Skip to content
Tools / investbrain / Dependencies

Dependency Analysis

investbrain

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

74% Freshness
327 Dependencies
82 Outdated
0 Stale
51.3 Avg Behind

Dependency List

Latest release v1.2.9

Dependency Type Current Latest Behind CVE License
form-data
npm
Transitive 4.0.1 4.0.5 9 behind 1 critical MIT
phpoffice/phpspreadsheet
composer
Direct 1.30.2 5 critical Unknown
axios
npm
Direct 1.7.9 1.17.0 32 behind 18 high MIT
tar
npm
Transitive 7.4.4 7.5.16 17 behind 6 high ISC
picomatch
npm
Transitive 2.3.1 4.0.4 9 behind 2 high MIT
phpseclib/phpseclib
composer
Direct 3.0.50 2 high Unknown
rollup
npm
Transitive 4.32.0 1 high 0BSD AND ISC AND MIT
vite
npm
Direct 5.4.14 8.0.16 127 behind 9 medium Apache-2.0 AND BSD-2-Clause AND BlueOak-1.0.0 AND CC0-1.0 AND ISC AND MIT
esbuild
npm
Transitive 0.21.5 0.28.0 28 behind 1 medium MIT
postcss
npm
Direct 8.5.1 8.5.15 14 behind 1 medium MIT
follow-redirects
npm
Transitive 1.15.9 1.16.0 3 behind 1 medium MIT

License Breakdown

MIT 150
Unknown 147
MPL-2.0 11
ISC 6
BSD-3-Clause 4
BlueOak-1.0.0 2
0BSD AND ISC AND MIT 1
Apache-2.0 1
Apache-2.0 AND BSD-2-Clause AND BlueOak-1.0.0 AND CC0-1.0 AND ISC AND MIT 1
BSD-2-Clause 1
CC-BY-4.0 1
CC0-1.0 AND MIT 1

CVE Severity

critical 2
high 5
medium 4
low 0
unknown 0

Beta — feedback welcome: [email protected]