spring 1.3.1 - 2.1.1Outdated
<p align="center"> <img src="https://i.imgur.com/QZownhg.png" width="240" /> </p>
change-emitter 0.1.2 - 0.1.6
Listen for changes. Like an event emitter that only emits a single event type. Really tiny.
notistack 0.1.3 - 0.9.2Outdated
Highly customizable notification snackbars (toasts) that can be stacked on top of each other
react-responsive 8.1.0 - 8.2.0Outdated
Media queries in react for responsive design
styled-system 5.0.15 - 5.1.5
Responsive, theme-based style props for building design systems with React
react-scroll 1.8.3 - 1.8.5Outdated
A scroll component for React.js
@loadable/component 5.15.0 - 5.15.2Outdated
React code splitting made easy.
ev-emitter 1.1.1Outdated
lil' event emitter
connected-react-router 6.1.0 - 6.9.3
A Redux binding for React Router v4 and v5
supasate
supasate
hex-rgb 4.3.0 - 5.0.0
Convert HEX color to RGBA
sindresorhus
sindresorhus
instantsearch.js 3.1.0 - 3.7.0Outdated
InstantSearch.js is a JavaScript library for building performant and instant search experiences with Algolia.
redux-actions 1.1.0 - 2.6.5Outdated
Flux Standard Action utlities for Redux
@formatjs/intl-utils 0.2.0 - 0.4.4Outdated
Smartly determine best unit for relative time format
get-size 2.0.3Outdated
measures element size
desandro
desandro
fizzy-ui-utils 2.0.7Outdated
UI utilities
desandro-matches-selector 2.0.0 - 2.0.1Outdated
matches/matchesSelector helper
imagesloaded 4.1.4Outdated
JavaScript is all like _You images done yet or what?_
outlayer 2.1.1
the brains and guts of a layout library
desandro
desandro
masonry-layout 4.2.0 - 4.2.2
Cascading grid layout library
mobile-detect 1.4.4Outdated
Device detection (phone, tablet, desktop, mobile grade, os, versions)
analytics 0.0.2Outdated
Lightweight analytics library for tracking events, page views, & identifying users. Works with any third party analytics provider via an extendable plugin system.
react-relay 1.6.0Outdated
A framework for building GraphQL-driven React applications.
exif-js 2.0.0 - 2.3.0
JavaScript library for reading EXIF image metadata
react-truncate 2.3.0 - 2.4.0
React component for truncating multi-line spans and adding an ellipsis
@lingui/react 3.0.0 - 3.0.3Outdated
React components for translations
rc-calendar 7.0.0 - 8.1.3Outdated
React Calendar
nuka-carousel 4.7.0 - 4.7.3Outdated
Pure React Carousel
scroll-behavior 0.9.7 - 0.11.0
Pluggable browser scroll management
taion
taion
@tannin/plural-forms 1.0.0 - 1.1.0
Compiles a function to compute the plural forms index for a given value
aduth
aduth
@researchgate/react-intersection-observer 1.2.0 - 1.3.3Outdated
React component for the Intersection Observer API
isotope-layout 3.0.3 - 3.0.6
Filter and sort magical layouts
lottie-api 1.0.0 - 1.0.2Outdated
A library to edit lottie-web animations dynamically
airnan
airnan
web-speech-cognitive-services 2.0.0 - 2.1.0Outdated
Polyfill Web Speech API with Cognitive Services Speech-to-Text service
react-dfp 0.20.0 - 0.21.0
A React implementation of the google [DFP](https://developers.google.com/doubleclick-gpt/reference "GPT Reference") API. This package is inspired in the awesome library [jquery.dfp](https://github.com/coop182/jquery.dfp.js), and aims to provide its same e
botframework-webchat-core 4.2.0 - 4.3.0Outdated
Core of botframework-webchat
+2
botframework
sgellock
cwhitten
prebid.js 0.17.0 - 0.34.22Outdated
Header Bidding Management Library
botframework-webchat-component 4.3.0 - 4.12.1Outdated
React component of botframework-webchat
+2
botframework
sgellock
cwhitten
react-film 3.0.0Outdated
React component for showing carousel just like a film strip
@wix/image-kit 1.19.0 - 1.27.0Outdated
Standard library for generating canonical URL's for optimally consuming images at Wix
+23
mayaco
itaytay
amitde007