Skip to content
Tools / xwiki-platform / Dependencies

Dependency Analysis

xwiki-platform

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

78% Freshness
4210 Dependencies
696 Outdated
0 Stale
5.7 Avg Behind

Dependency List

Latest release xwiki-platform-17.10.8

Dependency Type Current Latest Behind CVE License
lodash
npm
Transitive 3.10.1 4.18.1 56 behind 6 critical MIT
underscore
npm
Transitive 1.6.0 1.13.8 27 behind 2 critical MIT
org.xwiki.platform:xwiki-platform-administration-ui
maven
Direct 15.8-SNAPSHOT 1 critical Unknown
org.xwiki.platform:xwiki-platform-administration-ui
maven
Direct 15.1-SNAPSHOT 4 critical Unknown
org.xwiki.platform:xwiki-platform-administration-ui
maven
Direct 14.6-SNAPSHOT 3 critical Unknown
org.xwiki.platform:xwiki-platform-flamingo-theme-ui
maven
Direct 14.2-SNAPSHOT 3 critical Unknown
org.xwiki.platform:xwiki-platform-help-ui
maven
Direct 15.4-SNAPSHOT 1 critical Unknown
org.xwiki.platform:xwiki-platform-icon-script
maven
Direct 15.1-SNAPSHOT 1 critical Unknown
org.xwiki.platform:xwiki-platform-notifications-ui
maven
Direct 15.1-SNAPSHOT 3 critical Unknown
org.xwiki.platform:xwiki-platform-office-importer
maven
Direct 14.1-SNAPSHOT 1 critical Unknown
org.xwiki.platform:xwiki-platform-oldcore
maven
Direct 14.7-SNAPSHOT 28 critical Unknown
org.xwiki.platform:xwiki-platform-rendering-macro-include
maven
Direct 14.10-SNAPSHOT 1 critical Unknown
org.xwiki.platform:xwiki-platform-rest-server
maven
Direct 17.2.0-SNAPSHOT 2 critical Unknown
org.xwiki.platform:xwiki-platform-scheduler-ui
maven
Direct 15.5-SNAPSHOT 3 critical Unknown
org.xwiki.platform:xwiki-platform-security-requiredrights-default
maven
Direct 15.9-SNAPSHOT 3 critical Unknown
org.xwiki.platform:xwiki-platform-skin-skinx
maven
Direct 15.1-SNAPSHOT 1 critical Unknown
org.xwiki.platform:xwiki-platform-uiextension-api
maven
Direct 15.1-SNAPSHOT 1 critical Unknown
org.xwiki.platform:xwiki-platform-web-templates
maven
Direct 15.5-SNAPSHOT 2 critical Unknown
org.xwiki.platform:xwiki-platform-web-templates
maven
Direct 15.0-SNAPSHOT 7 critical Unknown
org.xwiki.platform:xwiki-platform-webjars-api
maven
Direct 16.5.0-SNAPSHOT 1 critical Unknown
minimatch
npm
Transitive 3.0.8 10.2.5 90 behind 3 high ISC
vite
npm
Transitive 6.4.1 8.0.16 52 behind 2 high Apache-2.0 AND BSD-2-Clause AND CC0-1.0 AND ISC AND MIT
braces
npm
Transitive 1.8.5 3.0.3 17 behind 1 high MIT
rollup
npm
Transitive 4.55.1 4.61.0 16 behind 1 high 0BSD AND ISC AND MIT
glob
npm
Transitive 10.4.5 13.0.6 13 behind 1 high ISC
picomatch
npm
Transitive 2.3.1 4.0.4 9 behind 2 high MIT
picomatch
npm
Transitive 2.3.1 4.0.4 9 behind 2 high MIT
axios
npm
Transitive 1.15.0 1.17.0 8 behind 13 high MIT
flatted
npm
Transitive 3.3.1 3.4.2 6 behind 2 high ISC
trim
npm
Transitive 0.0.1 1.0.1 4 behind 1 high MIT
cross-spawn
npm
Transitive 7.0.3 7.0.6 3 behind 1 high MIT
socket.io-parser
npm
Transitive 4.2.4 4.2.6 3 behind 1 high MIT
fast-uri
npm
Transitive 3.1.0 3.1.2 2 behind 2 high BSD-3-Clause
happy-dom
npm
Transitive 20.8.7 2 high MIT
io.netty:netty-transport-native-epoll
maven
Direct 4.2.12 1 high Unknown
ip
npm
Direct 2.0.1 2.0.1 Current 1 high MIT
js-yaml
npm
Transitive 3.4.6 3 high MIT
lodash
npm
Transitive 4.6.1 3 high MIT
org.xwiki.platform:xwiki-platform-index-tree-macro
maven
Direct 15.1-SNAPSHOT 1 high Unknown
org.xwiki.platform:xwiki-platform-livedata-macro
maven
Direct 14.3-SNAPSHOT 1 high Unknown
org.xwiki.platform:xwiki-platform-livedata-macro
maven
Direct 14.10-SNAPSHOT 1 high Unknown
org.xwiki.platform:xwiki-platform-livetable-ui
maven
Direct 14.10-SNAPSHOT 2 high Unknown
org.xwiki.platform:xwiki-platform-office-viewer
maven
Direct 14.7-SNAPSHOT 1 high Unknown
org.xwiki.platform:xwiki-platform-oldcore
maven
Direct 17.9.0-SNAPSHOT 1 high Unknown
org.xwiki.platform:xwiki-platform-security-authentication-ui
maven
Direct 16.5.0-SNAPSHOT 1 high Unknown
org.xwiki.platform:xwiki-platform-security-authorization-api
maven
Direct 14.10-SNAPSHOT 1 high Unknown
org.xwiki.platform:xwiki-platform-xclass-ui
maven
Direct 14.3-SNAPSHOT 1 high Unknown
pathval
npm
Transitive 0.1.1 1 high MIT
trim-newlines
npm
Transitive 2.0.0 1 high MIT
postcss
npm
Transitive 5.2.18 8.5.15 170 behind 3 medium MIT
ajv
npm
Transitive 6.12.6 8.20.0 67 behind 1 medium MIT
qs
npm
Transitive 6.13.0 6.15.2 35 behind 2 medium BSD-3-Clause
micromatch
npm
Transitive 2.3.11 4.0.8 26 behind 1 medium MIT
brace-expansion
npm
Transitive 1.1.11 5.0.6 18 behind 2 medium MIT
yaml
npm
Transitive 2.8.0 2.9.0 8 behind 1 medium ISC
follow-redirects
npm
Transitive 1.15.9 1.16.0 3 behind 1 medium MIT
markdown-it
npm
Transitive 14.1.0 14.2.0 2 behind 1 medium MIT
@babel/helpers
npm
Transitive 7.25.6 1 medium MIT
browserstack-local
npm
Transitive 1.5.5 1 medium MIT
commons-httpclient:commons-httpclient
maven
Direct 3.1 1 medium Apache-2.0
org.xwiki.platform:xwiki-platform-flamingo-skin-resources
maven
Direct 16.5.0-SNAPSHOT 1 medium Unknown
org.xwiki.platform:xwiki-platform-notifications-notifiers-default
maven
Direct 15.5-SNAPSHOT 1 medium Unknown
org.xwiki.platform:xwiki-platform-web-templates
maven
Direct 17.3.0-SNAPSHOT 3 medium Unknown
org.xwiki.platform:xwiki-platform-web-templates
maven
Direct 17.0.0-SNAPSHOT 1 medium Unknown
vnu-jar
npm
Transitive 23.4.11 1 medium MIT
yargs-parser
npm
Transitive 10.1.0 1 medium ISC
cookie
npm
Transitive 0.4.2 1.1.1 10 behind 1 low MIT
tmp
npm
Transitive 0.2.3 0.2.7 4 behind 1 low MIT
diff
npm
Transitive 3.5.0 1 low BSD-3-Clause
org.xwiki.platform:xwiki-platform-search-solr-api
maven
Direct 16.5.0-SNAPSHOT 1 low Unknown

License Breakdown

Unknown 2253
MIT 1629
ISC 107
Apache-2.0 82
BSD-2-Clause 29
BSD-3-Clause 29
BlueOak-1.0.0 13
Apache-2.0 AND MIT 11
MPL-2.0 5
CC0-1.0 3
CC0-1.0 AND MIT 3
ISC AND MIT 3
0BSD 2
BSD-2-Clause AND BSD-2-Clause-Views 2
BSD-2-Clause AND BSD-3-Clause 2
BSD-3-Clause AND ISC AND MIT 2
CC-BY-3.0 2
CC-BY-4.0 2
EPL-2.0 OR GPL-2.0-only WITH Classpath-exception-2.0 2
LGPL-3.0 2
MIT-0 2
(Apache-2.0 AND LGPL-2.0-or-later AND LGPL-2.1 AND LGPL-2.1-only) OR (Apache-2.0 AND LGPL-2.0-or-later AND LGPL-2.1-only) 1
(MPL-2.0 OR Apache-2.0) 1
0BSD AND ISC AND MIT 1
AGPL-3.0-only AND LGPL-2.0-or-later AND LGPL-2.1 AND LGPL-2.1-only 1
Apache-2.0 AND BSD-2-Clause 1
Apache-2.0 AND BSD-2-Clause AND CC0-1.0 AND ISC AND MIT 1
Apache-2.0 AND BSD-3-Clause AND OFL-1.1 1
Apache-2.0 AND CC-BY-3.0 AND CC-BY-4.0 AND CC-BY-SA-3.0 AND CC0-1.0 AND ISC AND LicenseRef-scancode-unknown-license-reference AND MIT AND MPL-2.0 AND OFL-1.1 1
Apache-2.0 AND LicenseRef-scancode-unknown 1
Apache-2.0 OR (Apache-2.0 AND MIT) 1
Apache-2.0 OR GPL-3.0 1
Apache-2.0 OR MIT 1
BSD-2-Clause AND CC0-1.0 AND ISC AND MIT 1
BSD-2-Clause-Views 1
BSD-3-Clause AND MIT 1
BSD-3-Clause-No-Nuclear-Warranty AND MIT 1
CC-BY-SA-4.0 AND ISC 1
LicenseRef-scancode-json-pd 1
LicenseRef-scancode-jython AND LicenseRef-scancode-jython AND Apache-2.0 1
LicenseRef-scancode-public-domain 1
MIT OR (MIT AND WTFPL) 1
MIT OR Apache-2.0 1
Python-2.0 1
Zlib 1

CVE Severity

critical 20
high 29
medium 17
low 4
unknown 0

Beta — feedback welcome: [email protected]