Skip to content
Tools / Salt / Dependencies

Dependency Analysis

Salt

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

64% Freshness
587 Dependencies
153 Outdated
0 Stale
6.6 Avg Behind

Dependency List

Latest release v3007.14

Dependency Type Current Latest Behind CVE License
h11
pypi
Direct 0.14.0 0.16.0 2 behind 1 critical MIT
aiohttp
pypi
Direct 3.9.5 3.14.0 75 behind 10 high Apache-2.0
cryptography
pypi
Direct 42.0.5 48.0.0 28 behind 3 high BSD-3-Clause OR Apache-2.0
urllib3
pypi
Direct 2.2.3 2.7.0 8 behind 5 high MIT
mako
pypi
Direct 1.3.6 1.3.12 6 behind 2 high MIT
pyjwt
pypi
Direct 2.9.0 2.13.0 6 behind 1 high MIT
gitpython
pypi
Direct 3.1.46 3.1.50 4 behind 4 high BSD-3-Clause
lxml
pypi
Direct 6.0.2 6.1.1 4 behind 1 high BSD-3-Clause AND GPL-1.0-or-later
pyopenssl
pypi
Direct 25.3.0 26.2.0 3 behind 2 high Apache-2.0
tornado
pypi
Direct 6.5.4 6.5.6 2 behind 3 high Apache-2.0
pyasn1
pypi
Direct 0.6.2 0.6.3 1 behind 1 high BSD-2-Clause AND BSD-3-Clause AND MIT
filelock
pypi
Direct 3.19.1 3.29.1 20 behind 2 medium Unlicense
requests
pypi
Direct 2.31.0 2.34.2 12 behind 1 medium Apache-2.0
requests
pypi
Direct 2.32.3 2.34.2 8 behind 2 medium Apache-2.0
cryptography
pypi
Direct 46.0.5 48.0.0 4 behind 2 medium Apache-2.0 AND BSD-3-Clause
aiohttp
pypi
Direct 3.13.3 3.14.0 3 behind 10 medium Apache-2.0 AND MIT
pynacl
pypi
Direct 1.5.0 1.6.2 3 behind 1 medium Apache-2.0
jinja2
pypi
Direct 3.1.4 3.1.6 2 behind 2 medium BSD-2-Clause AND BSD-3-Clause
pygments
pypi
Direct 2.19.2 2.20.0 1 behind 1 low BSD-2-Clause
boto3
pypi
Direct 1.39.4 1.43.20 215 behind Apache-2.0
pydantic
pypi
Direct 2.6.4 2.13.4 67 behind MIT
pydantic-core
pypi
Direct 2.16.3 2.47.0 62 behind MIT
pydantic
pypi
Direct 2.9.2 2.13.4 48 behind MIT
pydantic-core
pypi
Direct 2.23.4 2.47.0 46 behind MIT
slack-sdk
pypi
Direct 3.21.3 3.42.0 38 behind MIT
yarl
pypi
Direct 1.9.4 1.24.2 36 behind Apache-2.0
astroid
pypi
Direct 3.1.0 4.1.2 31 behind LGPL-2.1-or-later
platformdirs
pypi
Direct 4.0.0 4.10.0 26 behind MIT
pylint
pypi
Direct 3.1.0 4.0.5 26 behind GPL-2.0-or-later
filelock
pypi
Direct 3.16.1 3.29.1 23 behind Unlicense
importlib-metadata
pypi
Direct 6.6.0 9.0.0 23 behind Apache-2.0
importlib-resources
pypi
Direct 5.12.0 7.1.0 22 behind Apache-2.0
pyzmq
pypi
Direct 25.1.2 27.1.0 22 behind Unknown
typing-extensions
pypi
Direct 4.8.0 4.15.0 20 behind Python-2.0.1
sphinx
pypi
Direct 8.1.3 9.1.0 19 behind BSD-2-Clause AND BSD-2-Clause-Views AND BSD-3-Clause
certifi
pypi
Direct 2023.7.22 2026.5.20 18 behind MPL-2.0
multidict
pypi
Direct 6.1.0 6.7.1 18 behind Apache-2.0
docutils
pypi
Direct 0.20.1 0.23.0 17 behind BSD-2-Clause
rpds-py
pypi
Direct 0.20.0 2026.5.1 17 behind MIT
s3transfer
pypi
Direct 0.10.3 0.18.0 17 behind Apache-2.0
google-auth
pypi
Direct 2.35.0 3.0.0.dev0 16 behind Apache-2.0
croniter
pypi
Direct 2.0.5 6.2.2 15 behind MIT
urllib3
pypi
Direct 1.26.18 2.7.0 15 behind MIT
certifi
pypi
Direct 2024.7.4 2026.5.20 14 behind MPL-2.0
click
pypi
Direct 8.1.3 8.4.1 14 behind BSD-2-Clause AND BSD-3-Clause
certifi
pypi
Direct 2024.8.30 2026.5.20 13 behind MPL-2.0
docutils
pypi
Direct 0.21.2 0.23.0 13 behind BSD-2-Clause
more-itertools
pypi
Direct 9.1.0 11.1.0 13 behind MIT
psutil
pypi
Direct 5.9.6 7.2.2 13 behind BSD-2-Clause AND BSD-3-Clause
typer
pypi
Direct 0.23.2 0.26.7 13 behind MIT
httpx
pypi
Direct 0.24.1 1.0.0.dev3 12 behind BSD-2-Clause AND BSD-3-Clause
platformdirs
pypi
Direct 4.4.0 4.10.0 12 behind MIT
virtualenv
pypi
Direct 21.1.0 21.4.2 12 behind MIT
charset-normalizer
pypi
Direct 3.2.0 3.4.7 11 behind MIT
httpcore
pypi
Direct 0.17.3 1.0.9 11 behind BSD-2-Clause AND BSD-3-Clause
psutil
pypi
Direct 5.9.8 7.2.2 11 behind BSD-2-Clause AND BSD-3-Clause
pyjwt
pypi
Direct 2.4.0 2.13.0 11 behind MIT
typer
pypi
Direct 0.24.1 0.26.7 11 behind MIT
virtualenv
pypi
Direct 21.2.0 21.4.2 11 behind MIT
click
pypi
Direct 8.1.7 8.4.1 10 behind BSD-3-Clause
lxml
pypi
Direct 5.3.0 6.1.1 10 behind BSD-2-Clause AND BSD-3-Clause
pathspec
pypi
Direct 0.11.1 1.1.1 10 behind MPL-2.0
pyparsing
pypi
Direct 3.2.0 3.3.2 10 behind MIT AND Python-2.0
python-discovery
pypi
Direct 1.1.0 1.4.0 10 behind MIT
xmltodict
pypi
Direct 0.13.0 1.0.4 10 behind MIT
click
pypi
Direct 8.1.8 8.4.1 9 behind BSD-2-Clause AND BSD-3-Clause
psutil
pypi
Direct 6.1.0 7.2.2 9 behind BSD-2-Clause AND BSD-3-Clause
typing-extensions
pypi
Direct 4.12.2 4.15.0 9 behind Python-2.0.1
urllib3
pypi
Direct 1.26.20 2.7.0 9 behind MIT
anyio
pypi
Direct 4.6.2.post1 4.13.0 8 behind MIT
attrs
pypi
Direct 23.2.0 26.1.0 8 behind MIT
bcrypt
pypi
Direct 4.0.1 5.0.0 8 behind Apache-2.0
pytest-subtests
pypi
Direct 0.11.0 0.15.0 8 behind MIT
babel
pypi
Direct 2.12.1 2.18.0 7 behind BSD-2-Clause AND BSD-3-Clause
charset-normalizer
pypi
Direct 3.4.0 3.4.7 7 behind MIT
exceptiongroup
pypi
Direct 1.1.1 1.3.1 7 behind MIT
gitpython
pypi
Direct 3.1.43 3.1.50 7 behind BSD-2-Clause AND BSD-3-Clause
more-itertools
pypi
Direct 10.5.0 11.1.0 7 behind MIT
pathspec
pypi
Direct 0.12.1 1.1.1 7 behind MPL-2.0
python-discovery
pypi
Direct 1.1.3 1.4.0 7 behind Unknown
pyzmq
pypi
Direct 26.2.0 27.1.0 7 behind BSD-2-Clause AND BSD-3-Clause
xmltodict
pypi
Direct 0.14.2 1.0.4 7 behind MIT
attrs
pypi
Direct 24.2.0 26.1.0 6 behind MIT
isort
pypi
Direct 5.13.2 8.0.1 6 behind MIT
kubernetes
pypi
Direct 35.0.0 36.0.2 6 behind Apache-2.0
markupsafe
pypi
Direct 2.1.3 3.0.3 6 behind BSD-2-Clause AND BSD-3-Clause
mdit-py-plugins
pypi
Direct 0.3.5 0.6.1 6 behind MIT
paramiko
pypi
Direct 3.4.0 5.0.0 6 behind LGPL-2.1-or-later
requests
pypi
Direct 2.32.5 2.34.2 6 behind Apache-2.0
responses
pypi
Direct 0.25.3 0.26.1 6 behind Apache-2.0
sphinxcontrib-htmlhelp
pypi
Direct 2.0.1 2.1.0 6 behind BSD-2-Clause
sphinxcontrib-qthelp
pypi
Direct 1.0.3 2.0.0 6 behind BSD-2-Clause
sphinxcontrib-serializinghtml
pypi
Direct 1.1.5 2.0.0 6 behind BSD-2-Clause
tomli
pypi
Direct 2.0.1 2.4.1 6 behind MIT
cffi
pypi
Direct 1.16.0 2.0.0 5 behind MIT
filelock
pypi
Direct 3.25.0 3.29.1 5 behind MIT
frozenlist
pypi
Direct 1.4.1 1.8.0 5 behind Apache-2.0
httpx
pypi
Direct 0.27.2 1.0.0.dev3 5 behind BSD-2-Clause AND BSD-3-Clause
jaraco-functools
pypi
Direct 4.1.0 4.5.0 5 behind Unknown
jsonschema
pypi
Direct 4.23.0 4.26.0 5 behind MIT
more-itertools
pypi
Direct 10.7.0 11.1.0 5 behind MIT
pygments
pypi
Direct 2.17.2 2.20.0 5 behind BSD-2-Clause
snowballstemmer
pypi
Direct 2.2.0 3.1.1 5 behind BSD-2-Clause AND BSD-3-Clause
sphinxcontrib-applehelp
pypi
Direct 1.0.4 2.0.0 5 behind BSD-2-Clause
sphinxcontrib-devhelp
pypi
Direct 1.0.2 2.0.0 5 behind BSD-2-Clause
zipp
pypi
Direct 3.20.2 4.1.0 5 behind MIT
alabaster
pypi
Direct 0.7.13 1.0.0 4 behind BSD-2-Clause AND BSD-3-Clause
click
pypi
Direct 8.3.1 8.4.1 4 behind BSD-3-Clause
markdown-it-py
pypi
Direct 2.2.0 4.2.0 4 behind MIT
markupsafe
pypi
Direct 2.1.5 3.0.3 4 behind BSD-2-Clause AND BSD-3-Clause
more-itertools
pypi
Direct 10.8.0 11.1.0 4 behind MIT
pyasn1
pypi
Direct 0.5.1 0.6.3 4 behind BSD-2-Clause
pygments
pypi
Direct 2.18.0 2.20.0 4 behind BSD-2-Clause
referencing
pypi
Direct 0.35.1 0.37.0 4 behind MIT
requests
pypi
Direct 2.33.1 2.34.2 4 behind Apache-2.0
resolvelib
pypi
Direct 1.0.1 1.2.1 4 behind ISC
yarl
pypi
Direct 1.20.1 1.24.2 4 behind Apache-2.0
bcrypt
pypi
Direct 4.2.0 5.0.0 3 behind Apache-2.0
charset-normalizer
pypi
Direct 3.4.4 3.4.7 3 behind MIT
dill
pypi
Direct 0.3.8 0.4.1 3 behind BSD-2-Clause AND BSD-3-Clause
distlib
pypi
Direct 0.3.8 0.4.1 3 behind Python-2.0.1
filelock
pypi
Direct 3.25.2 3.29.1 3 behind MIT
httpcore
pypi
Direct 1.0.6 1.0.9 3 behind BSD-2-Clause AND BSD-3-Clause
importlib-metadata
pypi
Direct 8.7.0 9.0.0 3 behind Apache-2.0
iniconfig
pypi
Direct 2.0.0 2.3.0 3 behind MIT
markdown-it-py
pypi
Direct 3.0.0 4.2.0 3 behind MIT
mdit-py-plugins
pypi
Direct 0.4.2 0.6.1 3 behind MIT
msgpack
pypi
Direct 1.1.0 1.1.2 3 behind Apache-2.0
paramiko
pypi
Direct 3.5.0 5.0.0 3 behind LGPL-2.1-or-later
platformdirs
pypi
Direct 4.9.2 4.10.0 3 behind MIT
propcache
pypi
Direct 0.3.2 0.5.2 3 behind Apache-2.0
pyasn1-modules
pypi
Direct 0.3.0 0.4.2 3 behind BSD-2-Clause
pyenchant
pypi
Direct 3.2.2 3.3.0 3 behind GPL-3.0-or-later AND LGPL-2.1-or-later
pymysql
pypi
Direct 1.1.1 1.2.0 3 behind MIT
pyspnego
pypi
Direct 0.11.1 0.12.1 3 behind MIT
pythonnet
pypi
Direct 3.0.5 3.1.0 3 behind MIT
pyyaml
pypi
Direct 6.0.1 6.0.3 3 behind MIT
smmap
pypi
Direct 5.0.1 6.0.0 3 behind BSD-2-Clause AND BSD-3-Clause
tomlkit
pypi
Direct 0.13.2 0.15.0 3 behind MIT
aiosignal
pypi
Direct 1.3.1 1.4.0 2 behind Apache-2.0
async-timeout
pypi
Direct 4.0.3 5.0.1 2 behind Apache-2.0
babel
pypi
Direct 2.16.0 2.18.0 2 behind BSD-3-Clause
certifi
pypi
Direct 2026.2.25 2026.5.20 2 behind MPL-2.0
clr-loader
pypi
Direct 0.2.10 0.3.1 2 behind Unknown
cryptography
pypi
Direct 46.0.7 48.0.0 2 behind BSD-3-Clause OR Apache-2.0
dill
pypi
Direct 0.3.9 0.4.1 2 behind BSD-2-Clause AND BSD-3-Clause
dnspython
pypi
Direct 2.7.0 2.8.0 2 behind ISC
imagesize
pypi
Direct 1.4.1 2.0.0 2 behind MIT
importlib-metadata
pypi
Direct 8.7.1 9.0.0 2 behind Apache-2.0
jaraco-context
pypi
Direct 6.1.0 6.1.2 2 behind Unknown
jsonschema-specifications
pypi
Direct 2024.10.1 2025.9.1 2 behind MIT
markdown-it-py
pypi
Direct 4.0.0 4.2.0 2 behind MIT
platformdirs
pypi
Direct 4.9.4 4.10.0 2 behind MIT
pyasn1-modules
pypi
Direct 0.4.0 0.4.2 2 behind BSD-2-Clause AND BSD-3-Clause
pymysql
pypi
Direct 1.1.2 1.2.0 2 behind MIT
pyopenssl
pypi
Direct 26.0.0 26.2.0 2 behind Unknown
python-dateutil
pypi
Direct 2.8.2 2.9.0.post0 2 behind Apache-2.0
pyvmomi
pypi
Direct 8.0.3.0.1 9.1.0.0 2 behind Apache-2.0
rich
pypi
Direct 14.3.3 15.0.0 2 behind MIT
smmap
pypi
Direct 5.0.2 6.0.0 2 behind BSD-3-Clause
sphinxcontrib-spelling
pypi
Direct 8.0.0 8.0.2 2 behind BSD-2-Clause AND BSD-3-Clause
typing-extensions
pypi
Direct 4.14.1 4.15.0 2 behind Python-2.0 AND GPL-1.0-or-later AND Python-2.0 AND BSD-3-Clause AND Python-2.0 AND BSD-3-Clause AND 0BSD
werkzeug
pypi
Direct 3.1.6 3.1.8 2 behind BSD-3-Clause
yarl
pypi
Direct 1.22.0 1.24.2 2 behind Apache-2.0
zipp
pypi
Direct 3.23.0 4.1.0 2 behind MIT
aiohappyeyeballs
pypi
Direct 2.6.1 2.6.2 1 behind 0BSD AND BSD-3-Clause AND LicenseRef-scancode-unknown-license-reference AND PSF-2.0 AND Python-2.0
aiohttp
pypi
Direct 3.13.5 3.14.0 1 behind Apache-2.0 AND MIT
annotated-types
pypi
Direct 0.6.0 0.7.0 1 behind MIT
attrs
pypi
Direct 25.4.0 26.1.0 1 behind MIT
distlib
pypi
Direct 0.4.0 0.4.1 1 behind PSF-2.0 AND Python-2.0
frozenlist
pypi
Direct 1.7.0 1.8.0 1 behind Apache-2.0
incremental
pypi
Direct 24.7.2 24.11.0 1 behind MIT
jaraco-context
pypi
Direct 6.1.1 6.1.2 1 behind Unknown
jaraco-functools
pypi
Direct 4.4.0 4.5.0 1 behind Unknown
jmespath
pypi
Direct 1.0.1 1.1.0 1 behind MIT
linkify-it-py
pypi
Direct 2.0.3 2.1.0 1 behind MIT
mock
pypi
Direct 5.1.0 5.2.0 1 behind BSD-2-Clause AND BSD-3-Clause
pluggy
pypi
Direct 1.5.0 1.6.0 1 behind MIT
propcache
pypi
Direct 0.4.1 0.5.2 1 behind Apache-2.0
pytest-timeout
pypi
Direct 2.3.1 2.4.0 1 behind MIT
pyyaml
pypi
Direct 6.0.2 6.0.3 1 behind MIT
scp
pypi
Direct 0.14.5 0.15.0 1 behind LGPL-2.1-or-later
setuptools
pypi
Direct 82.0.0 82.0.1 1 behind MIT
six
pypi
Direct 1.16.0 1.17.0 1 behind MIT
smmap
pypi
Direct 5.0.3 6.0.0 1 behind BSD-3-Clause
tomlkit
pypi
Direct 0.14.0 0.15.0 1 behind MIT
tornado
pypi
Direct 6.5.5 6.5.6 1 behind Apache-2.0
uc-micro-py
pypi
Direct 1.0.3 2.0.0 1 behind MIT
urllib3
pypi
Direct 2.6.3 2.7.0 1 behind MIT
yarl
pypi
Direct 1.23.0 1.24.2 1 behind Apache-2.0

License Breakdown

MIT 182
Unknown 120
Apache-2.0 105
BSD-2-Clause AND BSD-3-Clause 50
BSD-2-Clause 22
BSD-3-Clause 21
ISC 7
MPL-2.0 6
LGPL-2.1-or-later 5
Python-2.0.1 4
Apache-2.0 AND MIT 3
GPL-1.0-or-later AND GPL-3.0-only AND GPL-3.0-or-later 3
GPL-3.0 AND GPL-3.0-only AND GPL-3.0-or-later 3
PSF-2.0 3
Unlicense 3
Apache-2.0 AND BSD-2-Clause 2
Apache-2.0 AND BSD-3-Clause 2
Apache-2.0 AND MIT AND MPL-2.0 2
Apache-2.0 OR (Apache-2.0 AND MIT) 2
BSD-2-Clause AND BSD-3-Clause AND LicenseRef-scancode-public-domain AND Unlicense 2
BSD-2-Clause AND BSD-3-Clause AND MIT 2
BSD-3-Clause OR Apache-2.0 2
GPL-1.0-or-later AND GPL-2.0 AND GPL-2.0-or-later AND GPL-3.0-or-later 2
GPL-1.0-or-later AND GPL-3.0 AND GPL-3.0-only AND GPL-3.0-or-later 2
GPL-3.0-or-later 2
LGPL-2.0-or-later 2
Python-2.0 AND GPL-1.0-or-later AND Python-2.0 AND BSD-3-Clause AND Python-2.0 AND BSD-3-Clause AND 0BSD 2
0BSD AND BSD-3-Clause AND LicenseRef-scancode-unknown-license-reference AND PSF-2.0 AND Python-2.0 1
Apache-2.0 AND BSD-3-Clause AND LicenseRef-scancode-unknown-license-reference 1
BSD-2-Clause AND BSD-2-Clause-Views AND BSD-3-Clause 1
BSD-2-Clause AND BSD-3-Clause AND GPL-1.0-or-later 1
BSD-2-Clause AND LicenseRef-scancode-mit-old-style AND LicenseRef-scancode-warranty-disclaimer AND MIT 1
BSD-3-Clause AND GPL-1.0-or-later 1
CAL-1.0 AND LGPL-2.1-only 1
GPL-2.0 AND GPL-2.0-only AND GPL-3.0-or-later 1
GPL-2.0-only 1
GPL-2.0-only AND GPL-2.0-or-later 1
GPL-2.0-or-later 1
GPL-3.0 AND GPL-3.0-only 1
GPL-3.0 AND GPL-3.0-or-later 1
GPL-3.0 AND GPL-3.0-or-later AND LGPL-3.0-only 1
GPL-3.0-or-later AND LGPL-2.1-or-later 1
GPL-3.0-or-later AND LGPL-3.0-only 1
LGPL-2.0-or-later AND LGPL-3.0-or-later 1
LGPL-3.0-only AND LGPL-3.0-or-later 1
LGPL-3.0-or-later 1
MIT AND Python-2.0 1
MIT-0 1
PHP-3.01 AND Zlib 1
PSF-2.0 AND Python-2.0 1
Python-2.0 1
ZPL-2.1 1

CVE Severity

critical 2
high 13
medium 14
low 2
unknown 0

Beta — feedback welcome: [email protected]