@@ -2,10 +2,10 @@ SPDXVersion: SPDX-2.3
2
2
DataLicense: CC0-1.0
3
3
SPDXID: SPDXRef-DOCUMENT
4
4
DocumentName: Python-cve-bin-tool
5
- DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-3d7ad60e-d4e3-403e-bdc1-2f59271e305d
5
+ DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-24d84485-8943-44a4-9776-b41bfc9b7686
6
6
LicenseListVersion: 3.20
7
7
Creator: Tool: sbom4python-0.9.1
8
- Created: 2023-05-22T00 :25:58Z
8
+ Created: 2023-05-29T00 :25:56Z
9
9
CreatorComment: <text>This document has been automatically generated.</text>
10
10
#####
11
11
@@ -599,51 +599,51 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:craig_citro:google-apitools:0.5.32:*:*
599
599
600
600
PackageName: google-auth
601
601
SPDXID: SPDXRef-Package-37-google-auth
602
- PackageVersion: 2.18.1
602
+ PackageVersion: 2.19.0
603
603
PrimaryPackagePurpose: LIBRARY
604
604
PackageSupplier: Organization: Google Cloud Platform (
[email protected] )
605
- PackageDownloadLocation: https://pypi.org/project/google-auth/2.18.1
605
+ PackageDownloadLocation: https://pypi.org/project/google-auth/2.19.0
606
606
FilesAnalyzed: false
607
607
PackageHomePage: https://github.com/googleapis/google-auth-library-python
608
608
PackageLicenseDeclared: NOASSERTION
609
609
PackageLicenseConcluded: Apache-2.0
610
610
PackageLicenseComments: <text>google-auth declares Apache 2.0 which is not currently a valid SPDX License identifier or expression.</text>
611
611
PackageCopyrightText: NOASSERTION
612
612
PackageSummary: <text>Google Authentication Library</text>
613
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/google-auth@2.18.1
614
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:google_cloud_platform:google-auth:2.18.1 :*:*:*:*:*:*:*
613
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/google-auth@2.19.0
614
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:google_cloud_platform:google-auth:2.19.0 :*:*:*:*:*:*:*
615
615
#####
616
616
617
617
PackageName: cachetools
618
618
SPDXID: SPDXRef-Package-38-cachetools
619
- PackageVersion: 5.3.0
619
+ PackageVersion: 5.3.1
620
620
PrimaryPackagePurpose: LIBRARY
621
621
PackageSupplier: Person: Thomas Kemmer (
[email protected] )
622
- PackageDownloadLocation: https://pypi.org/project/cachetools/5.3.0
622
+ PackageDownloadLocation: https://pypi.org/project/cachetools/5.3.1
623
623
FilesAnalyzed: false
624
624
PackageHomePage: https://github.com/tkem/cachetools/
625
625
PackageLicenseDeclared: MIT
626
626
PackageLicenseConcluded: MIT
627
627
PackageCopyrightText: NOASSERTION
628
628
PackageSummary: <text>Extensible memoizing collections and decorators</text>
629
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] .
0
630
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:thomas_kemmer:cachetools:5.3.0 :*:*:*:*:*:*:*
629
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] .
1
630
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:thomas_kemmer:cachetools:5.3.1 :*:*:*:*:*:*:*
631
631
#####
632
632
633
633
PackageName: urllib3
634
634
SPDXID: SPDXRef-Package-39-urllib3
635
- PackageVersion: 1.26.15
635
+ PackageVersion: 1.26.16
636
636
PrimaryPackagePurpose: LIBRARY
637
637
PackageSupplier: Person: Andrey Petrov (
[email protected] )
638
- PackageDownloadLocation: https://pypi.org/project/urllib3/1.26.15
638
+ PackageDownloadLocation: https://pypi.org/project/urllib3/1.26.16
639
639
FilesAnalyzed: false
640
640
PackageHomePage: https://urllib3.readthedocs.io/
641
641
PackageLicenseDeclared: MIT
642
642
PackageLicenseConcluded: MIT
643
643
PackageCopyrightText: NOASSERTION
644
644
PackageSummary: <text>HTTP library with thread-safe connection pooling, file post, and more.</text>
645
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] .
15
646
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:andrey_petrov:urllib3:1.26.15 :*:*:*:*:*:*:*
645
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] .
16
646
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:andrey_petrov:urllib3:1.26.16 :*:*:*:*:*:*:*
647
647
#####
648
648
649
649
PackageName: monotonic
@@ -891,19 +891,19 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:julien_danjou:tenacity:8.2.2:*:*:*:*:*
891
891
892
892
PackageName: requests
893
893
SPDXID: SPDXRef-Package-55-requests
894
- PackageVersion: 2.30 .0
894
+ PackageVersion: 2.31 .0
895
895
PrimaryPackagePurpose: LIBRARY
896
896
PackageSupplier: Person: Kenneth Reitz (
[email protected] )
897
- PackageDownloadLocation: https://pypi.org/project/requests/2.30 .0
897
+ PackageDownloadLocation: https://pypi.org/project/requests/2.31 .0
898
898
FilesAnalyzed: false
899
899
PackageHomePage: https://requests.readthedocs.io
900
900
PackageLicenseDeclared: NOASSERTION
901
901
PackageLicenseConcluded: Apache-2.0
902
902
PackageLicenseComments: <text>requests declares Apache 2.0 which is not currently a valid SPDX License identifier or expression.</text>
903
903
PackageCopyrightText: NOASSERTION
904
904
PackageSummary: <text>Python HTTP for Humans.</text>
905
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/requests@2.30 .0
906
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:kenneth_reitz:requests:2.30 .0:*:*:*:*:*:*:*
905
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/requests@2.31 .0
906
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:kenneth_reitz:requests:2.31 .0:*:*:*:*:*:*:*
907
907
#####
908
908
909
909
PackageName: certifi
@@ -985,17 +985,17 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:georg_brandl:pygments:2.15.1:*:*:*:*:*
985
985
986
986
PackageName: typing-extensions
987
987
SPDXID: SPDXRef-Package-61-typing-extensions
988
- PackageVersion: 4.5.0
988
+ PackageVersion: 4.6.2
989
989
PrimaryPackagePurpose: LIBRARY
990
990
PackageSupplier: Organization: Guido van Jukka ukasz Michael (
[email protected] )
991
- PackageDownloadLocation: https://pypi.org/project/typing_extensions/4.5.0
991
+ PackageDownloadLocation: https://pypi.org/project/typing_extensions/4.6.2
992
992
FilesAnalyzed: false
993
993
PackageLicenseDeclared: NOASSERTION
994
994
PackageLicenseConcluded: NOASSERTION
995
995
PackageCopyrightText: NOASSERTION
996
996
PackageSummary: <text>Backported and Experimental Type Hints for Python 3.7+</text>
997
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/typing-extensions@4.5.0
998
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:guido_van_jukka_ukasz_michael:typing-extensions:4.5.0 :*:*:*:*:*:*:*
997
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/typing-extensions@4.6.2
998
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:guido_van_jukka_ukasz_michael:typing-extensions:4.6.2 :*:*:*:*:*:*:*
999
999
#####
1000
1000
1001
1001
PackageName: rpmfile
0 commit comments