@@ -2,10 +2,10 @@ SPDXVersion: SPDX-2.3
2
2
DataLicense: CC0-1.0
3
3
SPDXID: SPDXRef-DOCUMENT
4
4
DocumentName: Python-cve-bin-tool
5
- DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-da58d639-528d-4398-9be3-e2c0834822cf
5
+ DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-d5fda5a2-ef52-4a68-aca0-c95f35aafa5b
6
6
LicenseListVersion: 3.20
7
7
Creator: Tool: sbom4python-0.9.1
8
- Created: 2023-04-24T00:25:30Z
8
+ Created: 2023-05-08T01:14:50Z
9
9
CreatorComment: <text>This document has been automatically generated.</text>
10
10
#####
11
11
@@ -140,18 +140,18 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:andrew_svetlov:multidict:6.0.4:*:*:*:*
140
140
141
141
PackageName: yarl
142
142
SPDXID: SPDXRef-Package-9-yarl
143
- PackageVersion: 1.9.1
143
+ PackageVersion: 1.9.2
144
144
PrimaryPackagePurpose: LIBRARY
145
145
PackageSupplier: Person: Andrew Svetlov (
[email protected] )
146
- PackageDownloadLocation: https://pypi.org/project/yarl/1.9.1
146
+ PackageDownloadLocation: https://pypi.org/project/yarl/1.9.2
147
147
FilesAnalyzed: false
148
148
PackageHomePage: https://github.com/aio-libs/yarl/
149
149
PackageLicenseDeclared: Apache-2.0
150
150
PackageLicenseConcluded: Apache-2.0
151
151
PackageCopyrightText: NOASSERTION
152
152
PackageSummary: <text>Yet another URL library</text>
153
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] .
1
154
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:andrew_svetlov:yarl:1.9.1 :*:*:*:*:*:*:*
153
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] .
2
154
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:andrew_svetlov:yarl:1.9.2 :*:*:*:*:*:*:*
155
155
#####
156
156
157
157
PackageName: idna
@@ -875,67 +875,66 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:julien_danjou:tenacity:8.2.2:*:*:*:*:*
875
875
876
876
PackageName: requests
877
877
SPDXID: SPDXRef-Package-54-requests
878
- PackageVersion: 2.28.2
878
+ PackageVersion: 2.30.0
879
879
PrimaryPackagePurpose: LIBRARY
880
880
PackageSupplier: Person: Kenneth Reitz (
[email protected] )
881
- PackageDownloadLocation: https://pypi.org/project/requests/2.28.2
881
+ PackageDownloadLocation: https://pypi.org/project/requests/2.30.0
882
882
FilesAnalyzed: false
883
883
PackageHomePage: https://requests.readthedocs.io
884
884
PackageLicenseDeclared: NOASSERTION
885
885
PackageLicenseConcluded: Apache-2.0
886
886
PackageLicenseComments: <text>requests declares Apache 2.0 which is not currently a valid SPDX License identifier or expression.</text>
887
887
PackageCopyrightText: NOASSERTION
888
888
PackageSummary: <text>Python HTTP for Humans.</text>
889
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/requests@2.28.2
890
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:kenneth_reitz:requests:2.28.2 :*:*:*:*:*:*:*
889
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/requests@2.30.0
890
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:kenneth_reitz:requests:2.30.0 :*:*:*:*:*:*:*
891
891
#####
892
892
893
893
PackageName: certifi
894
894
SPDXID: SPDXRef-Package-55-certifi
895
- PackageVersion: 2022.12 .7
895
+ PackageVersion: 2023.5 .7
896
896
PrimaryPackagePurpose: LIBRARY
897
897
PackageSupplier: Person: Kenneth Reitz (
[email protected] )
898
- PackageDownloadLocation: https://pypi.org/project/certifi/2022.12 .7
898
+ PackageDownloadLocation: https://pypi.org/project/certifi/2023.5 .7
899
899
FilesAnalyzed: false
900
900
PackageHomePage: https://github.com/certifi/python-certifi
901
901
PackageLicenseDeclared: MPL-2.0
902
902
PackageLicenseConcluded: MPL-2.0
903
903
PackageCopyrightText: NOASSERTION
904
904
PackageSummary: <text>Python package for providing Mozilla's CA Bundle.</text>
905
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/certifi@2022.12 .7
906
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:kenneth_reitz:certifi:2022.12 .7:*:*:*:*:*:*:*
905
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/certifi@2023.5 .7
906
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:kenneth_reitz:certifi:2023.5 .7:*:*:*:*:*:*:*
907
907
#####
908
908
909
909
PackageName: urllib3
910
910
SPDXID: SPDXRef-Package-56-urllib3
911
- PackageVersion: 1.26.15
911
+ PackageVersion: 2.0.2
912
912
PrimaryPackagePurpose: LIBRARY
913
913
PackageSupplier: Person: Andrey Petrov (
[email protected] )
914
- PackageDownloadLocation: https://pypi.org/project/urllib3/1.26.15
914
+ PackageDownloadLocation: https://pypi.org/project/urllib3/2.0.2
915
915
FilesAnalyzed: false
916
- PackageHomePage: https://urllib3.readthedocs.io/
917
- PackageLicenseDeclared: MIT
918
- PackageLicenseConcluded: MIT
916
+ PackageLicenseDeclared: NOASSERTION
917
+ PackageLicenseConcluded: NOASSERTION
919
918
PackageCopyrightText: NOASSERTION
920
919
PackageSummary: <text>HTTP library with thread-safe connection pooling, file post, and more.</text>
921
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/urllib3@1.26.15
922
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:andrey_petrov:urllib3:1.26.15 :*:*:*:*:*:*:*
920
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/urllib3@2.0.2
921
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:andrey_petrov:urllib3:2.0.2 :*:*:*:*:*:*:*
923
922
#####
924
923
925
924
PackageName: rich
926
925
SPDXID: SPDXRef-Package-57-rich
927
- PackageVersion: 13.3.4
926
+ PackageVersion: 13.3.5
928
927
PrimaryPackagePurpose: LIBRARY
929
928
PackageSupplier: Person: Will McGugan (
[email protected] )
930
- PackageDownloadLocation: https://pypi.org/project/rich/13.3.4
929
+ PackageDownloadLocation: https://pypi.org/project/rich/13.3.5
931
930
FilesAnalyzed: false
932
931
PackageHomePage: https://github.com/Textualize/rich
933
932
PackageLicenseDeclared: MIT
934
933
PackageLicenseConcluded: MIT
935
934
PackageCopyrightText: NOASSERTION
936
935
PackageSummary: <text>Render rich text, tables, progress bars, syntax highlighting, markdown and more to the terminal</text>
937
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] .
4
938
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:will_mcgugan:rich:13.3.4 :*:*:*:*:*:*:*
936
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] .
5
937
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:will_mcgugan:rich:13.3.5 :*:*:*:*:*:*:*
939
938
#####
940
939
941
940
PackageName: markdown-it-py
@@ -1048,18 +1047,18 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:davide_brunato:xmlschema:2.2.3:*:*:*:*
1048
1047
1049
1048
PackageName: elementpath
1050
1049
SPDXID: SPDXRef-Package-65-elementpath
1051
- PackageVersion: 4.1.1
1050
+ PackageVersion: 4.1.2
1052
1051
PrimaryPackagePurpose: LIBRARY
1053
1052
PackageSupplier: Person: Davide Brunato (
[email protected] )
1054
- PackageDownloadLocation: https://pypi.org/project/elementpath/4.1.1
1053
+ PackageDownloadLocation: https://pypi.org/project/elementpath/4.1.2
1055
1054
FilesAnalyzed: false
1056
1055
PackageHomePage: https://github.com/sissaschool/elementpath
1057
1056
PackageLicenseDeclared: MIT
1058
1057
PackageLicenseConcluded: MIT
1059
1058
PackageCopyrightText: NOASSERTION
1060
1059
PackageSummary: <text>XPath 1.0/2.0/3.0/3.1 parsers and selectors for ElementTree and lxml</text>
1061
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] .
1
1062
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:davide_brunato:elementpath:4.1.1 :*:*:*:*:*:*:*
1060
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] .
2
1061
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:davide_brunato:elementpath:4.1.2 :*:*:*:*:*:*:*
1063
1062
#####
1064
1063
1065
1064
PackageName: zstandard
0 commit comments