Skip to content
Tools / ClickHouse / Dependencies

Dependency Analysis

ClickHouse

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

44% Freshness
689 Dependencies
294 Outdated
0 Stale
4.9 Avg Behind

Dependency List

Latest release v26.4.1.1141-stable

Dependency Type Current Latest Behind CVE License
jwcrypto
pypi
Direct 1.5.6 1.5.7 1 behind 1 medium LGPL-3.0 AND LGPL-3.0-or-later
pygithub
pypi
Direct 1.43.5 2.9.1 39 behind GPL-3.0 AND GPL-3.0-or-later
astroid
pypi
Direct 3.1.0 4.1.2 31 behind LGPL-2.1-or-later
pylint
pypi
Direct 3.1.0 4.0.5 26 behind GPL-2.0-or-later
yamllint
pypi
Direct 1.26.3 1.38.0 17 behind GPL-3.0-or-later
codespell
pypi
Direct 2.2.1 2.4.2 9 behind GPL-2.0 AND GPL-2.0-only
paramiko
pypi
Direct 3.4.0 5.0.0 6 behind LGPL-2.1-or-later
launchpadlib
pypi
Direct 1.10.16 2.1.0 5 behind GPL-3.0-or-later AND LGPL-2.0-or-later AND LGPL-3.0 AND LGPL-3.0-only
launchpadlib
pypi
Direct 1.10.16 2.1.0 5 behind GPL-3.0-or-later AND LGPL-2.0-or-later AND LGPL-3.0 AND LGPL-3.0-only
pycurl
pypi
Direct 7.45.3 7.46.0 5 behind GPL-3.0-or-later AND LGPL-2.1-only AND curl
pygithub
pypi
Direct 2.6.1 2.9.1 5 behind GPL-3.0 AND GPL-3.0-only AND LGPL-2.0-or-later AND LGPL-2.1-or-later AND LGPL-3.0-only AND LGPL-3.0-or-later
rapidfuzz
pypi
Direct 3.13.0 3.14.5 5 behind GPL-1.0-or-later AND MIT
MySql.Data
nuget
Direct 9.4.0 9.7.0 3 behind GPL-2.0-only WITH Universal-FOSS-exception-1.0
wadllib
pypi
Direct 1.3.6 2.0.0 3 behind LGPL-3.0 AND LGPL-3.0-only AND LGPL-3.0-or-later
wadllib
pypi
Direct 1.3.6 2.0.0 3 behind LGPL-3.0 AND LGPL-3.0-only AND LGPL-3.0-or-later
charset-normalizer
pypi
Direct 3.4.5 3.4.7 2 behind LGPL-2.0-or-later AND LGPL-2.1-only AND LicenseRef-scancode-public-domain AND MIT AND MPL-1.1
lazr-restfulclient
pypi
Direct 0.14.4 0.14.6 2 behind GPL-3.0-or-later AND LGPL-3.0 AND LGPL-3.0-only
lazr-restfulclient
pypi
Direct 0.14.4 0.14.6 2 behind GPL-3.0-or-later AND LGPL-3.0 AND LGPL-3.0-only
lazr-uri
pypi
Direct 1.0.6 1.0.8 2 behind GPL-3.0-or-later AND LGPL-3.0 AND LGPL-3.0-only
lazr-uri
pypi
Direct 1.0.6 1.0.8 2 behind GPL-3.0-or-later AND LGPL-3.0 AND LGPL-3.0-only
shapely
pypi
Direct 2.1.0 2.1.2 2 behind BSD-3-Clause AND LGPL-2.1-only
psycopg
pypi
Direct 3.3.3 3.3.4 1 behind LGPL-3.0 AND LGPL-3.0-only
psycopg2-binary
pypi
Direct 2.9.11 2.9.12 1 behind LGPL-2.0-or-later AND LGPL-3.0-or-later
r-efi
cargo
Direct 5.3.0 6.0.0 1 behind MIT OR Apache-2.0 OR LGPL-2.1-or-later
dicttoxml
pypi
Direct 1.7.16 1.7.16 Current GPL-2.0-only

License Breakdown

MIT OR Apache-2.0 246
MIT 143
Unknown 61
Apache-2.0 46
Apache-2.0 OR MIT 24
Apache-2.0 WITH LLVM-exception OR Apache-2.0 OR MIT 18
Unicode-3.0 18
BSD-2-Clause AND BSD-3-Clause 17
BSD-3-Clause 15
Unlicense OR MIT 10
MPL-2.0 5
GPL-3.0-or-later AND LGPL-3.0 AND LGPL-3.0-only 4
ISC 4
LicenseRef-scancode-generic-cla AND MIT 4
MIT AND Python-2.0 4
Apache-2.0 OR BSD-3-Clause OR (Apache-2.0 AND BSD-3-Clause) 3
BSD-2-Clause 3
(MIT OR Apache-2.0) AND Unicode-3.0 2
Apache-2.0 AND BSD-3-Clause 2
Apache-2.0 AND LicenseRef-scancode-unknown-license-reference 2
Apache-2.0 OR BSL-1.0 2
Apache-2.0 OR ISC OR MIT 2
Apache-2.0 WITH LLVM-exception 2
BSD-2-Clause OR Apache-2.0 OR MIT 2
CC0-1.0 OR MIT-0 OR Apache-2.0 2
GPL-3.0-or-later AND LGPL-2.0-or-later AND LGPL-3.0 AND LGPL-3.0-only 2
LGPL-2.1-or-later 2
LGPL-3.0 AND LGPL-3.0-only AND LGPL-3.0-or-later 2
Python-2.0 AND Python-2.0 AND BSD-3-Clause AND Python-2.0.1 2
Zlib 2
(AFL-2.1 AND MIT AND Python-2.0) OR (AFL-2.1 AND MIT) 1
0BSD OR MIT OR Apache-2.0 1
Apache-2.0 AND BSD-3-Clause AND EPL-1.0 AND LicenseRef-scancode-jdom AND MIT 1
Apache-2.0 AND BSD-3-Clause AND LicenseRef-scancode-unknown-license-reference 1
Apache-2.0 AND BSD-3-Clause AND MIT AND Zlib 1
Apache-2.0 AND BSD-3-Clause AND MPL-2.0 1
Apache-2.0 AND ISC 1
Apache-2.0 AND MIT 1
Apache-2.0 AND MIT AND MPL-2.0 1
BSD-2-Clause AND BSD-3-Clause AND LicenseRef-scancode-public-domain AND Unlicense 1
BSD-2-Clause OR MIT OR Apache-2.0 1
BSD-3-Clause AND LGPL-2.1-only 1
BSD-3-Clause AND LicenseRef-scancode-protobuf 1
BSD-3-Clause OR Apache-2.0 1
CC0-1.0 OR Apache-2.0 OR Apache-2.0 WITH LLVM-exception 1
CDLA-Permissive-2.0 1
GPL-1.0-or-later AND MIT 1
GPL-2.0 AND GPL-2.0-only 1
GPL-2.0-only 1
GPL-2.0-only WITH Universal-FOSS-exception-1.0 1
GPL-2.0-or-later 1
GPL-3.0 AND GPL-3.0-only AND LGPL-2.0-or-later AND LGPL-2.1-or-later AND LGPL-3.0-only AND LGPL-3.0-or-later 1
GPL-3.0 AND GPL-3.0-or-later 1
GPL-3.0-or-later 1
GPL-3.0-or-later AND LGPL-2.1-only AND curl 1
ISC AND (Apache-2.0 OR ISC) 1
ISC AND (Apache-2.0 OR ISC) AND OpenSSL 1
LGPL-2.0-or-later AND LGPL-2.1-only AND LicenseRef-scancode-public-domain AND MIT AND MPL-1.1 1
LGPL-2.0-or-later AND LGPL-3.0-or-later 1
LGPL-3.0 AND LGPL-3.0-only 1
LGPL-3.0 AND LGPL-3.0-or-later 1
LicenseRef-scancode-free-unknown AND MIT 1
MIT AND CC0-1.0 1
MIT OR Apache-2.0 OR LGPL-2.1-or-later 1
MIT OR Zlib OR Apache-2.0 1
MPL-2.0 AND Python-2.0 1
Python-2.0.1 1

CVE Severity

critical 0
high 14
medium 10
low 0
unknown 0

Beta — feedback welcome: [email protected]