
Research
npm Malware Targets Telegram Bot Developers with Persistent SSH Backdoors
Malicious npm packages posing as Telegram bot libraries install SSH backdoors and exfiltrate data from Linux developer machines.
@babel/runtime-corejs2
Advanced tools
babel's modular runtime helpers with core-js@2 polyfilling
@babel/runtime-corejs2 is a library that provides a runtime for Babel that includes polyfills for ECMAScript features using core-js@2. It helps to avoid code duplication and reduce the size of the compiled code by providing helpers and polyfills as separate modules.
Polyfilling ECMAScript features
This feature allows you to polyfill ECMAScript features like Map and Set, ensuring compatibility with older environments that do not support these features natively.
import 'core-js/es6/map';
import 'core-js/es6/set';
const map = new Map();
const set = new Set();
Helper functions
This feature provides helper functions like classCallCheck to ensure that classes are instantiated correctly, which is useful for maintaining compatibility with older JavaScript environments.
import _classCallCheck from '@babel/runtime-corejs2/helpers/classCallCheck';
class MyClass {
constructor() {
_classCallCheck(this, MyClass);
}
}
Async/Await support
This feature provides support for async/await syntax by transforming it into generator functions, which are compatible with older JavaScript environments.
import _asyncToGenerator from '@babel/runtime-corejs2/helpers/asyncToGenerator';
import regeneratorRuntime from 'regenerator-runtime';
const asyncFunction = _asyncToGenerator(function* () {
const result = yield fetch('https://api.example.com/data');
return result.json();
});
asyncFunction().then(data => console.log(data));
@babel/runtime is a similar package that provides the same runtime helpers and polyfills but uses core-js@3 instead of core-js@2. It is more up-to-date and recommended for new projects.
core-js is a modular standard library for JavaScript that includes polyfills for ECMAScript features. It can be used directly to polyfill features without relying on Babel's runtime.
regenerator-runtime is a runtime library for transforming generator functions and async/await syntax. It is often used in conjunction with Babel to provide support for these features in older environments.
babel's modular runtime helpers with core-js@2 polyfilling
See our website @babel/runtime-corejs2 for more information.
Using npm:
npm install --save @babel/runtime-corejs2
or using yarn:
yarn add @babel/runtime-corejs2
v7.27.0 (2025-03-24)
babel-helper-create-class-features-plugin
, babel-traverse
, babel-types
traverseFast
to exit early (@liuxingbaoyu)babel-parser
, babel-types
babel-generator
babel-parser
, babel-template
allowYieldOutsideFunction
to parser (@liuxingbaoyu)babel-plugin-transform-typescript
, babel-traverse
upToScope
parameter to hasBinding
(@liuxingbaoyu)babel-parser
babel-types
babel-helper-create-class-features-plugin
, babel-plugin-transform-class-properties
babel-traverse
scope.crawl()
(@liuxingbaoyu)babel-helpers
, babel-preset-typescript
, babel-runtime-corejs2
, babel-runtime-corejs3
, babel-runtime
babel-cli
@babel/cli
generates duplicate inline source maps (@liuxingbaoyu)babel-plugin-transform-named-capturing-groups-regex
, babel-types
babel-types
@babel/types
(@liuxingbaoyu)babel-helper-create-regexp-features-plugin
FAQs
babel's modular runtime helpers with core-js@2 polyfilling
The npm package @babel/runtime-corejs2 receives a total of 516,190 weekly downloads. As such, @babel/runtime-corejs2 popularity was classified as popular.
We found that @babel/runtime-corejs2 demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 4 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Malicious npm packages posing as Telegram bot libraries install SSH backdoors and exfiltrate data from Linux developer machines.
Security News
pip, PDM, pip-audit, and the packaging library are already adding support for Python’s new lock file format.
Product
Socket's Go support is now generally available, bringing automatic scanning and deep code analysis to all users with Go projects.