Home
Docs
GitHub
Pricing
Blog
Log In

Run Sandworm Audit for your App

Get started
Hold on, we're currently generating a fresh version of this report
Generated on Mar 30, 2024 via pnpm

cylon 0.11.1

A JavaScript robotics framework using Node.js
Package summary
Share
87
issues
35
critical severity
vulnerability
6
license
29
28
high severity
vulnerability
16
license
4
meta
8
16
moderate severity
vulnerability
9
meta
7
8
low severity
vulnerability
4
license
4
5
licenses
29
N/A
24
MIT
3
ISC
4
other licenses
Apache 2.0
2
BSD
2
Package created
18 Oct 2013
Version published
12 Mar 2014
Maintainers
3
Total deps
60
Direct deps
9
License
UNKNOWN

Issues

87

35 critical severity issues

critical
Recommendation: Upgrade to version 3.1.7 or later
via: ejs@0.8.8
Recommendation: Upgrade to version 2.4.24 or later
via: express.io@1.1.13
Recommendation: Upgrade to version 2.5.5 or later
via: ejs@0.8.8
Recommendation: Upgrade to version 4.17.12 or later
via: globule@0.2.0
Recommendation: Upgrade to version 1.7.0 or later
via: express.io@1.1.13
Recommendation: Upgrade to version 1.12.1 or later
via: express.io@1.1.13
Recommendation: Check the package code and files for license information
via: express.io@1.1.13
Recommendation: Check the package code and files for license information
via: express.io@1.1.13
Recommendation: Check the package code and files for license information
via: express.io@1.1.13
Recommendation: Check the package code and files for license information
via: express.io@1.1.13
Recommendation: Check the package code and files for license information
via: express.io@1.1.13
Recommendation: Check the package code and files for license information
via: express.io@1.1.13
Recommendation: Check the package code and files for license information
via: commander@2.1.0 & others
Recommendation: Check the package code and files for license information
via: express.io@1.1.13
Recommendation: Check the package code and files for license information
via: express.io@1.1.13
Recommendation: Check the package code and files for license information
via: express.io@1.1.13
Recommendation: Check the package code and files for license information
via: ejs@0.8.8
Recommendation: Check the package code and files for license information
via: express.io@1.1.13
Recommendation: Check the package code and files for license information
via: express.io@1.1.13
Recommendation: Check the package code and files for license information
via: express.io@1.1.13
Recommendation: Check the package code and files for license information
via: node-namespace@1.0.0
Recommendation: Check the package code and files for license information
via: express.io@1.1.13
Recommendation: Check the package code and files for license information
via: express.io@1.1.13
Recommendation: Check the package code and files for license information
via: express.io@1.1.13
Recommendation: Check the package code and files for license information
via: express.io@1.1.13
Recommendation: Check the package code and files for license information
via: express.io@1.1.13
Recommendation: Check the package code and files for license information
via: express.io@1.1.13
Recommendation: Check the package code and files for license information
via: express.io@1.1.13
Recommendation: Check the package code and files for license information
via: express.io@1.1.13
Recommendation: Check the package code and files for license information
via: express.io@1.1.13
Recommendation: Check the package code and files for license information
via: express.io@1.1.13
Recommendation: Check the package code and files for license information
via: express.io@1.1.13
Recommendation: Check the package code and files for license information
via: express.io@1.1.13
Recommendation: Check the package code and files for license information
via: express.io@1.1.13
Recommendation: Check the package code and files for license information
via: express.io@1.1.13
Collapse
Expand

28 high severity issues

high
Recommendation: Upgrade to version 6.0.4 or later
via: express.io@1.1.13
Recommendation: Upgrade to version 1.1.1 or later
via: express.io@1.1.13
Recommendation: Upgrade to version 1.0.0 or later
via: express.io@1.1.13
Recommendation: Upgrade to version 0.6.1 or later
via: express.io@1.1.13
Recommendation: Upgrade to version 1.1.5 or later
via: express.io@1.1.13
Recommendation: Upgrade to version 1.0.0 or later
via: express.io@1.1.13
Recommendation: Upgrade to version 2.6.0 or later
via: express.io@1.1.13
Recommendation: Upgrade to version 2.5.5 or later
via: ejs@0.8.8
Recommendation: Upgrade to version 0.5.2 or later
via: express.io@1.1.13
Recommendation: Upgrade to version 3.0.2 or later
via: glob@3.2.11 & others
Recommendation: Upgrade to version 1.4.1 or later
via: express.io@1.1.13
Recommendation: Upgrade to version 2.6.9 or later
via: express.io@1.1.13
Recommendation: Upgrade to version 4.17.11 or later
via: globule@0.2.0
Recommendation: Upgrade to version 6.2.4 or later
via: express.io@1.1.13
Recommendation: Upgrade to version 3.0.5 or later
via: glob@3.2.11 & others
Recommendation: Upgrade to version 4.17.21 or later
via: globule@0.2.0
Recommendation: Validate that the package complies with your license policy
via: cylon@0.11.1
Recommendation: Validate that the package complies with your license policy
via: robeaux@0.5.1
Recommendation: Validate that the package complies with your license policy
via: glob@3.2.11 & others
Recommendation: Validate that the package complies with your license policy
via: express.io@1.1.13
via: express.io@1.1.13
via: express.io@1.1.13
via: ejs@0.8.8
via: globule@0.2.0
via: glob@3.2.11 & others
via: express.io@1.1.13
via: wrench@1.5.9
via: express.io@1.1.13
Collapse
Expand

16 moderate severity issues

moderate
Recommendation: Upgrade to version 4.17.11 or later
via: globule@0.2.0
Recommendation: Upgrade to version 1.0.4 or later
via: express.io@1.1.13
Recommendation: Upgrade to version 3.11.0 or later
via: express.io@1.1.13
Recommendation: Upgrade to version 2.14.0 or later
via: express.io@1.1.13
Recommendation: Upgrade to version 2.5.5 or later
via: ejs@0.8.8
Recommendation: Upgrade to version 2.4.0 or later
via: express.io@1.1.13
Recommendation: Upgrade to version 4.17.21 or later
via: globule@0.2.0
Recommendation: Upgrade to version 0.11.1 or later
via: express.io@1.1.13
Recommendation: Upgrade to version 4.19.2 or later
via: express.io@1.1.13
via: express.io@1.1.13
via: express.io@1.1.13
via: express.io@1.1.13
via: express.io@1.1.13
via: express.io@1.1.13
via: express.io@1.1.13
via: express.io@1.1.13
Collapse
Expand

8 low severity issues

low
Recommendation: Upgrade to version 4.17.5 or later
via: globule@0.2.0
Recommendation: Upgrade to version 0.8.4 or later
via: express.io@1.1.13
Recommendation: Upgrade to version 1.0.1 or later
via: express.io@1.1.13
Recommendation: Upgrade to version 2.6.9 or later
via: express.io@1.1.13
Recommendation: Read and validate the license terms
via: cylon@0.11.1
Recommendation: Read and validate the license terms
via: robeaux@0.5.1
Recommendation: Read and validate the license terms
via: glob@3.2.11 & others
Recommendation: Read and validate the license terms
via: express.io@1.1.13
Collapse
Expand

Licenses

N/A

N/A
29 Packages, Including:
active-x-obfuscator@0.0.1
base64id@0.1.0
batch@0.5.0
buffer-crc32@0.2.1
bytes@0.2.1
commander@1.3.2
commander@2.1.0
cookie-signature@1.0.1
cookie@0.1.0
debug@0.8.1
ejs@0.8.8
express.io@1.1.13
fresh@0.2.0
mime@1.2.11
node-namespace@1.0.0
options@0.0.6
pause@0.0.1
qs@0.6.6
range-parser@0.0.4
redis@0.7.3
send@0.1.4
socket.io-client@0.9.16
socket.io@0.9.19
tinycolor@0.0.1
uglify-js@1.2.5
uid2@0.0.3
underscore@1.4.3
ws@0.4.32
zeparser@0.0.5

MIT License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
Cannot
hold-liable
Must
include-copyright
include-license
24 Packages, Including:
async@0.1.22
async@0.2.10
coffee-script@1.4.0
connect@2.12.0
core-util-is@1.0.3
express@3.4.8
globule@0.2.0
isarray@0.0.1
keypress@0.1.0
lodash@2.4.2
merge-descriptors@0.0.1
methods@0.1.0
minimatch@0.2.14
minimatch@0.3.0
mkdirp@0.3.5
multiparty@2.2.0
nan@1.0.0
negotiator@0.3.0
policyfile@0.0.4
raw-body@1.1.2
readable-stream@1.1.14
string_decoder@0.10.31
wrench@1.5.9
xmlhttprequest@1.4.2

ISC License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
Cannot
hold-liable
Must
include-copyright
include-license
3 Packages, Including:
inherits@2.0.4
lru-cache@2.7.3
sigmund@1.0.1

Apache 2.0

Invalid
Not OSI Approved
2 Packages, Including:
cylon@0.11.1
robeaux@0.5.1

BSD

Invalid
Not OSI Approved
2 Packages, Including:
glob@3.2.11
stream-counter@0.2.0
Disclaimer

This deed highlights only some of the key features and terms of the actual license. It is not a license and has no legal value. You should carefully review all of the terms and conditions of the actual license before using the licensed material.

Sandworm is not a law firm and does not provide legal services. Distributing, displaying, or linking to this deed or the license that it summarizes does not create a lawyer-client or any other relationship.

Direct Dependencies

9
All Dependencies CSV
β“˜ This is a list of cylon 's direct dependencies. Data on all dependencies, including transitive ones, is available via CSV download.
NameVersionSizeLicenseTypeVulnerabilities
async0.2.1015.4 kBMIT
prod
commander2.1.07.66 kBUNKNOWN
prod
1
ejs0.8.817.68 kBUNKNOWN
prod
3
2
1
express.io1.1.13801.7 kBUNKNOWN
prod
30
16
13
4
glob3.2.1116.2 kBBSD
prod
4
1
globule0.2.08.7 kBMIT
prod
1
7
2
2
node-namespace1.0.01.72 kBUNKNOWN
prod
1
robeaux0.5.1539.79 kBApache 2.0
prod
1
1
wrench1.5.99.03 kBMIT
prod
1

Visualizations