underscore
npm
pkg:npm/underscore
645 Dependabot PRs
9 days ago
461 repositories
15 repositories
Security Advisories
Arbitrary Code Execution in underscore
Underscore has unlimited recursion in _.flatten and _.isEqual, potential for DoS attack
Recent PRs
Bump the npm_and_yarn group across 1 directory with 30 updates
fadol83-lab/adam-lynch.github.io #1
chore(deps): bump the minor-and-patch group across 1 directory with 39 updates
UDA-EJIE/udaRUP #333
chore(deps): bump the minor-and-patch group across 1 directory with 37 updates
UDA-EJIE/udaRUP #331
chore(deps): bump the minor-and-patch group across 1 directory with 36 updates
UDA-EJIE/udaRUP #330
chore(deps): bump the minor-and-patch group across 1 directory with 35 updates
UDA-EJIE/udaRUP #329
build(deps): bump underscore and highlight.js
slievrly/fescar-group.github.io #12
chore(deps): bump the minor-and-patch group with 33 updates
UDA-EJIE/udaRUP #319
Bump the npm_and_yarn group across 1 directory with 18 updates
ArmorCode-Public-Test/NodeGoat #61
Bump the npm_and_yarn group across 1 directory with 17 updates
ArmorCode-Public-Test/NodeGoat #60
Update underscore requirement from ^1.13.6 to ^1.13.7 in /superset-frontend/plugins/legacy-preset-chart-deckgl
csronakpadaliya/superset-4.1.4 #37
Bump underscore from 1.8.3 to 1.13.7 in /backend
Wilcolab/Anythink-Market-t21wrnnq #6
Bump underscore from 1.8.3 to 1.12.1 in the npm_and_yarn group across 1 directory
Bump the npm_and_yarn group across 4 directories with 3 updates
Bump underscore from 1.13.6 to 1.13.7
daniel-2k/ioBroker.nanoleaf-lightpanels #171
Bump the npm_and_yarn group across 1 directory with 3 updates
raviqqe/sequelize-optimistic-locking #1
Bump the npm_and_yarn group across 1 directory with 10 updates
chore(deps): bump the npm_and_yarn group across 1 directory with 9 updates
Bump underscore from 1.9.1 to 1.13.7 in /periodic-test
jgeofil/actor-google-sheets #5
Bump underscore from 1.13.2 to 1.13.7
jgeofil/actor-google-sheets #2
chore(deps): update underscore requirement from ^1.13.6 to ^1.13.7 in /superset-frontend/plugins/legacy-preset-chart-deckgl
alx25/superset #51
Bump underscore from 1.11.0 to 1.13.7
City-of-Helsinki/aula-wp-theme #11
Bump the npm_and_yarn group across 5 directories with 43 updates
cp90-pixel/atom #12
Bump the npm_and_yarn group across 5 directories with 42 updates
cp90-pixel/atom #11
chore(deps): bump underscore from 1.9.2 to 1.13.7 in /frontend/server
customink/kubeflow-pipelines #2
chore(deps): bump the npm_and_yarn group across 4 directories with 23 updates
Bump underscore from 1.4.4 to 1.13.7
learningequality/kolibri #13726
Bump the npm_and_yarn group across 0 directory with 2 updates
larralapid/cv.larralapid.dev #2
Bump the npm_and_yarn group across 1 directory with 18 updates
Chukwuemeka-Test-Org/test-repo-0-174769878_herein #149
Bump the npm_and_yarn group across 1 directory with 4 updates
build(deps): bump the npm_and_yarn group across 1 directory with 41 updates
build(deps): bump the npm_and_yarn group across 1 directory with 42 updates
Bump underscore and azure-devops-node-api
TopperKain/process-migrator #5
Bump the npm_and_yarn group across 1 directory with 2 updates
Bump underscore from 1.10.2 to 1.13.7
zachhardesty7/connect-door #41
build(deps): bump the npm_and_yarn group across 1 directory with 15 updates
joffcrabtree/Leanplum-JavaScript-SDK #1
Update underscore requirement from ^1.12.1 to ^1.13.7 in /superset-frontend/plugins/legacy-preset-chart-deckgl
Bump the npm_and_yarn group across 1 directory with 13 updates
alexanderjensen-source/react-timeseries-charts #9
Bump the npm_and_yarn group across 1 directory with 14 updates
alexanderjensen-source/react-timeseries-charts #8
Bump the npm_and_yarn group across 1 directory with 13 updates
alexanderjensen-source/react-timeseries-charts #7
Bump the npm_and_yarn group across 1 directory with 13 updates
alexanderjensen-source/react-timeseries-charts #2
Bump the npm_and_yarn group across 1 directory with 11 updates
alexanderjensen-source/react-timeseries-charts #1
chore(deps): bump the npm_and_yarn group across 1 directory with 33 updates
build(deps-dev): bump underscore from 1.8.3 to 1.12.1 in /public/lib/lazy.js-0.5.1
glpi-project/glpi-inventory-plugin #716
Bump the npm_and_yarn group across 1 directory with 2 updates
joffcrabtree/woocommerce-customizer #1
Package Details
| Name: | underscore |
| Ecosystem: | npm |
| PURL Type: | npm |
| Package URL: | pkg:npm/underscore |
| JSON API: | View JSON |
Security Advisories
Package Information
JavaScript's functional programming helper library.
| Repository: | https://github.com/jashkenas/underscore |
| Homepage: | https://underscorejs.org |
| Latest Release: |
1.13.7
almost 2 years ago |
| Dependent Repos: | 738,210 |
| Dependent Packages: | 25,330 |
| Downloads: | 62,844,288 |
| Ranking: | Top 0.042% by dependent repos Top 0.0307% by downloads Top 0.0044% by dependent pkgs |