Skip to content
Tools / autogen / Dependencies

Dependency Analysis

autogen

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

37% Freshness
2334 Dependencies
1175 Outdated
0 Stale
34.3 Avg Behind

Dependency List

Latest release python-v0.7.5

Dependency Type Current Latest Behind CVE License
langchain-core
pypi
Direct 0.3.32 1.4.0 124 behind 5 critical MIT
llama-index
pypi
Direct 0.12.14 0.14.22 66 behind 3 critical MIT
semantic-kernel
pypi
Direct 1.19.0 1.43.0 49 behind 2 critical MIT
form-data
npm
Transitive 4.0.3 4.0.5 5 behind 1 critical MIT
nltk
pypi
Direct 3.9.1 3.9.4 3 behind 7 critical Apache-2.0
h11
pypi
Direct 0.14.0 0.16.0 2 behind 1 critical MIT
torch
pypi
Direct 2.5.1 2.12.0 Current 3 critical Unknown
llama-index-core
pypi
Direct 0.12.14 0.14.22 82 behind 6 high MIT
google-cloud-aiplatform
pypi
Direct 1.79.0 1.155.0 81 behind 1 high Apache-2.0
immutable
npm
Transitive 3.7.6 5.1.6 52 behind 1 high BSD-3-Clause AND LicenseRef-scancode-facebook-patent-rights-2
chainlit
pypi
Direct 2.0.603 2.11.1 47 behind 2 high Apache-2.0
minimatch
npm
Transitive 9.0.5 10.2.5 36 behind 3 high ISC
setuptools
pypi
Direct 75.8.0 82.0.1 35 behind 1 high MIT
langgraph-checkpoint
pypi
Direct 2.0.10 4.1.1 33 behind 2 high MIT
starlette
pypi
Direct 0.41.3 1.2.1 29 behind 2 high BSD-3-Clause
mcp
pypi
Direct 1.12.1 1.27.2 27 behind 1 high MIT AND Python-2.0
axios
npm
Transitive 1.9.0 1.17.0 25 behind 17 high MIT
cryptography
pypi
Direct 44.0.0 48.0.0 21 behind 3 high Apache-2.0 OR BSD-3-Clause OR (Apache-2.0 AND BSD-3-Clause)
langchain-community
pypi
Direct 0.3.16 0.4.2 20 behind 1 high MIT
svgo
npm
Transitive 2.8.0 4.0.1 19 behind 1 high MIT
azure-core
pypi
Direct 1.32.0 1.41.0 13 behind 1 high MIT
glob
npm
Transitive 10.4.5 13.0.6 13 behind 1 high ISC
langchain-text-splitters
pypi
Direct 0.3.5 1.1.2 13 behind 2 high MIT
orjson
pypi
Direct 3.10.15 3.11.9 13 behind 1 high Apache-2.0 AND MIT
llama-index-cli
pypi
Direct 0.4.0 0.5.7 12 behind 1 high MIT
python-multipart
pypi
Direct 0.0.18 0.0.30 12 behind 3 high Apache-2.0
lxml
pypi
Direct 5.3.0 6.1.1 10 behind 1 high BSD-2-Clause AND BSD-3-Clause
picomatch
npm
Transitive 2.3.1 4.0.4 9 behind 2 high MIT
tar-fs
npm
Transitive 3.0.9 3.1.2 8 behind 1 high MIT
tornado
pypi
Direct 6.4.2 6.5.6 8 behind 4 high Apache-2.0
urllib3
pypi
Direct 2.3.0 2.7.0 7 behind 5 high MIT
gitpython
pypi
Direct 3.1.44 3.1.50 6 behind 4 high BSD-3-Clause
serialize-javascript
npm
Transitive 6.0.2 7.0.5 6 behind 2 high BSD-3-Clause
path-to-regexp
npm
Transitive 0.1.12 8.4.2 5 behind 1 high MIT
flatted
npm
Transitive 3.3.3 3.4.2 4 behind 2 high ISC
jupyter-core
pypi
Direct 5.7.2 5.9.1 4 behind 1 high BSD-3-Clause
mako
pypi
Direct 1.3.8 1.3.12 4 behind 2 high LicenseRef-scancode-proprietary-license AND MIT
pyjwt
pypi
Direct 2.10.1 2.13.0 4 behind 1 high MIT
fast-uri
npm
Transitive 3.0.6 3.1.2 3 behind 2 high BSD-3-Clause
lodash
npm
Transitive 4.17.21 4.18.1 3 behind 3 high CC0-1.0 AND MIT
multer
npm
Transitive 2.0.1 2.1.1 3 behind 4 high MIT
socket.io-parser
npm
Transitive 4.2.4 4.2.6 3 behind 1 high MIT
pyasn1
pypi
Direct 0.6.1 0.6.3 2 behind 2 high BSD-2-Clause
pdfminer-six
pypi
Direct 20240706 20260107.0.0 2 high Unknown
@parcel/reporter-dev-server
npm
Transitive 2.8.3 2.16.4 386 behind 1 medium MIT
langsmith
pypi
Direct 0.3.2 0.8.9 186 behind 1 medium MIT
langgraph
pypi
Direct 0.2.68 1.2.4 117 behind 1 medium MIT
ajv
npm
Transitive 6.12.6 8.20.0 67 behind 1 medium MIT
transformers
pypi
Direct 4.48.1 5.10.1 60 behind 11 medium Apache-2.0
file-type
npm
Transitive 16.5.4 22.0.1 41 behind 1 medium MIT
pypdf
pypi
Direct 5.2.0 6.12.2 40 behind 22 medium BSD-2-Clause
qs
npm
Transitive 6.13.0 6.15.2 35 behind 2 medium BSD-3-Clause
streamlit
pypi
Direct 1.41.1 1.58.0 31 behind 1 medium Apache-2.0
filelock
pypi
Direct 3.17.0 3.29.1 22 behind 2 medium Unlicense
fonttools
pypi
Direct 4.55.7 4.63.0 20 behind 1 medium Apache-2.0 AND BSD-3-Clause AND MIT AND OFL-1.1
marshmallow
pypi
Direct 3.26.0 4.3.0 13 behind 1 medium BSD-3-Clause AND MIT
brace-expansion
npm
Transitive 2.0.2 5.0.6 11 behind 1 medium MIT
postcss
npm
Direct 8.5.5 8.5.15 10 behind 1 medium MIT
python-socketio
pypi
Direct 5.12.1 5.16.2 10 behind 1 medium MIT
requests
pypi
Direct 2.32.3 2.34.2 8 behind 2 medium Apache-2.0
yaml
npm
Transitive 2.8.0 2.9.0 8 behind 1 medium ISC
js-yaml
npm
Transitive 3.14.1 4.2.0 5 behind 1 medium MIT
python-dotenv
pypi
Direct 1.0.1 1.2.2 5 behind 1 medium BSD-2-Clause AND BSD-3-Clause
werkzeug
pypi
Direct 3.1.3 3.1.8 5 behind 3 medium BSD-2-Clause AND BSD-3-Clause
mammoth
pypi
Direct 1.9.0 1.12.0 4 behind 1 medium BSD-2-Clause
follow-redirects
npm
Transitive 1.15.9 1.16.0 3 behind 1 medium MIT
jinja2
pypi
Direct 3.1.5 3.1.6 1 behind 1 medium BSD-2-Clause AND BSD-3-Clause
mdast-util-to-hast
npm
Transitive 13.2.0 13.2.1 1 behind 1 medium MIT
diskcache
pypi
Direct 5.6.3 5.6.3 Current 1 medium Apache-2.0
pip
pypi
Direct 25.0 26.1.2 4 medium MIT
langchain-openai
pypi
Direct 0.3.2 1.2.2 64 behind 1 low MIT
mem0ai
pypi
Direct 0.1.104 2.0.4 36 behind 1 low Apache-2.0
webpack
npm
Transitive 5.98.0 5.107.2 33 behind 2 low MIT
diff
npm
Transitive 5.2.0 9.0.0 15 behind 1 low BSD-3-Clause
tmp
npm
Transitive 0.2.3 0.2.7 4 behind 1 low MIT
flask
pypi
Direct 3.1.0 3.1.3 3 behind 2 low BSD-2-Clause AND BSD-3-Clause
pygments
pypi
Direct 2.19.1 2.20.0 2 behind 1 low BSD-2-Clause
on-headers
npm
Transitive 1.0.2 1.1.0 1 behind 1 low MIT

License Breakdown

MIT 1660
Unknown 174
Apache-2.0 144
ISC 96
BSD-3-Clause 56
BSD-2-Clause 52
BSD-2-Clause AND BSD-3-Clause 46
Apache-2.0 AND MIT 13
LicenseRef-scancode-generic-cla AND MIT 7
CC0-1.0 AND MIT 5
0BSD 4
MPL-2.0 4
Unlicense 4
Apache-2.0 AND BSD-2-Clause 3
BSD-3-Clause AND MIT 3
BlueOak-1.0.0 3
Apache-2.0 AND LicenseRef-scancode-public-domain 2
BSD-3-Clause AND LicenseRef-scancode-facebook-patent-rights-2 2
CC0-1.0 2
ISC AND MIT 2
LicenseRef-scancode-proprietary-license AND MIT 2
MIT AND Python-2.0 2
PSF-2.0 2
0BSD AND BSD-2-Clause AND BSD-3-Clause AND BSD-4-Clause AND LicenseRef-scancode-python-cwi AND LicenseRef-scancode-secret-labs-2011 AND LicenseRef-scancode-unicode AND MIT AND Python-2.0 1
0BSD AND BSD-3-Clause AND LicenseRef-scancode-other-permissive AND MIT AND Python-2.0 1
0BSD AND BSD-3-Clause AND LicenseRef-scancode-unknown-license-reference AND PSF-2.0 AND Python-2.0 1
Apache-2.0 AND BSD-3-Clause 1
Apache-2.0 AND BSD-3-Clause AND LicenseRef-scancode-unknown-license-reference 1
Apache-2.0 AND BSD-3-Clause AND MIT AND OFL-1.1 1
Apache-2.0 AND BSD-3-Clause AND MPL-2.0 1
Apache-2.0 AND LicenseRef-scancode-generic-cla 1
Apache-2.0 AND LicenseRef-scancode-public-domain AND Python-2.0 1
Apache-2.0 AND MIT AND MPL-2.0 1
Apache-2.0 AND MPL-2.0 1
Apache-2.0 AND Python-2.0 1
Apache-2.0 OR (Apache-2.0 AND MIT) 1
Apache-2.0 OR BSD-2-Clause OR MIT OR (Apache-2.0 AND BSD-2-Clause) OR (Apache-2.0 AND MIT) OR (BSD-2-Clause AND MIT) 1
Apache-2.0 OR BSD-3-Clause OR (Apache-2.0 AND BSD-3-Clause) 1
Artistic-1.0-Perl OR GPL-1.0-only OR GPL-2.0-or-later 1
BSD-2-Clause AND BSD-2-Clause-Views 1
BSD-2-Clause AND BSD-2-Clause-Views AND BSD-3-Clause 1
BSD-2-Clause AND BSD-3-Clause AND GPL-1.0-or-later 1
BSD-2-Clause AND BSD-3-Clause AND GPL-1.0-or-later AND GPL-2.0-only AND MIT 1
BSD-2-Clause AND BSD-3-Clause AND LGPL-2.0-or-later AND MIT 1
BSD-2-Clause AND Python-2.0 1
BSD-3-Clause AND LicenseRef-scancode-protobuf 1
BSD-3-Clause AND LicenseRef-scancode-unknown-license-reference 1
CAL-1.0 AND LicenseRef-scancode-unknown AND PSF-2.0 AND Python-2.0 1
CC-BY-4.0 1
CC-BY-4.0 AND LicenseRef-scancode-public-domain AND MIT 1
CNRI-Python AND Apache-2.0 1
GPL-1.0-or-later AND GPL-3.0 AND GPL-3.0-only AND GPL-3.0-or-later 1
GPL-1.0-or-later AND GPL-3.0 AND GPL-3.0-only AND GPL-3.0-or-later AND Python-2.0 1
GPL-1.0-or-later AND GPL-3.0-only AND MIT 1
LGPL-2.1-only 1
LGPL-2.1-or-later 1
LGPL-3.0 AND LGPL-3.0-only AND LGPL-3.0-or-later 1
LGPL-3.0-only 1
LicenseRef-scancode-free-unknown AND MIT 1
LicenseRef-scancode-public-domain AND Unlicense 1
LicenseRef-scancode-secret-labs-2011 AND MIT-CMU 1
MIT AND AFL-3.0 1
MIT AND MITNFA 1
MIT AND PSF-2.0 1
MIT OR (CC0-1.0 AND MIT) 1
MIT OR (MIT AND WTFPL) 1
Python-2.0 1
Python-2.0.1 1

CVE Severity

critical 7
high 37
medium 26
low 8
unknown 0

Beta — feedback welcome: [email protected]