About
Community
www.netflix.com
59 packages
Last scanned on Nov 26 at 11:20 AM
Update
Name
Size
Popularity
Severity
urijs
1.19.0 - 1.19.8
Vulnerable
Outdated
URI.js is a Javascript library for working with URLs.
Script
https://assets.nflxext.com/web/ffe/wp/signup/nmhp/nmhpFrameworkClient.js.73b7d64060ba9ca55ce3.js
License
MIT
Footprint
38 KB
Vulnerabilities
Moderate
GHSA-gmv4-r438-p67f
Leading white space bypasses protocol validation
Affected versions >=0 <1.19.9
Moderate
GHSA-g694-m8vq-gv9h
URL Confusion When Scheme Not Supplied in medialize/uri.js
Affected versions >=0 <1.19.11
Moderate
GHSA-8h2f-7jc4-7m3m
Open Redirect in urijs
Affected versions >=0 <1.19.10
High
GHSA-3vjf-82ff-p4r3
Incorrect protocol extraction via \r, \n and \t characters
Affected versions >=0 <1.19.11
Matched Modules
Version distribution in production
61
1.19.11
43
1.19.1
42
1.19.0
42
1.19.2
42
1.19.3
42
1.19.4
Also used on 115 websites
netflix.com
64 packages
snapchat.com
69 packages
www.netflix.com
59 packages
airtable.com
39 packages
Repository
Homepage
More
uri
url
urn
uri mutation
url mutation
+13
rodneyrehm
next-auth
3.24.1 - 3.29.10
Vulnerable
Outdated
Authentication for Next.js
react
nodejs
oauth
jwt
oauth2
+5
next
7.0.0 - 7.0.3
Vulnerable
Outdated
The React Framework
debug
2.3.1 - 3.1.0
Outdated
Lightweight debugging utility for Node.js and the browser
debug
log
debugger
+1
ms
2.0.0
Outdated
Tiny millisecond conversion utility
+5
isarray
0.0.0 - 0.0.1
Outdated
Array#isArray for older browsers
browser
isarray
array
juliangruber
react-is
16.3.0 - 17.0.2
Outdated
Brand checking of React Elements.
react
+1
qs
6.11.0
Outdated
A querystring parser that supports nesting and arrays, with a depth limit
querystring
qs
query
url
parse
+1
@babel/runtime
7.18.0 - 7.20.0
Outdated
babel's modular runtime helpers
+1
get-intrinsic
1.1.3
Outdated
Get and robustly cache all JS language-level intrinsics at first require time
javascript
ecmascript
es
js
intrinsic
+2
ljharb
function-bind
1.1.0 - 1.1.1
Outdated
Implementation of Function.prototype.bind
function
bind
shim
es5
path-to-regexp
1.7.0 - 1.8.0
Outdated
Express style path to RegExp utility
express
regexp
route
routing
+2
cookie
0.1.4 - 0.4.2
Outdated
HTTP server cookie parsing and serialization
cookie
cookies
dougwilson
object-inspect
1.12.2
Outdated
string representations of objects in node and the browser
inspect
util.inspect
object
stringify
pretty
call-bind
1.0.2
Outdated
Robustly `.call.bind()` a function
javascript
ecmascript
es
js
callbind
+8
ljharb
has-symbols
1.0.2 - 1.0.3
Determine if the JS environment has Symbol support. Supports spec, or shams.
Symbol
symbols
typeof
sham
polyfill
+3
ljharb
rxjs
5.5.12
Outdated
Reactive Extensions for modern JavaScript
Rx
RxJS
ReactiveX
ReactiveExtensions
Streams
+5
@typescript-eslint/scope-manager
3.5.0 - 5.41.0
Outdated
TypeScript scope analyser for ESLint
eslint
typescript
estree
side-channel
1.0.4
Outdated
Store information about any JS value in a side channel. Uses WeakMap if available.
weakmap
map
side
channel
metadata
ljharb
lodash.merge
4.6.1 - 4.6.2
The Lodash method `_.merge` exported as a module.
lodash-modularized
merge
has
1.0.1 - 1.0.3
Outdated
Object.prototype.hasOwnProperty.call shortcut
tarruda
scheduler
0.15.0 - 0.23.0
Cooperative scheduler for the browser environment.
react
+1
prop-types
15.7.0 - 15.7.2
Outdated
Runtime type checking for React props and similar objects.
react
react
17.0.0 - 17.0.2
Outdated
React is a JavaScript library for building user interfaces.
react
+1
url
0.11.0
Outdated
The core `url` packaged standalone for use with Browserify.
parsing
url
analyze
hoist-non-react-statics
3.3.1 - 3.3.2
Copies non-react specific statics from a child component to a parent component
react
mridgway
querystring
0.2.0
Outdated
Node's querystring module for all engines.
commonjs
query
querystring
classnames
2.2.2 - 2.2.6
Outdated
A simple utility for conditionally joining classNames together
react
css
classes
classname
classnames
+2
stylis
4.0.0 - 4.0.5
Outdated
A Light–weight CSS Preprocessor
ramda
0.24.0 - 0.24.1
Outdated
A practical functional library for JavaScript programmers.
ramda
functional
utils
utilities
toolkit
+6
+5
core-js-pure
3.18.0 - 3.26.0
Outdated
Standard library
ES3
ES5
ES6
ES7
ES2015
+39
zloirock
@emotion/utils
1.0.0 - 1.2.0
Outdated
internal utils for emotion
+1
@emotion/serialize
1.0.2 - 1.1.1
Outdated
serialization utils for emotion
+1
react-fast-compare
3.1.0 - 3.2.0
Outdated
Fastest deep equal comparison for React. Great for React.memo & shouldComponentUpdate. Also really fast general-purpose deep comparison.
fast
equal
react
compare
shouldComponentUpdate
+1
+12
@storybook/theming
6.5.0 - 6.5.13
Outdated
Core Storybook Components
storybook
+6
@emotion/react
11.0.0 - 11.10.5
Outdated
> Simple styling in React.
+1
shallowequal
1.0.1 - 1.1.0
Like lodash isEqualWith but for shallow equal.
shallowequal
shallow
equal
isequal
compare
+1
dashed
react-redux
7.2.5 - 7.2.9
Outdated
Official React bindings for Redux
react
reactjs
redux
+2
@emotion/styled
11.0.0 - 11.10.5
Outdated
styled API for emotion
+1
compute-scroll-into-view
1.0.17
Outdated
The engine that powers scroll-into-view-if-needed
if-needed
scroll
scroll-into-view
scroll-into-view-if-needed
scrollIntoView
+3
stipsan
intl-messageformat
1.1.0 - 2.0.0
Outdated
Formats ICU Message strings with number, date, plural, and select placeholders to create localized messages.
i18n
intl
internationalization
localization
globalization
+4
+9
react-scripts
0.4.2
Outdated
Configuration and scripts for Create React App.
+1
@emotion/core
0.11.0 - 0.12.0
Outdated
+1
@datadog/browser-core
2.17.0 - 4.23.2
Outdated
Datadog browser core utilities.
datadog
react-bootstrap
0.30.2 - 0.33.1
Outdated
Bootstrap 5 components built with React
bootstrap
react
component
components
ecosystem-react
+1
create-react-class
15.7.0
Legacy API for creating React components.
react
react-helmet-async
1.0.7 - 1.0.9
Outdated
Thread-safe Helmet for React 16+ and friends
wonderboymusic
rc-motion
2.2.0 - 2.4.5
Outdated
React lifecycle controlled motion library
react
react-component
react-motion
motion
antd
+1
+1
intl-messageformat-parser
1.2.0
Outdated
Parses ICU Message strings into an AST via JavaScript.
i18n
intl
internationalization
localization
globalization
+4
+3
emotion
9.0.0 - 10.0.27
Outdated
The Next Generation of CSS-in-JS.
styles
emotion
react
css
css-in-js
+2
@chakra-ui/theme-tools
1.0.0 - 1.2.3
Outdated
Set of helpers that makes theming and styling easier
theme
theming
color
utilities
sweetalert2
6.2.5 - 7.8.3
Outdated
A beautiful, responsive, customizable and accessible (WAI-ARIA) replacement for JavaScript's popup boxes, supported fork of sweetalert
sweetalert
sweetalert2
alert
modal
popup
+4
@chakra-ui/theme
2.1.0 - 2.1.3
Outdated
The default theme for chakra components
theme
theming
ui mode
ui
jsonp
0.2.0 - 0.2.1
A sane JSONP implementation.
react-with-direction
1.0.0 - 1.4.0
Components to provide and consume RTL or LTR direction in React
+4
react-native-web
0.13.0 - 0.18.9
Outdated
React Native for Web
react
react-component
react-native
web
necolas
lottie-api
1.0.0 - 1.0.2
Outdated
A library to edit lottie-web animations dynamically
airnan
react-amphtml
3.1.0 - 4.0.2
Use amphtml components inside your React apps easily!
react
amphtml
dfrankland
@quintype/components
1.6.0 - 1.34.1
Outdated
Components to help build Quintype Node.js apps
quintype
+27
Popular search queries
webpack.js.org
url
react-scripts
react
lottie-api
react-helmet-async
+7 packages
github.com
color-convert
@headlessui/react
hoist-non-react-statics
reactstrap
lit-html
+60 packages
pinterest.com
libphonenumber-js
react-relay
jss
@babel/runtime
redux-form
+50 packages
Popular packages
react
React is a JavaScript library for building user interfaces.
+6 634 websites
core-js
Standard library
+10 238 websites
es5-ext
ECMAScript extensions and shims
+10 229 websites
@babel/runtime
babel's modular runtime helpers
+8 352 websites
lodash
Lodash modular utilities.
+4 826 websites
axios
Promise based HTTP client for the browser and node.js
+4 742 websites