Skip to content
Tools / xwiki-platform / Dependencies

Dependency Analysis

xwiki-platform

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

78% Freshness
4210 Dependencies
696 Outdated
0 Stale
5.7 Avg Behind

Dependency List

Latest release xwiki-platform-17.10.8

Dependency Type Current Latest Behind CVE License
com.github.jsqlparser:jsqlparser
maven
Direct 4.6 (Apache-2.0 AND LGPL-2.0-or-later AND LGPL-2.1 AND LGPL-2.1-only) OR (Apache-2.0 AND LGPL-2.0-or-later AND LGPL-2.1-only)
com.github.sommeri:less4j
maven
Direct 1.17.2 Apache-2.0 OR GPL-3.0
com.github.vdubus:velocity-maven-plugin
maven
Direct 1.1.3 LGPL-3.0
org.glassfish.hk2:hk2-api
maven
Direct 2.6.1 EPL-2.0 OR GPL-2.0-only WITH Classpath-exception-2.0
org.glassfish.hk2:hk2-locator
maven
Direct 2.6.1 EPL-2.0 OR GPL-2.0-only WITH Classpath-exception-2.0
org.jfree:jfreechart
maven
Direct 1.0.19 LGPL-3.0
org.webjars.npm:hyper-json
maven
Direct 1.5.0 AGPL-3.0-only AND LGPL-2.0-or-later AND LGPL-2.1 AND LGPL-2.1-only

License Breakdown

Unknown 2253
MIT 1629
ISC 107
Apache-2.0 82
BSD-2-Clause 29
BSD-3-Clause 29
BlueOak-1.0.0 13
Apache-2.0 AND MIT 11
MPL-2.0 5
CC0-1.0 3
CC0-1.0 AND MIT 3
ISC AND MIT 3
0BSD 2
BSD-2-Clause AND BSD-2-Clause-Views 2
BSD-2-Clause AND BSD-3-Clause 2
BSD-3-Clause AND ISC AND MIT 2
CC-BY-3.0 2
CC-BY-4.0 2
EPL-2.0 OR GPL-2.0-only WITH Classpath-exception-2.0 2
LGPL-3.0 2
MIT-0 2
(Apache-2.0 AND LGPL-2.0-or-later AND LGPL-2.1 AND LGPL-2.1-only) OR (Apache-2.0 AND LGPL-2.0-or-later AND LGPL-2.1-only) 1
(MPL-2.0 OR Apache-2.0) 1
0BSD AND ISC AND MIT 1
AGPL-3.0-only AND LGPL-2.0-or-later AND LGPL-2.1 AND LGPL-2.1-only 1
Apache-2.0 AND BSD-2-Clause 1
Apache-2.0 AND BSD-2-Clause AND CC0-1.0 AND ISC AND MIT 1
Apache-2.0 AND BSD-3-Clause AND OFL-1.1 1
Apache-2.0 AND CC-BY-3.0 AND CC-BY-4.0 AND CC-BY-SA-3.0 AND CC0-1.0 AND ISC AND LicenseRef-scancode-unknown-license-reference AND MIT AND MPL-2.0 AND OFL-1.1 1
Apache-2.0 AND LicenseRef-scancode-unknown 1
Apache-2.0 OR (Apache-2.0 AND MIT) 1
Apache-2.0 OR GPL-3.0 1
Apache-2.0 OR MIT 1
BSD-2-Clause AND CC0-1.0 AND ISC AND MIT 1
BSD-2-Clause-Views 1
BSD-3-Clause AND MIT 1
BSD-3-Clause-No-Nuclear-Warranty AND MIT 1
CC-BY-SA-4.0 AND ISC 1
LicenseRef-scancode-json-pd 1
LicenseRef-scancode-jython AND LicenseRef-scancode-jython AND Apache-2.0 1
LicenseRef-scancode-public-domain 1
MIT OR (MIT AND WTFPL) 1
MIT OR Apache-2.0 1
Python-2.0 1
Zlib 1

CVE Severity

critical 20
high 29
medium 17
low 4
unknown 0

Beta — feedback welcome: [email protected]