xhamster.com 22 packages

Last scanned on Oct 27 at 06:27 PM
handlebars 4.0.0 - 4.2.2VulnerableOutdated
Handlebars provides the power necessary to let you build semantic templates effectively with no frustration
License
MIT
Footprint
7 KB
Vulnerabilities
Arbitrary Code Execution in handlebars
Affected versions >=0 <3.0.8, >=4.0.0 <4.5.3
Denial of Service in handlebars
Affected versions >=4.0.0 <4.4.5
Arbitrary Code Execution in Handlebars
Affected versions >=0 <3.0.8, >=4.0.0 <4.5.3
Remote code execution in handlebars when compiling templates
Affected versions >=0 <4.7.7
Prototype Pollution in handlebars
Affected versions >=0 <4.7.7
Regular Expression Denial of Service in Handlebars
Affected versions >=4.0.0 <4.4.5
Prototype Pollution in handlebars
Affected versions >=0 <3.0.8, >=4.0.0 <4.5.3
Arbitrary Code Execution in handlebars
Affected versions >=0 <3.0.8, >=4.0.0 <4.5.2
Matched Modules
Version distribution in production
182
4.7.7
172
4.7.6
168
4.7.3
166
4.7.2
166
4.7.4
94
4.2.2
marked 0.8.1 - 0.8.2VulnerableOutdated
A markdown parser built for speed
next-auth 3.24.1 - 3.29.10VulnerableOutdated
Authentication for Next.js
next 6.0.0 - 7.0.3VulnerableOutdated
The React Framework
rauchg
timneutkens
vercel-release-bot
uuid 7.0.0 - 8.0.0Outdated
RFC4122 (v1, v4, and v5) UUIDs
@babel/runtime 7.13.6 - 7.13.7Outdated
babel's modular runtime helpers
+1
hzoo
existentialism
nicolo-ribaudo
core-js 2.6.12Outdated
Standard library
classnames 2.3.0 - 2.3.1Outdated
A simple utility for conditionally joining classNames together
graphql 14.0.0 - 14.7.0Outdated
A Query Language and Runtime which can target any service.
object.getownpropertydescriptors 2.0.0 - 2.1.4Outdated
ES2017 spec-compliant shim for `Object.getOwnPropertyDescriptors` that works in ES5.
crypto-browserify 1.0.9 - 2.0.0Outdated
implementation of crypto for the browser
+2
dcousens
ljharb
cwmma
lodash.keys 4.2.0
The lodash method `_.keys` exported as a module.
fp-ts 0.2.1 - 0.2.9Outdated
Functional programming in TypeScript
react-draggable 0.8.2 - 4.4.5Outdated
React draggable component
@datadog/browser-core 1.2.2 - 4.23.2Outdated
Datadog browser core utilities.
datadog
datadog
svelte 3.0.0 - 3.52.0Outdated
Cybernetically enhanced web apps
@fingerprintjs/fingerprintjs 3.0.1 - 3.3.6Outdated
Browser fingerprinting library with the highest accuracy and stability
chartist 1.0.0 - 1.2.1Outdated
Simple, responsive charts
lottie-api 1.0.0 - 1.0.2Outdated
A library to edit lottie-web animations dynamically
airnan
airnan
web-speech-cognitive-services 7.1.1 - 7.1.2Outdated
Polyfill Web Speech API with Cognitive Services Speech-to-Text service
react-dfp 0.3.0 - 0.3.3Outdated
A React implementation of the google [DFP](https://developers.google.com/doubleclick-gpt/reference "GPT Reference") API. This package is inspired in the awesome library [jquery.dfp](https://github.com/coop182/jquery.dfp.js), and aims to provide its same e
js-component-framework 2.0.0 - 2.0.2Outdated
A framework for configuring a JavaScript component and attaching it to a DOM element or collection of DOM elements, simplifying organization of DOM interactions on your website.