@@ -2,10 +2,10 @@ SPDXVersion: SPDX-2.3
2
2
DataLicense: CC0-1.0
3
3
SPDXID: SPDXRef-DOCUMENT
4
4
DocumentName: Python-cve-bin-tool
5
- DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-959a5a9a-4960-46de-b5bd-1c59a2b55f26
5
+ DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-09721373-8824-4863-a461-f8f7ee4f4ea6
6
6
LicenseListVersion: 3.22
7
7
Creator: Tool: sbom4python-0.10.1
8
- Created: 2023-12-04T00:25:47Z
8
+ Created: 2023-12-11T00:26:21Z
9
9
CreatorComment: <text>This document has been automatically generated.</text>
10
10
#####
11
11
@@ -117,17 +117,17 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:andrew_svetlov:multidict:6.0.4:*:*:*:*
117
117
118
118
PackageName: yarl
119
119
SPDXID: SPDXRef-Package-8-yarl
120
- PackageVersion: 1.9.3
120
+ PackageVersion: 1.9.4
121
121
PrimaryPackagePurpose: LIBRARY
122
122
PackageSupplier: Person: Andrew Svetlov (
[email protected] )
123
- PackageDownloadLocation: https://pypi.org/project/yarl/1.9.3
123
+ PackageDownloadLocation: https://pypi.org/project/yarl/1.9.4
124
124
FilesAnalyzed: false
125
125
PackageLicenseDeclared: Apache-2.0
126
126
PackageLicenseConcluded: Apache-2.0
127
127
PackageCopyrightText: NOASSERTION
128
128
PackageSummary: <text>Yet another URL library</text>
129
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] .
3
130
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:andrew_svetlov:yarl:1.9.3 :*:*:*:*:*:*:*
129
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] .
4
130
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:andrew_svetlov:yarl:1.9.4 :*:*:*:*:*:*:*
131
131
#####
132
132
133
133
PackageName: idna
@@ -241,18 +241,18 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:google_inc.:gsutil:5.27:*:*:*:*:*:*:*
241
241
242
242
PackageName: argcomplete
243
243
SPDXID: SPDXRef-Package-16-argcomplete
244
- PackageVersion: 3.1.6
244
+ PackageVersion: 3.2.1
245
245
PrimaryPackagePurpose: LIBRARY
246
246
PackageSupplier: Person: Andrey Kislyuk (
[email protected] )
247
- PackageDownloadLocation: https://pypi.org/project/argcomplete/3.1.6
247
+ PackageDownloadLocation: https://pypi.org/project/argcomplete/3.2.1
248
248
FilesAnalyzed: false
249
249
PackageLicenseDeclared: NOASSERTION
250
250
PackageLicenseConcluded: Apache-2.0
251
251
PackageLicenseComments: <text>argcomplete declares Apache Software License which is not currently a valid SPDX License identifier or expression.</text>
252
252
PackageCopyrightText: NOASSERTION
253
253
PackageSummary: <text>Bash tab completion for argparse</text>
254
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/argcomplete@3.1.6
255
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:andrey_kislyuk:argcomplete:3.1.6 :*:*:*:*:*:*:*
254
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/argcomplete@3.2.1
255
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:andrey_kislyuk:argcomplete:3.2.1 :*:*:*:*:*:*:*
256
256
#####
257
257
258
258
PackageName: crcmod
@@ -551,18 +551,18 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:craig_citro:google-apitools:0.5.32:*:*
551
551
552
552
PackageName: google-auth
553
553
SPDXID: SPDXRef-Package-36-google-auth
554
- PackageVersion: 2.24.0
554
+ PackageVersion: 2.25.2
555
555
PrimaryPackagePurpose: LIBRARY
556
556
PackageSupplier: Organization: Google Cloud Platform (
[email protected] )
557
- PackageDownloadLocation: https://pypi.org/project/google-auth/2.24.0
557
+ PackageDownloadLocation: https://pypi.org/project/google-auth/2.25.2
558
558
FilesAnalyzed: false
559
559
PackageLicenseDeclared: NOASSERTION
560
560
PackageLicenseConcluded: Apache-2.0
561
561
PackageLicenseComments: <text>google-auth declares Apache 2.0 which is not currently a valid SPDX License identifier or expression.</text>
562
562
PackageCopyrightText: NOASSERTION
563
563
PackageSummary: <text>Google Authentication Library</text>
564
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/google-auth@2.24.0
565
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:google_cloud_platform:google-auth:2.24.0 :*:*:*:*:*:*:*
564
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/google-auth@2.25.2
565
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:google_cloud_platform:google-auth:2.25.2 :*:*:*:*:*:*:*
566
566
#####
567
567
568
568
PackageName: cachetools
@@ -687,17 +687,17 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:julian_berman:jsonschema-specification
687
687
688
688
PackageName: referencing
689
689
SPDXID: SPDXRef-Package-45-referencing
690
- PackageVersion: 0.31.1
690
+ PackageVersion: 0.32.0
691
691
PrimaryPackagePurpose: LIBRARY
692
692
PackageSupplier: Person: Julian Berman
693
- PackageDownloadLocation: https://pypi.org/project/referencing/0.31.1
693
+ PackageDownloadLocation: https://pypi.org/project/referencing/0.32.0
694
694
FilesAnalyzed: false
695
695
PackageLicenseDeclared: MIT
696
696
PackageLicenseConcluded: MIT
697
697
PackageCopyrightText: NOASSERTION
698
698
PackageSummary: <text>JSON Referencing + Python</text>
699
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/referencing@0.31.1
700
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:julian_berman:referencing:0.31.1 :*:*:*:*:*:*:*
699
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/referencing@0.32.0
700
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:julian_berman:referencing:0.32.0 :*:*:*:*:*:*:*
701
701
#####
702
702
703
703
PackageName: rpds-py
@@ -763,17 +763,17 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:raphael_barrois:semantic-version:2.10.
763
763
764
764
PackageName: packageurl-python
765
765
SPDXID: SPDXRef-Package-50-packageurl-python
766
- PackageVersion: 0.11.2
766
+ PackageVersion: 0.12.0
767
767
PrimaryPackagePurpose: LIBRARY
768
768
PackageSupplier: Person: the purl authors
769
- PackageDownloadLocation: https://pypi.org/project/packageurl-python/0.11.2
769
+ PackageDownloadLocation: https://pypi.org/project/packageurl-python/0.12.0
770
770
FilesAnalyzed: false
771
771
PackageLicenseDeclared: MIT
772
772
PackageLicenseConcluded: MIT
773
773
PackageCopyrightText: NOASSERTION
774
774
PackageSummary: <text>A purl aka. Package URL parser and builder</text>
775
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/packageurl-python@0.11.2
776
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:the_purl_authors:packageurl-python:0.11.2 :*:*:*:*:*:*:*
775
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/packageurl-python@0.12.0
776
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:the_purl_authors:packageurl-python:0.12.0 :*:*:*:*:*:*:*
777
777
#####
778
778
779
779
PackageName: packaging
0 commit comments