@@ -2,10 +2,10 @@ SPDXVersion: SPDX-2.3
2
2
DataLicense: CC0-1.0
3
3
SPDXID: SPDXRef-DOCUMENT
4
4
DocumentName: Python-cve-bin-tool
5
- DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-df626266-91c9-4f36-a228-57b53bea7e86
5
+ DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-afe29016-65a3-45f3-9fee-8779a2dff759
6
6
LicenseListVersion: 3.26
7
7
Creator: Tool: sbom4python-0.12.4
8
- Created: 2025-09-22T00:45:34Z
8
+ Created: 2025-09-29T00:37:37Z
9
9
CreatorComment: <text>SBOM Type: Build - This document has been automatically generated.</text>
10
10
#####
11
11
@@ -271,22 +271,22 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:kim_davies:idna:3.10:*:*:*:*:*:*:*
271
271
272
272
PackageName: beautifulsoup4
273
273
SPDXID: SPDXRef-12-beautifulsoup4
274
- PackageVersion: 4.13.5
274
+ PackageVersion: 4.14.0
275
275
PrimaryPackagePurpose: LIBRARY
276
276
PackageSupplier: Person: Leonard Richardson (
[email protected] )
277
- PackageDownloadLocation: https://pypi.org/project/beautifulsoup4/4.13.5 /#files
277
+ PackageDownloadLocation: https://pypi.org/project/beautifulsoup4/4.14.0 /#files
278
278
FilesAnalyzed: false
279
279
PackageHomePage: https://www.crummy.com/software/BeautifulSoup/bs4/
280
- PackageChecksum: SHA256: 642085eaa22233aceadff9c69651bc51e8bf3f874fb6d7104ece2beb24b47c4a
280
+ PackageChecksum: SHA256: aee96fbccdf2d2a8d1288b2afa51fc76bb60823b7881a50fb1ed5f711d1a7d73
281
281
PackageLicenseDeclared: NOASSERTION
282
282
PackageLicenseConcluded: MIT
283
283
PackageLicenseComments: <text>beautifulsoup4 declares MIT License which is not currently a valid SPDX License identifier or expression.</text>
284
284
PackageCopyrightText: NOASSERTION
285
285
PackageSummary: <text>Screen-scraping library</text>
286
- ReleaseDate: 2025-08-24T14:06:14Z
286
+ ReleaseDate: 2025-09-27T17:22:16Z
287
287
ExternalRef: OTHER other https://www.crummy.com/software/BeautifulSoup/bs4/download/
288
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/beautifulsoup4@4.13.5
289
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:leonard_richardson:beautifulsoup4:4.13.5 :*:*:*:*:*:*:*
288
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/beautifulsoup4@4.14.0
289
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:leonard_richardson:beautifulsoup4:4.14.0 :*:*:*:*:*:*:*
290
290
#####
291
291
292
292
PackageName: soupsieve
625
625
PackageDownloadLocation: https://pypi.org/project/pyparsing/3.2.5/#files
626
626
FilesAnalyzed: false
627
627
PackageHomePage: https://github.com/pyparsing/pyparsing/
628
+ PackageChecksum: SHA256: e38a4f02064cf41fe6593d328d0512495ad1f3d8a91c4f73fc401b3079a59a5e
628
629
PackageLicenseDeclared: NOASSERTION
629
630
PackageLicenseConcluded: NOASSERTION
630
631
PackageCopyrightText: NOASSERTION
631
632
PackageSummary: <text>pyparsing - Classes and methods to define and execute parsing grammars</text>
632
- ReleaseDate: 2022-02-03T00:00:29Z
633
+ ReleaseDate: 2025-09-21T04:11:04Z
633
634
ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected]
634
635
ExternalRef: SECURITY cpe23Type cpe:2.3:a:paul_mcguire:pyparsing:3.2.5:*:*:*:*:*:*:*
635
636
#####
@@ -834,21 +835,21 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:google_cloud_platform:google-auth-http
834
835
835
836
PackageName: google-apitools
836
837
SPDXID: SPDXRef-41-google-apitools
837
- PackageVersion: 0.5.32
838
+ PackageVersion: 0.5.35
838
839
PrimaryPackagePurpose: LIBRARY
839
840
PackageSupplier: Person: Craig Citro (
[email protected] )
840
- PackageDownloadLocation: https://pypi.org/project/google-apitools/0.5.32 /#files
841
+ PackageDownloadLocation: https://pypi.org/project/google-apitools/0.5.35 /#files
841
842
FilesAnalyzed: false
842
843
PackageHomePage: http://github.com/google/apitools
843
- PackageChecksum: SHA256: b78f74116558e0476e19501b5b4b2ac7c93261a69c5449c861ea95cbc853c688
844
+ PackageChecksum: SHA256: 0f6f67fbe6f228f4777ae7e9d00e01476f7b8a48dca3a4353a1c32369437bbd0
844
845
PackageLicenseDeclared: NOASSERTION
845
846
PackageLicenseConcluded: Apache-2.0
846
847
PackageLicenseComments: <text>google-apitools declares Apache 2.0 which is not currently a valid SPDX License identifier or expression.</text>
847
848
PackageCopyrightText: NOASSERTION
848
849
PackageSummary: <text>client libraries for humans</text>
849
- ReleaseDate: 2021-05-05T22:12:58Z
850
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] .
32
851
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:craig_citro:google-apitools:0.5.32 :*:*:*:*:*:*:*
850
+ ReleaseDate: 2025-09-24T20:22:49Z
851
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] .
35
852
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:craig_citro:google-apitools:0.5.35 :*:*:*:*:*:*:*
852
853
#####
853
854
854
855
PackageName: monotonic
894
895
895
896
PackageName: markupsafe
896
897
SPDXID: SPDXRef-44-markupsafe
897
- PackageVersion: 3.0.2
898
+ PackageVersion: 3.0.3
898
899
PrimaryPackagePurpose: LIBRARY
899
900
PackageSupplier: NOASSERTION
900
- PackageDownloadLocation: https://pypi.org/project/markupsafe/3.0.2 /#files
901
+ PackageDownloadLocation: https://pypi.org/project/markupsafe/3.0.3 /#files
901
902
FilesAnalyzed: false
902
- PackageChecksum: SHA256: 7e94c425039cde14257288fd61dcfb01963e658efbc0ff54f5306b06054700f8
903
+ PackageChecksum: SHA256: 2f981d352f04553a7171b8e44369f2af4055f888dfb147d55e42d29e29e74559
903
904
PackageLicenseDeclared: NOASSERTION
904
905
PackageLicenseConcluded: NOASSERTION
905
- PackageLicenseComments: <text>markupsafe declares Copyright 2010 Pallets
906
-
907
- Redistribution and use in source and binary forms, with or without
908
- modification, are permitted provided that the following conditions are
909
- met:
910
-
911
- 1. Redistributions of source code must retain the above copyright
912
- notice, this list of conditions and the following disclaimer.
913
-
914
- 2. Redistributions in binary form must reproduce the above copyright
915
- notice, this list of conditions and the following disclaimer in the
916
- documentation and/or other materials provided with the distribution.
917
-
918
- 3. Neither the name of the copyright holder nor the names of its
919
- contributors may be used to endorse or promote products derived from
920
- this software without specific prior written permission.
921
-
922
- THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS
923
- "AS IS" AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT
924
- LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A
925
- PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT
926
- HOLDER OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
927
- SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED
928
- TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR
929
- PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF
930
- LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING
931
- NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF THIS
932
- SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
933
- which is not currently a valid SPDX License identifier or expression.</text>
934
906
PackageCopyrightText: NOASSERTION
935
907
PackageSummary: <text>Safely add untrusted strings to HTML/XML markup.</text>
936
- ReleaseDate: 2024-10-18T15:20:51Z
908
+ ReleaseDate: 2025-09-27T18:36:05Z
937
909
ExternalRef: OTHER other https://palletsprojects.com/donate
938
910
ExternalRef: OTHER documentation https://markupsafe.palletsprojects.com/
939
- ExternalRef: OTHER log https://markupsafe.palletsprojects.com/changes/
911
+ ExternalRef: OTHER log https://markupsafe.palletsprojects.com/page/ changes/
940
912
ExternalRef: OTHER vcs https://github.com/pallets/markupsafe/
941
913
ExternalRef: OTHER chat https://discord.gg/pallets
942
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] .
2
914
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] .
3
943
915
#####
944
916
945
917
PackageName: jsonschema
@@ -1057,25 +1029,25 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:anthony_harrison:lib4sbom:0.8.8:*:*:*:
1057
1029
1058
1030
PackageName: pyyaml
1059
1031
SPDXID: SPDXRef-50-pyyaml
1060
- PackageVersion: 6.0.2
1032
+ PackageVersion: 6.0.3
1061
1033
PrimaryPackagePurpose: LIBRARY
1062
1034
PackageSupplier: Person: Kirill Simonov (
[email protected] )
1063
1035
PackageDownloadLocation: https://pypi.org/project/PyYAML/
1064
1036
FilesAnalyzed: false
1065
1037
PackageHomePage: https://pyyaml.org/
1066
- PackageChecksum: SHA256: 0a9a2848a5b7feac301353437eb7d5957887edbf81d56e903999a75a3d743086
1038
+ PackageChecksum: SHA256: 214ed4befebe12df36bcc8bc2b64b396ca31be9304b8f59e25c11cf94a4c033b
1067
1039
PackageLicenseDeclared: MIT
1068
1040
PackageLicenseConcluded: MIT
1069
1041
PackageCopyrightText: NOASSERTION
1070
1042
PackageSummary: <text>YAML parser and emitter for Python</text>
1071
- ReleaseDate: 2024-08-06T20 :31:40Z
1043
+ ReleaseDate: 2025-09-25T21 :31:46Z
1072
1044
ExternalRef: OTHER issue-tracker https://github.com/yaml/pyyaml/issues
1073
1045
ExternalRef: OTHER build-system https://github.com/yaml/pyyaml/actions
1074
1046
ExternalRef: OTHER documentation https://pyyaml.org/wiki/PyYAMLDocumentation
1075
1047
ExternalRef: OTHER mailing-list http://lists.sourceforge.net/lists/listinfo/yaml-core
1076
1048
ExternalRef: OTHER vcs https://github.com/yaml/pyyaml
1077
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] .
2
1078
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:kirill_simonov:pyyaml:6.0.2 :*:*:*:*:*:*:*
1049
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] .
3
1050
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:kirill_simonov:pyyaml:6.0.3 :*:*:*:*:*:*:*
1079
1051
#####
1080
1052
1081
1053
PackageName: semantic-version
0 commit comments