Home
Docs
GitHub
Pricing
Blog
Log In

Run Sandworm Audit for your App

Get started
Hold on, we're currently generating a fresh version of this report
Generated on Jan 25, 2024 via pnpm

frontail 4.2.1

streaming logs to the browser
Package summary
Share
57
issues
24
critical severity
vulnerability
1
license
23
14
high severity
vulnerability
11
license
1
meta
2
17
moderate severity
vulnerability
7
meta
10
2
low severity
vulnerability
1
license
1
4
licenses
50
MIT
23
N/A
1
ISC
1
BSD
Package created
4 Apr 2012
Version published
25 Jul 2018
Maintainers
1
Total deps
75
Direct deps
8
License
MIT

Issues

57

24 critical severity issues

critical
Recommendation: Upgrade to version 3.3.3 or later
via: socket.io@1.7.4
Recommendation: Check the package code and files for license information
via: socket.io@1.7.4
Recommendation: Check the package code and files for license information
via: socket.io@1.7.4
Recommendation: Check the package code and files for license information
via: socket.io@1.7.4
Recommendation: Check the package code and files for license information
via: connect@2.11.0
Recommendation: Check the package code and files for license information
via: connect@2.11.0
Recommendation: Check the package code and files for license information
via: socket.io@1.7.4
Recommendation: Check the package code and files for license information
via: commander@1.3.2
Recommendation: Check the package code and files for license information
via: socket.io@1.7.4
Recommendation: Check the package code and files for license information
via: socket.io@1.7.4
Recommendation: Check the package code and files for license information
via: socket.io@1.7.4
Recommendation: Check the package code and files for license information
via: connect@2.11.0
Recommendation: Check the package code and files for license information
via: connect@2.11.0 & others
Recommendation: Check the package code and files for license information
via: connect@2.11.0
Recommendation: Check the package code and files for license information
via: socket.io@1.7.4
Recommendation: Check the package code and files for license information
via: connect@2.11.0
Recommendation: Check the package code and files for license information
via: socket.io@1.7.4
Recommendation: Check the package code and files for license information
via: socket.io@1.7.4
Recommendation: Check the package code and files for license information
via: socket.io@1.7.4
Recommendation: Check the package code and files for license information
via: connect@2.11.0
Recommendation: Check the package code and files for license information
via: connect@2.11.0
Recommendation: Check the package code and files for license information
via: connect@2.11.0
Recommendation: Check the package code and files for license information
via: connect@2.11.0
Recommendation: Check the package code and files for license information
via: connect@2.11.0
Collapse
Expand

14 high severity issues

high
Recommendation: Upgrade to version 6.0.4 or later
via: connect@2.11.0
Recommendation: Upgrade to version 3.6.0 or later
via: socket.io@1.7.4
Recommendation: Upgrade to version 3.3.2 or later
via: socket.io@1.7.4
Recommendation: None
via: socket.io@1.7.4
Recommendation: Upgrade to version 1.0.0 or later
via: connect@2.11.0
Recommendation: Upgrade to version 0.6.1 or later
via: connect@2.11.0
Recommendation: Upgrade to version 1.0.0 or later
via: connect@2.11.0
Recommendation: Upgrade to version 0.5.2 or later
via: connect@2.11.0
Recommendation: Upgrade to version 1.4.1 or later
via: connect@2.11.0
Recommendation: Upgrade to version 2.6.9 or later
via: socket.io@1.7.4
Recommendation: Upgrade to version 6.2.4 or later
via: connect@2.11.0
Recommendation: Validate that the package complies with your license policy
via: connect@2.11.0
via: connect@2.11.0
via: socket.io@1.7.4
Collapse
Expand

17 moderate severity issues

moderate
Recommendation: Upgrade to version 1.0.4 or later
via: connect@2.11.0
Recommendation: Upgrade to version 3.6.1 or later
via: socket.io@1.7.4
Recommendation: Upgrade to version 2.14.0 or later
via: connect@2.11.0
Recommendation: Upgrade to version 2.4.0 or later
via: socket.io@1.7.4
Recommendation: Upgrade to version 2.6.9 or later
via: socket.io@1.7.4
Recommendation: Upgrade to version 2.0.0 or later
via: socket.io@1.7.4
Recommendation: Upgrade to version 0.11.1 or later
via: connect@2.11.0
via: connect@2.11.0
via: socket.io@1.7.4
via: connect@2.11.0
via: socket.io@1.7.4
via: socket.io@1.7.4
via: connect@2.11.0
via: socket.io@1.7.4
via: connect@2.11.0
via: connect@2.11.0
via: connect@2.11.0
Collapse
Expand

2 low severity issues

low
Recommendation: Upgrade to version 0.8.4 or later
via: connect@2.11.0
Recommendation: Read and validate the license terms
via: connect@2.11.0
Collapse
Expand

Licenses

MIT License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
Cannot
hold-liable
Must
include-copyright
include-license
50 Packages, Including:
CBuffer@0.1.4
accepts@1.3.3
after@0.8.2
backo2@1.0.2
base64-arraybuffer@0.1.5
base64id@1.0.0
byline@5.0.0
component-emitter@1.2.1
connect@2.11.0
cookie@0.3.1
core-util-is@1.0.3
daemon-fix41@1.1.2
debug@2.2.0
debug@2.3.3
debug@4.3.4
engine.io-client@1.8.6
engine.io-parser@1.3.2
engine.io@1.8.5
frontail@4.2.1
has-binary@0.1.7
has-cors@1.1.0
isarray@0.0.1
json3@3.3.2
keypress@0.1.0
methods@0.0.1
mime-db@1.52.0
mime-types@2.1.35
ms@0.7.2
ms@2.1.2
multiparty@2.2.0
negotiator@0.3.0
negotiator@0.6.1
object-assign@4.1.0
parsejson@0.0.3
parseqs@0.0.5
parseuri@0.0.5
raw-body@0.0.3
readable-stream@1.1.14
socket.io-adapter@0.5.0
socket.io-client@1.7.4
socket.io-parser@2.3.1
socket.io@1.7.4
string_decoder@0.10.31
to-array@0.1.4
ultron@1.0.2
untildify@3.0.3
ws@1.1.5
wtf-8@1.0.0
xmlhttprequest-ssl@1.6.3
yeast@0.1.2

N/A

N/A
23 Packages, Including:
arraybuffer.slice@0.0.6
better-assert@1.0.2
blob@0.0.4
buffer-crc32@0.2.1
bytes@0.2.1
callsite@1.0.0
commander@1.3.2
component-bind@1.0.0
component-emitter@1.1.2
component-inherit@0.0.3
cookie-signature@1.0.1
cookie@0.1.0
fresh@0.2.0
indexof@0.0.1
mime@1.2.11
ms@0.7.1
object-component@0.0.3
options@0.0.6
pause@0.0.1
qs@0.6.5
range-parser@0.0.4
send@0.1.4
uid2@0.0.3

ISC License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
Cannot
hold-liable
Must
include-copyright
include-license
1 Packages, Including:
inherits@2.0.4

BSD

Invalid
Not OSI Approved
1 Packages, Including:
stream-counter@0.2.0
Disclaimer

This deed highlights only some of the key features and terms of the actual license. It is not a license and has no legal value. You should carefully review all of the terms and conditions of the actual license before using the licensed material.

Sandworm is not a law firm and does not provide legal services. Distributing, displaying, or linking to this deed or the license that it summarizes does not create a lawyer-client or any other relationship.

Direct Dependencies

8
All Dependencies CSV
β“˜ This is a list of frontail 's direct dependencies. Data on all dependencies, including transitive ones, is available via CSV download.
NameVersionSizeLicenseTypeVulnerabilities
CBuffer0.1.45.83 kBMIT
prod
byline5.0.03.6 kBMIT
prod
commander1.3.210.69 kBUNKNOWN
prod
1
connect2.11.075.54 kBMIT
prod
11
9
9
2
cookie0.1.03.07 kBUNKNOWN
prod
1
daemon-fix411.1.23.65 kBMIT
prod
socket.io1.7.419.67 kBMIT
prod
12
5
8
untildify3.0.31.54 kBMIT
prod

Visualizations