Skip to content

Commit 5b147e9

Browse files
chore: update SBOM for Python 3.9 (#3081)
Co-authored-by: GitHub <[email protected]>
1 parent 855d3fb commit 5b147e9

File tree

2 files changed

+76
-76
lines changed

2 files changed

+76
-76
lines changed

sbom/cve-bin-tool-py3.9.json

Lines changed: 38 additions & 38 deletions
Original file line numberDiff line numberDiff line change
@@ -2,10 +2,10 @@
22
"$schema": "http://cyclonedx.org/schema/bom-1.4.schema.json",
33
"bomFormat": "CycloneDX",
44
"specVersion": "1.4",
5-
"serialNumber": "urn:uuid8f51dfa5-b68d-48d3-8313-993ea8c3ba1a",
5+
"serialNumber": "urn:uuid40decac7-5d7f-440a-8055-51db467c8db2",
66
"version": 1,
77
"metadata": {
8-
"timestamp": "2023-06-05T00:29:30Z",
8+
"timestamp": "2023-06-19T00:29:40Z",
99
"tools": [
1010
{
1111
"name": "sbom4python",
@@ -590,7 +590,7 @@
590590
"type": "library",
591591
"bom-ref": "17-argcomplete",
592592
"name": "argcomplete",
593-
"version": "3.0.8",
593+
"version": "3.1.1",
594594
"supplier": {
595595
"name": "Andrey Kislyuk",
596596
"contact": [
@@ -599,7 +599,7 @@
599599
}
600600
]
601601
},
602-
"cpe": "cpe:2.3:a:andrey_kislyuk:argcomplete:3.0.8:*:*:*:*:*:*:*",
602+
"cpe": "cpe:2.3:a:andrey_kislyuk:argcomplete:3.1.1:*:*:*:*:*:*:*",
603603
"description": "Bash tab completion for argparse",
604604
"licenses": [
605605
{
@@ -616,12 +616,12 @@
616616
"comment": "Home page for project"
617617
},
618618
{
619-
"url": "https://pypi.org/project/argcomplete/3.0.8",
619+
"url": "https://pypi.org/project/argcomplete/3.1.1",
620620
"type": "distribution",
621621
"comment": "Download location for component"
622622
}
623623
],
624-
"purl": "pkg:pypi/argcomplete@3.0.8",
624+
"purl": "pkg:pypi/argcomplete@3.1.1",
625625
"properties": [
626626
{
627627
"name": "License Comments",
@@ -948,7 +948,7 @@
948948
"type": "library",
949949
"bom-ref": "26-pyparsing",
950950
"name": "pyparsing",
951-
"version": "3.0.9",
951+
"version": "3.1.0",
952952
"supplier": {
953953
"name": "Paul McGuire",
954954
"contact": [
@@ -957,16 +957,16 @@
957957
}
958958
]
959959
},
960-
"cpe": "cpe:2.3:a:paul_mcguire:pyparsing:3.0.9:*:*:*:*:*:*:*",
960+
"cpe": "cpe:2.3:a:paul_mcguire:pyparsing:3.1.0:*:*:*:*:*:*:*",
961961
"description": "pyparsing module - Classes and methods to define and execute parsing grammars",
962962
"externalReferences": [
963963
{
964-
"url": "https://pypi.org/project/pyparsing/3.0.9",
964+
"url": "https://pypi.org/project/pyparsing/3.1.0",
965965
"type": "distribution",
966966
"comment": "Download location for component"
967967
}
968968
],
969-
"purl": "pkg:pypi/pyparsing@3.0.9"
969+
"purl": "pkg:pypi/pyparsing@3.1.0"
970970
},
971971
{
972972
"type": "library",
@@ -1372,7 +1372,7 @@
13721372
"type": "library",
13731373
"bom-ref": "37-google-auth",
13741374
"name": "google-auth",
1375-
"version": "2.19.1",
1375+
"version": "2.20.0",
13761376
"supplier": {
13771377
"name": "Google Cloud Platform",
13781378
"contact": [
@@ -1381,7 +1381,7 @@
13811381
}
13821382
]
13831383
},
1384-
"cpe": "cpe:2.3:a:google_cloud_platform:google-auth:2.19.1:*:*:*:*:*:*:*",
1384+
"cpe": "cpe:2.3:a:google_cloud_platform:google-auth:2.20.0:*:*:*:*:*:*:*",
13851385
"description": "Google Authentication Library",
13861386
"licenses": [
13871387
{
@@ -1398,12 +1398,12 @@
13981398
"comment": "Home page for project"
13991399
},
14001400
{
1401-
"url": "https://pypi.org/project/google-auth/2.19.1",
1401+
"url": "https://pypi.org/project/google-auth/2.20.0",
14021402
"type": "distribution",
14031403
"comment": "Download location for component"
14041404
}
14051405
],
1406-
"purl": "pkg:pypi/google-auth@2.19.1",
1406+
"purl": "pkg:pypi/google-auth@2.20.0",
14071407
"properties": [
14081408
{
14091409
"name": "License Comments",
@@ -1532,7 +1532,7 @@
15321532
"type": "library",
15331533
"bom-ref": "41-importlib-metadata",
15341534
"name": "importlib-metadata",
1535-
"version": "6.6.0",
1535+
"version": "6.7.0",
15361536
"supplier": {
15371537
"name": "Jason R. Coombs",
15381538
"contact": [
@@ -1541,7 +1541,7 @@
15411541
}
15421542
]
15431543
},
1544-
"cpe": "cpe:2.3:a:jason_r._coombs:importlib-metadata:6.6.0:*:*:*:*:*:*:*",
1544+
"cpe": "cpe:2.3:a:jason_r._coombs:importlib-metadata:6.7.0:*:*:*:*:*:*:*",
15451545
"description": "Read metadata from Python packages",
15461546
"externalReferences": [
15471547
{
@@ -1550,12 +1550,12 @@
15501550
"comment": "Home page for project"
15511551
},
15521552
{
1553-
"url": "https://pypi.org/project/importlib-metadata/6.6.0",
1553+
"url": "https://pypi.org/project/importlib-metadata/6.7.0",
15541554
"type": "distribution",
15551555
"comment": "Download location for component"
15561556
}
15571557
],
1558-
"purl": "pkg:pypi/importlib-metadata@6.6.0"
1558+
"purl": "pkg:pypi/importlib-metadata@6.7.0"
15591559
},
15601560
{
15611561
"type": "library",
@@ -1878,7 +1878,7 @@
18781878
"type": "library",
18791879
"bom-ref": "51-plotly",
18801880
"name": "plotly",
1881-
"version": "5.14.1",
1881+
"version": "5.15.0",
18821882
"supplier": {
18831883
"name": "Chris P",
18841884
"contact": [
@@ -1887,7 +1887,7 @@
18871887
}
18881888
]
18891889
},
1890-
"cpe": "cpe:2.3:a:chris_p:plotly:5.14.1:*:*:*:*:*:*:*",
1890+
"cpe": "cpe:2.3:a:chris_p:plotly:5.15.0:*:*:*:*:*:*:*",
18911891
"description": "An open-source, interactive data visualization library for Python",
18921892
"licenses": [
18931893
{
@@ -1904,12 +1904,12 @@
19041904
"comment": "Home page for project"
19051905
},
19061906
{
1907-
"url": "https://pypi.org/project/plotly/5.14.1",
1907+
"url": "https://pypi.org/project/plotly/5.15.0",
19081908
"type": "distribution",
19091909
"comment": "Download location for component"
19101910
}
19111911
],
1912-
"purl": "pkg:pypi/plotly@5.14.1"
1912+
"purl": "pkg:pypi/plotly@5.15.0"
19131913
},
19141914
{
19151915
"type": "library",
@@ -2081,7 +2081,7 @@
20812081
"type": "library",
20822082
"bom-ref": "56-rich",
20832083
"name": "rich",
2084-
"version": "13.4.1",
2084+
"version": "13.4.2",
20852085
"supplier": {
20862086
"name": "Will McGugan",
20872087
"contact": [
@@ -2090,7 +2090,7 @@
20902090
}
20912091
]
20922092
},
2093-
"cpe": "cpe:2.3:a:will_mcgugan:rich:13.4.1:*:*:*:*:*:*:*",
2093+
"cpe": "cpe:2.3:a:will_mcgugan:rich:13.4.2:*:*:*:*:*:*:*",
20942094
"description": "Render rich text, tables, progress bars, syntax highlighting, markdown and more to the terminal",
20952095
"licenses": [
20962096
{
@@ -2107,18 +2107,18 @@
21072107
"comment": "Home page for project"
21082108
},
21092109
{
2110-
"url": "https://pypi.org/project/rich/13.4.1",
2110+
"url": "https://pypi.org/project/rich/13.4.2",
21112111
"type": "distribution",
21122112
"comment": "Download location for component"
21132113
}
21142114
],
2115-
"purl": "pkg:pypi/[email protected].1"
2115+
"purl": "pkg:pypi/[email protected].2"
21162116
},
21172117
{
21182118
"type": "library",
21192119
"bom-ref": "57-markdown-it-py",
21202120
"name": "markdown-it-py",
2121-
"version": "2.2.0",
2121+
"version": "3.0.0",
21222122
"supplier": {
21232123
"name": "Chris Sewell",
21242124
"contact": [
@@ -2127,16 +2127,16 @@
21272127
}
21282128
]
21292129
},
2130-
"cpe": "cpe:2.3:a:chris_sewell:markdown-it-py:2.2.0:*:*:*:*:*:*:*",
2130+
"cpe": "cpe:2.3:a:chris_sewell:markdown-it-py:3.0.0:*:*:*:*:*:*:*",
21312131
"description": "Python port of markdown-it. Markdown parsing, done right!",
21322132
"externalReferences": [
21332133
{
2134-
"url": "https://pypi.org/project/markdown-it-py/2.2.0",
2134+
"url": "https://pypi.org/project/markdown-it-py/3.0.0",
21352135
"type": "distribution",
21362136
"comment": "Download location for component"
21372137
}
21382138
],
2139-
"purl": "pkg:pypi/markdown-it-py@2.2.0"
2139+
"purl": "pkg:pypi/markdown-it-py@3.0.0"
21402140
},
21412141
{
21422142
"type": "library",
@@ -2272,7 +2272,7 @@
22722272
"type": "library",
22732273
"bom-ref": "62-xmlschema",
22742274
"name": "xmlschema",
2275-
"version": "2.3.0",
2275+
"version": "2.3.1",
22762276
"supplier": {
22772277
"name": "Davide Brunato",
22782278
"contact": [
@@ -2281,7 +2281,7 @@
22812281
}
22822282
]
22832283
},
2284-
"cpe": "cpe:2.3:a:davide_brunato:xmlschema:2.3.0:*:*:*:*:*:*:*",
2284+
"cpe": "cpe:2.3:a:davide_brunato:xmlschema:2.3.1:*:*:*:*:*:*:*",
22852285
"description": "An XML Schema validator and decoder",
22862286
"licenses": [
22872287
{
@@ -2298,18 +2298,18 @@
22982298
"comment": "Home page for project"
22992299
},
23002300
{
2301-
"url": "https://pypi.org/project/xmlschema/2.3.0",
2301+
"url": "https://pypi.org/project/xmlschema/2.3.1",
23022302
"type": "distribution",
23032303
"comment": "Download location for component"
23042304
}
23052305
],
2306-
"purl": "pkg:pypi/[email protected].0"
2306+
"purl": "pkg:pypi/[email protected].1"
23072307
},
23082308
{
23092309
"type": "library",
23102310
"bom-ref": "63-elementpath",
23112311
"name": "elementpath",
2312-
"version": "4.1.2",
2312+
"version": "4.1.3",
23132313
"supplier": {
23142314
"name": "Davide Brunato",
23152315
"contact": [
@@ -2318,7 +2318,7 @@
23182318
}
23192319
]
23202320
},
2321-
"cpe": "cpe:2.3:a:davide_brunato:elementpath:4.1.2:*:*:*:*:*:*:*",
2321+
"cpe": "cpe:2.3:a:davide_brunato:elementpath:4.1.3:*:*:*:*:*:*:*",
23222322
"description": "XPath 1.0/2.0/3.0/3.1 parsers and selectors for ElementTree and lxml",
23232323
"licenses": [
23242324
{
@@ -2335,12 +2335,12 @@
23352335
"comment": "Home page for project"
23362336
},
23372337
{
2338-
"url": "https://pypi.org/project/elementpath/4.1.2",
2338+
"url": "https://pypi.org/project/elementpath/4.1.3",
23392339
"type": "distribution",
23402340
"comment": "Download location for component"
23412341
}
23422342
],
2343-
"purl": "pkg:pypi/[email protected].2"
2343+
"purl": "pkg:pypi/[email protected].3"
23442344
},
23452345
{
23462346
"type": "library",

0 commit comments

Comments
 (0)