@@ -2,10 +2,10 @@ SPDXVersion: SPDX-2.3
2
2
DataLicense: CC0-1.0
3
3
SPDXID: SPDXRef-DOCUMENT
4
4
DocumentName: Python-cve-bin-tool
5
- DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-e4486aea-13eb-4981-be76-1677436a925a
5
+ DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-fb473dd3-9d06-4045-8446-8b94d55b0135
6
6
LicenseListVersion: 3.22
7
7
Creator: Tool: sbom4python-0.11.3
8
- Created: 2024-10-14T00:39:13Z
8
+ Created: 2024-10-21T00:37:14Z
9
9
CreatorComment: <text>This document has been automatically generated.</text>
10
10
#####
11
11
@@ -157,18 +157,18 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:guido_van_jukka_ukasz_michael:typing-e
157
157
158
158
PackageName: yarl
159
159
SPDXID: SPDXRef-10-yarl
160
- PackageVersion: 1.15.2
160
+ PackageVersion: 1.15.5
161
161
PrimaryPackagePurpose: LIBRARY
162
162
PackageSupplier: Person: Andrew Svetlov (
[email protected] )
163
- PackageDownloadLocation: https://pypi.org/project/yarl/1.15.2 /#files
163
+ PackageDownloadLocation: https://pypi.org/project/yarl/1.15.5 /#files
164
164
FilesAnalyzed: false
165
165
PackageHomePage: https://github.com/aio-libs/yarl
166
166
PackageLicenseDeclared: Apache-2.0
167
167
PackageLicenseConcluded: Apache-2.0
168
168
PackageCopyrightText: NOASSERTION
169
169
PackageSummary: <text>Yet another URL library</text>
170
- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
2
171
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:andrew_svetlov:yarl:1.15.2 :*:*:*:*:*:*:*
170
+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
5
171
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:andrew_svetlov:yarl:1.15.5 :*:*:*:*:*:*:*
172
172
#####
173
173
174
174
PackageName: idna
@@ -632,18 +632,18 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:the_pyopenssl_developers:pyopenssl:24.
632
632
633
633
PackageName: cryptography
634
634
SPDXID: SPDXRef-38-cryptography
635
- PackageVersion: 43.0.1
635
+ PackageVersion: 43.0.3
636
636
PrimaryPackagePurpose: LIBRARY
637
637
PackageSupplier: Organization: The cryptography developers The Python Cryptographic Authority and individual contributors (
[email protected] )
638
- PackageDownloadLocation: https://pypi.org/project/cryptography/43.0.1 /#files
638
+ PackageDownloadLocation: https://pypi.org/project/cryptography/43.0.3 /#files
639
639
FilesAnalyzed: false
640
640
PackageHomePage: https://github.com/pyca/cryptography
641
641
PackageLicenseDeclared: Apache-2.0 OR BSD-3-Clause
642
642
PackageLicenseConcluded: Apache-2.0 OR BSD-3-Clause
643
643
PackageCopyrightText: NOASSERTION
644
644
PackageSummary: <text>cryptography is a package which provides cryptographic recipes and primitives to Python developers.</text>
645
- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
1
646
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:the_cryptography_developers_the_python_cryptographic_authority_and_individual_contributors:cryptography:43.0.1 :*:*:*:*:*:*:*
645
+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
3
646
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:the_cryptography_developers_the_python_cryptographic_authority_and_individual_contributors:cryptography:43.0.3 :*:*:*:*:*:*:*
647
647
#####
648
648
649
649
PackageName: cffi
779
779
780
780
PackageName: markupsafe
781
781
SPDXID: SPDXRef-47-markupsafe
782
- PackageVersion: 3.0.1
782
+ PackageVersion: 3.0.2
783
783
PrimaryPackagePurpose: LIBRARY
784
784
PackageSupplier: NOASSERTION
785
- PackageDownloadLocation: https://pypi.org/project/markupsafe/3.0.1 /#files
785
+ PackageDownloadLocation: https://pypi.org/project/markupsafe/3.0.2 /#files
786
786
FilesAnalyzed: false
787
787
PackageLicenseDeclared: NOASSERTION
788
788
PackageLicenseConcluded: NOASSERTION
789
789
PackageLicenseComments: <text>markupsafe declares Copyright 2010 Pallets which is not currently a valid SPDX License identifier or expression.</text>
790
790
PackageCopyrightText: NOASSERTION
791
791
PackageSummary: <text>Safely add untrusted strings to HTML/XML markup.</text>
792
- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
1
792
+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
2
793
793
#####
794
794
795
795
PackageName: jsonschema
@@ -1176,17 +1176,17 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:sean_ross:rpmfile:2.1.0:*:*:*:*:*:*:*
1176
1176
1177
1177
PackageName: setuptools
1178
1178
SPDXID: SPDXRef-71-setuptools
1179
- PackageVersion: 75.1 .0
1179
+ PackageVersion: 75.2 .0
1180
1180
PrimaryPackagePurpose: LIBRARY
1181
1181
PackageSupplier: Organization: Python Packaging Authority (
[email protected] )
1182
- PackageDownloadLocation: https://pypi.org/project/setuptools/75.1 .0/#files
1182
+ PackageDownloadLocation: https://pypi.org/project/setuptools/75.2 .0/#files
1183
1183
FilesAnalyzed: false
1184
1184
PackageLicenseDeclared: NOASSERTION
1185
1185
PackageLicenseConcluded: NOASSERTION
1186
1186
PackageCopyrightText: NOASSERTION
1187
1187
PackageSummary: <text>Easily download, build, install, upgrade, and uninstall Python packages</text>
1188
- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/setuptools@75.1 .0
1189
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:python_packaging_authority:setuptools:75.1 .0:*:*:*:*:*:*:*
1188
+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/setuptools@75.2 .0
1189
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:python_packaging_authority:setuptools:75.2 .0:*:*:*:*:*:*:*
1190
1190
#####
1191
1191
1192
1192
PackageName: toml
0 commit comments