Skip to content
Tools / wazuh / Dependencies

Dependency Analysis

wazuh

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

70% Freshness
283 Dependencies
73 Outdated
0 Stale
7.8 Avg Behind

Dependency List

Latest release v4.14.5

Dependency Type Current Latest Behind CVE License
cryptography
pypi
Direct 44.0.1 48.0.0 20 behind 2 high Apache-2.0 OR BSD-3-Clause OR (Apache-2.0 AND BSD-3-Clause)
cryptography
pypi
Direct 44.0.1 48.0.0 20 behind 2 high Apache-2.0 OR BSD-3-Clause OR (Apache-2.0 AND BSD-3-Clause)
python-multipart
pypi
Direct 0.0.22 0.0.30 8 behind 2 high Apache-2.0
python-multipart
pypi
Direct 0.0.22 0.0.30 8 behind 2 high Apache-2.0
aiohttp
pypi
Direct 3.13.2 3.14.0 4 behind 18 high Apache-2.0 AND MIT
aiohttp
pypi
Direct 3.13.2 3.14.0 4 behind 18 high Apache-2.0 AND MIT
pyjwt
pypi
Direct 2.10.1 2.13.0 4 behind 1 high MIT
pyjwt
pypi
Direct 2.10.1 2.13.0 4 behind 1 high MIT
pytest
pypi
Direct 7.3.1 9.0.3 30 behind 1 medium MIT
pytest
pypi
Direct 7.3.1 9.0.3 30 behind 1 medium MIT
requests
pypi
Direct 2.31.0 2.34.2 12 behind 1 medium Apache-2.0
requests
pypi
Direct 2.32.3 2.34.2 8 behind 1 medium Apache-2.0
requests
pypi
Direct 2.32.4 2.34.2 7 behind 1 medium Apache-2.0
requests
pypi
Direct 2.32.4 2.34.2 7 behind 1 medium Apache-2.0
pyparsing
pypi
Direct 2.4.7 3.3.2 40 behind MIT
pyparsing
pypi
Direct 2.4.7 3.3.2 40 behind MIT
google-api-core
pypi
Direct 2.19.2 2.31.0 30 behind Apache-2.0
google-api-core
pypi
Direct 2.19.2 2.31.0 30 behind Apache-2.0
jsonschema
pypi
Direct 4.17.3 4.26.0 30 behind MIT
pytest
pypi
Direct 7.4.3 9.0.3 25 behind MIT
psutil
pypi
Direct 5.9.0 7.2.2 19 behind BSD-2-Clause AND BSD-3-Clause
psutil
pypi
Direct 5.9.0 7.2.2 19 behind BSD-2-Clause AND BSD-3-Clause
s3transfer
pypi
Direct 0.10.2 0.18.0 18 behind Apache-2.0
s3transfer
pypi
Direct 0.10.2 0.18.0 18 behind Apache-2.0
pyarrow
pypi
Direct 14.0.1 24.0.0 17 behind 1 unknown Apache-2.0
pyarrow
pypi
Direct 14.0.1 24.0.0 17 behind 1 unknown Apache-2.0
googleapis-common-protos
pypi
Direct 1.63.2 1.75.0 16 behind Apache-2.0
googleapis-common-protos
pypi
Direct 1.63.2 1.75.0 16 behind Apache-2.0
certifi
pypi
Direct 2024.7.4 2026.5.20 14 behind MPL-2.0
certifi
pypi
Direct 2024.7.4 2026.5.20 14 behind MPL-2.0
click
pypi
Direct 8.1.3 8.4.1 14 behind BSD-2-Clause AND BSD-3-Clause
click
pypi
Direct 8.1.3 8.4.1 14 behind BSD-2-Clause AND BSD-3-Clause
pathable
pypi
Direct 0.4.3 0.6.0 13 behind Apache-2.0
pathable
pypi
Direct 0.4.3 0.6.0 13 behind Apache-2.0
starlette
pypi
Direct 0.49.1 1.2.1 12 behind BSD-3-Clause
starlette
pypi
Direct 0.49.1 1.2.1 12 behind BSD-3-Clause
openapi-spec-validator
pypi
Direct 0.7.1 0.9.0 11 behind Apache-2.0
openapi-spec-validator
pypi
Direct 0.7.1 0.9.0 11 behind Apache-2.0
opensearch-protobufs
pypi
Direct 0.19.0 1.5.0 11 behind Unknown
opensearch-protobufs
pypi
Direct 0.19.0 1.5.0 11 behind Unknown
pandas
pypi
Direct 2.2.3 3.0.3 11 behind BSD-2-Clause AND BSD-3-Clause
attrs
pypi
Direct 23.1.0 26.1.0 9 behind MIT
attrs
pypi
Direct 23.1.0 26.1.0 9 behind MIT
flatbuffers
pypi
Direct 23.5.26 25.12.19 9 behind Apache-2.0
pytest-cov
pypi
Direct 4.1.0 7.1.0 9 behind MIT
pytest-cov
pypi
Direct 4.1.0 7.1.0 9 behind MIT
typing-extensions
pypi
Direct 4.12.2 4.15.0 9 behind Python-2.0.1
typing-extensions
pypi
Direct 4.12.2 4.15.0 9 behind Python-2.0.1
httpx
pypi
Direct 0.26.0 1.0.0.dev3 8 behind BSD-2-Clause AND BSD-3-Clause
httpx
pypi
Direct 0.26.0 1.0.0.dev3 8 behind BSD-2-Clause AND BSD-3-Clause
protobuf
pypi
Direct 5.29.6 7.35.0 8 behind BSD-3-Clause AND LicenseRef-scancode-protobuf
protobuf
pypi
Direct 5.29.6 7.35.0 8 behind BSD-3-Clause AND LicenseRef-scancode-protobuf
pytest
pypi
Direct 8.3.4 9.0.3 8 behind MIT
grpcio
pypi
Direct 1.76.0 1.81.0 7 behind Apache-2.0 AND BSD-3-Clause AND MPL-2.0
grpcio
pypi
Direct 1.76.0 1.81.0 7 behind Apache-2.0 AND BSD-3-Clause AND MPL-2.0
markupsafe
pypi
Direct 2.1.2 3.0.3 7 behind BSD-2-Clause AND BSD-3-Clause
markupsafe
pypi
Direct 2.1.2 3.0.3 7 behind BSD-2-Clause AND BSD-3-Clause
azure-core
pypi
Direct 1.38.0 1.41.0 6 behind LicenseRef-scancode-generic-cla AND MIT
azure-core
pypi
Direct 1.38.0 1.41.0 6 behind LicenseRef-scancode-generic-cla AND MIT
pyyaml
pypi
Direct 5.4.1 6.0.3 6 behind MIT
pyyaml
pypi
Direct 5.4.1 6.0.3 6 behind MIT
grpc-google-iam-v1
pypi
Direct 0.13.1 0.14.4 5 behind Apache-2.0
grpc-google-iam-v1
pypi
Direct 0.13.1 0.14.4 5 behind Apache-2.0
jsonschema
pypi
Direct 4.23.0 4.26.0 5 behind MIT
proto-plus
pypi
Direct 1.26.0 1.28.0 5 behind Apache-2.0
proto-plus
pypi
Direct 1.26.0 1.28.0 5 behind Apache-2.0
setuptools
pypi
Direct 80.10.2 82.0.1 4 behind MIT
rsa
pypi
Direct 4.7.2 4.9.1 3 behind Apache-2.0
rsa
pypi
Direct 4.7.2 4.9.1 3 behind Apache-2.0
isodate
pypi
Direct 0.6.1 0.7.2 2 behind BSD-2-Clause
isodate
pypi
Direct 0.6.1 0.7.2 2 behind BSD-2-Clause
lazy-object-proxy
pypi
Direct 1.10.0 1.12.0 2 behind BSD-2-Clause
lazy-object-proxy
pypi
Direct 1.10.0 1.12.0 2 behind BSD-2-Clause
yarl
pypi
Direct 1.22.0 1.24.2 2 behind Apache-2.0
yarl
pypi
Direct 1.22.0 1.24.2 2 behind Apache-2.0
aiohappyeyeballs
pypi
Direct 2.6.1 2.6.2 1 behind 0BSD AND BSD-3-Clause AND LicenseRef-scancode-unknown-license-reference AND PSF-2.0 AND Python-2.0
aiohappyeyeballs
pypi
Direct 2.6.1 2.6.2 1 behind 0BSD AND BSD-3-Clause AND LicenseRef-scancode-unknown-license-reference AND PSF-2.0 AND Python-2.0
opensearch-py
pypi
Direct 3.1.0 3.2.0 1 behind Apache-2.0
opensearch-py
pypi
Direct 3.1.0 3.2.0 1 behind Apache-2.0
propcache
pypi
Direct 0.4.1 0.5.2 1 behind Apache-2.0
six
pypi
Direct 1.16.0 1.17.0 1 behind MIT
six
pypi
Direct 1.16.0 1.17.0 1 behind MIT
urllib3
pypi
Direct 2.6.3 2.7.0 1 behind MIT
urllib3
pypi
Direct 2.6.3 2.7.0 1 behind MIT

License Breakdown

Apache-2.0 78
MIT 75
Unknown 52
BSD-2-Clause AND BSD-3-Clause 23
BSD-2-Clause 12
BSD-3-Clause 6
MPL-2.0 6
Apache-2.0 AND MIT 4
Apache-2.0 OR (Apache-2.0 AND MIT) 3
0BSD AND BSD-3-Clause AND LicenseRef-scancode-unknown-license-reference AND PSF-2.0 AND Python-2.0 2
Apache-2.0 AND BSD-2-Clause 2
Apache-2.0 AND BSD-3-Clause AND MPL-2.0 2
Apache-2.0 OR BSD-3-Clause OR (Apache-2.0 AND BSD-3-Clause) 2
BSD-3-Clause AND GPL-3.0-or-later 2
BSD-3-Clause AND LicenseRef-scancode-protobuf 2
LGPL-2.1-or-later 2
LicenseRef-scancode-generic-cla AND MIT 2
MIT AND PSF-2.0 2
Python-2.0 2
Python-2.0.1 2
Unlicense 1

CVE Severity

critical 0
high 11
medium 9
low 0
unknown 4

Beta — feedback welcome: [email protected]