Home
Docs
GitHub
Pricing
Blog
Log In

Run Sandworm Audit for your App

Get started
Generated on May 31, 2024 via pnpm

express-status-monitor 1.2.11

Realtime Monitoring for Express-based Node applications
Package summary
Share
26
issues
8
critical severity
vulnerability
2
license
6
5
high severity
vulnerability
3
meta
2
12
moderate severity
vulnerability
8
meta
4
1
low severity
vulnerability
1
4
licenses
49
MIT
6
N/A
1
BSD-3-Clause
1
BSD-2-Clause
Package created
17 Aug 2016
Version published
12 Apr 2020
Maintainers
1
Total deps
57
Direct deps
6
License
MIT

Issues

26

8 critical severity issues

critical
Recommendation: Upgrade to version 1.6.2 or later
via: socket.io@2.3.0
Recommendation: Upgrade to version 1.6.1 or later
via: socket.io@2.3.0
Recommendation: Check the package code and files for license information
via: socket.io@2.3.0
Recommendation: Check the package code and files for license information
via: socket.io@2.3.0
Recommendation: Check the package code and files for license information
via: socket.io@2.3.0
Recommendation: Check the package code and files for license information
via: socket.io@2.3.0
Recommendation: Check the package code and files for license information
via: socket.io@2.3.0
Recommendation: Check the package code and files for license information
via: socket.io@2.3.0
Collapse
Expand

5 high severity issues

high
Recommendation: Upgrade to version 3.6.0 or later
via: socket.io@2.3.0
Recommendation: Upgrade to version 0.21.2 or later
via: axios@0.19.2
Recommendation: Upgrade to version 1.14.7 or later
via: axios@0.19.2
via: axios@0.19.2
via: debug@4.1.1 & others
Collapse
Expand

12 moderate severity issues

moderate
Recommendation: Upgrade to version 3.6.1 or later
via: socket.io@2.3.0
Recommendation: Upgrade to version 0.21.1 or later
via: axios@0.19.2
Recommendation: Upgrade to version 6.2.2 or later
via: socket.io@2.3.0
Recommendation: Upgrade to version 1.14.8 or later
via: axios@0.19.2
Recommendation: Upgrade to version 2.4.0 or later
via: socket.io@2.3.0
Recommendation: Upgrade to version 1.15.4 or later
via: axios@0.19.2
Recommendation: Upgrade to version 0.28.0 or later
via: axios@0.19.2
Recommendation: Upgrade to version 1.15.6 or later
via: axios@0.19.2
via: socket.io@2.3.0
via: socket.io@2.3.0
via: socket.io@2.3.0
via: socket.io@2.3.0
Collapse
Expand

1 low severity issue

low
Recommendation: Upgrade to version 4.3.1 or later
via: debug@4.1.1 & others
Collapse
Expand

Licenses

MIT License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
Cannot
hold-liable
Must
include-copyright
include-license
49 Packages, Including:
accepts@1.3.8
after@0.8.2
arraybuffer.slice@0.0.7
async-limiter@1.0.1
axios@0.19.2
backo2@1.0.2
base64-arraybuffer@0.1.4
base64-arraybuffer@0.1.5
base64id@2.0.0
blob@0.0.5
component-emitter@1.2.1
component-emitter@1.3.1
cookie@0.3.1
debug@3.1.0
debug@4.1.1
engine.io-client@3.4.4
engine.io-parser@2.2.1
engine.io@3.4.2
express-status-monitor@1.2.11
follow-redirects@1.5.10
handlebars@4.7.8
has-binary2@1.0.3
has-cors@1.1.0
isarray@2.0.1
mime-db@1.52.0
mime-types@2.1.35
minimist@1.2.8
ms@2.0.0
ms@2.1.3
negotiator@0.6.3
neo-async@2.6.2
on-headers@1.0.2
parseqs@0.0.5
parseqs@0.0.6
parseuri@0.0.5
parseuri@0.0.6
pidusage@2.0.18
safe-buffer@5.2.1
socket.io-adapter@1.1.2
socket.io-client@2.3.0
socket.io-parser@3.3.3
socket.io-parser@3.4.3
socket.io@2.3.0
to-array@0.1.4
wordwrap@1.0.0
ws@6.1.4
ws@7.5.9
xmlhttprequest-ssl@1.5.5
yeast@0.1.2

N/A

N/A
6 Packages, Including:
better-assert@1.0.2
callsite@1.0.0
component-bind@1.0.0
component-inherit@0.0.3
indexof@0.0.1
object-component@0.0.3

BSD 3-Clause "New" or "Revised" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
use-trademark
hold-liable
Must
include-copyright
include-license
1 Packages, Including:
source-map@0.6.1

BSD 2-Clause "Simplified" License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
place-warranty
Cannot
hold-liable
Must
include-copyright
include-license
1 Packages, Including:
uglify-js@3.17.4
Disclaimer

This deed highlights only some of the key features and terms of the actual license. It is not a license and has no legal value. You should carefully review all of the terms and conditions of the actual license before using the licensed material.

Sandworm is not a law firm and does not provide legal services. Distributing, displaying, or linking to this deed or the license that it summarizes does not create a lawyer-client or any other relationship.

Direct Dependencies

6
All Dependencies CSV
β“˜ This is a list of express-status-monitor 's direct dependencies. Data on all dependencies, including transitive ones, is available via CSV download.
NameVersionSizeLicenseTypeVulnerabilities
axios0.19.285.88 kBMIT
prod
3
5
debug4.1.121.26 kBMIT
prod
1
1
handlebars4.7.8632 kBMIT
prod
on-headers1.0.23.15 kBMIT
prod
pidusage2.0.1810.19 kBMIT
prod
socket.io2.3.013.38 kBMIT
prod
8
2
7
1

Visualizations