Skip to content
Tools / profilarr / Dependencies

Dependency Analysis

profilarr

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

66% Freshness
274 Dependencies
75 Outdated
0 Stale
5.6 Avg Behind

Dependency List

Latest release v1.1.4

Dependency Type Current Latest Behind CVE License
gitpython
pypi
Direct 3.1.24 8 critical BSD-2-Clause
minimatch
npm
Transitive 5.1.6 10.2.5 71 behind 3 high ISC
gunicorn
pypi
Direct 21.2.0 26.0.0 13 behind 2 high MIT
fast-uri
npm
Transitive 3.1.0 3.1.2 2 behind 2 high BSD-3-Clause
aiohttp
pypi
Direct 3.8.5 28 high Apache-2.0
flask
pypi
Direct 2.0.1 2 high BSD-2-Clause AND BSD-3-Clause
flask-cors
pypi
Direct 3.0.10 5 high MIT
kysely
npm
Direct 0.27.6 2 high MIT
werkzeug
pypi
Direct 2.0.1 10 high BSD-2-Clause AND BSD-3-Clause
requests
pypi
Direct 2.26.0 2.34.2 20 behind 1 medium Apache-2.0
requests
pypi
Direct 2.31.0 2.34.2 12 behind 3 medium Apache-2.0
brace-expansion
npm
Transitive 2.0.2 5.0.6 11 behind 1 medium MIT
js-yaml
npm
Transitive 4.1.0 4.2.0 3 behind 1 medium MIT
cookie
npm
Transitive 0.6.0 1.1.1 8 behind 1 low MIT

License Breakdown

MIT 188
Unknown 35
Apache-2.0 14
ISC 12
MPL-2.0 12
BSD-3-Clause 3
BSD-2-Clause AND BSD-3-Clause 2
0BSD 1
Apache-2.0 OR BSD-2-Clause OR MIT OR (Apache-2.0 AND BSD-2-Clause) OR (Apache-2.0 AND MIT) OR (BSD-2-Clause AND MIT) 1
BSD-2-Clause 1
CC0-1.0 1
CC0-1.0 AND MIT 1
MIT OR (MIT AND WTFPL) 1
Python-2.0 1

CVE Severity

critical 1
high 8
medium 4
low 1
unknown 0

Beta — feedback welcome: [email protected]