@@ -2,10 +2,10 @@ SPDXVersion: SPDX-2.3
2
2
DataLicense: CC0-1.0
3
3
SPDXID: SPDXRef-DOCUMENT
4
4
DocumentName: Python-cve-bin-tool
5
- DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-c56f8b9e-ce44-4bbc-a7ef-768580484fd7
5
+ DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-b287583b-90ca-4401-89f8-84dbcce81a07
6
6
LicenseListVersion: 3.22
7
7
Creator: Tool: sbom4python-0.11.1
8
- Created: 2024-08-12T00:34:16Z
8
+ Created: 2024-08-19T00:36:00Z
9
9
CreatorComment: <text>This document has been automatically generated.</text>
10
10
#####
11
11
@@ -26,33 +26,32 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:terri_oda:cve-bin-tool:3.3.1.dev0:*:*:
26
26
27
27
PackageName: aiohttp
28
28
SPDXID: SPDXRef-Package-2-aiohttp
29
- PackageVersion: 3.10.3
29
+ PackageVersion: 3.10.4
30
30
PrimaryPackagePurpose: LIBRARY
31
31
PackageSupplier: NOASSERTION
32
- PackageDownloadLocation: https://pypi.org/project/aiohttp/3.10.3
32
+ PackageDownloadLocation: https://pypi.org/project/aiohttp/3.10.4
33
33
FilesAnalyzed: false
34
34
PackageLicenseDeclared: NOASSERTION
35
35
PackageLicenseConcluded: Apache-2.0
36
36
PackageLicenseComments: <text>aiohttp declares Apache 2 which is not currently a valid SPDX License identifier or expression.</text>
37
37
PackageCopyrightText: NOASSERTION
38
38
PackageSummary: <text>Async http client/server framework (asyncio)</text>
39
- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
3
39
+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
4
40
40
#####
41
41
42
42
PackageName: aiohappyeyeballs
43
43
SPDXID: SPDXRef-Package-3-aiohappyeyeballs
44
- PackageVersion: 2.3.5
44
+ PackageVersion: 2.3.7
45
45
PrimaryPackagePurpose: LIBRARY
46
46
PackageSupplier: Organization: J. Nick Koston (
[email protected] )
47
- PackageDownloadLocation: https://pypi.org/project/aiohappyeyeballs/2.3.5
47
+ PackageDownloadLocation: https://pypi.org/project/aiohappyeyeballs/2.3.7
48
48
FilesAnalyzed: false
49
- PackageChecksum: SHA1: 01595bbda3380154cc4e72702a1f82502a15940a
50
- PackageLicenseDeclared: Python-2.0
51
- PackageLicenseConcluded: Python-2.0
49
+ PackageLicenseDeclared: Python-2.0.1
50
+ PackageLicenseConcluded: Python-2.0.1
52
51
PackageCopyrightText: NOASSERTION
53
52
PackageSummary: <text>Happy Eyeballs for asyncio</text>
54
- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
5
55
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:j._nick_koston:aiohappyeyeballs:2.3.5 :*:*:*:*:*:*:*
53
+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
7
54
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:j._nick_koston:aiohappyeyeballs:2.3.7 :*:*:*:*:*:*:*
56
55
#####
57
56
58
57
PackageName: aiosignal
@@ -184,18 +183,17 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:leonard_richardson:beautifulsoup4:4.12
184
183
185
184
PackageName: soupsieve
186
185
SPDXID: SPDXRef-Package-12-soupsieve
187
- PackageVersion: 2.5
186
+ PackageVersion: 2.6
188
187
PrimaryPackagePurpose: LIBRARY
189
188
PackageSupplier: Person: Isaac Muse (
[email protected] )
190
- PackageDownloadLocation: https://pypi.org/project/soupsieve/2.5
189
+ PackageDownloadLocation: https://pypi.org/project/soupsieve/2.6
191
190
FilesAnalyzed: false
192
- PackageChecksum: SHA1: 51ec317ada7e34f70fad6bfddaef8a2cfac1aebd
193
191
PackageLicenseDeclared: NOASSERTION
194
192
PackageLicenseConcluded: NOASSERTION
195
193
PackageCopyrightText: NOASSERTION
196
194
PackageSummary: <text>A modern CSS selector implementation for Beautiful Soup.</text>
197
- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/soupsieve@2.5
198
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:isaac_muse:soupsieve:2.5 :*:*:*:*:*:*:*
195
+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/soupsieve@2.6
196
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:isaac_muse:soupsieve:2.6 :*:*:*:*:*:*:*
199
197
#####
200
198
201
199
PackageName: cvss
@@ -378,17 +376,17 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:google_cloud_platform:google-auth:2.17
378
376
379
377
PackageName: cachetools
380
378
SPDXID: SPDXRef-Package-24-cachetools
381
- PackageVersion: 5.4 .0
379
+ PackageVersion: 5.5 .0
382
380
PrimaryPackagePurpose: LIBRARY
383
381
PackageSupplier: Person: Thomas Kemmer (
[email protected] )
384
- PackageDownloadLocation: https://pypi.org/project/cachetools/5.4 .0
382
+ PackageDownloadLocation: https://pypi.org/project/cachetools/5.5 .0
385
383
FilesAnalyzed: false
386
384
PackageLicenseDeclared: MIT
387
385
PackageLicenseConcluded: MIT
388
386
PackageCopyrightText: NOASSERTION
389
387
PackageSummary: <text>Extensible memoizing collections and decorators</text>
390
- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/cachetools@5.4 .0
391
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:thomas_kemmer:cachetools:5.4 .0:*:*:*:*:*:*:*
388
+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/cachetools@5.5 .0
389
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:thomas_kemmer:cachetools:5.5 .0:*:*:*:*:*:*:*
392
390
#####
393
391
394
392
PackageName: pyasn1-modules
@@ -788,17 +786,17 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:julian_berman:rpds-py:0.20.0:*:*:*:*:*
788
786
789
787
PackageName: lib4sbom
790
788
SPDXID: SPDXRef-Package-50-lib4sbom
791
- PackageVersion: 0.7.2
789
+ PackageVersion: 0.7.3
792
790
PrimaryPackagePurpose: LIBRARY
793
791
PackageSupplier: Person: Anthony Harrison (
[email protected] )
794
- PackageDownloadLocation: https://pypi.org/project/lib4sbom/0.7.2
792
+ PackageDownloadLocation: https://pypi.org/project/lib4sbom/0.7.3
795
793
FilesAnalyzed: false
796
794
PackageLicenseDeclared: Apache-2.0
797
795
PackageLicenseConcluded: Apache-2.0
798
796
PackageCopyrightText: NOASSERTION
799
797
PackageSummary: <text>Software Bill of Material (SBOM) generator and consumer library</text>
800
- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
2
801
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:anthony_harrison:lib4sbom:0.7.2 :*:*:*:*:*:*:*
798
+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
3
799
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:anthony_harrison:lib4sbom:0.7.3 :*:*:*:*:*:*:*
802
800
#####
803
801
804
802
PackageName: pyyaml
@@ -872,6 +870,7 @@ PrimaryPackagePurpose: LIBRARY
872
870
PackageSupplier: Person: the purl authors
873
871
PackageDownloadLocation: https://pypi.org/project/packageurl-python/0.15.6
874
872
FilesAnalyzed: false
873
+ PackageChecksum: SHA1: 14a11b50ab723796888133d3722b5b3e2845b084
875
874
PackageLicenseDeclared: MIT
876
875
PackageLicenseConcluded: MIT
877
876
PackageCopyrightText: NOASSERTION
@@ -1086,17 +1085,17 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:sean_ross:rpmfile:2.1.0:*:*:*:*:*:*:*
1086
1085
1087
1086
PackageName: setuptools
1088
1087
SPDXID: SPDXRef-Package-69-setuptools
1089
- PackageVersion: 72.1 .0
1088
+ PackageVersion: 72.2 .0
1090
1089
PrimaryPackagePurpose: LIBRARY
1091
1090
PackageSupplier: Organization: Python Packaging Authority (
[email protected] )
1092
- PackageDownloadLocation: https://pypi.org/project/setuptools/72.1 .0
1091
+ PackageDownloadLocation: https://pypi.org/project/setuptools/72.2 .0
1093
1092
FilesAnalyzed: false
1094
1093
PackageLicenseDeclared: NOASSERTION
1095
1094
PackageLicenseConcluded: NOASSERTION
1096
1095
PackageCopyrightText: NOASSERTION
1097
1096
PackageSummary: <text>Easily download, build, install, upgrade, and uninstall Python packages</text>
1098
- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/setuptools@72.1 .0
1099
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:python_packaging_authority:setuptools:72.1 .0:*:*:*:*:*:*:*
1097
+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/setuptools@72.2 .0
1098
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:python_packaging_authority:setuptools:72.2 .0:*:*:*:*:*:*:*
1100
1099
#####
1101
1100
1102
1101
PackageName: toml
0 commit comments