Research
Security News
Malicious npm Packages Inject SSH Backdoors via Typosquatted Libraries
Socket’s threat research team has detected six malicious npm packages typosquatting popular libraries to insert SSH backdoors.
form_to_object
Advanced tools
Convert a HTML form to an a JavaScript plain object (multi-dimensional).
Convert HTML forms with all their fields and values to multidimensional JavaScript objects
As a npm package:
npm install form_to_object
import formToObject from 'form_to_object';
// or
const formToObject = require('form_to_object');
As a JS script:
<!-- Include minified script (~6kb) -->
<script src="build/formToObject.js"></script>
<!-- jsdelivr (CDN) -->
<script src="
https://cdn.jsdelivr.net/npm/form_to_object@3.0.0/build/bundle/formToObject.min.js
"></script>
formToObject('myFormId');
formToObject(document.getElementById('myFormId'));
Resulted value:
{
"saveSettings": "Save",
"name": "Serban",
"race": "orc",
"settings": {
"input": "keyboard",
"video": {
"resolution": "1024x768",
"vsync": "on"
}
}
}
Good to know:
<form>
fields are found, but they lack of name
attribute property, the result will be {}
(empty object).<form>
contains only disabled
fields, the result will be {}
(empty object). If you force includeDisabledFields
then key:value pairs will be returned.<form>
will throw an Error.Option name | Default | Description |
---|---|---|
includeEmptyValuedElements | boolean (default false ) | Return field names as keys with empty value "" instead of just ignoring them. |
w3cSuccessfulControlsOnly | boolean (default false ) | TBA, WIP |
selectNameWithEmptyBracketsReturnsArray | boolean (default true ) | <select> field names like name="select[]" always return an array [a,b] instead or array of arrays [0: [a,b]] . |
checkBoxNameWithEmptyBracketsReturnsArray | boolean (default true ) | <input> checkboxes with field names like name=checkbox[] always return an array [a,b] instead or array of arrays [0: [a,b]] . |
IE 8, Firefox 3.5, Chrome, Safari, Opera 10, every mobile browser.
FAQs
Convert a HTML form to an a JavaScript plain object (multi-dimensional).
We found that form_to_object demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
Security News
Socket’s threat research team has detected six malicious npm packages typosquatting popular libraries to insert SSH backdoors.
Security News
MITRE's 2024 CWE Top 25 highlights critical software vulnerabilities like XSS, SQL Injection, and CSRF, reflecting shifts due to a refined ranking methodology.
Security News
In this segment of the Risky Business podcast, Feross Aboukhadijeh and Patrick Gray discuss the challenges of tracking malware discovered in open source softare.