Skip to content
Tools / zane-ops / Dependencies

Dependency Analysis

zane-ops

Direct and transitive dependency freshness, license, and CVE exposure from the latest SBOM.

57% Freshness
969 Dependencies
364 Outdated
0 Stale
21.8 Avg Behind

Dependency List

Latest release v1.13.5

Dependency Type Current Latest Behind CVE License
@react-router/node
npm
Transitive 7.8.1 1 critical MIT
@vitejs/plugin-rsc
npm
Transitive 0.4.11 6 critical MIT
django
pypi
Direct 5.2 22 critical (0BSD AND Apache-2.0 AND BSD-3-Clause AND LicenseRef-scancode-other-permissive AND Python-2.0) OR (0BSD AND BSD-3-Clause AND LicenseRef-scancode-other-permissive AND Python-2.0)
vite
npm
Transitive 6.3.5 8.0.16 83 behind 5 high Apache-2.0 AND BSD-2-Clause AND CC0-1.0 AND ISC AND MIT
rollup
npm
Transitive 4.47.1 4.61.0 45 behind 1 high 0BSD AND ISC AND MIT
undici
npm
Transitive 5.29.0 8.3.0 45 behind 5 high MIT
minimatch
npm
Transitive 9.0.5 10.2.5 36 behind 3 high ISC
cryptography
pypi
Direct 44.0.2 48.0.0 19 behind 2 high Apache-2.0 OR BSD-3-Clause OR (Apache-2.0 AND BSD-3-Clause)
tar
npm
Transitive 7.4.3 7.5.16 18 behind 6 high ISC
black
pypi
Direct 24.3.0 26.5.1 15 behind 1 high MIT
glob
npm
Transitive 10.4.5 13.0.6 13 behind 1 high ISC
picomatch
npm
Transitive 2.3.1 4.0.4 9 behind 2 high MIT
gitpython
pypi
Direct 3.1.44 3.1.50 6 behind 4 high BSD-3-Clause
pyopenssl
pypi
Direct 25.0.0 26.2.0 6 behind 2 high Apache-2.0
path-to-regexp
npm
Transitive 0.1.12 8.4.2 5 behind 1 high MIT
urllib3
pypi
Direct 2.5.0 2.7.0 5 behind 3 high MIT
pyjwt
pypi
Direct 2.10.1 2.13.0 4 behind 1 high MIT
twisted
pypi
Direct 24.11.0 26.4.0 4 behind 1 high LPPL-1.3c AND LicenseRef-scancode-public-domain AND MIT
lodash
npm
Transitive 4.17.21 4.18.1 3 behind 3 high CC0-1.0 AND MIT
pyasn1
pypi
Direct 0.6.1 0.6.3 2 behind 2 high BSD-2-Clause
protobuf
pypi
Direct 5.27.3 2 high BSD-3-Clause
react-router
npm
Transitive 7.8.1 5 high MIT
socket.io-parser
npm
Transitive 3.3.4 1 high MIT
tornado
pypi
Direct 6.4 7 high Apache-2.0
valibot
npm
Transitive 0.41.0 1 high MIT
qs
npm
Transitive 6.13.0 6.15.2 35 behind 2 medium BSD-3-Clause
requests
pypi
Direct 2.31.0 2.34.2 12 behind 3 medium Apache-2.0
brace-expansion
npm
Transitive 2.0.2 5.0.6 11 behind 1 medium MIT
python-dotenv
pypi
Direct 1.0.1 1.2.2 5 behind 1 medium BSD-2-Clause AND BSD-3-Clause
js-yaml
npm
Transitive 4.1.0 4.2.0 3 behind 1 medium MIT
sqlparse
pypi
Direct 0.5.3 0.5.5 2 behind 1 medium BSD-2-Clause AND BSD-3-Clause
mdast-util-to-hast
npm
Transitive 13.2.0 13.2.1 1 behind 1 medium MIT
markdown
pypi
Direct 3.5.2 1 medium BSD-2-Clause
parseuri
npm
Transitive 0.0.6 1 medium MIT
pip
pypi
Direct 24.0 4 medium MIT
uv
pypi
Direct 0.7.3 4 medium Apache-2.0 AND MIT
pygments
pypi
Direct 2.17.2 2.20.0 5 behind 1 low BSD-2-Clause
certifi
pypi
Direct 2024.2.2 1 low MPL-2.0

License Breakdown

MIT 696
Unknown 84
ISC 55
BSD-2-Clause AND BSD-3-Clause 24
Apache-2.0 20
BSD-3-Clause 19
MPL-2.0 14
Apache-2.0 OR MIT OR (Apache-2.0 AND MIT) 8
BSD-2-Clause 8
BlueOak-1.0.0 5
Apache-2.0 AND MIT 4
Apache-2.0 AND BSD-2-Clause 2
LGPL-3.0-only AND LGPL-3.0-or-later 2
(0BSD AND Apache-2.0 AND BSD-3-Clause AND LicenseRef-scancode-other-permissive AND Python-2.0) OR (0BSD AND BSD-3-Clause AND LicenseRef-scancode-other-permissive AND Python-2.0) 1
0BSD 1
0BSD AND ISC AND MIT 1
Apache-2.0 AND BSD-2-Clause AND CC0-1.0 AND ISC AND MIT 1
Apache-2.0 AND BSD-3-Clause 1
Apache-2.0 AND BSD-3-Clause AND LicenseRef-scancode-unknown-license-reference 1
Apache-2.0 AND MIT AND MPL-2.0 1
Apache-2.0 OR (Apache-2.0 AND BSD-3-Clause) 1
Apache-2.0 OR BSD-3-Clause OR (Apache-2.0 AND BSD-3-Clause) 1
BSD-2-Clause AND BSD-3-Clause AND CC-BY-SA-4.0 AND GPL-1.0-or-later AND LicenseRef-scancode-other-copyleft 1
BSD-2-Clause AND BSD-3-Clause AND GPL-1.0-or-later 1
CC-BY-3.0 1
CC-BY-4.0 1
CC-BY-4.0 AND CC-BY-SA-4.0 AND GPL-2.0-only AND GPL-2.0-or-later 1
CC0-1.0 1
CC0-1.0 AND MIT 1
ISC AND MIT 1
LGPL-2.0-or-later AND LGPL-2.1-only AND LGPL-3.0-or-later AND MIT AND curl 1
LGPL-2.1-only AND LGPL-2.1-or-later 1
LGPL-2.1-only AND MIT AND MPL-1.1 1
LGPL-3.0-only AND LGPL-3.0-only AND LGPL-3.0-only 1
LPPL-1.3c AND LicenseRef-scancode-public-domain AND MIT 1
PSF-2.0 1
Python-2.0 1
Python-2.0.1 1
Unlicense 1
apache-2.0 1

CVE Severity

critical 3
high 22
medium 11
low 2
unknown 0

Beta — feedback welcome: [email protected]