yarnpkg.com 127 packages

Last scanned on Oct 27 at 07:05 PM
algoliasearch-helper 3.1.1VulnerableOutdated
Helper for implementing advanced search features with algolia
License
MIT
Footprint
41 KB
Vulnerabilities
Prototype Pollution in algoliasearch-helper
Affected versions >=0 <3.6.2
Matched Modules
Version distribution in production
59
2.28.1
47
3.11.1
44
3.8.2
42
3.7.0
36
2.26.1
10
3.1.1
+2
jasonberry
dhaya.b
instantsearch-bot
marked 0.6.3VulnerableOutdated
A markdown parser built for speed
highlight.js 9.18.3VulnerableOutdated
Syntax highlighting with language autodetection.
es5-ext 0.10.1 - 0.10.62VulnerableOutdated
ECMAScript extensions and shims
escape-string-regexp 1.0.0 - 1.0.5Outdated
Escape RegExp special characters
uuid 7.0.2 - 8.0.0Outdated
RFC4122 (v1, v4, and v5) UUIDs
react-is 16.3.0 - 16.13.1Outdated
Brand checking of React Elements.
qs 6.10.1Outdated
A querystring parser that supports nesting and arrays, with a depth limit
buffer 5.7.0 - 5.7.1Outdated
Node.js Buffer API, for the browser
is-glob 2.0.1Outdated
Returns `true` if the given string looks like a glob pattern or an extglob pattern. This makes it easy to create code that only uses external modules like node-glob when necessary, resulting in much faster code execution and initialization time, and a bet
regenerator-runtime 0.13.4 - 0.13.5Outdated
Runtime for Regenerator-compiled generator and async functions.
bytes 3.1.0Outdated
Utility to parse a string bytes to bytes and vice-versa
@babel/runtime 7.15.4 - 7.16.3Outdated
babel's modular runtime helpers
+1
hzoo
existentialism
nicolo-ribaudo
get-intrinsic 1.1.0 - 1.1.1Outdated
Get and robustly cache all JS language-level intrinsics at first require time
function-bind 1.1.0 - 1.1.1Outdated
Implementation of Function.prototype.bind
lodash 4.17.21
Lodash modular utilities.
call-bind 1.0.2Outdated
Robustly `.call.bind()` a function
object-inspect 1.10.3Outdated
string representations of objects in node and the browser
is-extglob 1.0.0Outdated
Returns true if a string has an extglob.
has-symbols 1.0.2 - 1.0.3
Determine if the JS environment has Symbol support. Supports spec, or shams.
ieee754 1.1.0 - 1.2.1
Read/write IEEE754 floating point numbers from/to a Buffer or array-like object
side-channel 1.0.4Outdated
Store information about any JS value in a side channel. Uses WeakMap if available.
indent-string x.x.x
Indent each line in a string
base64-js 1.3.0 - 1.5.1
Base64 encoding/decoding in pure JS
events 1.0.0 - 1.1.1Outdated
Node's event emitter for all engines.
is-buffer 1.1.4 - 1.1.6Outdated
Determine if an object is a Buffer
core-js 2.6.11Outdated
Standard library
clone 2.1.2
deep cloning of objects and arrays
pvorb
pvorb
has 1.0.1 - 1.0.3Outdated
Object.prototype.hasOwnProperty.call shortcut
tarruda
tarruda
scheduler 0.19.1Outdated
Cooperative scheduler for the browser environment.
dedent 0.7.0Outdated
A string tag that strips indentation from multi-line strings. ⬅️
prop-types 15.7.0 - 15.7.2Outdated
Runtime type checking for React props and similar objects.
react 16.13.1Outdated
React is a JavaScript library for building user interfaces.
react-dom 16.13.1Outdated
React package for working with the DOM.
performance-now 0.1.3 - 2.1.0
Implements performance.now (based on process.hrtime).
meryn
meryn
date-fns 2.14.0 - 2.16.0Outdated
Modern JavaScript date utility library
kossnocorp
kossnocorp
@emotion/memoize 0.6.1 - 0.7.4Outdated
emotion's memoize utility
+1
emmatown
tkh44
emotion-release-bot
hoist-non-react-statics 3.3.1 - 3.3.2
Copies non-react specific statics from a child component to a parent component
mridgway
mridgway
invariant 2.2.3 - 2.2.4
invariant
@emotion/unitless 0.7.2 - 0.8.0Outdated
An object of css properties that don't accept values with units
+1
emmatown
tkh44
emotion-release-bot
classnames 2.2.6Outdated
A simple utility for conditionally joining classNames together
stylis 4.0.0 - 4.0.5Outdated
A Light–weight CSS Preprocessor
andarist
thysultan
@emotion/is-prop-valid 1.1.0Outdated
A function to check whether a prop is valid for HTML and SVG elements
+1
emmatown
tkh44
emotion-release-bot
@emotion/hash 0.8.0 - 0.9.0Outdated
A MurmurHash2 implementation
+1
emmatown
tkh44
emotion-release-bot
react-transition-group 1.0.0 - 1.2.1Outdated
A react component toolset for managing animations
dom-helpers 3.4.0Outdated
tiny modular DOM lib for ie9+
@emotion/serialize 0.11.14 - 0.11.16Outdated
serialization utils for emotion
+1
emmatown
tkh44
emotion-release-bot
@emotion/utils 0.0.4 - 0.11.3Outdated
internal utils for emotion
+1
emmatown
tkh44
emotion-release-bot
memoize-one 5.1.0 - 5.1.1Outdated
A memoization library which only remembers the latest invocation
@emotion/cache x.x.x
emotion's cache
+1
emmatown
tkh44
emotion-release-bot
@emotion/sheet 0.9.1 - 0.9.4Outdated
emotion's stylesheet
+1
emmatown
tkh44
emotion-release-bot
lodash-es 4.17.21
Lodash exported as ES modules.
react-fast-compare 3.1.0 - 3.2.0Outdated
Fastest deep equal comparison for React. Great for React.memo & shouldComponentUpdate. Also really fast general-purpose deep comparison.
warning 2.0.0 - 3.0.0Outdated
A mirror of Facebook's Warning
traverse 0.6.1 - 0.6.7Outdated
traverse and transform objects by visiting every node on a recursive walk
@angular-devkit/core 0.4.0 - 0.4.3Outdated
Angular DevKit - Core Utility Library
@emotion/react 11.0.0 - 11.10.5Outdated
> Simple styling in React.
+1
emmatown
tkh44
emotion-release-bot
babel-runtime 6.18.0 - 6.26.0
babel selfContained runtime
hzoo
loganfsmyth
existentialism
shallowequal 1.0.1 - 1.1.0
Like lodash isEqualWith but for shallow equal.
ufo 0.5.2 - 0.8.6Outdated
URL utils for humans
pi0
pi0
history 4.6.0 - 4.7.2Outdated
Manage session history with JavaScript
md5 2.2.1 - 2.3.0
js function for hashing messages with MD5
coolaj86
pvorb
raf 3.2.0 - 3.4.1
requestAnimationFrame polyfill for node and the browser
crypt 0.0.0 - 0.0.2
utilities for encryption and hashing
pvorb
pvorb
charenc 0.0.0 - 0.0.2
character encoding utilities
pvorb
pvorb
@emotion/styled 11.0.0 - 11.10.5Outdated
styled API for emotion
+1
emmatown
tkh44
emotion-release-bot
resize-observer-polyfill 1.5.1
A polyfill for the Resize Observer API
mitt 1.1.3 - 1.2.0Outdated
Tiny 200b functional Event Emitter / pubsub.
@mdx-js/react 1.6.2 - 1.6.22Outdated
React context for MDX
copy-to-clipboard 3.3.0 - 3.3.1Outdated
Copy stuff into clipboard using JS with fallbacks
toggle-selection 1.0.5 - 1.0.6
Toggle current selected content in browser
react-select 3.1.0Outdated
A Select control built with and for ReactJS
@emotion/stylis 0.8.2 - 0.8.5
A custom build of Stylis
+1
emmatown
tkh44
emotion-release-bot
compute-scroll-into-view 1.0.15 - 1.0.16Outdated
The engine that powers scroll-into-view-if-needed
tinycolor2 1.4.0 - 1.4.2Outdated
Fast Color Parsing and Manipulation
rc-util 4.20.3 - 4.21.0Outdated
Common Utils For React Component
react-scripts 0.4.2Outdated
Configuration and scripts for Create React App.
+1
fb
timer
iansu
@emotion/css 10.0.0 - 10.0.27Outdated
The Next Generation of CSS-in-JS.
scroll-into-view-if-needed 2.2.25 - 2.2.28Outdated
Ponyfill for upcoming Element.scrollIntoView() APIs like scrollMode: if-needed, behavior: smooth and block: center
xss 0.3.4 - 1.0.6Outdated
Sanitize untrusted HTML (to prevent XSS) with a configuration specified by a Whitelist
cssfilter 0.0.10
Sanitize untrusted CSS with a configuration specified by a Whitelist. 根据白名单过滤CSS
@emotion/core 0.13.0 - 10.3.1Outdated
+1
emmatown
tkh44
emotion-release-bot
react-icons 3.11.0Outdated
SVG React icons of popular icon packs using ES6 imports
+2
nwwells
tusbar
gorangajic
react-input-autosize 2.2.2Outdated
Auto-resizing Input Component for React
react-side-effect 2.1.0 - 2.1.2
Create components whose prop changes map to a global side effect
react-helmet 6.0.0 - 6.1.0
A document head manager for React
algoliasearch x.x.x
A fully-featured and blazing-fast JavaScript API client to interact with Algolia API.
+7
millotp
shortcuts
haroenv
rc-menu 8.0.3Outdated
menu ui component for react
rc-trigger 4.0.2Outdated
base abstract trigger component for react
rc-dropdown 3.0.0 - 3.0.2Outdated
dropdown ui component for react
rc-align 3.0.0 - 4.0.9Outdated
align ui component for react
react-tooltip 4.2.6 - 4.2.7Outdated
react tooltip component
dom-align 1.11.0 - 1.11.1Outdated
Align DOM Node Flexibly
add-dom-event-listener 1.0.0 - 1.1.0
add dom event listener. normalize ie and others
yiminghe
yiminghe
rc-animate 2.10.1 - 2.10.3Outdated
css-transition ui component for react
@loadable/component 5.10.3 - 5.12.0Outdated
React code splitting made easy.
react-easy-swipe 0.0.5 - 0.0.22Outdated
React easy swipe - Easy handler for common touch operations
react-responsive-carousel 3.2.22Outdated
React Responsive Carousel
chain-function 1.0.0 - 1.0.1
chain a bunch of functions together into a single call
monastic.panic
monastic.panic
react-spinners 0.8.2 - 0.9.0Outdated
A collection of react loading spinners
gatsby-legacy-polyfills 1.14.0Outdated
Polyfills for legacy browsers
+3
kathmbeck
pieh
tylerbarnes
react-instantsearch-core 6.6.0Outdated
⚡ Lightning-fast search for React, by Algolia
gatsby 3.14.0 - 3.14.6Outdated
Blazing fast modern site generator for React
bootstrap-vue 1.0.0 - 2.15.0Outdated
With more than 85 components, over 45 available plugins, several directives, and 1000+ icons, BootstrapVue provides one of the most comprehensive implementations of the Bootstrap v4 component and grid system available for Vue.js v2.6, complete with extens
gatsby-link 3.7.0 - 3.14.0Outdated
An enhanced Link component for Gatsby sites with support for resource prefetching
gatsby-react-router-scroll 4.5.0 - 5.15.0Outdated
React Router scroll management forked from https://github.com/ytase/react-router-scroll for Gatsby
shallow-compare 1.2.1 - 1.2.2
Stand alone shallowCompare for use in libraries that support shouldComponentUpdate
@gatsbyjs/reach-router 1.3.5 - 1.3.9Outdated
Gatsby's fork to modernize reach-router
gatsby-plugin-manifest 2.4.31 - 4.3.0Outdated
Gatsby plugin which adds a manifest.webmanifest to make sites progressive web apps
react-instantsearch-dom 6.0.0 - 6.10.0Outdated
⚡ Lightning-fast search for React DOM, by Algolia
@rehooks/component-size 1.0.3
React hook for component-size
gatsby-plugin-mdx 1.2.39 - 3.20.0Outdated
MDX integration for Gatsby
gatsby-plugin-catch-links 2.3.14 - 4.15.0Outdated
Intercepts local links from markdown and other non-react pages and does a client-side pushState to avoid the browser having to refresh the page.
unescape-html x.x.x
@iconify/react x.x.x
@iconify/icons-logos x.x.x
react-json-doc x.x.x
prism-react-renderer x.x.x
ansi-html x.x.x
react-use-localstorage x.x.x
mini-store x.x.x
dag-map x.x.x
is-invalid-path x.x.x
is-valid-path x.x.x
json-schema-deref-sync x.x.x
valid-url x.x.x
@haroenv/react-sparklines x.x.x