Skip to content
Tools / Kroki / Dependencies

Dependency Analysis

Kroki

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

61% Freshness
3039 Dependencies
917 Outdated
0 Stale
13.4 Avg Behind

Dependency List

Latest release v0.30.1

Dependency Type Current Latest Behind CVE License
basic-ftp
npm
Transitive 5.1.0 4 critical Apache-2.0 AND MIT
basic-ftp
npm
Transitive 5.1.0 4 critical Apache-2.0 AND MIT
basic-ftp
npm
Transitive 5.1.0 4 critical Apache-2.0 AND MIT
basic-ftp
npm
Transitive 5.1.0 4 critical Apache-2.0 AND MIT
minimatch
npm
Transitive 3.1.2 10.2.5 91 behind 3 high ISC
minimatch
npm
Transitive 3.1.2 10.2.5 91 behind 3 high ISC
minimatch
npm
Transitive 3.1.2 10.2.5 91 behind 3 high ISC
minimatch
npm
Transitive 3.1.2 10.2.5 91 behind 3 high ISC
minimatch
npm
Transitive 3.1.2 10.2.5 91 behind 3 high ISC
minimatch
npm
Transitive 3.1.2 10.2.5 91 behind 3 high ISC
minimatch
npm
Transitive 3.1.2 10.2.5 91 behind 3 high ISC
minimatch
npm
Transitive 3.1.2 10.2.5 91 behind 3 high ISC
immutable
npm
Transitive 4.3.7 5.1.6 15 behind 1 high MIT
tar-fs
npm
Transitive 3.0.5 3.1.2 14 behind 3 high MIT
picomatch
npm
Transitive 2.3.1 4.0.4 9 behind 2 high MIT
flatted
npm
Transitive 3.3.3 3.4.2 4 behind 2 high ISC
flatted
npm
Transitive 3.3.3 3.4.2 4 behind 2 high ISC
flatted
npm
Transitive 3.3.3 3.4.2 4 behind 2 high ISC
flatted
npm
Transitive 3.3.3 3.4.2 4 behind 2 high ISC
flatted
npm
Transitive 3.3.3 3.4.2 4 behind 2 high ISC
flatted
npm
Transitive 3.3.3 3.4.2 4 behind 2 high ISC
flatted
npm
Transitive 3.3.3 3.4.2 4 behind 2 high ISC
flatted
npm
Transitive 3.3.3 3.4.2 4 behind 2 high ISC
lodash-es
npm
Transitive 4.17.23 4.18.1 2 behind 2 high MIT
lodash-es
npm
Transitive 4.17.23 4.18.1 2 behind 2 high MIT
io.netty:netty-transport-native-epoll
maven
Direct 4.2.10 1 high Unknown
org.bouncycastle:bcprov-jdk18on
maven
Direct 1.83 2 high MIT
ws
npm
Transitive 8.16.0 1 high MIT
ajv
npm
Transitive 6.12.6 8.20.0 67 behind 1 medium MIT
ajv
npm
Transitive 6.12.6 8.20.0 67 behind 1 medium MIT
ajv
npm
Transitive 6.12.6 8.20.0 67 behind 1 medium MIT
ajv
npm
Transitive 6.12.6 8.20.0 67 behind 1 medium MIT
ajv
npm
Transitive 6.12.6 8.20.0 67 behind 1 medium MIT
ajv
npm
Transitive 6.12.6 8.20.0 67 behind 1 medium MIT
ajv
npm
Transitive 6.12.6 8.20.0 67 behind 1 medium MIT
ajv
npm
Transitive 6.12.6 8.20.0 67 behind 1 medium MIT
nanoid
npm
Transitive 3.3.3 5.1.11 34 behind 1 medium MIT
dompurify
npm
Transitive 3.1.6 3.4.8 26 behind 10 medium Apache-2.0 OR MPL-2.0 OR (Apache-2.0 AND MPL-2.0)
brace-expansion
npm
Transitive 1.1.12 5.0.6 10 behind 1 medium MIT
brace-expansion
npm
Transitive 1.1.12 5.0.6 10 behind 1 medium MIT
brace-expansion
npm
Transitive 1.1.12 5.0.6 10 behind 1 medium MIT
brace-expansion
npm
Transitive 1.1.12 5.0.6 10 behind 1 medium MIT
brace-expansion
npm
Transitive 1.1.12 5.0.6 10 behind 1 medium MIT
brace-expansion
npm
Transitive 1.1.12 5.0.6 10 behind 1 medium MIT
brace-expansion
npm
Transitive 1.1.12 5.0.6 10 behind 1 medium MIT
brace-expansion
npm
Transitive 1.1.12 5.0.6 10 behind 1 medium MIT
uuid
npm
Transitive 11.1.0 14.0.0 3 behind 1 medium MIT
ip-address
npm
Transitive 10.1.0 10.2.0 2 behind 1 medium MIT
ip-address
npm
Transitive 10.1.0 10.2.0 2 behind 1 medium MIT
ip-address
npm
Transitive 10.1.0 10.2.0 2 behind 1 medium MIT
ip-address
npm
Transitive 10.1.0 10.2.0 2 behind 1 medium MIT
@excalidraw/excalidraw
npm
Direct 0.18.0 1 medium MIT
@excalidraw/mermaid-to-excalidraw
npm
Transitive 1.1.2 1 medium MIT
mermaid
npm
Transitive 10.9.3 1 medium MIT
org.bouncycastle:bcpkix-jdk18on
maven
Direct 1.83 1 medium MIT

License Breakdown

MIT 2459
ISC 243
Apache-2.0 106
BSD-2-Clause 49
BSD-3-Clause 41
Unknown 34
Apache-2.0 AND BSD-2-Clause 16
0BSD 12
ISC AND MIT 11
CC0-1.0 AND MIT 10
Apache-2.0 AND MIT 8
BSD-2-Clause AND BSD-2-Clause-Views 8
MIT OR (CC0-1.0 AND MIT) 8
Python-2.0 8
BSD-2-Clause AND BSD-3-Clause 5
Apache-2.0 AND ISC 2
EPL-2.0 2
EPL-2.0 AND LGPL-2.1 AND LGPL-2.1-only 2
LicenseRef-scancode-unknown-license-reference AND EPL-2.0 2
Unlicense 2
Apache-2.0 AND BSD-3-Clause AND MIT 1
Apache-2.0 OR MPL-2.0 1
Apache-2.0 OR MPL-2.0 OR (Apache-2.0 AND MPL-2.0) 1
BSD-3-Clause AND LicenseRef-scancode-generic-cla AND MIT 1
BSD-3-Clause AND MIT 1
BlueOak-1.0.0 1
CC0-1.0 1
EPL-1.0 OR LGPL-2.1-only 1
MIT AND LicenseRef-scancode-unknown-license-reference AND EPL-2.0 1
MIT AND Zlib 1

CVE Severity

critical 4
high 24
medium 27
low 0
unknown 0

Beta — feedback welcome: [email protected]