@@ -2,10 +2,10 @@ SPDXVersion: SPDX-2.3
2
2
DataLicense: CC0-1.0
3
3
SPDXID: SPDXRef-DOCUMENT
4
4
DocumentName: Python-cve-bin-tool
5
- DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-351dc84d-37d7-42cd-a685-641ac1848762
5
+ DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-471104ff-c261-42ef-b302-6f8b05985844
6
6
LicenseListVersion: 3.22
7
7
Creator: Tool: sbom4python-0.11.1
8
- Created: 2024-08-12T00:34:00Z
8
+ Created: 2024-08-19T00:33:22Z
9
9
CreatorComment: <text>This document has been automatically generated.</text>
10
10
#####
11
11
@@ -26,33 +26,32 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:terri_oda:cve-bin-tool:3.3.1.dev0:*:*:
26
26
27
27
PackageName: aiohttp
28
28
SPDXID: SPDXRef-Package-2-aiohttp
29
- PackageVersion: 3.10.3
29
+ PackageVersion: 3.10.4
30
30
PrimaryPackagePurpose: LIBRARY
31
31
PackageSupplier: NOASSERTION
32
- PackageDownloadLocation: https://pypi.org/project/aiohttp/3.10.3
32
+ PackageDownloadLocation: https://pypi.org/project/aiohttp/3.10.4
33
33
FilesAnalyzed: false
34
34
PackageLicenseDeclared: NOASSERTION
35
35
PackageLicenseConcluded: Apache-2.0
36
36
PackageLicenseComments: <text>aiohttp declares Apache 2 which is not currently a valid SPDX License identifier or expression.</text>
37
37
PackageCopyrightText: NOASSERTION
38
38
PackageSummary: <text>Async http client/server framework (asyncio)</text>
39
- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
3
39
+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
4
40
40
#####
41
41
42
42
PackageName: aiohappyeyeballs
43
43
SPDXID: SPDXRef-Package-3-aiohappyeyeballs
44
- PackageVersion: 2.3.5
44
+ PackageVersion: 2.3.7
45
45
PrimaryPackagePurpose: LIBRARY
46
46
PackageSupplier: Organization: J. Nick Koston (
[email protected] )
47
- PackageDownloadLocation: https://pypi.org/project/aiohappyeyeballs/2.3.5
47
+ PackageDownloadLocation: https://pypi.org/project/aiohappyeyeballs/2.3.7
48
48
FilesAnalyzed: false
49
- PackageChecksum: SHA1: 01595bbda3380154cc4e72702a1f82502a15940a
50
- PackageLicenseDeclared: Python-2.0
51
- PackageLicenseConcluded: Python-2.0
49
+ PackageLicenseDeclared: Python-2.0.1
50
+ PackageLicenseConcluded: Python-2.0.1
52
51
PackageCopyrightText: NOASSERTION
53
52
PackageSummary: <text>Happy Eyeballs for asyncio</text>
54
- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
5
55
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:j._nick_koston:aiohappyeyeballs:2.3.5 :*:*:*:*:*:*:*
53
+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
7
54
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:j._nick_koston:aiohappyeyeballs:2.3.7 :*:*:*:*:*:*:*
56
55
#####
57
56
58
57
PackageName: aiosignal
@@ -167,18 +166,17 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:leonard_richardson:beautifulsoup4:4.12
167
166
168
167
PackageName: soupsieve
169
168
SPDXID: SPDXRef-Package-11-soupsieve
170
- PackageVersion: 2.5
169
+ PackageVersion: 2.6
171
170
PrimaryPackagePurpose: LIBRARY
172
171
PackageSupplier: Person: Isaac Muse (
[email protected] )
173
- PackageDownloadLocation: https://pypi.org/project/soupsieve/2.5
172
+ PackageDownloadLocation: https://pypi.org/project/soupsieve/2.6
174
173
FilesAnalyzed: false
175
- PackageChecksum: SHA1: 51ec317ada7e34f70fad6bfddaef8a2cfac1aebd
176
174
PackageLicenseDeclared: NOASSERTION
177
175
PackageLicenseConcluded: NOASSERTION
178
176
PackageCopyrightText: NOASSERTION
179
177
PackageSummary: <text>A modern CSS selector implementation for Beautiful Soup.</text>
180
- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/soupsieve@2.5
181
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:isaac_muse:soupsieve:2.5 :*:*:*:*:*:*:*
178
+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/soupsieve@2.6
179
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:isaac_muse:soupsieve:2.6 :*:*:*:*:*:*:*
182
180
#####
183
181
184
182
PackageName: cvss
@@ -361,17 +359,17 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:google_cloud_platform:google-auth:2.17
361
359
362
360
PackageName: cachetools
363
361
SPDXID: SPDXRef-Package-23-cachetools
364
- PackageVersion: 5.4 .0
362
+ PackageVersion: 5.5 .0
365
363
PrimaryPackagePurpose: LIBRARY
366
364
PackageSupplier: Person: Thomas Kemmer (
[email protected] )
367
- PackageDownloadLocation: https://pypi.org/project/cachetools/5.4 .0
365
+ PackageDownloadLocation: https://pypi.org/project/cachetools/5.5 .0
368
366
FilesAnalyzed: false
369
367
PackageLicenseDeclared: MIT
370
368
PackageLicenseConcluded: MIT
371
369
PackageCopyrightText: NOASSERTION
372
370
PackageSummary: <text>Extensible memoizing collections and decorators</text>
373
- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/cachetools@5.4 .0
374
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:thomas_kemmer:cachetools:5.4 .0:*:*:*:*:*:*:*
371
+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/cachetools@5.5 .0
372
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:thomas_kemmer:cachetools:5.5 .0:*:*:*:*:*:*:*
375
373
#####
376
374
377
375
PackageName: pyasn1-modules
@@ -741,17 +739,17 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:julian_berman:rpds-py:0.20.0:*:*:*:*:*
741
739
742
740
PackageName: lib4sbom
743
741
SPDXID: SPDXRef-Package-47-lib4sbom
744
- PackageVersion: 0.7.2
742
+ PackageVersion: 0.7.3
745
743
PrimaryPackagePurpose: LIBRARY
746
744
PackageSupplier: Person: Anthony Harrison (
[email protected] )
747
- PackageDownloadLocation: https://pypi.org/project/lib4sbom/0.7.2
745
+ PackageDownloadLocation: https://pypi.org/project/lib4sbom/0.7.3
748
746
FilesAnalyzed: false
749
747
PackageLicenseDeclared: Apache-2.0
750
748
PackageLicenseConcluded: Apache-2.0
751
749
PackageCopyrightText: NOASSERTION
752
750
PackageSummary: <text>Software Bill of Material (SBOM) generator and consumer library</text>
753
- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
2
754
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:anthony_harrison:lib4sbom:0.7.2 :*:*:*:*:*:*:*
751
+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
3
752
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:anthony_harrison:lib4sbom:0.7.3 :*:*:*:*:*:*:*
755
753
#####
756
754
757
755
PackageName: pyyaml
@@ -825,6 +823,7 @@ PrimaryPackagePurpose: LIBRARY
825
823
PackageSupplier: Person: the purl authors
826
824
PackageDownloadLocation: https://pypi.org/project/packageurl-python/0.15.6
827
825
FilesAnalyzed: false
826
+ PackageChecksum: SHA1: 14a11b50ab723796888133d3722b5b3e2845b084
828
827
PackageLicenseDeclared: MIT
829
828
PackageLicenseConcluded: MIT
830
829
PackageCopyrightText: NOASSERTION
@@ -1039,17 +1038,17 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:sean_ross:rpmfile:2.1.0:*:*:*:*:*:*:*
1039
1038
1040
1039
PackageName: setuptools
1041
1040
SPDXID: SPDXRef-Package-66-setuptools
1042
- PackageVersion: 72.1 .0
1041
+ PackageVersion: 72.2 .0
1043
1042
PrimaryPackagePurpose: LIBRARY
1044
1043
PackageSupplier: Organization: Python Packaging Authority (
[email protected] )
1045
- PackageDownloadLocation: https://pypi.org/project/setuptools/72.1 .0
1044
+ PackageDownloadLocation: https://pypi.org/project/setuptools/72.2 .0
1046
1045
FilesAnalyzed: false
1047
1046
PackageLicenseDeclared: NOASSERTION
1048
1047
PackageLicenseConcluded: NOASSERTION
1049
1048
PackageCopyrightText: NOASSERTION
1050
1049
PackageSummary: <text>Easily download, build, install, upgrade, and uninstall Python packages</text>
1051
- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/setuptools@72.1 .0
1052
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:python_packaging_authority:setuptools:72.1 .0:*:*:*:*:*:*:*
1050
+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/setuptools@72.2 .0
1051
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:python_packaging_authority:setuptools:72.2 .0:*:*:*:*:*:*:*
1053
1052
#####
1054
1053
1055
1054
PackageName: xmlschema
0 commit comments