Skip to content

Commit b6e9095

Browse files
web-flowgithub-actions[bot]
authored andcommitted
chore: update SBOM for Python 3.10
1 parent dc2dee6 commit b6e9095

File tree

2 files changed

+79
-79
lines changed

2 files changed

+79
-79
lines changed

sbom/cve-bin-tool-py3.10.json

Lines changed: 42 additions & 42 deletions
Original file line numberDiff line numberDiff line change
@@ -2,10 +2,10 @@
22
"$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
33
"bomFormat": "CycloneDX",
44
"specVersion": "1.6",
5-
"serialNumber": "urn:uuid:efa4559e-c21b-423f-bdd9-fe61cfaaad66",
5+
"serialNumber": "urn:uuid:b8d83946-2d28-40f4-a2b6-1e96486676ff",
66
"version": 1,
77
"metadata": {
8-
"timestamp": "2025-05-19T00:46:03Z",
8+
"timestamp": "2025-05-26T00:41:48Z",
99
"lifecycles": [
1010
{
1111
"phase": "build"
@@ -89,14 +89,8 @@
8989
"type": "library",
9090
"bom-ref": "2-aiohttp",
9191
"name": "aiohttp",
92-
"version": "3.11.18",
92+
"version": "3.12.0",
9393
"description": "Async http client/server framework (asyncio)",
94-
"hashes": [
95-
{
96-
"alg": "SHA-256",
97-
"content": "96264854fedbea933a9ca4b7e0c745728f01380691687b7365d18d9e977179c4"
98-
}
99-
],
10094
"licenses": [
10195
{
10296
"license": {
@@ -113,7 +107,7 @@
113107
"comment": "Home page for project"
114108
},
115109
{
116-
"url": "https://pypi.org/project/aiohttp/3.11.18/#files",
110+
"url": "https://pypi.org/project/aiohttp/3.12.0/#files",
117111
"type": "distribution",
118112
"comment": "Download location for component"
119113
},
@@ -150,11 +144,11 @@
150144
"type": "vcs"
151145
}
152146
],
153-
"purl": "pkg:pypi/aiohttp@3.11.18",
147+
"purl": "pkg:pypi/aiohttp@3.12.0",
154148
"properties": [
155149
{
156150
"name": "release_date",
157-
"value": "2025-04-21T09:40:25Z"
151+
"value": "2024-09-17T18:57:44Z"
158152
},
159153
{
160154
"name": "language",
@@ -547,7 +541,7 @@
547541
"type": "library",
548542
"bom-ref": "8-multidict",
549543
"name": "multidict",
550-
"version": "6.4.3",
544+
"version": "6.4.4",
551545
"supplier": {
552546
"name": "Andrew Svetlov",
553547
"contact": [
@@ -556,12 +550,12 @@
556550
}
557551
]
558552
},
559-
"cpe": "cpe:2.3:a:andrew_svetlov:multidict:6.4.3:*:*:*:*:*:*:*",
553+
"cpe": "cpe:2.3:a:andrew_svetlov:multidict:6.4.4:*:*:*:*:*:*:*",
560554
"description": "multidict implementation",
561555
"hashes": [
562556
{
563557
"alg": "SHA-256",
564-
"content": "32a998bd8a64ca48616eac5a8c1cc4fa38fb244a3facf2eeb14abe186e0f6cc5"
558+
"content": "8adee3ac041145ffe4488ea73fa0a622b464cc25340d98be76924d0cda8545ff"
565559
}
566560
],
567561
"licenses": [
@@ -580,7 +574,7 @@
580574
"comment": "Home page for project"
581575
},
582576
{
583-
"url": "https://pypi.org/project/multidict/6.4.3/#files",
577+
"url": "https://pypi.org/project/multidict/6.4.4/#files",
584578
"type": "distribution",
585579
"comment": "Download location for component"
586580
},
@@ -621,11 +615,11 @@
621615
"type": "vcs"
622616
}
623617
],
624-
"purl": "pkg:pypi/[email protected].3",
618+
"purl": "pkg:pypi/[email protected].4",
625619
"properties": [
626620
{
627621
"name": "release_date",
628-
"value": "2025-04-10T22:17:32Z"
622+
"value": "2025-05-19T14:13:49Z"
629623
},
630624
{
631625
"name": "language",
@@ -3417,7 +3411,7 @@
34173411
"type": "library",
34183412
"bom-ref": "51-rpds-py",
34193413
"name": "rpds-py",
3420-
"version": "0.25.0",
3414+
"version": "0.25.1",
34213415
"supplier": {
34223416
"name": "Julian Berman",
34233417
"contact": [
@@ -3426,12 +3420,12 @@
34263420
}
34273421
]
34283422
},
3429-
"cpe": "cpe:2.3:a:julian_berman:rpds-py:0.25.0:*:*:*:*:*:*:*",
3423+
"cpe": "cpe:2.3:a:julian_berman:rpds-py:0.25.1:*:*:*:*:*:*:*",
34303424
"description": "Python bindings to Rust's persistent data structures (rpds)",
34313425
"hashes": [
34323426
{
34333427
"alg": "SHA-256",
3434-
"content": "c146a24a8f0dc4a7846fb4640b88b3a68986585b8ce8397af15e66b7c5817439"
3428+
"content": "f4ad628b5174d5315761b67f212774a32f5bad5e61396d38108bd801c0a8f5d9"
34353429
}
34363430
],
34373431
"licenses": [
@@ -3450,7 +3444,7 @@
34503444
"comment": "Home page for project"
34513445
},
34523446
{
3453-
"url": "https://pypi.org/project/rpds-py/0.25.0/#files",
3447+
"url": "https://pypi.org/project/rpds-py/0.25.1/#files",
34543448
"type": "distribution",
34553449
"comment": "Download location for component"
34563450
},
@@ -3479,11 +3473,11 @@
34793473
"type": "other"
34803474
}
34813475
],
3482-
"purl": "pkg:pypi/[email protected].0",
3476+
"purl": "pkg:pypi/[email protected].1",
34833477
"properties": [
34843478
{
34853479
"name": "release_date",
3486-
"value": "2025-05-15T13:38:11Z"
3480+
"value": "2025-05-21T12:42:38Z"
34873481
},
34883482
{
34893483
"name": "language",
@@ -4191,7 +4185,7 @@
41914185
"type": "library",
41924186
"bom-ref": "63-plotly",
41934187
"name": "plotly",
4194-
"version": "6.1.0",
4188+
"version": "6.1.1",
41954189
"supplier": {
41964190
"name": "Chris P",
41974191
"contact": [
@@ -4200,12 +4194,12 @@
42004194
}
42014195
]
42024196
},
4203-
"cpe": "cpe:2.3:a:chris_p:plotly:6.1.0:*:*:*:*:*:*:*",
4197+
"cpe": "cpe:2.3:a:chris_p:plotly:6.1.1:*:*:*:*:*:*:*",
42044198
"description": "An open-source interactive data visualization library for Python",
42054199
"hashes": [
42064200
{
42074201
"alg": "SHA-256",
4208-
"content": "a29d3ed523c9d7960095693af1ee52689830df0f9c6bae3e5e92c20c4f5684c3"
4202+
"content": "9cca7167406ebf7ff541422738402159ec3621a608ff7b3e2f025573a1c76225"
42094203
}
42104204
],
42114205
"externalReferences": [
@@ -4215,7 +4209,7 @@
42154209
"comment": "Home page for project"
42164210
},
42174211
{
4218-
"url": "https://pypi.org/project/plotly/6.1.0/#files",
4212+
"url": "https://pypi.org/project/plotly/6.1.1/#files",
42194213
"type": "distribution",
42204214
"comment": "Download location for component"
42214215
},
@@ -4232,11 +4226,11 @@
42324226
"type": "log"
42334227
}
42344228
],
4235-
"purl": "pkg:pypi/[email protected].0",
4229+
"purl": "pkg:pypi/[email protected].1",
42364230
"properties": [
42374231
{
42384232
"name": "release_date",
4239-
"value": "2025-05-15T16:04:30Z"
4233+
"value": "2025-05-20T20:09:26Z"
42404234
},
42414235
{
42424236
"name": "language",
@@ -4256,21 +4250,21 @@
42564250
"type": "library",
42574251
"bom-ref": "64-narwhals",
42584252
"name": "narwhals",
4259-
"version": "1.39.1",
4253+
"version": "1.40.0",
42604254
"supplier": {
42614255
"name": "Marco Gorelli",
42624256
"contact": [
42634257
{
4264-
"email": "[email protected]"
4258+
"email": "[email protected]"
42654259
}
42664260
]
42674261
},
4268-
"cpe": "cpe:2.3:a:marco_gorelli:narwhals:1.39.1:*:*:*:*:*:*:*",
4262+
"cpe": "cpe:2.3:a:marco_gorelli:narwhals:1.40.0:*:*:*:*:*:*:*",
42694263
"description": "Extremely lightweight compatibility layer between dataframe libraries",
42704264
"hashes": [
42714265
{
42724266
"alg": "SHA-256",
4273-
"content": "68d0f29c760f1a9419ada537f35f21ff202b0be1419e6d22135a0352c6d96deb"
4267+
"content": "1e6c731811d01c61147c52433b4d4edfb6511aaf2c859aa01c2e8ca6ff4d27e5"
42744268
}
42754269
],
42764270
"licenses": [
@@ -4289,7 +4283,7 @@
42894283
"comment": "Home page for project"
42904284
},
42914285
{
4292-
"url": "https://pypi.org/project/narwhals/1.39.1/#files",
4286+
"url": "https://pypi.org/project/narwhals/1.40.0/#files",
42934287
"type": "distribution",
42944288
"comment": "Download location for component"
42954289
},
@@ -4306,11 +4300,11 @@
43064300
"type": "issue-tracker"
43074301
}
43084302
],
4309-
"purl": "pkg:pypi/narwhals@1.39.1",
4303+
"purl": "pkg:pypi/narwhals@1.40.0",
43104304
"properties": [
43114305
{
43124306
"name": "release_date",
4313-
"value": "2025-05-15T17:45:07Z"
4307+
"value": "2025-05-19T07:44:10Z"
43144308
},
43154309
{
43164310
"name": "language",
@@ -4719,7 +4713,7 @@
47194713
"type": "library",
47204714
"bom-ref": "71-setuptools",
47214715
"name": "setuptools",
4722-
"version": "80.7.1",
4716+
"version": "80.8.0",
47234717
"supplier": {
47244718
"name": "Python Packaging Authority",
47254719
"contact": [
@@ -4728,11 +4722,17 @@
47284722
}
47294723
]
47304724
},
4731-
"cpe": "cpe:2.3:a:python_packaging_authority:setuptools:80.7.1:*:*:*:*:*:*:*",
4725+
"cpe": "cpe:2.3:a:python_packaging_authority:setuptools:80.8.0:*:*:*:*:*:*:*",
47324726
"description": "Easily download, build, install, upgrade, and uninstall Python packages",
4727+
"hashes": [
4728+
{
4729+
"alg": "SHA-256",
4730+
"content": "95a60484590d24103af13b686121328cc2736bee85de8936383111e421b9edc0"
4731+
}
4732+
],
47334733
"externalReferences": [
47344734
{
4735-
"url": "https://pypi.org/project/setuptools/80.7.1/#files",
4735+
"url": "https://pypi.org/project/setuptools/80.8.0/#files",
47364736
"type": "distribution",
47374737
"comment": "Download location for component"
47384738
},
@@ -4749,11 +4749,11 @@
47494749
"type": "log"
47504750
}
47514751
],
4752-
"purl": "pkg:pypi/setuptools@80.7.1",
4752+
"purl": "pkg:pypi/setuptools@80.8.0",
47534753
"properties": [
47544754
{
47554755
"name": "release_date",
4756-
"value": "2024-07-24T21:57:45Z"
4756+
"value": "2025-05-20T14:02:51Z"
47574757
},
47584758
{
47594759
"name": "language",

0 commit comments

Comments
 (0)