Skip to content
Tools / langfuse / Dependencies

Dependency Analysis

langfuse

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

53% Freshness
2422 Dependencies
914 Outdated
0 Stale
10.0 Avg Behind

Dependency List

Latest release v3.172.1

Dependency Type Current Latest Behind CVE License
vite
npm
Transitive 7.0.5 8.0.16 74 behind 5 high Apache-2.0 AND BSD-2-Clause AND CC0-1.0 AND ISC AND MIT
undici
npm
Transitive 6.23.0 8.3.0 29 behind 5 high MIT
fast-xml-builder
npm
Transitive 1.1.4 1.2.0 6 behind 1 high MIT
path-to-regexp
npm
Transitive 8.3.0 8.4.2 4 behind 2 high MIT
basic-ftp
npm
Transitive 5.3.0 6.0.1 3 behind 1 high MIT
fast-uri
npm
Transitive 3.1.0 3.1.2 2 behind 2 high BSD-3-Clause
postcss
npm
Transitive 8.4.31 8.5.15 34 behind 1 medium MIT
langsmith
npm
Transitive 0.5.16 0.7.3 18 behind 2 medium MIT
nodemailer
npm
Transitive 7.0.11 8.0.10 13 behind 2 medium MIT AND MIT-0
fast-xml-parser
npm
Transitive 5.5.8 5.8.0 12 behind 1 medium MIT
brace-expansion
npm
Transitive 2.0.2 5.0.6 11 behind 1 medium MIT
hono
npm
Transitive 4.12.12 4.12.23 11 behind 3 medium MIT
@hono/node-server
npm
Transitive 1.19.12 2.0.4 8 behind 1 medium MIT
ip-address
npm
Direct 9.0.5 10.2.0 6 behind 1 medium MIT
uuid
npm
Transitive 13.0.0 14.0.0 1 behind 1 medium MIT
webpack
npm
Transitive 5.97.1 5.107.2 34 behind 2 low MIT
qs
npm
Transitive 6.14.1 6.15.2 32 behind 1 low BSD-3-Clause
brace-expansion
npm
Transitive 1.1.11 5.0.6 18 behind 1 low MIT
diff
npm
Transitive 4.0.2 9.0.0 18 behind 1 low BSD-3-Clause
@tootallnate/once
npm
Transitive 2.0.0 3.0.1 2 behind 1 low MIT

License Breakdown

MIT 1588
Unknown 297
Apache-2.0 284
ISC 78
BSD-3-Clause 42
BSD-2-Clause 27
MPL-2.0 13
CC0-1.0 AND MIT 12
Apache-2.0 AND MIT 10
BSD-2-Clause AND LGPL-2.0-only AND LGPL-2.1-only AND LGPL-3.0-only AND LGPL-3.0-or-later AND LicenseRef-scancode-other-permissive AND MIT AND MPL-2.0 10
FSL-1.1-MIT 9
BlueOak-1.0.0 6
(Apache-2.0 OR BSD-3-Clause) 4
(UPL-1.0 OR Apache-2.0) 3
Apache-2.0 AND BSD-2-Clause AND LGPL-2.0-only AND LGPL-2.1-only AND LGPL-3.0-only AND LGPL-3.0-or-later AND LicenseRef-scancode-other-permissive AND MIT AND MPL-2.0 3
ISC AND MIT 3
MIT OR (Apache-2.0 AND MIT) 3
Apache-2.0 AND BSD-3-Clause 2
Apache-2.0 AND CC-BY-3.0 AND CC-BY-4.0 AND CC-BY-SA-3.0 AND CC0-1.0 AND ISC AND LicenseRef-scancode-unknown-license-reference AND MIT AND MPL-2.0 AND OFL-1.1 2
MIT OR (CC0-1.0 AND MIT) 2
(MPL-2.0 OR Apache-2.0) 1
0BSD 1
0BSD AND ISC AND MIT 1
0BSD AND MIT 1
AFL-2.1 AND AFL-3.0 AND BSD-3-Clause 1
Apache-2.0 AND BSD-2-Clause 1
Apache-2.0 AND BSD-2-Clause AND CC0-1.0 AND ISC AND MIT 1
Apache-2.0 OR (Apache-2.0 AND LGPL-3.0-only) 1
BSD-2-Clause AND BSD-2-Clause-Views 1
BSD-2-Clause AND BSD-3-Clause 1
BSD-2-Clause AND JSON 1
BSD-3-Clause AND ISC 1
BlueOak-1.0.0 AND ISC AND MIT 1
CC-BY-4.0 1
CC0-1.0 1
CC0-1.0 OR MIT OR (CC0-1.0 AND MIT) 1
ISC AND JSON AND MIT 1
MIT AND MIT-0 1
MIT AND MITNFA 1
MIT AND Zlib 1
MIT OR Apache-2.0 1
MIT-0 1
Python-2.0 1
Unlicense 1
WTFPL 1
WTFPL OR (MIT AND WTFPL) 1

CVE Severity

critical 0
high 6
medium 9
low 5
unknown 0

Beta — feedback welcome: [email protected]