Skip to content

Commit d02fe58

Browse files
web-flowgithub-actions[bot]
authored andcommitted
chore: update SBOM for Python 3.11
1 parent dc2dee6 commit d02fe58

File tree

2 files changed

+79
-79
lines changed

2 files changed

+79
-79
lines changed

sbom/cve-bin-tool-py3.11.json

Lines changed: 42 additions & 42 deletions
Original file line numberDiff line numberDiff line change
@@ -2,10 +2,10 @@
22
"$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
33
"bomFormat": "CycloneDX",
44
"specVersion": "1.6",
5-
"serialNumber": "urn:uuid:0a474f47-3485-4657-a642-3bd0e7091226",
5+
"serialNumber": "urn:uuid:f1c37256-caf8-4eb7-9109-6b36562512db",
66
"version": 1,
77
"metadata": {
8-
"timestamp": "2025-05-19T00:44:32Z",
8+
"timestamp": "2025-05-26T00:41:48Z",
99
"lifecycles": [
1010
{
1111
"phase": "build"
@@ -89,14 +89,8 @@
8989
"type": "library",
9090
"bom-ref": "2-aiohttp",
9191
"name": "aiohttp",
92-
"version": "3.11.18",
92+
"version": "3.12.0",
9393
"description": "Async http client/server framework (asyncio)",
94-
"hashes": [
95-
{
96-
"alg": "SHA-256",
97-
"content": "96264854fedbea933a9ca4b7e0c745728f01380691687b7365d18d9e977179c4"
98-
}
99-
],
10094
"licenses": [
10195
{
10296
"license": {
@@ -113,7 +107,7 @@
113107
"comment": "Home page for project"
114108
},
115109
{
116-
"url": "https://pypi.org/project/aiohttp/3.11.18/#files",
110+
"url": "https://pypi.org/project/aiohttp/3.12.0/#files",
117111
"type": "distribution",
118112
"comment": "Download location for component"
119113
},
@@ -150,11 +144,11 @@
150144
"type": "vcs"
151145
}
152146
],
153-
"purl": "pkg:pypi/aiohttp@3.11.18",
147+
"purl": "pkg:pypi/aiohttp@3.12.0",
154148
"properties": [
155149
{
156150
"name": "release_date",
157-
"value": "2025-04-21T09:40:25Z"
151+
"value": "2024-09-17T18:57:44Z"
158152
},
159153
{
160154
"name": "language",
@@ -465,7 +459,7 @@
465459
"type": "library",
466460
"bom-ref": "7-multidict",
467461
"name": "multidict",
468-
"version": "6.4.3",
462+
"version": "6.4.4",
469463
"supplier": {
470464
"name": "Andrew Svetlov",
471465
"contact": [
@@ -474,12 +468,12 @@
474468
}
475469
]
476470
},
477-
"cpe": "cpe:2.3:a:andrew_svetlov:multidict:6.4.3:*:*:*:*:*:*:*",
471+
"cpe": "cpe:2.3:a:andrew_svetlov:multidict:6.4.4:*:*:*:*:*:*:*",
478472
"description": "multidict implementation",
479473
"hashes": [
480474
{
481475
"alg": "SHA-256",
482-
"content": "32a998bd8a64ca48616eac5a8c1cc4fa38fb244a3facf2eeb14abe186e0f6cc5"
476+
"content": "8adee3ac041145ffe4488ea73fa0a622b464cc25340d98be76924d0cda8545ff"
483477
}
484478
],
485479
"licenses": [
@@ -498,7 +492,7 @@
498492
"comment": "Home page for project"
499493
},
500494
{
501-
"url": "https://pypi.org/project/multidict/6.4.3/#files",
495+
"url": "https://pypi.org/project/multidict/6.4.4/#files",
502496
"type": "distribution",
503497
"comment": "Download location for component"
504498
},
@@ -539,11 +533,11 @@
539533
"type": "vcs"
540534
}
541535
],
542-
"purl": "pkg:pypi/[email protected].3",
536+
"purl": "pkg:pypi/[email protected].4",
543537
"properties": [
544538
{
545539
"name": "release_date",
546-
"value": "2025-04-10T22:17:32Z"
540+
"value": "2025-05-19T14:13:49Z"
547541
},
548542
{
549543
"name": "language",
@@ -3335,7 +3329,7 @@
33353329
"type": "library",
33363330
"bom-ref": "50-rpds-py",
33373331
"name": "rpds-py",
3338-
"version": "0.25.0",
3332+
"version": "0.25.1",
33393333
"supplier": {
33403334
"name": "Julian Berman",
33413335
"contact": [
@@ -3344,12 +3338,12 @@
33443338
}
33453339
]
33463340
},
3347-
"cpe": "cpe:2.3:a:julian_berman:rpds-py:0.25.0:*:*:*:*:*:*:*",
3341+
"cpe": "cpe:2.3:a:julian_berman:rpds-py:0.25.1:*:*:*:*:*:*:*",
33483342
"description": "Python bindings to Rust's persistent data structures (rpds)",
33493343
"hashes": [
33503344
{
33513345
"alg": "SHA-256",
3352-
"content": "c146a24a8f0dc4a7846fb4640b88b3a68986585b8ce8397af15e66b7c5817439"
3346+
"content": "f4ad628b5174d5315761b67f212774a32f5bad5e61396d38108bd801c0a8f5d9"
33533347
}
33543348
],
33553349
"licenses": [
@@ -3368,7 +3362,7 @@
33683362
"comment": "Home page for project"
33693363
},
33703364
{
3371-
"url": "https://pypi.org/project/rpds-py/0.25.0/#files",
3365+
"url": "https://pypi.org/project/rpds-py/0.25.1/#files",
33723366
"type": "distribution",
33733367
"comment": "Download location for component"
33743368
},
@@ -3397,11 +3391,11 @@
33973391
"type": "other"
33983392
}
33993393
],
3400-
"purl": "pkg:pypi/[email protected].0",
3394+
"purl": "pkg:pypi/[email protected].1",
34013395
"properties": [
34023396
{
34033397
"name": "release_date",
3404-
"value": "2025-05-15T13:38:11Z"
3398+
"value": "2025-05-21T12:42:38Z"
34053399
},
34063400
{
34073401
"name": "language",
@@ -4109,7 +4103,7 @@
41094103
"type": "library",
41104104
"bom-ref": "62-plotly",
41114105
"name": "plotly",
4112-
"version": "6.1.0",
4106+
"version": "6.1.1",
41134107
"supplier": {
41144108
"name": "Chris P",
41154109
"contact": [
@@ -4118,12 +4112,12 @@
41184112
}
41194113
]
41204114
},
4121-
"cpe": "cpe:2.3:a:chris_p:plotly:6.1.0:*:*:*:*:*:*:*",
4115+
"cpe": "cpe:2.3:a:chris_p:plotly:6.1.1:*:*:*:*:*:*:*",
41224116
"description": "An open-source interactive data visualization library for Python",
41234117
"hashes": [
41244118
{
41254119
"alg": "SHA-256",
4126-
"content": "a29d3ed523c9d7960095693af1ee52689830df0f9c6bae3e5e92c20c4f5684c3"
4120+
"content": "9cca7167406ebf7ff541422738402159ec3621a608ff7b3e2f025573a1c76225"
41274121
}
41284122
],
41294123
"externalReferences": [
@@ -4133,7 +4127,7 @@
41334127
"comment": "Home page for project"
41344128
},
41354129
{
4136-
"url": "https://pypi.org/project/plotly/6.1.0/#files",
4130+
"url": "https://pypi.org/project/plotly/6.1.1/#files",
41374131
"type": "distribution",
41384132
"comment": "Download location for component"
41394133
},
@@ -4150,11 +4144,11 @@
41504144
"type": "log"
41514145
}
41524146
],
4153-
"purl": "pkg:pypi/[email protected].0",
4147+
"purl": "pkg:pypi/[email protected].1",
41544148
"properties": [
41554149
{
41564150
"name": "release_date",
4157-
"value": "2025-05-15T16:04:30Z"
4151+
"value": "2025-05-20T20:09:26Z"
41584152
},
41594153
{
41604154
"name": "language",
@@ -4174,21 +4168,21 @@
41744168
"type": "library",
41754169
"bom-ref": "63-narwhals",
41764170
"name": "narwhals",
4177-
"version": "1.39.1",
4171+
"version": "1.40.0",
41784172
"supplier": {
41794173
"name": "Marco Gorelli",
41804174
"contact": [
41814175
{
4182-
"email": "[email protected]"
4176+
"email": "[email protected]"
41834177
}
41844178
]
41854179
},
4186-
"cpe": "cpe:2.3:a:marco_gorelli:narwhals:1.39.1:*:*:*:*:*:*:*",
4180+
"cpe": "cpe:2.3:a:marco_gorelli:narwhals:1.40.0:*:*:*:*:*:*:*",
41874181
"description": "Extremely lightweight compatibility layer between dataframe libraries",
41884182
"hashes": [
41894183
{
41904184
"alg": "SHA-256",
4191-
"content": "68d0f29c760f1a9419ada537f35f21ff202b0be1419e6d22135a0352c6d96deb"
4185+
"content": "1e6c731811d01c61147c52433b4d4edfb6511aaf2c859aa01c2e8ca6ff4d27e5"
41924186
}
41934187
],
41944188
"licenses": [
@@ -4207,7 +4201,7 @@
42074201
"comment": "Home page for project"
42084202
},
42094203
{
4210-
"url": "https://pypi.org/project/narwhals/1.39.1/#files",
4204+
"url": "https://pypi.org/project/narwhals/1.40.0/#files",
42114205
"type": "distribution",
42124206
"comment": "Download location for component"
42134207
},
@@ -4224,11 +4218,11 @@
42244218
"type": "issue-tracker"
42254219
}
42264220
],
4227-
"purl": "pkg:pypi/narwhals@1.39.1",
4221+
"purl": "pkg:pypi/narwhals@1.40.0",
42284222
"properties": [
42294223
{
42304224
"name": "release_date",
4231-
"value": "2025-05-15T17:45:07Z"
4225+
"value": "2025-05-19T07:44:10Z"
42324226
},
42334227
{
42344228
"name": "language",
@@ -4637,7 +4631,7 @@
46374631
"type": "library",
46384632
"bom-ref": "70-setuptools",
46394633
"name": "setuptools",
4640-
"version": "80.7.1",
4634+
"version": "80.8.0",
46414635
"supplier": {
46424636
"name": "Python Packaging Authority",
46434637
"contact": [
@@ -4646,11 +4640,17 @@
46464640
}
46474641
]
46484642
},
4649-
"cpe": "cpe:2.3:a:python_packaging_authority:setuptools:80.7.1:*:*:*:*:*:*:*",
4643+
"cpe": "cpe:2.3:a:python_packaging_authority:setuptools:80.8.0:*:*:*:*:*:*:*",
46504644
"description": "Easily download, build, install, upgrade, and uninstall Python packages",
4645+
"hashes": [
4646+
{
4647+
"alg": "SHA-256",
4648+
"content": "95a60484590d24103af13b686121328cc2736bee85de8936383111e421b9edc0"
4649+
}
4650+
],
46514651
"externalReferences": [
46524652
{
4653-
"url": "https://pypi.org/project/setuptools/80.7.1/#files",
4653+
"url": "https://pypi.org/project/setuptools/80.8.0/#files",
46544654
"type": "distribution",
46554655
"comment": "Download location for component"
46564656
},
@@ -4667,11 +4667,11 @@
46674667
"type": "log"
46684668
}
46694669
],
4670-
"purl": "pkg:pypi/setuptools@80.7.1",
4670+
"purl": "pkg:pypi/setuptools@80.8.0",
46714671
"properties": [
46724672
{
46734673
"name": "release_date",
4674-
"value": "2024-07-24T21:57:45Z"
4674+
"value": "2025-05-20T14:02:51Z"
46754675
},
46764676
{
46774677
"name": "language",

0 commit comments

Comments
 (0)