Home
Docs
GitHub
Pricing
Blog
Log In

Run Sandworm Audit for your App

Get started
Hold on, we're currently generating a fresh version of this report
Generated on May 1, 2024 via pnpm

umzug 1.8.0

Framework agnostic migration tool for Node.JS
Package summary
Share
7
issues
1
critical severity
vulnerability
1
3
high severity
vulnerability
3
3
moderate severity
vulnerability
3
1
license
11
MIT
Package created
2 Dec 2014
Version published
5 Jan 2016
Maintainers
5
Total deps
11
Direct deps
5
License
MIT

Issues

7

1 critical severity issue

critical
Recommendation: Upgrade to version 4.17.12 or later
via: lodash@3.10.1
Collapse
Expand

3 high severity issues

high
Recommendation: Upgrade to version 4.17.11 or later
via: lodash@3.10.1
Recommendation: Upgrade to version 4.17.19 or later
via: lodash@3.10.1
Recommendation: Upgrade to version 4.17.21 or later
via: lodash@3.10.1
Collapse
Expand

3 moderate severity issues

moderate
Recommendation: Upgrade to version 4.17.11 or later
via: lodash@3.10.1
Recommendation: Upgrade to version 4.17.21 or later
via: lodash@3.10.1
Recommendation: Upgrade to version 4.17.5 or later
via: lodash@3.10.1
Collapse
Expand

Licenses

MIT License

Permissive
OSI Approved
This is a human-readable summary of (and not a substitute for) the license. Disclaimer.
Can
commercial-use
modify
distribute
sublicense
private-use
Cannot
hold-liable
Must
include-copyright
include-license
11 Packages, Including:
bluebird@3.7.2
function-bind@1.1.2
hasown@2.0.2
is-core-module@2.13.1
lodash@3.10.1
moment@2.30.1
path-parse@1.0.7
redefine@0.2.1
resolve@1.22.8
supports-preserve-symlinks-flag@1.0.0
umzug@1.8.0
Disclaimer

This deed highlights only some of the key features and terms of the actual license. It is not a license and has no legal value. You should carefully review all of the terms and conditions of the actual license before using the licensed material.

Sandworm is not a law firm and does not provide legal services. Distributing, displaying, or linking to this deed or the license that it summarizes does not create a lawyer-client or any other relationship.

Direct Dependencies

5
All Dependencies CSV
β“˜ This is a list of umzug 's direct dependencies. Data on all dependencies, including transitive ones, is available via CSV download.
NameVersionSizeLicenseTypeVulnerabilities
bluebird3.7.2136.03 kBMIT
prod
lodash3.10.1169.48 kBMIT
prod
1
3
3
moment2.30.1698.76 kBMIT
prod
redefine0.2.115.72 kBMIT
prod
resolve1.22.826.69 kBMIT
prod

Visualizations