Skip to content
Tools / IRIS / Dependencies

Dependency Analysis

IRIS

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

32% Freshness
426 Dependencies
250 Outdated
0 Stale
25.1 Avg Behind

Dependency List

Latest release v2.4.27

Dependency Type Current Latest Behind CVE License
form-data
npm
Transitive 4.0.0 4.0.5 12 behind 1 critical MIT
playwright
npm
Transitive 1.47.0 1.60.0 987 behind 1 high Apache-2.0
rollup
npm
Transitive 4.22.5 4.61.0 117 behind 1 high MIT
minimatch
npm
Transitive 3.1.2 10.2.5 91 behind 3 high ISC
axios
npm
Transitive 1.7.4 1.16.1 37 behind 18 high MIT
urllib3
pypi
Direct 1.26.18 2.7.0 15 behind 5 high MIT
glob
npm
Transitive 10.4.5 13.0.6 13 behind 1 high ISC
pyjwt
pypi
Direct 2.4.0 2.13.0 11 behind 1 high MIT
picomatch
npm
Transitive 2.3.1 4.0.4 9 behind 2 high MIT
flatted
npm
Transitive 3.3.1 3.4.2 6 behind 2 high ISC
lodash
npm
Transitive 4.17.21 4.18.1 3 behind 3 high CC0-1.0 AND MIT
socket.io-parser
npm
Transitive 4.2.4 4.2.6 3 behind 1 high MIT
svelte
npm
Direct 4.2.19 5.56.1 368 behind 4 medium MIT
vite
npm
Direct 5.4.14 8.0.16 127 behind 9 medium Apache-2.0 AND BSD-2-Clause AND BlueOak-1.0.0 AND CC0-1.0 AND ISC AND MIT
ajv
npm
Transitive 6.12.6 8.20.0 67 behind 1 medium MIT
azure-identity
pypi
Direct 1.10.0 1.25.3 44 behind 1 medium MIT
jquery
npm
Transitive 1.11.3 4.0.0 36 behind 3 medium MIT
esbuild
npm
Transitive 0.21.5 0.28.0 28 behind 1 medium MIT
vite-plugin-static-copy
npm
Direct 1.0.6 4.1.0 22 behind 1 medium MIT
marshmallow
pypi
Direct 3.23.1 4.3.0 21 behind 1 medium BSD-3-Clause AND MIT
postcss
npm
Transitive 8.4.47 8.5.15 18 behind 1 medium MIT
brace-expansion
npm
Transitive 2.0.1 5.0.6 16 behind 2 medium MIT
requests
pypi
Direct 2.31.0 2.34.2 12 behind 3 medium Apache-2.0
yaml
npm
Transitive 2.7.0 2.9.0 10 behind 1 medium ISC
flask-cors
pypi
Direct 5.0.0 6.0.2 7 behind 3 medium MIT
showdown
npm
Direct 1.9.1 2.1.0 7 behind 1 medium BSD-3-Clause
follow-redirects
npm
Transitive 1.15.6 1.16.0 6 behind 1 medium MIT
werkzeug
pypi
Direct 3.1.3 3.1.8 5 behind 3 medium BSD-2-Clause AND BSD-3-Clause
js-yaml
npm
Transitive 4.1.0 4.2.0 3 behind 1 medium MIT
@eslint/plugin-kit
npm
Transitive 0.2.5 0.7.2 17 behind 1 low Apache-2.0
flask
pypi
Direct 3.1.0 3.1.3 3 behind 2 low BSD-2-Clause AND BSD-3-Clause

License Breakdown

MIT 306
ISC 29
Apache-2.0 22
Unknown 18
BSD-3-Clause 10
BSD-2-Clause 9
BSD-2-Clause AND BSD-3-Clause 8
BSD-3-Clause AND MIT 3
BlueOak-1.0.0 3
Apache-2.0 AND MIT 2
0BSD 1
Apache-2.0 AND BSD-2-Clause 1
Apache-2.0 AND BSD-2-Clause AND BlueOak-1.0.0 AND CC0-1.0 AND ISC AND MIT 1
BSD-2-Clause AND BSD-2-Clause-Views 1
BSD-2-Clause AND BSD-3-Clause AND MIT 1
CC-BY-3.0 AND MIT 1
CC-BY-4.0 1
CC0-1.0 1
CC0-1.0 AND MIT 1
GPL-2.0-only OR MIT 1
GPL-3.0 OR MIT OR (GPL-3.0 AND MIT) 1
LGPL-3.0-or-later 1
LGPL-3.0-or-later WITH openvpn-openssl-exception 1
MIT OR (Apache-2.0 AND MIT) 1
Python-2.0 1

CVE Severity

critical 1
high 11
medium 17
low 2
unknown 0

Beta — feedback welcome: [email protected]