Skip to content
Tools / SAMA / Dependencies

Dependency Analysis

SAMA

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

26% Freshness
435 Dependencies
275 Outdated
0 Stale
29.9 Avg Behind

Dependency List

Latest release 0.36.1

Dependency Type Current Latest Behind CVE License
fast-xml-parser
npm
Transitive 4.2.5 5.8.0 67 behind 6 critical MIT
minimatch
npm
Transitive 3.1.2 10.2.5 91 behind 3 high ISC
semver
npm
Transitive 7.0.0 7.8.1 36 behind 1 high ISC
msgpackr
npm
Transitive 1.9.9 2.0.2 19 behind 1 high MIT
ws
npm
Direct 8.14.2 8.21.0 19 behind 1 high MIT
glob
npm
Transitive 10.4.5 13.0.6 13 behind 1 high ISC
picomatch
npm
Transitive 2.3.1 4.0.4 9 behind 2 high MIT
serialize-javascript
npm
Transitive 6.0.0 7.0.5 8 behind 3 high BSD-3-Clause
ip
npm
Transitive 2.0.0 2.0.1 4 behind 2 high MIT
jsonwebtoken
npm
Direct 8.5.1 9.0.3 4 behind 3 high MIT
jws
npm
Transitive 3.2.2 4.0.1 3 behind 1 high MIT
lodash
npm
Direct 4.17.21 4.18.1 3 behind 3 high CC0-1.0 AND MIT
braces
npm
Transitive 3.0.2 3.0.3 1 behind 1 high MIT
@babel/runtime
npm
Transitive 7.23.4 7.29.7 56 behind 1 medium MIT
nanoid
npm
Transitive 3.3.3 5.1.11 34 behind 1 medium MIT
brace-expansion
npm
Transitive 2.0.1 5.0.6 16 behind 2 medium MIT
js-yaml
npm
Transitive 4.1.0 4.2.0 3 behind 1 medium MIT
uuid
npm
Direct 11.1.0 14.0.0 3 behind 1 medium MIT
ai
npm
Direct 5.0.51 6.0.195 662 behind 1 low Apache-2.0
@smithy/config-resolver
npm
Transitive 2.0.19 4.5.6 65 behind 1 low Apache-2.0
diff
npm
Transitive 5.0.0 9.0.0 17 behind 1 low BSD-3-Clause

License Breakdown

MIT 236
Apache-2.0 114
ISC 39
BSD-3-Clause 14
Unknown 9
CC0-1.0 AND MIT 6
BlueOak-1.0.0 3
0BSD 2
BSD-2-Clause 2
ISC AND MIT 2
AFL-2.1 AND AFL-3.0 AND BSD-3-Clause 1
Apache-2.0 AND MIT 1
Apache-2.0 OR (Apache-2.0 AND LGPL-3.0-only) 1
Apache-2.0 OR Unlicense OR (Apache-2.0 AND Unlicense) 1
CC-BY-SA-4.0 AND ISC 1
MIT AND Unlicense 1
Python-2.0 1

CVE Severity

critical 1
high 12
medium 5
low 3
unknown 0

Beta — feedback welcome: [email protected]