Dependency Analysis
ray
Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.
27%
Freshness
4357
Dependencies
2441
Outdated
0
Stale
25.8
Avg Behind
Dependency List
Latest release ray-2.55.1
| Dependency | Type | Current | Latest | Behind | CVE | License |
|---|---|---|---|---|---|---|
|
lxml
pypi
|
Direct | 6.0.2 | 6.1.1 | 4 behind | 1 high | BSD-3-Clause AND GPL-1.0-or-later |
|
lxml
pypi
|
Direct | 6.0.2 | 6.1.1 | 4 behind | 1 high | BSD-3-Clause AND GPL-1.0-or-later |
|
node-forge
npm
|
Transitive | 1.3.1 | 1.4.0 | 3 behind | 7 high | BSD-3-Clause OR GPL-2.0 OR (BSD-3-Clause AND GPL-2.0) |
|
paramiko
pypi
|
Direct | 2.12.0 | 5.0.0 | 12 behind | 1 medium | LGPL-2.1-or-later |
|
paramiko
pypi
|
Direct | 2.12.0 | 5.0.0 | 12 behind | 1 medium | LGPL-2.1-or-later |
|
com.puppycrawl.tools:checkstyle
maven
|
Direct | 8.19 | — | — | 1 medium | LGPL-2.1+ |
|
semgrep
pypi
|
Direct | 1.32.0 | 1.165.0 | 161 behind | — | GPL-3.0-or-later AND LGPL-2.0-only AND LGPL-2.1 |
|
semgrep
pypi
|
Direct | 1.32.0 | 1.165.0 | 161 behind | — | GPL-3.0-or-later AND LGPL-2.0-only AND LGPL-2.1 |
|
semgrep
pypi
|
Direct | 1.32.0 | 1.165.0 | 161 behind | — | GPL-3.0-or-later AND LGPL-2.0-only AND LGPL-2.1 |
|
dulwich
pypi
|
Direct | 0.21.6 | 1.2.6 | 35 behind | — | Apache-2.0 OR (Apache-2.0 AND GPL-2.0-only) |
|
dulwich
pypi
|
Direct | 0.21.6 | 1.2.6 | 35 behind | — | Apache-2.0 OR (Apache-2.0 AND GPL-2.0-only) |
|
dulwich
pypi
|
Direct | 0.24.1 | 1.2.6 | 21 behind | — | Apache-2.0 AND GPL-2.0-only |
|
chardet
pypi
|
Direct | 5.2.0 | 7.4.3 | 13 behind | — | LGPL-2.1-or-later |
|
charset-normalizer
pypi
|
Direct | 3.3.2 | 3.4.7 | 8 behind | — | LGPL-2.1-only AND MIT AND MPL-1.1 |
|
charset-normalizer
pypi
|
Direct | 3.3.2 | 3.4.7 | 8 behind | — | LGPL-2.1-only AND MIT AND MPL-1.1 |
|
ale-py
pypi
|
Direct | 0.10.1 | 0.12.0 | 5 behind | — | GPL-2.0-only AND LGPL-2.0-or-later |
|
ale-py
pypi
|
Direct | 0.10.1 | 0.12.0 | 5 behind | — | GPL-2.0-only AND LGPL-2.0-or-later |
|
ale-py
pypi
|
Direct | 0.10.1 | 0.12.0 | 5 behind | — | GPL-2.0-only AND LGPL-2.0-or-later |
|
ale-py
pypi
|
Direct | 0.10.1 | 0.12.0 | 5 behind | — | GPL-2.0-only AND LGPL-2.0-or-later |
|
ale-py
pypi
|
Direct | 0.10.1 | 0.12.0 | 5 behind | — | GPL-2.0-only AND LGPL-2.0-or-later |
|
pycurl
pypi
|
Direct | 7.45.4 | 7.46.0 | 4 behind | — | LGPL-2.0-or-later AND LGPL-2.1-only AND LGPL-3.0-or-later AND MIT AND curl |
|
pycurl
pypi
|
Direct | 7.45.4 | 7.46.0 | 4 behind | — | LGPL-2.0-or-later AND LGPL-2.1-only AND LGPL-3.0-or-later AND MIT AND curl |
|
pygame
pypi
|
Direct | 2.5.2 | 2.6.1 | 3 behind | — | GPL-3.0-or-later AND LGPL-2.0-or-later |
|
pygame
pypi
|
Direct | 2.5.2 | 2.6.1 | 3 behind | — | GPL-3.0-or-later AND LGPL-2.0-or-later |
|
pygame
pypi
|
Direct | 2.5.2 | 2.6.1 | 3 behind | — | GPL-3.0-or-later AND LGPL-2.0-or-later |
|
pygame
pypi
|
Direct | 2.5.2 | 2.6.1 | 3 behind | — | GPL-3.0-or-later AND LGPL-2.0-or-later |
|
paramiko
pypi
|
Direct | 3.5.1 | 5.0.0 | 2 behind | — | LGPL-2.1-or-later |
|
lxml
pypi
|
Direct | 6.1.0 | 6.1.1 | 1 behind | — | BSD-3-Clause AND GPL-1.0-or-later AND LicenseRef-scancode-unknown-license-reference |
|
pycurl
pypi
|
Direct | 7.45.7 | 7.46.0 | 1 behind | — | LGPL-2.0-or-later AND LGPL-2.1-only AND LGPL-3.0-or-later AND MIT AND curl |
|
sphinx-jsonschema
pypi
|
Direct | 1.19.1 | 1.19.2 | 1 behind | — | GPL-3.0-only AND GPL-3.0-or-later |
|
contextlib2
pypi
|
Direct | 21.6.0 | 21.6.0 | Current | — | Apache-2.0 AND GPL-1.0-or-later AND LicenseRef-scancode-other-copyleft AND PSF-2.0 AND Python-2.0 |
|
contextlib2
pypi
|
Direct | 21.6.0 | 21.6.0 | Current | — | Apache-2.0 AND GPL-1.0-or-later AND LicenseRef-scancode-other-copyleft AND PSF-2.0 AND Python-2.0 |
|
crc32c
pypi
|
Direct | 2.3 | 2.8.0 | — | — | GPL-3.0-or-later AND LGPL-2.0-or-later AND LGPL-2.1-or-later |
|
crc32c
pypi
|
Direct | 2.3 | 2.8.0 | — | — | GPL-3.0-or-later AND LGPL-2.0-or-later AND LGPL-2.1-or-later |
|
crc32c
pypi
|
Direct | 2.3 | 2.8.0 | — | — | GPL-3.0-or-later AND LGPL-2.0-or-later AND LGPL-2.1-or-later |
|
crc32c
pypi
|
Direct | 2.3 | 2.8.0 | — | — | GPL-3.0-or-later AND LGPL-2.0-or-later AND LGPL-2.1-or-later |
|
crc32c
pypi
|
Direct | 2.3 | 2.8.0 | — | — | GPL-3.0-or-later AND LGPL-2.0-or-later AND LGPL-2.1-or-later |
|
gitdb
pypi
|
Direct | 4.0.12 | 4.0.12 | Current | — | BSD-2-Clause AND BSD-3-Clause AND GPL-1.0-or-later |
|
typing-extensions
pypi
|
Direct | 4.15.0 | 4.15.0 | Current | — | Python-2.0 AND GPL-1.0-or-later AND Python-2.0 AND BSD-3-Clause AND Python-2.0 AND BSD-3-Clause AND 0BSD |
|
typing-extensions
pypi
|
Direct | 4.15.0 | 4.15.0 | Current | — | Python-2.0 AND GPL-1.0-or-later AND Python-2.0 AND BSD-3-Clause AND Python-2.0 AND BSD-3-Clause AND 0BSD |
License Breakdown
MIT
1893
Unknown
806
Apache-2.0
587
BSD-2-Clause AND BSD-3-Clause
268
BSD-3-Clause
168
ISC
166
BSD-2-Clause
141
CC0-1.0
43
Apache-2.0 AND MIT
33
MPL-2.0
22
MIT AND Python-2.0
15
BSD-3-Clause AND MIT
11
Apache-2.0 AND BSD-2-Clause
9
PSF-2.0
9
Apache-2.0 AND BSD-3-Clause
7
Apache-2.0 AND BSD-3-Clause AND MPL-2.0
7
Python-2.0.1
6
(Apache-2.0 AND BSD-3-Clause AND MIT) OR (Apache-2.0 AND MIT)
5
BSD-3-Clause AND LicenseRef-scancode-unknown-license-reference
5
BSD-3-Clause AND MIT AND SunPro
5
GPL-2.0-only AND LGPL-2.0-or-later
5
GPL-3.0-or-later AND LGPL-2.0-or-later AND LGPL-2.1-or-later
5
LicenseRef-scancode-generic-cla AND MIT
5
Unlicense
5
(Apache-2.0 AND BSD-3-Clause) OR (Apache-2.0 AND MIT)
4
Apache-2.0 AND LicenseRef-scancode-generic-cla
4
BSD-2-Clause AND BSD-3-Clause AND MIT
4
GPL-3.0-or-later AND LGPL-2.0-or-later
4
LGPL-2.1-or-later
4
Apache-2.0 AND BSD-3-Clause AND MIT AND OFL-1.1
3
Apache-2.0 AND BSD-3-Clause AND MIT AND Zlib
3
Apache-2.0 OR BSD-3-Clause OR (Apache-2.0 AND BSD-3-Clause)
3
CC0-1.0 AND MIT
3
CNRI-Python AND Apache-2.0
3
GPL-3.0-or-later AND LGPL-2.0-only AND LGPL-2.1
3
LGPL-2.0-or-later AND LGPL-2.1-only AND LGPL-3.0-or-later AND MIT AND curl
3
MIT AND MIT-0
3
MIT AND PSF-2.0
3
0BSD
2
0BSD AND BSD-2-Clause AND BSD-3-Clause AND BSD-4-Clause AND LicenseRef-scancode-python-cwi AND LicenseRef-scancode-secret-labs-2011 AND LicenseRef-scancode-unicode AND MIT AND Python-2.0
2
0BSD AND BSD-3-Clause AND LicenseRef-scancode-unknown-license-reference AND PSF-2.0 AND Python-2.0
2
Apache-2.0 AND BSD-2-Clause AND BSD-3-Clause AND CC0-1.0 AND ISC AND LicenseRef-scancode-unknown-license-reference AND MIT
2
Apache-2.0 AND BSD-3-Clause AND LicenseRef-scancode-unknown-license-reference
2
Apache-2.0 AND BSD-3-Clause AND MIT
2
Apache-2.0 AND GPL-1.0-or-later AND LicenseRef-scancode-other-copyleft AND PSF-2.0 AND Python-2.0
2
Apache-2.0 AND LicenseRef-scancode-free-unknown AND LicenseRef-scancode-unknown-license-reference
2
Apache-2.0 AND LicenseRef-scancode-unknown-license-reference
2
Apache-2.0 OR (Apache-2.0 AND GPL-2.0-only)
2
Apache-2.0 OR (Apache-2.0 AND MIT)
2
BSD-2-Clause AND BSD-3-Clause AND BSD-Source-Code AND Linux-OpenIB
2
BSD-2-Clause AND MIT
2
BSD-3-Clause AND CC-BY-SA-4.0
2
BSD-3-Clause AND GPL-1.0-or-later
2
BSD-3-Clause AND LicenseRef-scancode-protobuf
2
CAL-1.0 AND LicenseRef-scancode-unknown AND PSF-2.0 AND Python-2.0
2
ISC AND MIT
2
LGPL-2.1-only AND MIT AND MPL-1.1
2
MIT AND AFL-3.0
2
MIT AND X11-distribute-modifications-variant
2
MIT OR AFL-2.1
2
MIT-CMU
2
Python-2.0 AND GPL-1.0-or-later AND Python-2.0 AND BSD-3-Clause AND Python-2.0 AND BSD-3-Clause AND 0BSD
2
ZPL-2.1
2
(AFL-2.1 AND MIT AND Python-2.0) OR (AFL-2.1 AND MIT)
1
0BSD AND BSD-3-Clause AND LicenseRef-scancode-other-permissive AND MIT AND Python-2.0
1
AFL-2.1 AND AFL-3.0 AND BSD-3-Clause
1
Apache-2.0 AND CC-BY-4.0
1
Apache-2.0 AND GPL-2.0-only
1
Apache-2.0 AND LicenseRef-scancode-proprietary-license
1
Apache-2.0 OR MPL-1.1 OR (Apache-2.0 AND MPL-1.1)
1
Artistic-2.0
1
BSD-2-Clause AND BSD-2-Clause-Views
1
BSD-2-Clause AND BSD-3-Clause AND GPL-1.0-or-later
1
BSD-2-Clause AND BSD-3-Clause AND LicenseRef-scancode-ibm-glextrusion AND LicenseRef-scancode-newlib-historical AND LicenseRef-scancode-twisted-snmp AND LicenseRef-scancode-warranty-disclaimer AND MIT AND X11
1
BSD-2-Clause AND BSD-3-Clause AND LicenseRef-scancode-public-domain-disclaimer AND MIT
1
BSD-2-Clause AND Python-2.0
1
BSD-3-Clause AND CC0-1.0 AND ISC AND MIT
1
BSD-3-Clause AND GPL-1.0-or-later AND LicenseRef-scancode-unknown-license-reference
1
BSD-3-Clause AND Python-2.0
1
BSD-3-Clause OR Apache-2.0
1
BSD-3-Clause OR GPL-2.0 OR (BSD-3-Clause AND GPL-2.0)
1
BUSL-1.1 AND MIT
1
CC-BY-3.0
1
CC-BY-4.0
1
CC-BY-SA-4.0 AND ISC
1
GPL-3.0-only AND GPL-3.0-or-later
1
ISC AND MPL-2.0
1
LGPL-2.1+
1
LicenseRef-scancode-secret-labs-2011 AND MIT-CMU
1
LicenseRef-scancode-unknown-license-reference AND MIT
1
LicenseRef-scancode-unknown-license-reference AND MIT AND Python-2.0
1
MIT AND CC0-1.0
1
MIT AND HPND
1
MIT AND HPND-Markus-Kuhn
1
MIT AND MPL-2.0
1
MIT OR (CC0-1.0 AND MIT)
1
MIT OR WTFPL OR (MIT AND WTFPL)
1
MPL-2.0 AND Apache-2.0
1
MPL-2.0 AND Python-2.0
1
PSF-2.0 AND Python-2.0
1
Python-2.0
1
CVE Severity
critical
14
high
105
medium
64
low
17
unknown
2