carousel-js
Advanced tools
Comparing version 3.0.0 to 3.0.1
{ | ||
"name": "carousel-js", | ||
"version": "3.0.0", | ||
"version": "3.0.1", | ||
"description": "Easily implement a dynamic carousel using minimal javascript. Supports Meteor, AngularJS, React, Polymer and any CSS library, e.g. Bootstrap. ", | ||
@@ -27,9 +27,25 @@ "repository": { | ||
], | ||
"browserify": { | ||
"transform": [ | ||
[ | ||
"babelify", | ||
{ | ||
"presets": [ | ||
"es2015" | ||
] | ||
} | ||
] | ||
] | ||
}, | ||
"main": "src/carousel.js", | ||
"dependencies": { | ||
"lodash": "^4.6.1", | ||
"module-js": "^5.4.1", | ||
"module-js": "^5.9.2", | ||
"promise": "^7.1.1" | ||
}, | ||
"devDependencies": { | ||
"babel-polyfill": "^6.7.4", | ||
"babel-preset-es2015": "^6.6.0", | ||
"babelify": "^7.3.0", | ||
"browserify": "^13.0.1", | ||
"build-tools": "^3.1.0", | ||
@@ -36,0 +52,0 @@ "sinon": "^1.17.3" |
Sorry, the diff of this file is too big to display
Sorry, the diff of this file is too big to display
Network access
Supply chain riskThis module accesses the network.
Found 1 instance in 1 package
Uses eval
Supply chain riskPackage uses eval() which is a dangerous function. This prevents the code from running in certain environments and increases the risk that the code may contain exploits or malicious behavior.
Found 1 instance in 1 package
Environment variable access
Supply chain riskPackage accesses environment variables, which may be a sign of credential stuffing or data theft.
Found 1 instance in 1 package
Filesystem access
Supply chain riskAccesses the file system, and could potentially read sensitive data.
Found 1 instance in 1 package
Uses eval
Supply chain riskPackage uses eval() which is a dangerous function. This prevents the code from running in certain environments and increases the risk that the code may contain exploits or malicious behavior.
Found 2 instances in 1 package
1254339
6
28669
9
18
Updatedmodule-js@^5.9.2