@@ -2,10 +2,10 @@ SPDXVersion: SPDX-2.3
2
2
DataLicense: CC0-1.0
3
3
SPDXID: SPDXRef-DOCUMENT
4
4
DocumentName: Python-cve-bin-tool
5
- DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-d4f53a29-2289-4fd0-aab5-dc209d7086f9
5
+ DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-af9fbf22-0efe-4861-a905-a0089c080318
6
6
LicenseListVersion: 3.22
7
7
Creator: Tool: sbom4python-0.11.1
8
- Created: 2024-08-12T00:34:01Z
8
+ Created: 2024-08-19T00:33:30Z
9
9
CreatorComment: <text>This document has been automatically generated.</text>
10
10
#####
11
11
@@ -26,33 +26,32 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:terri_oda:cve-bin-tool:3.3.1.dev0:*:*:
26
26
27
27
PackageName: aiohttp
28
28
SPDXID: SPDXRef-Package-2-aiohttp
29
- PackageVersion: 3.10.3
29
+ PackageVersion: 3.10.4
30
30
PrimaryPackagePurpose: LIBRARY
31
31
PackageSupplier: NOASSERTION
32
- PackageDownloadLocation: https://pypi.org/project/aiohttp/3.10.3
32
+ PackageDownloadLocation: https://pypi.org/project/aiohttp/3.10.4
33
33
FilesAnalyzed: false
34
34
PackageLicenseDeclared: NOASSERTION
35
35
PackageLicenseConcluded: Apache-2.0
36
36
PackageLicenseComments: <text>aiohttp declares Apache 2 which is not currently a valid SPDX License identifier or expression.</text>
37
37
PackageCopyrightText: NOASSERTION
38
38
PackageSummary: <text>Async http client/server framework (asyncio)</text>
39
- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
3
39
+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
4
40
40
#####
41
41
42
42
PackageName: aiohappyeyeballs
43
43
SPDXID: SPDXRef-Package-3-aiohappyeyeballs
44
- PackageVersion: 2.3.5
44
+ PackageVersion: 2.3.7
45
45
PrimaryPackagePurpose: LIBRARY
46
46
PackageSupplier: Organization: J. Nick Koston (
[email protected] )
47
- PackageDownloadLocation: https://pypi.org/project/aiohappyeyeballs/2.3.5
47
+ PackageDownloadLocation: https://pypi.org/project/aiohappyeyeballs/2.3.7
48
48
FilesAnalyzed: false
49
- PackageChecksum: SHA1: 01595bbda3380154cc4e72702a1f82502a15940a
50
- PackageLicenseDeclared: Python-2.0
51
- PackageLicenseConcluded: Python-2.0
49
+ PackageLicenseDeclared: Python-2.0.1
50
+ PackageLicenseConcluded: Python-2.0.1
52
51
PackageCopyrightText: NOASSERTION
53
52
PackageSummary: <text>Happy Eyeballs for asyncio</text>
54
- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
5
55
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:j._nick_koston:aiohappyeyeballs:2.3.5 :*:*:*:*:*:*:*
53
+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
7
54
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:j._nick_koston:aiohappyeyeballs:2.3.7 :*:*:*:*:*:*:*
56
55
#####
57
56
58
57
PackageName: aiosignal
@@ -184,18 +183,17 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:leonard_richardson:beautifulsoup4:4.12
184
183
185
184
PackageName: soupsieve
186
185
SPDXID: SPDXRef-Package-12-soupsieve
187
- PackageVersion: 2.5
186
+ PackageVersion: 2.6
188
187
PrimaryPackagePurpose: LIBRARY
189
188
PackageSupplier: Person: Isaac Muse (
[email protected] )
190
- PackageDownloadLocation: https://pypi.org/project/soupsieve/2.5
189
+ PackageDownloadLocation: https://pypi.org/project/soupsieve/2.6
191
190
FilesAnalyzed: false
192
- PackageChecksum: SHA1: 51ec317ada7e34f70fad6bfddaef8a2cfac1aebd
193
191
PackageLicenseDeclared: NOASSERTION
194
192
PackageLicenseConcluded: NOASSERTION
195
193
PackageCopyrightText: NOASSERTION
196
194
PackageSummary: <text>A modern CSS selector implementation for Beautiful Soup.</text>
197
- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/soupsieve@2.5
198
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:isaac_muse:soupsieve:2.5 :*:*:*:*:*:*:*
195
+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/soupsieve@2.6
196
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:isaac_muse:soupsieve:2.6 :*:*:*:*:*:*:*
199
197
#####
200
198
201
199
PackageName: cvss
@@ -378,17 +376,17 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:google_cloud_platform:google-auth:2.17
378
376
379
377
PackageName: cachetools
380
378
SPDXID: SPDXRef-Package-24-cachetools
381
- PackageVersion: 5.4 .0
379
+ PackageVersion: 5.5 .0
382
380
PrimaryPackagePurpose: LIBRARY
383
381
PackageSupplier: Person: Thomas Kemmer (
[email protected] )
384
- PackageDownloadLocation: https://pypi.org/project/cachetools/5.4 .0
382
+ PackageDownloadLocation: https://pypi.org/project/cachetools/5.5 .0
385
383
FilesAnalyzed: false
386
384
PackageLicenseDeclared: MIT
387
385
PackageLicenseConcluded: MIT
388
386
PackageCopyrightText: NOASSERTION
389
387
PackageSummary: <text>Extensible memoizing collections and decorators</text>
390
- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/cachetools@5.4 .0
391
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:thomas_kemmer:cachetools:5.4 .0:*:*:*:*:*:*:*
388
+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/cachetools@5.5 .0
389
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:thomas_kemmer:cachetools:5.5 .0:*:*:*:*:*:*:*
392
390
#####
393
391
394
392
PackageName: pyasn1-modules
@@ -758,17 +756,17 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:julian_berman:rpds-py:0.20.0:*:*:*:*:*
758
756
759
757
PackageName: lib4sbom
760
758
SPDXID: SPDXRef-Package-48-lib4sbom
761
- PackageVersion: 0.7.2
759
+ PackageVersion: 0.7.3
762
760
PrimaryPackagePurpose: LIBRARY
763
761
PackageSupplier: Person: Anthony Harrison (
[email protected] )
764
- PackageDownloadLocation: https://pypi.org/project/lib4sbom/0.7.2
762
+ PackageDownloadLocation: https://pypi.org/project/lib4sbom/0.7.3
765
763
FilesAnalyzed: false
766
764
PackageLicenseDeclared: Apache-2.0
767
765
PackageLicenseConcluded: Apache-2.0
768
766
PackageCopyrightText: NOASSERTION
769
767
PackageSummary: <text>Software Bill of Material (SBOM) generator and consumer library</text>
770
- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
2
771
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:anthony_harrison:lib4sbom:0.7.2 :*:*:*:*:*:*:*
768
+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
3
769
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:anthony_harrison:lib4sbom:0.7.3 :*:*:*:*:*:*:*
772
770
#####
773
771
774
772
PackageName: pyyaml
@@ -842,6 +840,7 @@ PrimaryPackagePurpose: LIBRARY
842
840
PackageSupplier: Person: the purl authors
843
841
PackageDownloadLocation: https://pypi.org/project/packageurl-python/0.15.6
844
842
FilesAnalyzed: false
843
+ PackageChecksum: SHA1: 14a11b50ab723796888133d3722b5b3e2845b084
845
844
PackageLicenseDeclared: MIT
846
845
PackageLicenseConcluded: MIT
847
846
PackageCopyrightText: NOASSERTION
@@ -1056,17 +1055,17 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:sean_ross:rpmfile:2.1.0:*:*:*:*:*:*:*
1056
1055
1057
1056
PackageName: setuptools
1058
1057
SPDXID: SPDXRef-Package-67-setuptools
1059
- PackageVersion: 72.1 .0
1058
+ PackageVersion: 72.2 .0
1060
1059
PrimaryPackagePurpose: LIBRARY
1061
1060
PackageSupplier: Organization: Python Packaging Authority (
[email protected] )
1062
- PackageDownloadLocation: https://pypi.org/project/setuptools/72.1 .0
1061
+ PackageDownloadLocation: https://pypi.org/project/setuptools/72.2 .0
1063
1062
FilesAnalyzed: false
1064
1063
PackageLicenseDeclared: NOASSERTION
1065
1064
PackageLicenseConcluded: NOASSERTION
1066
1065
PackageCopyrightText: NOASSERTION
1067
1066
PackageSummary: <text>Easily download, build, install, upgrade, and uninstall Python packages</text>
1068
- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/setuptools@72.1 .0
1069
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:python_packaging_authority:setuptools:72.1 .0:*:*:*:*:*:*:*
1067
+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/setuptools@72.2 .0
1068
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:python_packaging_authority:setuptools:72.2 .0:*:*:*:*:*:*:*
1070
1069
#####
1071
1070
1072
1071
PackageName: toml
0 commit comments