@@ -2,10 +2,10 @@ SPDXVersion: SPDX-2.3
2
2
DataLicense: CC0-1.0
3
3
SPDXID: SPDXRef-DOCUMENT
4
4
DocumentName: Python-cve-bin-tool
5
- DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-7bfe4ec0-78d6-4778-aaa1-1a6ed11aac0d
5
+ DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-e11e4bca-29cf-4352-8278-5f74b9ab1ee2
6
6
LicenseListVersion: 3.22
7
- Creator: Tool: sbom4python-0.10.2
8
- Created: 2023-12-25T00:28:32Z
7
+ Creator: Tool: sbom4python-0.10.3
8
+ Created: 2024-01-04T20:01:00Z
9
9
CreatorComment: <text>This document has been automatically generated.</text>
10
10
#####
11
11
@@ -90,18 +90,17 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:andrew_svetlov:async-timeout:4.0.3:*:*
90
90
91
91
PackageName: attrs
92
92
SPDXID: SPDXRef-Package-6-attrs
93
- PackageVersion: 23.1 .0
93
+ PackageVersion: 23.2 .0
94
94
PrimaryPackagePurpose: LIBRARY
95
95
PackageSupplier: Person: Hynek Schlawack (
[email protected] )
96
- PackageDownloadLocation: https://pypi.org/project/attrs/23.1 .0
96
+ PackageDownloadLocation: https://pypi.org/project/attrs/23.2 .0
97
97
FilesAnalyzed: false
98
- PackageChecksum: SHA1: 1e2f6f9cac5cc60f0adab051c14adf09ffe39155
99
98
PackageLicenseDeclared: NOASSERTION
100
99
PackageLicenseConcluded: NOASSERTION
101
100
PackageCopyrightText: NOASSERTION
102
101
PackageSummary: <text>Classes Without Boilerplate</text>
103
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/attrs@23.1 .0
104
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:hynek_schlawack:attrs:23.1 .0:*:*:*:*:*:*:*
102
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/attrs@23.2 .0
103
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:hynek_schlawack:attrs:23.2 .0:*:*:*:*:*:*:*
105
104
#####
106
105
107
106
PackageName: multidict
@@ -481,6 +480,7 @@ PrimaryPackagePurpose: LIBRARY
481
480
PackageSupplier: Organization: The pyOpenSSL developers (
[email protected] )
482
481
PackageDownloadLocation: https://pypi.org/project/pyOpenSSL/23.3.0
483
482
FilesAnalyzed: false
483
+ PackageChecksum: SHA1: 5ba8ce10ed7c318e57516a7ec8447cbb5626d3f9
484
484
PackageLicenseDeclared: NOASSERTION
485
485
PackageLicenseConcluded: Apache-2.0
486
486
PackageLicenseComments: <text>pyOpenSSL declares Apache License, Version 2.0 which is not currently a valid SPDX License identifier or expression.</text>
@@ -573,18 +573,18 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:craig_citro:google-apitools:0.5.32:*:*
573
573
574
574
PackageName: google-auth
575
575
SPDXID: SPDXRef-Package-36-google-auth
576
- PackageVersion: 2.25.2
576
+ PackageVersion: 2.26.1
577
577
PrimaryPackagePurpose: LIBRARY
578
578
PackageSupplier: Organization: Google Cloud Platform (
[email protected] )
579
- PackageDownloadLocation: https://pypi.org/project/google-auth/2.25.2
579
+ PackageDownloadLocation: https://pypi.org/project/google-auth/2.26.1
580
580
FilesAnalyzed: false
581
581
PackageLicenseDeclared: NOASSERTION
582
582
PackageLicenseConcluded: Apache-2.0
583
583
PackageLicenseComments: <text>google-auth declares Apache 2.0 which is not currently a valid SPDX License identifier or expression.</text>
584
584
PackageCopyrightText: NOASSERTION
585
585
PackageSummary: <text>Google Authentication Library</text>
586
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/google-auth@2.25.2
587
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:google_cloud_platform:google-auth:2.25.2 :*:*:*:*:*:*:*
586
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/google-auth@2.26.1
587
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:google_cloud_platform:google-auth:2.26.1 :*:*:*:*:*:*:*
588
588
#####
589
589
590
590
PackageName: cachetools
@@ -700,18 +700,18 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:julian_berman:jsonschema:4.20.0:*:*:*:
700
700
701
701
PackageName: jsonschema-specifications
702
702
SPDXID: SPDXRef-Package-44-jsonschema-specifications
703
- PackageVersion: 2023.11.2
703
+ PackageVersion: 2023.12.1
704
704
PrimaryPackagePurpose: LIBRARY
705
705
PackageSupplier: Person: Julian Berman
706
- PackageDownloadLocation: https://pypi.org/project/jsonschema-specifications/2023.11.2
706
+ PackageDownloadLocation: https://pypi.org/project/jsonschema-specifications/2023.12.1
707
707
FilesAnalyzed: false
708
- PackageChecksum: SHA1: a2fec386cdb2ed38041ccbfff0fc3e8a566997a3
708
+ PackageChecksum: SHA1: 544e0ff86850af1c6d9e533c4b58b76c59542a76
709
709
PackageLicenseDeclared: MIT
710
710
PackageLicenseConcluded: MIT
711
711
PackageCopyrightText: NOASSERTION
712
712
PackageSummary: <text>The JSON Schema meta-schemas and vocabularies, exposed as a Registry</text>
713
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/jsonschema-specifications@2023.11.2
714
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:julian_berman:jsonschema-specifications:2023.11.2 :*:*:*:*:*:*:*
713
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/jsonschema-specifications@2023.12.1
714
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:julian_berman:jsonschema-specifications:2023.12.1 :*:*:*:*:*:*:*
715
715
#####
716
716
717
717
PackageName: referencing
@@ -732,33 +732,32 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:julian_berman:referencing:0.32.0:*:*:*
732
732
733
733
PackageName: rpds-py
734
734
SPDXID: SPDXRef-Package-46-rpds-py
735
- PackageVersion: 0.15 .2
735
+ PackageVersion: 0.16 .2
736
736
PrimaryPackagePurpose: LIBRARY
737
737
PackageSupplier: Person: Julian Berman
738
- PackageDownloadLocation: https://pypi.org/project/rpds-py/0.15 .2
738
+ PackageDownloadLocation: https://pypi.org/project/rpds-py/0.16 .2
739
739
FilesAnalyzed: false
740
740
PackageLicenseDeclared: MIT
741
741
PackageLicenseConcluded: MIT
742
742
PackageCopyrightText: NOASSERTION
743
743
PackageSummary: <text>Python bindings to Rust's persistent data structures (rpds)</text>
744
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/rpds-py@0.15 .2
745
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:julian_berman:rpds-py:0.15 .2:*:*:*:*:*:*:*
744
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/rpds-py@0.16 .2
745
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:julian_berman:rpds-py:0.16 .2:*:*:*:*:*:*:*
746
746
#####
747
747
748
748
PackageName: lib4sbom
749
749
SPDXID: SPDXRef-Package-47-lib4sbom
750
- PackageVersion: 0.5.4
750
+ PackageVersion: 0.6.1
751
751
PrimaryPackagePurpose: LIBRARY
752
752
PackageSupplier: Person: Anthony Harrison (
[email protected] )
753
- PackageDownloadLocation: https://pypi.org/project/lib4sbom/0.5.4
753
+ PackageDownloadLocation: https://pypi.org/project/lib4sbom/0.6.1
754
754
FilesAnalyzed: false
755
- PackageChecksum: SHA1: 3de23e3f3b32c08f9bf8231e2765a06ebb82dc80
756
755
PackageLicenseDeclared: Apache-2.0
757
756
PackageLicenseConcluded: Apache-2.0
758
757
PackageCopyrightText: NOASSERTION
759
758
PackageSummary: <text>Software Bill of Material (SBOM) generator and consumer library</text>
760
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/lib4sbom@0.5.4
761
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:anthony_harrison:lib4sbom:0.5.4 :*:*:*:*:*:*:*
759
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/lib4sbom@0.6.1
760
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:anthony_harrison:lib4sbom:0.6.1 :*:*:*:*:*:*:*
762
761
#####
763
762
764
763
PackageName: pyyaml
0 commit comments