Gathering detailed insights and metrics for lodash.defaultsdeep
Gathering detailed insights and metrics for lodash.defaultsdeep
Gathering detailed insights and metrics for lodash.defaultsdeep
Gathering detailed insights and metrics for lodash.defaultsdeep
A modern JavaScript utility library delivering modularity, performance, & extras.
npm install lodash.defaultsdeep
Typescript
Module System
Node Version
NPM Version
99.8
Supply Chain
75.2
Quality
78
Maintenance
100
Vulnerability
99.6
License
JavaScript (97.22%)
HTML (2.24%)
EJS (0.53%)
Total Downloads
376,941,269
Last Day
57,714
Last Week
1,127,026
Last Month
4,934,581
Last Year
52,632,194
NOASSERTION License
60,709 Stars
7,666 Commits
7,068 Forks
819 Watchers
7 Branches
300 Contributors
Updated on Jul 04, 2025
Minified
Minified + Gzipped
Latest Version
4.6.1
Package Id
lodash.defaultsdeep@4.6.1
Size
13.03 kB
NPM Version
6.9.2
Node Version
12.2.0
Published on
Jul 10, 2019
Cumulative downloads
Total Downloads
Last Day
-19.9%
57,714
Compared to previous day
Last Week
-12.8%
1,127,026
Compared to previous week
Last Month
3.3%
4,934,581
Compared to previous month
Last Year
-9.7%
52,632,194
Compared to previous year
No dependencies detected.
The Lodash method _.defaultsDeep
exported as a Node.js module.
Using npm:
1$ {sudo -H} npm i -g npm 2$ npm i --save lodash.defaultsdeep
In Node.js:
1var defaultsDeep = require('lodash.defaultsdeep');
See the documentation or package source for more details.
9.1/10
Summary
Prototype Pollution in lodash
Affected Versions
< 4.6.1
Patched Versions
4.6.1
0/10
Summary
Prototype Pollution in lodash.defaultsdeep
Affected Versions
< 4.6.1
Patched Versions
4.6.1
0/10
Summary
Prototype Pollution in lodash.defaultsdeep
Affected Versions
< 4.6.1
Patched Versions
4.6.1
Reason
security policy file detected
Details
Reason
no binaries found in the repo
Reason
project is fuzzed
Details
Reason
license file detected
Details
Reason
Found 8/30 approved changesets -- score normalized to 2
Reason
0 commit(s) and 1 issue activity found in the last 90 days -- score normalized to 0
Reason
no effort to earn an OpenSSF best practices badge detected
Reason
SAST tool is not run on all commits -- score normalized to 0
Details
Reason
92 existing vulnerabilities detected
Details
Score
Last Scanned on 2025-06-30
The Open Source Security Foundation is a cross-industry collaboration to improve the security of open source software (OSS). The Scorecard provides security health metrics for open source projects.
Learn More