Skip to content
Tools / anchr / Dependencies

Dependency Analysis

anchr

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

51% Freshness
1249 Dependencies
482 Outdated
0 Stale
6.4 Avg Behind

Dependency List

Latest release 3.5.2

Dependency Type Current Latest Behind CVE License
node-forge
npm
Transitive 0.10.0 13 high BSD-3-Clause OR GPL-2.0 OR (BSD-3-Clause AND GPL-2.0)
jszip
npm
Transitive 3.10.0 GPL-3.0-or-later OR MIT OR (GPL-3.0-or-later AND MIT)

License Breakdown

MIT 946
ISC 118
Apache-2.0 50
BSD-2-Clause 45
BSD-3-Clause 25
CC0-1.0 AND MIT 11
MPL-2.0 10
CC-BY-SA-4.0 AND ISC 4
Unknown 4
BSD-2-Clause AND BSD-3-Clause 3
CC0-1.0 3
AFL-2.1 AND AFL-3.0 AND BSD-3-Clause 2
Apache-2.0 AND BSD-2-Clause 2
Apache-2.0 AND MIT 2
BSD-2-Clause AND BSD-2-Clause-Views 2
BSD-3-Clause AND ISC 2
BlueOak-1.0.0 2
ISC AND MIT 2
MIT AND MIT-0 2
Python-2.0 2
Unlicense 2
0BSD 1
Apache-2.0 OR BSD-2-Clause OR MIT OR (Apache-2.0 AND BSD-2-Clause) OR (Apache-2.0 AND MIT) OR (BSD-2-Clause AND MIT) 1
BSD-3-Clause AND MIT 1
BSD-3-Clause OR GPL-2.0 OR (BSD-3-Clause AND GPL-2.0) 1
CC-BY-4.0 1
GPL-3.0-or-later OR MIT OR (GPL-3.0-or-later AND MIT) 1
JSON AND MIT 1
MIT AND Zlib 1
Zlib 1

CVE Severity

critical 4
high 26
medium 19
low 7
unknown 0

Beta — feedback welcome: [email protected]