Skip to content
Tools / IRIS / Dependencies

Dependency Analysis

IRIS

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

32% Freshness
426 Dependencies
250 Outdated
0 Stale
25.1 Avg Behind

Dependency List

Latest release v2.4.27

Dependency Type Current Latest Behind CVE License
psycopg2-binary
pypi
Direct 2.9.10 2.9.12 2 behind LGPL-3.0-or-later WITH openvpn-openssl-exception
jquery-ui-touch-punch
npm
Direct 0.2.3 0.2.3 Current GPL-2.0-only OR MIT
jqvmap
npm
Direct 1.5.1 1.5.1 Current GPL-3.0 OR MIT OR (GPL-3.0 AND MIT)
ldap3
pypi
Direct 2.9.1 2.9.1 Current LGPL-3.0-or-later

License Breakdown

MIT 306
ISC 29
Apache-2.0 22
Unknown 18
BSD-3-Clause 10
BSD-2-Clause 9
BSD-2-Clause AND BSD-3-Clause 8
BSD-3-Clause AND MIT 3
BlueOak-1.0.0 3
Apache-2.0 AND MIT 2
0BSD 1
Apache-2.0 AND BSD-2-Clause 1
Apache-2.0 AND BSD-2-Clause AND BlueOak-1.0.0 AND CC0-1.0 AND ISC AND MIT 1
BSD-2-Clause AND BSD-2-Clause-Views 1
BSD-2-Clause AND BSD-3-Clause AND MIT 1
CC-BY-3.0 AND MIT 1
CC-BY-4.0 1
CC0-1.0 1
CC0-1.0 AND MIT 1
GPL-2.0-only OR MIT 1
GPL-3.0 OR MIT OR (GPL-3.0 AND MIT) 1
LGPL-3.0-or-later 1
LGPL-3.0-or-later WITH openvpn-openssl-exception 1
MIT OR (Apache-2.0 AND MIT) 1
Python-2.0 1

CVE Severity

critical 1
high 11
medium 17
low 2
unknown 0

Beta — feedback welcome: [email protected]