Skip to content
Tools / roundcubemail / Dependencies

Dependency Analysis

roundcubemail

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

51% Freshness
242 Dependencies
73 Outdated
0 Stale
12.4 Avg Behind

Dependency List

Latest release 1.6.15

Dependency Type Current Latest Behind CVE License
rollup
npm
Direct 4.45.1 4.61.0 53 behind 1 high 0BSD AND ISC AND MIT
serialize-javascript
npm
Transitive 6.0.2 7.0.5 6 behind 2 high BSD-3-Clause
lodash
npm
Transitive 4.17.21 4.18.1 3 behind 3 high CC0-1.0 AND MIT
picomatch
npm
Transitive 4.0.3 4.0.4 3 behind 2 high MIT
markdown-it
npm
Direct 14.1.0 14.2.0 2 behind 1 medium MIT

License Breakdown

MIT 133
Unknown 89
BSD-3-Clause 5
ISC 5
Apache-2.0 2
BSD-2-Clause 2
0BSD 1
0BSD AND ISC AND MIT 1
CC0-1.0 AND MIT 1
ISC AND MIT 1
Python-2.0 1

CVE Severity

critical 0
high 4
medium 1
low 0
unknown 0

Beta — feedback welcome: [email protected]