Skip to content
Tools / Timesketch / Dependencies

Dependency Analysis

Timesketch

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

50% Freshness
1775 Dependencies
735 Outdated
0 Stale
7.3 Avg Behind

Dependency List

Latest release 20260326

Dependency Type Current Latest Behind CVE License
dfir-unfurl
pypi
Direct 20240627 20260405.0.0 2 critical Apache-2.0
vuetify
npm
Direct 2.7.2 4.1.0 133 behind 2 high MIT
cross-spawn
npm
Transitive 5.1.0 7.0.6 13 behind 1 high MIT
axios
npm
Direct 1.13.5 1.17.0 12 behind 15 high MIT
axios
npm
Direct 1.13.5 1.17.0 12 behind 15 high MIT
happy-dom
npm
Direct 20.8.3 20.10.1 9 behind 2 high MIT
path-to-regexp
npm
Transitive 0.1.12 8.4.2 5 behind 1 high MIT
picomatch
npm
Transitive 4.0.2 4.0.4 4 behind 2 high MIT
fast-uri
npm
Transitive 3.1.0 3.1.2 2 behind 2 high BSD-3-Clause
lodash
npm
Direct 4.17.23 4.18.1 2 behind 2 high CC0-1.0 AND MIT
lodash
npm
Transitive 4.17.23 4.18.1 2 behind 2 high CC0-1.0 AND MIT
node-forge
npm
Transitive 1.3.3 1.4.0 1 behind 4 high BSD-3-Clause OR GPL-2.0-only
postcss
npm
Transitive 7.0.39 8.5.15 69 behind 1 medium MIT
vite
npm
Direct 5.4.21 8.0.16 51 behind 1 medium Apache-2.0 AND BSD-2-Clause AND BlueOak-1.0.0 AND CC0-1.0 AND ISC AND MIT
vite
npm
Direct 5.4.21 8.0.16 51 behind 1 medium Apache-2.0 AND BSD-2-Clause AND BlueOak-1.0.0 AND CC0-1.0 AND ISC AND MIT
yaml
npm
Transitive 1.10.2 2.9.0 49 behind 1 medium ISC
esbuild
npm
Transitive 0.21.5 0.28.0 28 behind 1 medium MIT
esbuild
npm
Transitive 0.21.5 0.28.0 28 behind 1 medium MIT
brace-expansion
npm
Transitive 2.0.2 5.0.6 11 behind 1 medium MIT
dompurify
npm
Direct 3.3.2 3.4.8 10 behind 4 medium (Apache-2.0 AND GPL-1.0-only AND MPL-2.0 AND MS-PL) OR (Apache-2.0 AND GPL-1.0-only AND MPL-2.0) OR (Apache-2.0 AND GPL-2.0-only AND MPL-2.0 AND MS-PL) OR (Apache-2.0 AND GPL-2.0-only AND MPL-2.0)
dompurify
npm
Direct 3.3.2 3.4.8 10 behind 4 medium (Apache-2.0 AND GPL-1.0-only AND MPL-2.0 AND MS-PL) OR (Apache-2.0 AND GPL-1.0-only AND MPL-2.0) OR (Apache-2.0 AND GPL-2.0-only AND MPL-2.0 AND MS-PL) OR (Apache-2.0 AND GPL-2.0-only AND MPL-2.0)
postcss
npm
Transitive 8.5.8 8.5.15 7 behind 1 medium MIT
requests
pypi
Direct 2.32.5 2.34.2 6 behind 1 medium Apache-2.0
webpack-dev-server
npm
Transitive 4.15.2 5.2.4 6 behind 2 medium MIT
ajv
npm
Transitive 8.17.1 8.20.0 4 behind 1 medium MIT
cryptography
pypi
Direct 46.0.5 48.0.0 4 behind 2 medium Apache-2.0 AND BSD-3-Clause
serialize-javascript
npm
Transitive 7.0.3 7.0.5 2 behind 1 medium BSD-3-Clause
follow-redirects
npm
Transitive 1.15.11 1.16.0 1 behind 1 medium MIT
follow-redirects
npm
Transitive 1.15.11 1.16.0 1 behind 1 medium MIT
pytest
pypi
Direct 9.0.2 9.0.3 1 behind 1 medium MIT
pytest
pypi
Direct 9.0.2 9.0.3 1 behind 1 medium MIT
markdown
pypi
Direct 3.8 3.10.2 1 medium BSD-3-Clause
vue-template-compiler
npm
Direct 2.7.16 2.7.16 Current 1 medium MIT
vue
npm
Direct 2.7.16 3.5.35 106 behind 1 low MIT
qs
npm
Transitive 6.14.1 6.15.2 32 behind 1 low BSD-3-Clause
brace-expansion
npm
Transitive 1.1.11 5.0.6 18 behind 1 low MIT

License Breakdown

MIT 1393
ISC 103
Unknown 79
BSD-3-Clause 62
Apache-2.0 36
BSD-2-Clause 31
BSD-2-Clause AND BSD-3-Clause 11
CC0-1.0 AND MIT 6
Apache-2.0 AND BSD-2-Clause 5
BlueOak-1.0.0 4
ISC AND MIT 4
Unlicense 3
(Apache-2.0 AND GPL-1.0-only AND MPL-2.0 AND MS-PL) OR (Apache-2.0 AND GPL-1.0-only AND MPL-2.0) OR (Apache-2.0 AND GPL-2.0-only AND MPL-2.0 AND MS-PL) OR (Apache-2.0 AND GPL-2.0-only AND MPL-2.0) 2
0BSD AND ISC AND MIT 2
Apache-2.0 AND BSD-2-Clause AND BlueOak-1.0.0 AND CC0-1.0 AND ISC AND MIT 2
BSD-2-Clause AND BSD-2-Clause-Views 2
BSD-3-Clause AND MIT 2
CC-BY-4.0 AND CC-BY-SA-4.0 AND GPL-2.0-only 2
CC0-1.0 2
LicenseRef-scancode-unicode AND MIT 2
MIT OR (CC0-1.0 AND MIT) 2
Python-2.0 2
0BSD 1
0BSD AND MIT 1
Apache-2.0 AND BSD-3-Clause 1
Apache-2.0 AND BSD-3-Clause AND ISC AND MIT 1
Apache-2.0 AND BSD-3-Clause AND LicenseRef-scancode-unknown-license-reference 1
Apache-2.0 AND ISC 1
Apache-2.0 AND MIT 1
BSD-3-Clause AND ISC AND MIT 1
BSD-3-Clause AND LicenseRef-scancode-generic-cla AND MIT 1
BSD-3-Clause OR GPL-2.0-only 1
CC-BY-3.0 1
CC-BY-4.0 1
GPL-3.0-or-later AND LGPL-3.0-only 1
LicenseRef-scancode-public-domain AND Unlicense 1
MIT AND Zlib 1
MIT OR WTFPL OR (MIT AND WTFPL) 1
MPL-2.0 1

CVE Severity

critical 1
high 11
medium 21
low 3
unknown 0

Beta — feedback welcome: [email protected]