Skip to content
Tools / whodb / Dependencies

Dependency Analysis

whodb

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

68% Freshness
1813 Dependencies
481 Outdated
0 Stale
22.6 Avg Behind

Dependency List

Latest release 0.107.0

Dependency Type Current Latest Behind CVE License
vite
npm
Direct 7.1.11 8.0.16 54 behind 3 high BSD-2-Clause AND CC0-1.0 AND ISC AND MIT
immutable
npm
Transitive 3.7.6 5.1.6 52 behind 1 high BSD-3-Clause AND LicenseRef-scancode-facebook-patent-rights-2
glob
npm
Transitive 10.4.5 13.0.6 13 behind 1 high ISC
path-to-regexp
npm
Transitive 0.1.12 8.4.2 5 behind 1 high MIT
lodash
npm
Direct 4.17.21 4.18.1 3 behind 3 high CC0-1.0 AND MIT
basic-ftp
npm
Transitive 5.2.2 2 high MIT
react-router
npm
Transitive 7.9.1 4 high MIT
brace-expansion
npm
Transitive 1.1.12 5.0.6 10 behind 1 medium MIT
js-yaml
npm
Transitive 3.14.1 4.2.0 5 behind 1 medium MIT
ip-address
npm
Transitive 10.1.0 10.2.0 2 behind 1 medium MIT
uuid
npm
Direct 13.0.0 14.0.0 1 behind 1 medium MIT
tmp
npm
Transitive 0.1.0 1 low MIT

License Breakdown

MIT 1131
Unknown 184
Apache-2.0 176
ISC 79
BSD-3-Clause 62
BSD-3-Clause AND LicenseRef-scancode-google-patent-license-golang 41
BSD-2-Clause 32
MPL-2.0 24
Apache-2.0 AND BSD-3-Clause 20
LicenseRef-scancode-generic-cla AND MIT 20
Apache-2.0 AND MIT 8
BlueOak-1.0.0 6
0BSD 4
Apache-2.0 AND BSD-3-Clause AND MIT 4
CC0-1.0 AND MIT 3
MIT-0 3
BSD-3-Clause AND LicenseRef-scancode-facebook-patent-rights-2 2
Python-2.0 2
(MPL-2.0 OR Apache-2.0) 1
0BSD AND ISC AND MIT 1
0BSD AND MIT 1
Apache-2.0 AND BSD-3-Clause AND LicenseRef-scancode-warranty-disclaimer 1
Apache-2.0 OR (Apache-2.0 AND LGPL-3.0-only) 1
BSD-2-Clause AND BSD-3-Clause 1
BSD-2-Clause AND CC0-1.0 AND ISC AND MIT 1
CC-BY-4.0 1
ISC AND JSON AND MIT 1
ISC AND MIT 1
MIT OR (CC0-1.0 AND MIT) 1

CVE Severity

critical 0
high 7
medium 4
low 1
unknown 0

Beta — feedback welcome: [email protected]