Skip to content
Tools / daytona / Dependencies

Dependency Analysis

daytona

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

50% Freshness
5680 Dependencies
2414 Outdated
0 Stale
19.4 Avg Behind

Dependency List

Latest release v0.173.0

Dependency Type Current Latest Behind CVE License
fast-xml-parser
npm
Transitive 5.2.5 5.8.0 35 behind 7 critical MIT
protobufjs
npm
Transitive 7.5.4 8.5.0 20 behind 1 critical BSD-3-Clause AND LicenseRef-scancode-protobuf
protobufjs
npm
Transitive 7.5.4 8.5.0 20 behind 1 critical BSD-3-Clause AND LicenseRef-scancode-protobuf
form-data
npm
Transitive 4.0.3 4.0.5 5 behind 1 critical MIT
handlebars
npm
Transitive 4.7.8 4.7.9 1 behind 8 critical MIT
undici
npm
Transitive 5.29.0 8.3.0 45 behind 5 high MIT
minimatch
npm
Transitive 9.0.3 10.2.5 38 behind 3 high ISC
vite
npm
Transitive 7.3.1 8.0.16 33 behind 3 high BSD-2-Clause AND CC0-1.0 AND ISC AND MIT
@nestjs/microservices
npm
Direct 11.1.8 11.1.24 23 behind 1 high MIT
cryptography
pypi
Transitive 43.0.3 48.0.0 22 behind 3 high BSD-3-Clause OR Apache-2.0
black
pypi
Direct 23.12.1 26.5.1 19 behind 2 high MIT
tar
npm
Transitive 7.4.4 7.5.16 17 behind 6 high ISC
@babel/plugin-transform-modules-systemjs
npm
Transitive 7.27.1 7.29.7 15 behind 1 high MIT
glob
npm
Transitive 10.4.5 13.0.6 13 behind 1 high ISC
koa
npm
Transitive 3.0.1 3.2.1 10 behind 2 high MIT
@remix-run/router
npm
Transitive 1.22.0 1.23.3 9 behind 1 high MIT
svgo
npm
Transitive 3.3.2 4.0.1 8 behind 1 high MIT
validator
npm
Transitive 13.12.0 13.15.35 7 behind 2 high MIT
basic-ftp
npm
Transitive 5.2.0 6.0.1 6 behind 4 high Apache-2.0 AND MIT
fast-xml-builder
npm
Transitive 1.1.4 1.2.0 6 behind 1 high MIT
path-to-regexp
npm
Transitive 8.2.0 8.4.2 6 behind 2 high MIT
serialize-javascript
npm
Transitive 6.0.2 7.0.5 6 behind 2 high BSD-3-Clause
path-to-regexp
npm
Transitive 0.1.12 8.4.2 5 behind 1 high MIT
jaraco-context
pypi
Transitive 6.0.1 6.1.2 4 behind 1 high Unknown
picomatch
npm
Transitive 4.0.2 4.0.4 4 behind 2 high MIT
pillow
pypi
Transitive 11.3.0 12.2.0 4 behind 6 high LicenseRef-scancode-secret-labs-2011 AND MIT-CMU
defu
npm
Transitive 6.1.4 6.1.7 3 behind 1 high MIT
lodash
npm
Transitive 4.17.21 4.18.1 3 behind 3 high CC0-1.0 AND MIT
fast-uri
npm
Transitive 3.1.0 3.1.2 2 behind 2 high BSD-3-Clause
fast-uri
npm
Transitive 3.1.0 3.1.2 2 behind 2 high BSD-3-Clause
multer
npm
Transitive 2.0.2 2.1.1 2 behind 3 high MIT
github.com/distribution/distribution/v3
golang
Direct v3.0.0 3 high Apache-2.0 AND CC-BY-4.0
github.com/docker/docker
golang
Direct v28.5.2+incompatible 2 high Apache-2.0
github.com/docker/docker
golang
Direct v28.5.2+incompatible 2 high Apache-2.0
nokogiri
gem
Direct 1.19.1 2 high MIT
react-router
npm
Transitive 6.29.0 7.16.0 498 behind 1 medium MIT
vite
npm
Transitive 5.4.20 8.0.16 62 behind 1 medium Apache-2.0 AND BSD-2-Clause AND BlueOak-1.0.0 AND CC0-1.0 AND ISC AND MIT
yaml
npm
Transitive 1.10.2 2.9.0 49 behind 1 medium ISC
qs
npm
Transitive 6.13.1 6.15.2 34 behind 2 medium BSD-3-Clause
esbuild
npm
Transitive 0.21.5 0.28.0 28 behind 1 medium MIT
astro
npm
Direct 6.1.5 6.4.4 25 behind 1 medium MIT
@nestjs/core
npm
Direct 11.1.8 11.1.24 23 behind 1 medium MIT
filelock
pypi
Transitive 3.19.1 3.29.1 20 behind 2 medium Unlicense
filelock
pypi
Transitive 3.19.1 3.29.1 20 behind 2 medium Unlicense
filelock
pypi
Transitive 3.19.1 3.29.1 20 behind 2 medium Unlicense
filelock
pypi
Transitive 3.19.1 3.29.1 20 behind 2 medium Unlicense
hono
npm
Transitive 4.12.10 4.12.23 13 behind 8 medium MIT
brace-expansion
npm
Transitive 2.0.2 5.0.6 11 behind 1 medium MIT
file-type
npm
Transitive 21.0.0 22.0.1 10 behind 2 medium MIT
postcss
npm
Transitive 8.5.5 8.5.15 10 behind 1 medium MIT
@hono/node-server
npm
Transitive 1.19.12 2.0.4 8 behind 1 medium MIT
@astrojs/node
npm
Direct 10.0.4 10.1.3 7 behind 1 medium MIT
nodemailer
npm
Direct 8.0.4 8.0.10 6 behind 1 medium MIT-0
requests
pypi
Transitive 2.32.5 2.34.2 6 behind 1 medium Apache-2.0
ajv
npm
Transitive 8.17.1 8.20.0 4 behind 1 medium MIT
pytest
pypi
Direct 8.4.2 9.0.3 4 behind 1 medium MIT
pytest
pypi
Direct 8.4.2 9.0.3 4 behind 1 medium MIT
pytest
pypi
Direct 8.4.2 9.0.3 4 behind 1 medium MIT
pytest
pypi
Direct 8.4.2 9.0.3 4 behind 1 medium MIT
pytest
pypi
Direct 8.4.2 9.0.3 4 behind 1 medium MIT
body-parser
npm
Transitive 2.2.0 2.2.2 3 behind 1 medium MIT
ip-address
npm
Transitive 10.0.1 10.2.0 3 behind 1 medium MIT
js-yaml
npm
Transitive 4.1.0 4.2.0 3 behind 1 medium MIT
uuid
npm
Direct 11.1.0 14.0.0 3 behind 1 medium MIT
uuid
npm
Transitive 11.1.0 14.0.0 3 behind 1 medium MIT
markdown-it
npm
Transitive 14.1.0 14.2.0 2 behind 1 medium MIT
bn.js
npm
Transitive 4.12.2 5.2.3 1 behind 1 medium MIT
follow-redirects
npm
Transitive 1.15.11 1.16.0 1 behind 1 medium MIT
follow-redirects
npm
Transitive 1.15.11 1.16.0 1 behind 1 medium MIT
smol-toml
npm
Transitive 1.6.0 1.6.1 1 behind 1 medium BSD-3-Clause
github.com/go-git/go-git/v5
golang
Direct v5.17.1 1 medium Apache-2.0
yard
gem
Direct 0.9.38 1 medium (BSD-2-Clause AND GPL-2.0-only AND MIT AND Ruby) OR (BSD-2-Clause AND MIT AND Ruby)
@tootallnate/once
npm
Transitive 2.0.0 3.0.1 2 behind 1 low MIT
on-headers
npm
Transitive 1.0.2 1.1.0 1 behind 1 low MIT
elliptic
npm
Transitive 6.6.1 6.6.1 Current 1 low MIT
github.com/aws/aws-sdk-go
golang
Transitive v1.55.5 2 unknown Apache-2.0
golang.org/x/image
golang
Transitive v0.38.0 2 unknown Unknown
golang.org/x/net
golang
Transitive v0.52.0 1 unknown BSD-3-Clause AND LicenseRef-scancode-google-patent-license-golang
golang.org/x/net
golang
Transitive v0.52.0 1 unknown BSD-3-Clause AND LicenseRef-scancode-google-patent-license-golang
golang.org/x/net
golang
Transitive v0.52.0 1 unknown BSD-3-Clause AND LicenseRef-scancode-google-patent-license-golang
golang.org/x/net
golang
Transitive v0.52.0 1 unknown BSD-3-Clause AND LicenseRef-scancode-google-patent-license-golang
golang.org/x/net
golang
Direct v0.52.0 1 unknown BSD-3-Clause AND LicenseRef-scancode-google-patent-license-golang
golang.org/x/net
golang
Direct v0.52.0 1 unknown BSD-3-Clause AND LicenseRef-scancode-google-patent-license-golang
golang.org/x/net
golang
Transitive v0.52.0 1 unknown BSD-3-Clause AND LicenseRef-scancode-google-patent-license-golang
golang.org/x/net
golang
Direct v0.52.0 1 unknown BSD-3-Clause AND LicenseRef-scancode-google-patent-license-golang
golang.org/x/net
golang
Transitive v0.52.0 1 unknown BSD-3-Clause AND LicenseRef-scancode-google-patent-license-golang

License Breakdown

MIT 3809
Apache-2.0 737
Unknown 233
ISC 218
BSD-3-Clause 169
Apache-2.0 AND BSD-3-Clause 68
BSD-2-Clause 65
BSD-3-Clause AND LicenseRef-scancode-google-patent-license-golang 58
MPL-2.0 37
Apache-2.0 AND MIT 32
BlueOak-1.0.0 21
BSD-2-Clause AND BSD-3-Clause 18
CC0-1.0 AND MIT 12
BSD-2-Clause AND LGPL-2.0-only AND LGPL-2.1-only AND LGPL-3.0-only AND LGPL-3.0-or-later AND LicenseRef-scancode-other-permissive AND MIT AND MPL-2.0 10
BSD-2-Clause AND LGPL-2.0-only AND LGPL-2.1-only AND LGPL-3.0-only AND LGPL-3.0-or-later AND LicenseRef-scancode-alliance-open-media-patent-1.0 AND LicenseRef-scancode-other-permissive AND MIT AND MPL-2.0 9
Apache-2.0 AND BSD-2-Clause 7
Apache-2.0 AND Ruby 7
MIT AND Python-2.0 7
Apache-2.0 AND BSD-2-Clause AND LGPL-2.0-only AND LGPL-2.1-only AND LGPL-3.0-only AND LGPL-3.0-or-later AND LicenseRef-scancode-other-permissive AND MIT AND MPL-2.0 6
BSD-3-Clause AND MIT 6
CC0-1.0 6
FSL-1.1-ALv2 6
Unlicense 6
Apache-2.0 AND BSD-3-Clause AND LicenseRef-scancode-unknown-license-reference 5
Apache-2.0 AND BSD-3-Clause AND MIT 5
ISC AND MIT 5
Python-2.0 AND GPL-1.0-or-later AND Python-2.0 AND BSD-3-Clause AND Python-2.0 AND BSD-3-Clause AND 0BSD 5
(BSD-2-Clause AND MIT AND Ruby) OR (BSD-2-Clause AND MIT) 4
Apache-2.0 AND CC-BY-SA-4.0 4
BSD-2-Clause AND MIT AND Python-2.0 AND Python-2.0.1 4
CC-BY-4.0 4
LGPL-2.1-or-later 4
PSF-2.0 AND Python-2.0 4
0BSD AND BSD-3-Clause AND LicenseRef-scancode-unknown-license-reference AND PSF-2.0 AND Python-2.0 3
Apache-2.0 AND LicenseRef-scancode-dco-1.1 AND MIT 3
BSD-2-Clause OR (BSD-2-Clause AND Ruby) 3
BSD-2-Clause OR Ruby OR (BSD-2-Clause AND Ruby) 3
BSD-3-Clause AND LicenseRef-scancode-protobuf 3
(CC-BY-4.0 AND MIT) OR (CC-BY-NC-SA-4.0 AND MIT) OR (CC-BY-SA-4.0 AND MIT) 2
0BSD 2
0BSD AND ISC AND MIT 2
0BSD AND MIT 2
AFL-2.1 AND AFL-3.0 AND BSD-3-Clause 2
Apache-2.0 AND CC-BY-4.0 2
Apache-2.0 AND LicenseRef-scancode-unknown-license-reference 2
Apache-2.0 OR (Apache-2.0 AND LGPL-3.0-only) 2
Apache-2.0 OR BSD-2-Clause OR MIT OR (Apache-2.0 AND BSD-2-Clause) OR (Apache-2.0 AND MIT) OR (BSD-2-Clause AND MIT) 2
BSD-2-Clause AND CC0-1.0 AND ISC AND MIT 2
FTL AND MIT 2
LicenseRef-scancode-public-domain AND Unlicense 2
LicenseRef-scancode-unicode AND MIT 2
LicenseRef-scancode-unknown-license-reference AND MIT 2
MIT AND MITNFA 2
MIT-0 2
Python-2.0 2
WTFPL 2
(Artistic-1.0-Perl AND Artistic-2.0 AND GPL-1.0-or-later AND GPL-2.0-only AND GPL-2.0-or-later AND MIT) OR (Artistic-2.0 AND GPL-1.0-or-later AND GPL-2.0-only AND GPL-2.0-or-later AND MIT) 1
(BSD-2-Clause AND BSD-3-Clause AND Ruby) OR (BSD-2-Clause AND BSD-3-Clause) 1
(BSD-2-Clause AND GPL-2.0-only AND MIT AND Ruby) OR (BSD-2-Clause AND MIT AND Ruby) 1
(MIT OR CC0-1.0) 1
Apache-2.0 AND BSD-2-Clause AND BlueOak-1.0.0 AND CC0-1.0 AND ISC AND MIT 1
Apache-2.0 AND BSD-2-Clause AND LGPL-2.0-only AND LGPL-2.1-only AND LGPL-3.0-only AND LGPL-3.0-or-later AND MIT 1
Apache-2.0 AND BSD-3-Clause AND ISC AND MIT 1
Apache-2.0 AND BSD-3-Clause AND MIT AND OFL-1.1 1
Apache-2.0 AND Python-2.0 1
Apache-2.0 OR (Apache-2.0 AND MIT) 1
Apache-2.0 OR MPL-1.1 OR (Apache-2.0 AND MPL-1.1) 1
BSD-2-Clause AND BSD-2-Clause-Views 1
BSD-2-Clause AND BSD-3-Clause AND CC-PDDC AND GPL-1.0-or-later AND GPL-3.0-only AND GPL-3.0-or-later AND LicenseRef-scancode-free-unknown AND LicenseRef-scancode-other-copyleft AND LicenseRef-scancode-public-domain 1
BSD-2-Clause AND ISC 1
BSD-2-Clause AND JSON 1
BSD-2-Clause AND MIT 1
BSD-2-Clause OR Ruby 1
BSD-3-Clause AND ISC 1
BSD-3-Clause AND MPL-2.0 1
BSD-3-Clause AND Ruby 1
BSD-3-Clause OR Apache-2.0 1
BSD-3-Clause OR GPL-2.0-only 1
CC-BY-4.0 AND CC-BY-SA-4.0 AND GPL-2.0-only 1
CC-BY-4.0 AND MIT 1
CC-BY-NC-SA-4.0 AND MIT 1
CC0-1.0 OR MIT OR (CC0-1.0 AND MIT) 1
JSON AND MIT 1
LGPL-2.1-only 1
LicenseRef-scancode-dco-1.1 AND MIT 1
LicenseRef-scancode-free-unknown AND LicenseRef-scancode-unknown-license-reference AND MIT 1
LicenseRef-scancode-secret-labs-2011 AND MIT-CMU 1
LicenseRef-scancode-warranty-disclaimer AND MIT 1
MIT AND MIT-0 1
MIT AND MPL-2.0 1
MIT AND Ruby 1
MIT AND WTFPL 1
MIT AND Zlib 1
MIT OR (CC0-1.0 AND MIT) 1
MIT OR (MIT AND WTFPL) 1
MIT OR WTFPL OR (MIT AND WTFPL) 1
PSF-2.0 1
Ruby 1

CVE Severity

critical 5
high 30
medium 37
low 3
unknown 11

Beta — feedback welcome: [email protected]