Skip to content
Tools / drawio / Dependencies

Dependency Analysis

drawio

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

51% Freshness
69 Dependencies
29 Outdated
0 Stale
5.2 Avg Behind

Dependency List

Latest release v29.7.11

Dependency Type Current Latest Behind CVE License
crypto-js
npm
Direct 3.1.2 1 critical Unknown
@emnapi/runtime
npm
Transitive 1.4.0 1.10.0 15 behind MIT
@img/sharp-libvips-linux-x64
npm
Direct 1.1.0 1.2.4 14 behind BSD-2-Clause AND LGPL-2.0-only AND LGPL-2.1-only AND LGPL-3.0-only AND LGPL-3.0-or-later AND LicenseRef-scancode-alliance-open-media-patent-1.0 AND LicenseRef-scancode-other-permissive AND MIT AND MPL-2.0
emoji-regex
npm
Transitive 8.0.0 10.6.0 14 behind MIT
@img/sharp-libvips-linux-arm64
npm
Direct 1.1.0 1.2.4 13 behind BSD-2-Clause AND LGPL-2.0-only AND LGPL-2.1-only AND LGPL-3.0-only AND LGPL-3.0-or-later AND LicenseRef-scancode-alliance-open-media-patent-1.0 AND LicenseRef-scancode-other-permissive AND MIT AND MPL-2.0
string-width
npm
Transitive 4.2.3 8.2.1 13 behind MIT
@img/sharp-libvips-darwin-arm64
npm
Direct 1.1.0 1.2.4 12 behind BSD-2-Clause AND LGPL-2.0-only AND LGPL-2.1-only AND LGPL-3.0-only AND LGPL-3.0-or-later AND LicenseRef-scancode-alliance-open-media-patent-1.0 AND LicenseRef-scancode-other-permissive AND MIT AND MPL-2.0
@img/sharp-libvips-darwin-x64
npm
Direct 1.1.0 1.2.4 12 behind BSD-2-Clause AND LGPL-2.0-only AND LGPL-2.1-only AND LGPL-3.0-only AND LGPL-3.0-or-later AND LicenseRef-scancode-alliance-open-media-patent-1.0 AND LicenseRef-scancode-other-permissive AND MIT AND MPL-2.0
@img/sharp-libvips-linux-arm
npm
Direct 1.1.0 1.2.4 12 behind BSD-2-Clause AND LGPL-2.0-only AND LGPL-2.1-only AND LGPL-3.0-only AND LGPL-3.0-or-later AND LicenseRef-scancode-alliance-open-media-patent-1.0 AND LicenseRef-scancode-other-permissive AND MIT AND MPL-2.0
@img/sharp-libvips-linux-ppc64
npm
Direct 1.1.0 1.2.4 12 behind BSD-2-Clause AND LGPL-2.0-only AND LGPL-2.1-only AND LGPL-3.0-only AND LGPL-3.0-or-later AND LicenseRef-scancode-alliance-open-media-patent-1.0 AND LicenseRef-scancode-other-permissive AND MIT AND MPL-2.0
@img/sharp-libvips-linux-s390x
npm
Direct 1.1.0 1.2.4 12 behind BSD-2-Clause AND LGPL-2.0-only AND LGPL-2.1-only AND LGPL-3.0-only AND LGPL-3.0-or-later AND LicenseRef-scancode-alliance-open-media-patent-1.0 AND LicenseRef-scancode-other-permissive AND MIT AND MPL-2.0
@img/sharp-libvips-linuxmusl-arm64
npm
Direct 1.1.0 1.2.4 12 behind BSD-2-Clause AND LGPL-2.0-only AND LGPL-2.1-only AND LGPL-3.0-only AND LGPL-3.0-or-later AND LicenseRef-scancode-alliance-open-media-patent-1.0 AND LicenseRef-scancode-other-permissive AND MIT AND MPL-2.0
@img/sharp-libvips-linuxmusl-x64
npm
Direct 1.1.0 1.2.4 12 behind BSD-2-Clause AND LGPL-2.0-only AND LGPL-2.1-only AND LGPL-3.0-only AND LGPL-3.0-or-later AND LicenseRef-scancode-alliance-open-media-patent-1.0 AND LicenseRef-scancode-other-permissive AND MIT AND MPL-2.0
yargs
npm
Direct 17.7.2 18.0.0 11 behind MIT
web-streams-polyfill
npm
Transitive 3.2.1 4.3.0 10 behind MIT
ansi-styles
npm
Transitive 4.3.0 6.2.3 9 behind MIT
dompurify
npm
Direct 3.4.0 3.4.8 8 behind (MPL-2.0 OR Apache-2.0)
data-uri-to-buffer
npm
Transitive 4.0.1 8.0.0 7 behind MIT
color-string
npm
Transitive 1.9.1 2.1.4 6 behind MIT
wrap-ansi
npm
Transitive 7.0.0 10.0.0 6 behind MIT
ansi-regex
npm
Transitive 5.0.1 6.2.2 5 behind MIT
color-convert
npm
Transitive 2.0.1 3.1.3 5 behind MIT
detect-libc
npm
Transitive 2.0.3 2.1.2 5 behind Apache-2.0
semver
npm
Transitive 7.7.1 7.8.1 5 behind ISC
color
npm
Transitive 4.2.3 5.0.3 3 behind MIT
color-name
npm
Transitive 1.1.4 2.1.0 3 behind MIT
is-fullwidth-code-point
npm
Transitive 3.0.0 5.1.0 3 behind MIT
node-domexception
npm
Transitive 1.0.0 2.0.2 3 behind MIT
strip-ansi
npm
Transitive 6.0.1 7.2.0 3 behind MIT
cliui
npm
Transitive 8.0.1 9.0.1 2 behind ISC
escalade
npm
Transitive 3.1.2 3.2.0 1 behind MIT
fetch-blob
npm
Transitive 3.2.0 4.0.0 1 behind MIT
is-arrayish
npm
Transitive 0.3.2 0.3.4 1 behind MIT
mermaid
npm
Direct 11.14.0 11.15.0 1 behind MIT
simple-swizzle
npm
Transitive 0.2.2 0.2.4 1 behind MIT
yargs-parser
npm
Transitive 21.1.1 22.0.0 1 behind ISC
@img/sharp-darwin-arm64
npm
Direct 0.34.0 Apache-2.0
@img/sharp-darwin-x64
npm
Direct 0.34.0 Apache-2.0
@img/sharp-linux-arm
npm
Direct 0.34.0 Apache-2.0
@img/sharp-linux-arm64
npm
Direct 0.34.0 Apache-2.0
@img/sharp-linux-s390x
npm
Direct 0.34.0 Apache-2.0
@img/sharp-linux-x64
npm
Direct 0.34.0 Apache-2.0
@img/sharp-linuxmusl-arm64
npm
Direct 0.34.0 Apache-2.0
@img/sharp-linuxmusl-x64
npm
Direct 0.34.0 Apache-2.0
@img/sharp-wasm32
npm
Direct 0.34.0 Apache-2.0 AND LGPL-3.0-or-later AND MIT
@img/sharp-win32-ia32
npm
Direct 0.34.0 Apache-2.0 AND BSD-2-Clause AND LGPL-2.0-only AND LGPL-2.1-only AND LGPL-3.0-only AND LGPL-3.0-or-later AND LicenseRef-scancode-other-permissive AND MIT AND MPL-2.0
@img/sharp-win32-x64
npm
Direct 0.34.0 Apache-2.0 AND LGPL-3.0-or-later
actions/checkout
githubactions
Direct 3.*.* Unknown
actions/setup-java
githubactions
Direct 3.*.* Unknown
actions/stale
githubactions
Direct 5.*.* Unknown
bidi-js
npm
Direct 1.0.3 1.0.3 Current MIT
formdata-polyfill
npm
Transitive 4.0.10 4.0.10 Current MIT
get-caller-file
npm
Transitive 2.0.5 2.0.5 Current ISC
image-size
npm
Direct 2.0.2 2.0.2 Current MIT
jquery
npm
Direct 3.6.0 MIT
jsZip
npm
Direct 3.10.1 3.10.1 Current GPL-3.0-only OR MIT
mathjax
npm
Direct 4.1.2 Apache-2.0
node-fetch
npm
Direct 3.3.2 3.3.2 Current MIT
pako
npm
Direct 2.1.0 2.1.0 Current MIT AND Zlib
perfect-freehand
npm
Direct 1.0.16 MIT
require-directory
npm
Transitive 2.1.1 2.1.1 Current MIT
require-from-string
npm
Transitive 2.0.2 2.0.2 Current MIT
roughjs
npm
Direct 4.6.6 4.6.6 Current MIT
sharp
npm
Direct 0.34.0 Apache-2.0
softprops/action-gh-release
githubactions
Direct 1.*.* Unknown
spin.js
npm
Direct 2.0.0 MIT
tslib
npm
Transitive 2.8.1 2.8.1 Current 0BSD
y18n
npm
Transitive 5.0.8 5.0.8 Current ISC

License Breakdown

MIT 31
Apache-2.0 11
BSD-2-Clause AND LGPL-2.0-only AND LGPL-2.1-only AND LGPL-3.0-only AND LGPL-3.0-or-later AND LicenseRef-scancode-alliance-open-media-patent-1.0 AND LicenseRef-scancode-other-permissive AND MIT AND MPL-2.0 9
ISC 5
Unknown 5
(MPL-2.0 OR Apache-2.0) 1
0BSD 1
Apache-2.0 AND BSD-2-Clause AND LGPL-2.0-only AND LGPL-2.1-only AND LGPL-3.0-only AND LGPL-3.0-or-later AND LicenseRef-scancode-other-permissive AND MIT AND MPL-2.0 1
Apache-2.0 AND LGPL-3.0-or-later 1
Apache-2.0 AND LGPL-3.0-or-later AND MIT 1
GPL-3.0-only OR MIT 1
MIT AND Zlib 1

CVE Severity

critical 1
high 0
medium 0
low 0
unknown 0

Beta — feedback welcome: [email protected]