@@ -2,10 +2,10 @@ SPDXVersion: SPDX-2.3
2
2
DataLicense: CC0-1.0
3
3
SPDXID: SPDXRef-DOCUMENT
4
4
DocumentName: Python-cve-bin-tool
5
- DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-ff67aa04-d128-488e-a249-c4c783ec6756
5
+ DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-31c41ad2-71db-4400-b6a9-3897d659df61
6
6
LicenseListVersion: 3.22
7
7
Creator: Tool: sbom4python-0.11.3
8
- Created: 2024-10-14T00:36:51Z
8
+ Created: 2024-10-21T00:37:15Z
9
9
CreatorComment: <text>This document has been automatically generated.</text>
10
10
#####
11
11
@@ -157,18 +157,18 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:guido_van_jukka_ukasz_michael:typing-e
157
157
158
158
PackageName: yarl
159
159
SPDXID: SPDXRef-10-yarl
160
- PackageVersion: 1.15.2
160
+ PackageVersion: 1.15.5
161
161
PrimaryPackagePurpose: LIBRARY
162
162
PackageSupplier: Person: Andrew Svetlov (
[email protected] )
163
- PackageDownloadLocation: https://pypi.org/project/yarl/1.15.2 /#files
163
+ PackageDownloadLocation: https://pypi.org/project/yarl/1.15.5 /#files
164
164
FilesAnalyzed: false
165
165
PackageHomePage: https://github.com/aio-libs/yarl
166
166
PackageLicenseDeclared: Apache-2.0
167
167
PackageLicenseConcluded: Apache-2.0
168
168
PackageCopyrightText: NOASSERTION
169
169
PackageSummary: <text>Yet another URL library</text>
170
- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
2
171
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:andrew_svetlov:yarl:1.15.2 :*:*:*:*:*:*:*
170
+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
5
171
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:andrew_svetlov:yarl:1.15.5 :*:*:*:*:*:*:*
172
172
#####
173
173
174
174
PackageName: idna
@@ -632,18 +632,18 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:the_pyopenssl_developers:pyopenssl:24.
632
632
633
633
PackageName: cryptography
634
634
SPDXID: SPDXRef-38-cryptography
635
- PackageVersion: 43.0.1
635
+ PackageVersion: 43.0.3
636
636
PrimaryPackagePurpose: LIBRARY
637
637
PackageSupplier: Organization: The cryptography developers The Python Cryptographic Authority and individual contributors (
[email protected] )
638
- PackageDownloadLocation: https://pypi.org/project/cryptography/43.0.1 /#files
638
+ PackageDownloadLocation: https://pypi.org/project/cryptography/43.0.3 /#files
639
639
FilesAnalyzed: false
640
640
PackageHomePage: https://github.com/pyca/cryptography
641
641
PackageLicenseDeclared: Apache-2.0 OR BSD-3-Clause
642
642
PackageLicenseConcluded: Apache-2.0 OR BSD-3-Clause
643
643
PackageCopyrightText: NOASSERTION
644
644
PackageSummary: <text>cryptography is a package which provides cryptographic recipes and primitives to Python developers.</text>
645
- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
1
646
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:the_cryptography_developers_the_python_cryptographic_authority_and_individual_contributors:cryptography:43.0.1 :*:*:*:*:*:*:*
645
+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
3
646
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:the_cryptography_developers_the_python_cryptographic_authority_and_individual_contributors:cryptography:43.0.3 :*:*:*:*:*:*:*
647
647
#####
648
648
649
649
PackageName: cffi
749
749
750
750
PackageName: markupsafe
751
751
SPDXID: SPDXRef-45-markupsafe
752
- PackageVersion: 3.0.1
752
+ PackageVersion: 3.0.2
753
753
PrimaryPackagePurpose: LIBRARY
754
754
PackageSupplier: NOASSERTION
755
- PackageDownloadLocation: https://pypi.org/project/markupsafe/3.0.1 /#files
755
+ PackageDownloadLocation: https://pypi.org/project/markupsafe/3.0.2 /#files
756
756
FilesAnalyzed: false
757
757
PackageLicenseDeclared: NOASSERTION
758
758
PackageLicenseConcluded: NOASSERTION
759
759
PackageLicenseComments: <text>markupsafe declares Copyright 2010 Pallets which is not currently a valid SPDX License identifier or expression.</text>
760
760
PackageCopyrightText: NOASSERTION
761
761
PackageSummary: <text>Safely add untrusted strings to HTML/XML markup.</text>
762
- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
1
762
+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
2
763
763
#####
764
764
765
765
PackageName: jsonschema
@@ -1146,17 +1146,17 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:sean_ross:rpmfile:2.1.0:*:*:*:*:*:*:*
1146
1146
1147
1147
PackageName: setuptools
1148
1148
SPDXID: SPDXRef-69-setuptools
1149
- PackageVersion: 75.1 .0
1149
+ PackageVersion: 75.2 .0
1150
1150
PrimaryPackagePurpose: LIBRARY
1151
1151
PackageSupplier: Organization: Python Packaging Authority (
[email protected] )
1152
- PackageDownloadLocation: https://pypi.org/project/setuptools/75.1 .0/#files
1152
+ PackageDownloadLocation: https://pypi.org/project/setuptools/75.2 .0/#files
1153
1153
FilesAnalyzed: false
1154
1154
PackageLicenseDeclared: NOASSERTION
1155
1155
PackageLicenseConcluded: NOASSERTION
1156
1156
PackageCopyrightText: NOASSERTION
1157
1157
PackageSummary: <text>Easily download, build, install, upgrade, and uninstall Python packages</text>
1158
- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/setuptools@75.1 .0
1159
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:python_packaging_authority:setuptools:75.1 .0:*:*:*:*:*:*:*
1158
+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/setuptools@75.2 .0
1159
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:python_packaging_authority:setuptools:75.2 .0:*:*:*:*:*:*:*
1160
1160
#####
1161
1161
1162
1162
PackageName: toml
0 commit comments