Skip to content
Tools / llama_index / Dependencies

Dependency Analysis

llama_index

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

50% Freshness
4009 Dependencies
1358 Outdated
0 Stale
7.1 Avg Behind

Dependency List

Latest release v0.14.21

Dependency Type Current Latest Behind CVE License
litellm
pypi
Direct 1.83.0 1.88.0.dev1 36 behind 3 critical Unknown
pandasai
pypi
Direct 2.3.0 3.0.0 34 behind 1 critical MIT
nltk
pypi
Direct 3.9.1 3.9.4 3 behind 4 critical Apache-2.0
h11
pypi
Direct 0.14.0 0.16.0 2 behind 1 critical MIT
python-jose
pypi
Direct 3.3.0 3.5.0 2 behind 2 critical MIT
torch
pypi
Direct 2.3.1 2.12.0 Current 4 critical Unknown
fastapi
pypi
Direct 0.104.1 0.136.3 109 behind 1 high MIT
jupyterlab
pypi
Direct 4.0.13 4.5.7 84 behind 2 high BSD-2-Clause
transformers
pypi
Direct 4.41.2 5.10.1 84 behind 10 high Apache-2.0
notebook
pypi
Direct 7.0.8 7.5.6 63 behind 1 high BSD-2-Clause AND BSD-3-Clause
starlette
pypi
Direct 0.27.0 1.2.1 62 behind 2 high BSD-2-Clause AND BSD-3-Clause
virtualenv
pypi
Direct 20.26.3 21.4.2 43 behind 1 high MIT
protobuf
pypi
Direct 6.30.2 7.35.0 29 behind 2 high BSD-3-Clause AND LicenseRef-scancode-protobuf
joserfc
pypi
Direct 1.0.4 1.7.0 24 behind 1 high BSD-3-Clause
starlette
pypi
Direct 0.45.3 1.2.1 22 behind 1 high BSD-2-Clause AND BSD-3-Clause
cryptography
pypi
Direct 44.0.2 48.0.0 19 behind 2 high Apache-2.0 OR BSD-3-Clause OR (Apache-2.0 AND BSD-3-Clause)
orjson
pypi
Direct 3.10.15 3.11.9 13 behind 1 high Apache-2.0 AND MIT
couchbase
pypi
Direct 4.3.5 4.6.1 12 behind 1 high Apache-2.0 AND ISC AND OpenSSL AND OpenSSL-standalone AND SSLeay-standalone
llama-index-cli
pypi
Direct 0.4.0 0.5.7 12 behind 1 high MIT
python-multipart
pypi
Direct 0.0.18 0.0.30 12 behind 1 high Apache-2.0
azure-core
pypi
Direct 1.35.0 1.41.0 10 behind 1 high LicenseRef-scancode-generic-cla AND MIT
tornado
pypi
Direct 6.4.1 6.5.6 9 behind 1 high Apache-2.0
python-multipart
pypi
Direct 0.0.22 0.0.30 8 behind 2 high Apache-2.0
tornado
pypi
Direct 6.4.2 6.5.6 8 behind 1 high Apache-2.0
diffusers
pypi
Direct 0.34.0 0.38.0 7 behind 1 high Unknown
pyjwt
pypi
Direct 2.8.0 2.13.0 7 behind 1 high MIT
urllib3
pypi
Direct 2.3.0 2.7.0 7 behind 3 high MIT
pillow
pypi
Direct 11.1.0 12.2.0 6 behind 1 high LicenseRef-scancode-secret-labs-2011 AND MIT-CMU
gitpython
pypi
Direct 3.1.45 3.1.50 5 behind 4 high BSD-3-Clause
pillow
pypi
Direct 11.2.1 12.2.0 5 behind 1 high LicenseRef-scancode-secret-labs-2011 AND MIT-CMU
jupyter-core
pypi
Direct 5.7.2 5.9.1 4 behind 1 high BSD-3-Clause
jupyter-server
pypi
Transitive 2.17.0 2.19.0 4 behind 4 high BSD-3-Clause
jupyter-server
pypi
Transitive 2.17.0 2.19.0 4 behind 4 high BSD-3-Clause
jupyter-server
pypi
Transitive 2.17.0 2.19.0 4 behind 4 high BSD-3-Clause
jupyter-server
pypi
Transitive 2.17.0 2.19.0 4 behind 4 high BSD-3-Clause
jupyter-server
pypi
Transitive 2.17.0 2.19.0 4 behind 4 high BSD-3-Clause
jupyter-server
pypi
Transitive 2.17.0 2.19.0 4 behind 4 high BSD-3-Clause
jupyter-server
pypi
Transitive 2.17.0 2.19.0 4 behind 4 high BSD-3-Clause
jupyter-server
pypi
Transitive 2.17.0 2.19.0 4 behind 4 high BSD-3-Clause
jupyter-server
pypi
Transitive 2.17.0 2.19.0 4 behind 4 high BSD-3-Clause
jupyter-server
pypi
Direct 2.17.0 2.19.0 4 behind 4 high BSD-3-Clause
notebook
pypi
Transitive 7.5.5 7.5.6 3 behind 2 high Unknown
notebook
pypi
Transitive 7.5.5 7.5.6 3 behind 2 high Unknown
notebook
pypi
Transitive 7.5.5 7.5.6 3 behind 2 high Unknown
notebook
pypi
Transitive 7.5.5 7.5.6 3 behind 2 high Unknown
notebook
pypi
Transitive 7.5.5 7.5.6 3 behind 2 high Unknown
notebook
pypi
Transitive 7.5.5 7.5.6 3 behind 2 high Unknown
notebook
pypi
Transitive 7.5.5 7.5.6 3 behind 2 high Unknown
notebook
pypi
Transitive 7.5.5 7.5.6 3 behind 2 high Unknown
notebook
pypi
Transitive 7.5.5 7.5.6 3 behind 2 high Unknown
notebook
pypi
Direct 7.5.5 7.5.6 3 behind 2 high Unknown
pyopenssl
pypi
Direct 25.3.0 26.2.0 3 behind 2 high Apache-2.0
ujson
pypi
Direct 5.10.0 5.12.1 3 behind 2 high BSD-2-Clause AND BSD-3-Clause
ecdsa
pypi
Direct 0.19.0 0.19.2 2 behind 2 high MIT
jupyterlab
pypi
Transitive 4.5.6 4.5.7 2 behind 3 high Unknown
jupyterlab
pypi
Transitive 4.5.6 4.5.7 2 behind 3 high Unknown
jupyterlab
pypi
Transitive 4.5.6 4.5.7 2 behind 3 high Unknown
jupyterlab
pypi
Transitive 4.5.6 4.5.7 2 behind 3 high Unknown
jupyterlab
pypi
Transitive 4.5.6 4.5.7 2 behind 3 high Unknown
jupyterlab
pypi
Transitive 4.5.6 4.5.7 2 behind 3 high Unknown
jupyterlab
pypi
Transitive 4.5.6 4.5.7 2 behind 3 high Unknown
jupyterlab
pypi
Transitive 4.5.6 4.5.7 2 behind 3 high Unknown
jupyterlab
pypi
Transitive 4.5.6 4.5.7 2 behind 3 high Unknown
jupyterlab
pypi
Direct 4.5.6 4.5.7 2 behind 3 high Unknown
mako
pypi
Direct 1.3.10 1.3.12 2 behind 2 high MIT
nbconvert
pypi
Direct 7.16.6 7.17.1 2 behind 1 high BSD-3-Clause
pyasn1
pypi
Direct 0.6.1 0.6.3 2 behind 1 high BSD-2-Clause
ray
pypi
Direct 2.54.1 2.55.1 2 behind 1 high Unknown
tornado
pypi
Direct 6.5.4 6.5.6 2 behind 3 high Apache-2.0
banks
pypi
Transitive 2.4.1 2.4.2 1 behind 1 high Unknown
banks
pypi
Transitive 2.4.1 2.4.2 1 behind 1 high Unknown
banks
pypi
Transitive 2.4.1 2.4.2 1 behind 1 high Unknown
banks
pypi
Transitive 2.4.1 2.4.2 1 behind 1 high Unknown
banks
pypi
Transitive 2.4.1 2.4.2 1 behind 1 high Unknown
banks
pypi
Transitive 2.4.1 2.4.2 1 behind 1 high Unknown
banks
pypi
Transitive 2.4.1 2.4.2 1 behind 1 high Unknown
banks
pypi
Transitive 2.4.1 2.4.2 1 behind 1 high Unknown
banks
pypi
Direct 2.4.1 2.4.2 1 behind 1 high Unknown
mistune
pypi
Transitive 3.2.0 3.2.1 1 behind 1 high BSD-3-Clause
mistune
pypi
Transitive 3.2.0 3.2.1 1 behind 1 high BSD-3-Clause
mistune
pypi
Transitive 3.2.0 3.2.1 1 behind 1 high BSD-3-Clause
mistune
pypi
Transitive 3.2.0 3.2.1 1 behind 1 high BSD-3-Clause
mistune
pypi
Transitive 3.2.0 3.2.1 1 behind 1 high BSD-3-Clause
mistune
pypi
Transitive 3.2.0 3.2.1 1 behind 1 high BSD-3-Clause
mistune
pypi
Transitive 3.2.0 3.2.1 1 behind 1 high BSD-3-Clause
mistune
pypi
Transitive 3.2.0 3.2.1 1 behind 1 high BSD-3-Clause
mistune
pypi
Transitive 3.2.0 3.2.1 1 behind 1 high BSD-3-Clause
mistune
pypi
Direct 3.2.0 3.2.1 1 behind 1 high BSD-3-Clause
nltk
pypi
Direct 3.9.3 3.9.4 1 behind 3 high Apache-2.0
pillow
pypi
Transitive 12.1.1 12.2.0 1 behind 5 high LicenseRef-scancode-secret-labs-2011 AND MIT-CMU
pyasn1
pypi
Direct 0.6.2 0.6.3 1 behind 1 high BSD-2-Clause AND BSD-3-Clause AND MIT
lupa
pypi
Direct 2.6 2.8.0 1 high MIT
aim
pypi
Direct 3.29.1 4.0.3 80 behind 2 medium Unknown
ms-swift
pypi
Direct 3.4.0 4.2.3 51 behind 3 medium Apache-2.0 AND MIT
transformers
pypi
Direct 4.52.4 5.10.1 44 behind 4 medium Apache-2.0
pypdf
pypi
Direct 5.2.0 6.12.2 40 behind 15 medium BSD-2-Clause
pytest
pypi
Direct 7.2.1 9.0.3 33 behind 1 medium MIT
pytest
pypi
Direct 7.2.1 9.0.3 33 behind 1 medium MIT
pytest
pypi
Direct 7.2.1 9.0.3 33 behind 1 medium MIT
pytest
pypi
Direct 7.2.1 9.0.3 33 behind 1 medium MIT
pytest
pypi
Direct 7.2.1 9.0.3 33 behind 1 medium MIT
pytest
pypi
Direct 7.2.1 9.0.3 33 behind 1 medium MIT
virtualenv
pypi
Direct 20.32.0 21.4.2 27 behind 1 medium MIT
cryptography
pypi
Direct 43.0.0 48.0.0 24 behind 1 medium Apache-2.0 OR BSD-3-Clause OR (Apache-2.0 AND BSD-3-Clause)
langsmith
pypi
Direct 0.7.25 0.8.9 23 behind 1 medium Unknown
filelock
pypi
Direct 3.18.0 3.29.1 21 behind 2 medium Unlicense
langchain-core
pypi
Direct 1.2.25 1.4.0 19 behind 1 medium Unknown
transformers
pypi
Direct 4.57.6 5.10.1 19 behind 1 medium Apache-2.0
transformers
pypi
Direct 4.57.6 5.10.1 19 behind 1 medium Apache-2.0
fonttools
pypi
Direct 4.57.0 4.63.0 17 behind 1 medium Apache-2.0 AND BSD-3-Clause AND MIT AND OFL-1.1
marshmallow
pypi
Direct 3.26.0 4.3.0 13 behind 1 medium BSD-3-Clause AND MIT
pypdf
pypi
Direct 6.8.0 6.12.2 10 behind 2 medium Unknown
pypdf
pypi
Direct 6.9.2 6.12.2 7 behind 5 medium Unknown
authlib
pypi
Direct 1.6.9 1.7.2 6 behind 1 medium BSD-3-Clause
vllm
pypi
Direct 0.19.0 0.22.0 6 behind 3 medium Unknown
werkzeug
pypi
Direct 3.1.3 3.1.8 5 behind 3 medium BSD-2-Clause AND BSD-3-Clause
flask-cors
pypi
Direct 5.0.1 6.0.2 4 behind 3 medium MIT
cryptography
pypi
Transitive 46.0.6 48.0.0 3 behind 1 medium BSD-3-Clause OR Apache-2.0
cryptography
pypi
Transitive 46.0.6 48.0.0 3 behind 1 medium BSD-3-Clause OR Apache-2.0
cryptography
pypi
Transitive 46.0.6 48.0.0 3 behind 1 medium BSD-3-Clause OR Apache-2.0
cryptography
pypi
Transitive 46.0.6 48.0.0 3 behind 1 medium BSD-3-Clause OR Apache-2.0
cryptography
pypi
Transitive 46.0.6 48.0.0 3 behind 1 medium BSD-3-Clause OR Apache-2.0
cryptography
pypi
Transitive 46.0.6 48.0.0 3 behind 1 medium BSD-3-Clause OR Apache-2.0
cryptography
pypi
Transitive 46.0.6 48.0.0 3 behind 1 medium BSD-3-Clause OR Apache-2.0
cryptography
pypi
Transitive 46.0.6 48.0.0 3 behind 1 medium BSD-3-Clause OR Apache-2.0
pip
pypi
Direct 26.0.1 26.1.2 3 behind 2 medium MIT
jinja2
pypi
Direct 3.1.4 3.1.6 2 behind 3 medium BSD-2-Clause AND BSD-3-Clause
h2
pypi
Direct 4.2.0 4.3.0 1 behind 1 medium MIT
langchain-text-splitters
pypi
Direct 1.1.1 1.1.2 1 behind 1 medium Unknown
nbconvert
pypi
Transitive 7.17.0 7.17.1 1 behind 2 medium BSD-3-Clause
nbconvert
pypi
Transitive 7.17.0 7.17.1 1 behind 2 medium BSD-3-Clause
nbconvert
pypi
Transitive 7.17.0 7.17.1 1 behind 2 medium BSD-3-Clause
nbconvert
pypi
Transitive 7.17.0 7.17.1 1 behind 2 medium BSD-3-Clause
nbconvert
pypi
Transitive 7.17.0 7.17.1 1 behind 2 medium BSD-3-Clause
nbconvert
pypi
Transitive 7.17.0 7.17.1 1 behind 2 medium BSD-3-Clause
nbconvert
pypi
Transitive 7.17.0 7.17.1 1 behind 2 medium BSD-3-Clause
nbconvert
pypi
Direct 7.17.0 7.17.1 1 behind 2 medium BSD-3-Clause
tinytag
pypi
Direct 2.2.0 2.2.1 1 behind 1 medium MIT
diskcache
pypi
Direct 5.6.3 5.6.3 Current 1 medium Apache-2.0
pypdf2
pypi
Direct 3.0.1 3.0.1 Current 1 medium BSD-2-Clause AND BSD-3-Clause
cryptography
pypi
Direct 43.0.3 48.0.0 22 behind 1 low BSD-3-Clause OR Apache-2.0
mem0ai
pypi
Direct 1.0.2 2.0.4 17 behind 1 low Apache-2.0
flask
pypi
Direct 3.1.0 3.1.3 3 behind 2 low BSD-2-Clause AND BSD-3-Clause
pygments
pypi
Transitive 2.19.2 2.20.0 1 behind 1 low BSD-2-Clause

License Breakdown

Unknown 1120
MIT 986
Apache-2.0 528
BSD-3-Clause 440
BSD-2-Clause AND BSD-3-Clause 221
BSD-2-Clause 97
Apache-2.0 AND MIT 52
ISC 43
BSD-3-Clause AND MIT 41
MPL-2.0 38
Apache-2.0 AND BSD-2-Clause 27
MIT AND MPL-2.0 23
CNRI-Python AND Apache-2.0 16
PSF-2.0 15
MIT AND Python-2.0 14
Apache-2.0 AND BSD-3-Clause AND MIT AND Zlib 13
BSD-3-Clause OR Apache-2.0 13
BSD-3-Clause AND CC0-1.0 AND ISC AND MIT 12
MIT AND HPND-Markus-Kuhn 12
MIT-0 12
Python-2.0 AND GPL-1.0-or-later AND Python-2.0 AND BSD-3-Clause AND Python-2.0 AND BSD-3-Clause AND 0BSD 12
0BSD AND BSD-3-Clause AND LicenseRef-scancode-unknown-license-reference AND PSF-2.0 AND Python-2.0 11
Apache-2.0 AND BSD-3-Clause AND LicenseRef-scancode-unknown-license-reference 11
GPL-2.0-or-later AND GPL-3.0-or-later 11
GPL-3.0-or-later AND LGPL-2.1-or-later 11
0BSD AND Apache-2.0 AND BSD-3-Clause AND MIT 10
Apache-2.0 AND GPL-1.0-or-later AND MIT 10
GPL-2.0 10
LicenseRef-scancode-free-unknown AND MIT 10
LicenseRef-scancode-generic-cla AND MIT 10
LicenseRef-scancode-unknown-license-reference AND MIT AND Python-2.0 10
MIT AND AFL-3.0 10
MIT AND CC0-1.0 10
MIT AND PSF-2.0 10
MIT-CMU 10
PSF-2.0 AND Python-2.0 10
BSD-3-Clause AND LicenseRef-scancode-protobuf 7
Apache-2.0 AND BSD-3-Clause AND MPL-2.0 6
Apache-2.0 AND MIT AND MPL-2.0 6
BSD-2-Clause AND BSD-3-Clause AND MIT 6
LicenseRef-scancode-secret-labs-2011 AND MIT-CMU 6
Unlicense 6
Python-2.0.1 5
Apache-2.0 AND BSD-3-Clause 4
Apache-2.0 OR BSD-3-Clause OR (Apache-2.0 AND BSD-3-Clause) 4
MIT AND PSF-2.0 AND Python-2.0 4
BSD-3-Clause AND LicenseRef-scancode-unknown-license-reference 3
LGPL-2.0-or-later AND LGPL-3.0-or-later 3
0BSD AND LGPL-2.0-or-later 2
AGPL-3.0 AND AGPL-3.0-only AND AGPL-3.0-or-later 2
Apache-2.0 AND BSD-3-Clause AND MIT AND OFL-1.1 2
Apache-2.0 AND LicenseRef-scancode-generic-cla 2
Apache-2.0 AND Python-2.0 2
BSD-2-Clause AND BSD-3-Clause AND ISC AND Python-2.0 2
LGPL-2.0-or-later AND MIT 2
MIT AND ZPL-2.1 2
(AFL-2.1 AND MIT AND Python-2.0) OR (AFL-2.1 AND MIT) 1
(Apache-2.0 AND BSD-3-Clause AND MIT) OR (Apache-2.0 AND MIT) 1
(Apache-2.0 AND LicenseRef-scancode-unknown-license-reference) OR (LicenseRef-scancode-unknown-license-reference AND UPL-1.0) 1
0BSD AND BSD-2-Clause AND BSD-3-Clause AND BSD-4-Clause AND LicenseRef-scancode-python-cwi AND LicenseRef-scancode-secret-labs-2011 AND LicenseRef-scancode-unicode AND MIT AND Python-2.0 1
0BSD AND BSD-3-Clause AND LicenseRef-scancode-other-permissive AND MIT AND Python-2.0 1
AGPL-3.0-only 1
Apache-2.0 AND BSD-2-Clause AND BSD-3-Clause AND BSL-1.0 AND LicenseRef-scancode-generic-cla AND LicenseRef-scancode-secret-labs-2011 AND MIT AND MIT-0 AND MPL-2.0 1
Apache-2.0 AND CC-BY-4.0 1
Apache-2.0 AND CC-BY-SA-4.0 1
Apache-2.0 AND CC0-1.0 AND LicenseRef-scancode-public-domain 1
Apache-2.0 AND GPL-1.0-or-later AND LicenseRef-scancode-other-copyleft AND PSF-2.0 AND Python-2.0 1
Apache-2.0 AND ISC AND OpenSSL AND OpenSSL-standalone AND SSLeay-standalone 1
Apache-2.0 AND LGPL-2.1-or-later AND MIT 1
Apache-2.0 AND LicenseRef-scancode-generic-cla AND MIT 1
Apache-2.0 AND LicenseRef-scancode-unknown-license-reference 1
Apache-2.0 OR (Apache-2.0 AND BSD-3-Clause) 1
Artistic-1.0-Perl OR GPL-1.0-only OR GPL-2.0-or-later 1
BSD-2-Clause AND BSD-3-Clause AND BSD-3-Clause-Modification AND HPND AND LicenseRef-scancode-proprietary-license 1
BSD-2-Clause AND BSD-3-Clause AND GPL-1.0-or-later 1
BSD-2-Clause AND BSD-3-Clause AND ISC 1
BSD-2-Clause AND BSD-3-Clause AND LicenseRef-scancode-public-domain AND Unlicense 1
BSD-2-Clause AND BSD-3-Clause AND Python-2.0 AND Ruby 1
BSD-2-Clause AND MIT AND Python-2.0 AND Python-2.0.1 1
BSD-3-Clause AND GPL-1.0-or-later 1
BSD-3-Clause AND ISC 1
CAL-1.0 AND LicenseRef-scancode-unknown AND PSF-2.0 AND Python-2.0 1
CC0-1.0 AND Unlicense 1
GPL-2.0 AND GPL-2.0-only 1
GPL-2.0-only 1
GPL-3.0-or-later 1
ISC AND MPL-2.0 1
LGPL-2.0-only AND LGPL-2.1 AND LGPL-2.1-only 1
LGPL-2.0-or-later AND LGPL-2.1-only AND LicenseRef-scancode-public-domain AND MIT AND MPL-1.1 1
LGPL-2.1-only AND MIT 1
LGPL-2.1-only AND MIT AND MPL-1.1 1
LGPL-2.1-or-later 1
LicenseRef-scancode-commercial-license AND LicenseRef-scancode-other-permissive AND MIT 1
LicenseRef-scancode-proprietary-license AND MIT 1
MIT AND BSD-3-Clause 1
MIT AND Python-2.0 AND Python-2.0.1 AND BSD-2-Clause AND MIT AND Python-2.0 AND Python-2.0.1 AND BSD-2-Clause 1
MIT AND Zlib 1
MPL-2.0 AND Apache-2.0 1
ZPL-2.1 1

CVE Severity

critical 6
high 86
medium 48
low 4
unknown 0

Beta — feedback welcome: [email protected]