@@ -2,10 +2,10 @@ SPDXVersion: SPDX-2.3
2
2
DataLicense: CC0-1.0
3
3
SPDXID: SPDXRef-DOCUMENT
4
4
DocumentName: Python-cve-bin-tool
5
- DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-992ad455-14db-4167-a4fb-1ffd2b6bf795
5
+ DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-c3a21b8b-1e5e-4f6d-a597-daf2fddd9ed0
6
6
LicenseListVersion: 3.20
7
7
Creator: Tool: sbom4python-0.9.1
8
- Created: 2023-05-22T00:26:03Z
8
+ Created: 2023-05-29T00:25:52Z
9
9
CreatorComment: <text>This document has been automatically generated.</text>
10
10
#####
11
11
@@ -599,51 +599,51 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:craig_citro:google-apitools:0.5.32:*:*
599
599
600
600
PackageName: google-auth
601
601
SPDXID: SPDXRef-Package-37-google-auth
602
- PackageVersion: 2.18.1
602
+ PackageVersion: 2.19.0
603
603
PrimaryPackagePurpose: LIBRARY
604
604
PackageSupplier: Organization: Google Cloud Platform (
[email protected] )
605
- PackageDownloadLocation: https://pypi.org/project/google-auth/2.18.1
605
+ PackageDownloadLocation: https://pypi.org/project/google-auth/2.19.0
606
606
FilesAnalyzed: false
607
607
PackageHomePage: https://github.com/googleapis/google-auth-library-python
608
608
PackageLicenseDeclared: NOASSERTION
609
609
PackageLicenseConcluded: Apache-2.0
610
610
PackageLicenseComments: <text>google-auth declares Apache 2.0 which is not currently a valid SPDX License identifier or expression.</text>
611
611
PackageCopyrightText: NOASSERTION
612
612
PackageSummary: <text>Google Authentication Library</text>
613
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/google-auth@2.18.1
614
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:google_cloud_platform:google-auth:2.18.1 :*:*:*:*:*:*:*
613
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/google-auth@2.19.0
614
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:google_cloud_platform:google-auth:2.19.0 :*:*:*:*:*:*:*
615
615
#####
616
616
617
617
PackageName: cachetools
618
618
SPDXID: SPDXRef-Package-38-cachetools
619
- PackageVersion: 5.3.0
619
+ PackageVersion: 5.3.1
620
620
PrimaryPackagePurpose: LIBRARY
621
621
PackageSupplier: Person: Thomas Kemmer (
[email protected] )
622
- PackageDownloadLocation: https://pypi.org/project/cachetools/5.3.0
622
+ PackageDownloadLocation: https://pypi.org/project/cachetools/5.3.1
623
623
FilesAnalyzed: false
624
624
PackageHomePage: https://github.com/tkem/cachetools/
625
625
PackageLicenseDeclared: MIT
626
626
PackageLicenseConcluded: MIT
627
627
PackageCopyrightText: NOASSERTION
628
628
PackageSummary: <text>Extensible memoizing collections and decorators</text>
629
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] .
0
630
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:thomas_kemmer:cachetools:5.3.0 :*:*:*:*:*:*:*
629
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] .
1
630
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:thomas_kemmer:cachetools:5.3.1 :*:*:*:*:*:*:*
631
631
#####
632
632
633
633
PackageName: urllib3
634
634
SPDXID: SPDXRef-Package-39-urllib3
635
- PackageVersion: 1.26.15
635
+ PackageVersion: 1.26.16
636
636
PrimaryPackagePurpose: LIBRARY
637
637
PackageSupplier: Person: Andrey Petrov (
[email protected] )
638
- PackageDownloadLocation: https://pypi.org/project/urllib3/1.26.15
638
+ PackageDownloadLocation: https://pypi.org/project/urllib3/1.26.16
639
639
FilesAnalyzed: false
640
640
PackageHomePage: https://urllib3.readthedocs.io/
641
641
PackageLicenseDeclared: MIT
642
642
PackageLicenseConcluded: MIT
643
643
PackageCopyrightText: NOASSERTION
644
644
PackageSummary: <text>HTTP library with thread-safe connection pooling, file post, and more.</text>
645
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] .
15
646
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:andrey_petrov:urllib3:1.26.15 :*:*:*:*:*:*:*
645
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] .
16
646
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:andrey_petrov:urllib3:1.26.16 :*:*:*:*:*:*:*
647
647
#####
648
648
649
649
PackageName: monotonic
@@ -859,19 +859,19 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:julien_danjou:tenacity:8.2.2:*:*:*:*:*
859
859
860
860
PackageName: requests
861
861
SPDXID: SPDXRef-Package-53-requests
862
- PackageVersion: 2.30 .0
862
+ PackageVersion: 2.31 .0
863
863
PrimaryPackagePurpose: LIBRARY
864
864
PackageSupplier: Person: Kenneth Reitz (
[email protected] )
865
- PackageDownloadLocation: https://pypi.org/project/requests/2.30 .0
865
+ PackageDownloadLocation: https://pypi.org/project/requests/2.31 .0
866
866
FilesAnalyzed: false
867
867
PackageHomePage: https://requests.readthedocs.io
868
868
PackageLicenseDeclared: NOASSERTION
869
869
PackageLicenseConcluded: Apache-2.0
870
870
PackageLicenseComments: <text>requests declares Apache 2.0 which is not currently a valid SPDX License identifier or expression.</text>
871
871
PackageCopyrightText: NOASSERTION
872
872
PackageSummary: <text>Python HTTP for Humans.</text>
873
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/requests@2.30 .0
874
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:kenneth_reitz:requests:2.30 .0:*:*:*:*:*:*:*
873
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/requests@2.31 .0
874
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:kenneth_reitz:requests:2.31 .0:*:*:*:*:*:*:*
875
875
#####
876
876
877
877
PackageName: certifi
0 commit comments