Skip to content
Tools / vitess / Dependencies

Dependency Analysis

vitess

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

66% Freshness
1314 Dependencies
333 Outdated
0 Stale
13.9 Avg Behind

Dependency List

Latest release v24.0.0

Dependency Type Current Latest Behind CVE License
minimatch
npm
Transitive 5.1.6 10.2.5 71 behind 3 high ISC
fast-uri
npm
Transitive 3.0.6 3.1.2 3 behind 2 high BSD-3-Clause
underscore
npm
Transitive 1.13.7 1.13.8 1 behind 1 high MIT
github.com/prometheus/client_golang
golang
Direct 1.6.0 1 high Apache-2.0
github.com/sirupsen/logrus
golang
Direct 1.6.0 1 high MIT
brace-expansion
npm
Transitive 2.0.2 5.0.6 11 behind 1 medium MIT
ajv
npm
Transitive 8.17.1 8.20.0 4 behind 1 medium MIT
markdown-it
npm
Transitive 14.1.0 14.2.0 2 behind 1 medium MIT
golang.org/x/sys
golang
Direct 0.0.0-20200519105757-fe76b779f299 1 medium BSD-3-Clause AND LicenseRef-scancode-google-patent-license-golang
gopkg.in/yaml.v2
golang
Direct 2.2.5 1 medium Apache-2.0

License Breakdown

MIT 791
Unknown 125
Apache-2.0 107
ISC 68
MIT-0 65
BSD-3-Clause 47
MPL-2.0 24
BSD-2-Clause 23
BSD-3-Clause AND LicenseRef-scancode-google-patent-license-golang 11
Apache-2.0 AND BSD-3-Clause 8
CC0-1.0 AND MIT 4
Apache-2.0 AND BSD-3-Clause AND MIT 3
BlueOak-1.0.0 3
CC0-1.0 3
Apache-2.0 AND MIT 2
BSD-2-Clause AND BSD-3-Clause 2
ISC AND MIT 2
Unlicense 2
0BSD 1
0BSD AND Apache-2.0 AND BSD-2-Clause AND MIT 1
Apache-2.0 AND BSD-1-Clause AND BSD-2-Clause AND BSD-3-Clause AND MIT 1
Apache-2.0 AND BSD-2-Clause 1
Apache-2.0 AND BSD-2-Clause AND BSD-3-Clause AND LicenseRef-scancode-public-domain AND MIT 1
Apache-2.0 AND BSD-2-Clause AND CC0-1.0 AND ISC AND MIT 1
Apache-2.0 AND CC-BY-SA-4.0 1
Apache-2.0 AND ISC 1
Apache-2.0 AND LicenseRef-scancode-dco-1.1 1
Apache-2.0 AND LicenseRef-scancode-dco-1.1 AND MIT 1
Apache-2.0 OR BSD-2-Clause OR MIT OR (Apache-2.0 AND BSD-2-Clause) OR (Apache-2.0 AND MIT) OR (BSD-2-Clause AND MIT) 1
BSD-2-Clause AND BSD-2-Clause-Views 1
BSD-3-Clause AND CC0-1.0 AND LicenseRef-scancode-public-domain AND LicenseRef-scancode-unknown-license-reference AND LicenseRef-scancode-w3c-03-bsd-license AND MIT 1
BSD-3-Clause AND ISC AND MIT 1
BSD-3-Clause AND MIT 1
CC-BY-4.0 1
CC0-1.0 OR MIT OR (CC0-1.0 AND MIT) 1
CDDL-1.0 OR GPL-2.0-only WITH Classpath-exception-2.0 1
EPL-1.0 1
LicenseRef-scancode-unknown-license-reference AND MIT 1
MIT AND WTFPL 1
MIT AND Zlib 1
Python-2.0 1

CVE Severity

critical 0
high 5
medium 5
low 0
unknown 0

Beta — feedback welcome: [email protected]