@@ -2,10 +2,10 @@ SPDXVersion: SPDX-2.3
2
2
DataLicense: CC0-1.0
3
3
SPDXID: SPDXRef-DOCUMENT
4
4
DocumentName: Python-cve-bin-tool
5
- DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-c97adb49-cd97-4afa-abfa-56c2f899134b
5
+ DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-8f6dc0e5-f734-4e02-b567-528c334f2968
6
6
LicenseListVersion: 3.22
7
7
Creator: Tool: sbom4python-0.10.1
8
- Created: 2023-12-04T00 :26:07Z
8
+ Created: 2023-12-11T00 :26:12Z
9
9
CreatorComment: <text>This document has been automatically generated.</text>
10
10
#####
11
11
@@ -117,17 +117,17 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:andrew_svetlov:multidict:6.0.4:*:*:*:*
117
117
118
118
PackageName: yarl
119
119
SPDXID: SPDXRef-Package-8-yarl
120
- PackageVersion: 1.9.3
120
+ PackageVersion: 1.9.4
121
121
PrimaryPackagePurpose: LIBRARY
122
122
PackageSupplier: Person: Andrew Svetlov (
[email protected] )
123
- PackageDownloadLocation: https://pypi.org/project/yarl/1.9.3
123
+ PackageDownloadLocation: https://pypi.org/project/yarl/1.9.4
124
124
FilesAnalyzed: false
125
125
PackageLicenseDeclared: Apache-2.0
126
126
PackageLicenseConcluded: Apache-2.0
127
127
PackageCopyrightText: NOASSERTION
128
128
PackageSummary: <text>Yet another URL library</text>
129
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] .
3
130
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:andrew_svetlov:yarl:1.9.3 :*:*:*:*:*:*:*
129
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] .
4
130
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:andrew_svetlov:yarl:1.9.4 :*:*:*:*:*:*:*
131
131
#####
132
132
133
133
PackageName: idna
@@ -241,18 +241,18 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:google_inc.:gsutil:5.27:*:*:*:*:*:*:*
241
241
242
242
PackageName: argcomplete
243
243
SPDXID: SPDXRef-Package-16-argcomplete
244
- PackageVersion: 3.1.6
244
+ PackageVersion: 3.2.1
245
245
PrimaryPackagePurpose: LIBRARY
246
246
PackageSupplier: Person: Andrey Kislyuk (
[email protected] )
247
- PackageDownloadLocation: https://pypi.org/project/argcomplete/3.1.6
247
+ PackageDownloadLocation: https://pypi.org/project/argcomplete/3.2.1
248
248
FilesAnalyzed: false
249
249
PackageLicenseDeclared: NOASSERTION
250
250
PackageLicenseConcluded: Apache-2.0
251
251
PackageLicenseComments: <text>argcomplete declares Apache Software License which is not currently a valid SPDX License identifier or expression.</text>
252
252
PackageCopyrightText: NOASSERTION
253
253
PackageSummary: <text>Bash tab completion for argparse</text>
254
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/argcomplete@3.1.6
255
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:andrey_kislyuk:argcomplete:3.1.6 :*:*:*:*:*:*:*
254
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/argcomplete@3.2.1
255
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:andrey_kislyuk:argcomplete:3.2.1 :*:*:*:*:*:*:*
256
256
#####
257
257
258
258
PackageName: crcmod
@@ -551,18 +551,18 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:craig_citro:google-apitools:0.5.32:*:*
551
551
552
552
PackageName: google-auth
553
553
SPDXID: SPDXRef-Package-36-google-auth
554
- PackageVersion: 2.24.0
554
+ PackageVersion: 2.25.2
555
555
PrimaryPackagePurpose: LIBRARY
556
556
PackageSupplier: Organization: Google Cloud Platform (
[email protected] )
557
- PackageDownloadLocation: https://pypi.org/project/google-auth/2.24.0
557
+ PackageDownloadLocation: https://pypi.org/project/google-auth/2.25.2
558
558
FilesAnalyzed: false
559
559
PackageLicenseDeclared: NOASSERTION
560
560
PackageLicenseConcluded: Apache-2.0
561
561
PackageLicenseComments: <text>google-auth declares Apache 2.0 which is not currently a valid SPDX License identifier or expression.</text>
562
562
PackageCopyrightText: NOASSERTION
563
563
PackageSummary: <text>Google Authentication Library</text>
564
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/google-auth@2.24.0
565
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:google_cloud_platform:google-auth:2.24.0 :*:*:*:*:*:*:*
564
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/google-auth@2.25.2
565
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:google_cloud_platform:google-auth:2.25.2 :*:*:*:*:*:*:*
566
566
#####
567
567
568
568
PackageName: cachetools
@@ -702,17 +702,17 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:julian_berman:jsonschema-specification
702
702
703
703
PackageName: referencing
704
704
SPDXID: SPDXRef-Package-46-referencing
705
- PackageVersion: 0.31.1
705
+ PackageVersion: 0.32.0
706
706
PrimaryPackagePurpose: LIBRARY
707
707
PackageSupplier: Person: Julian Berman
708
- PackageDownloadLocation: https://pypi.org/project/referencing/0.31.1
708
+ PackageDownloadLocation: https://pypi.org/project/referencing/0.32.0
709
709
FilesAnalyzed: false
710
710
PackageLicenseDeclared: MIT
711
711
PackageLicenseConcluded: MIT
712
712
PackageCopyrightText: NOASSERTION
713
713
PackageSummary: <text>JSON Referencing + Python</text>
714
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/referencing@0.31.1
715
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:julian_berman:referencing:0.31.1 :*:*:*:*:*:*:*
714
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/referencing@0.32.0
715
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:julian_berman:referencing:0.32.0 :*:*:*:*:*:*:*
716
716
#####
717
717
718
718
PackageName: rpds-py
@@ -793,17 +793,17 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:raphael_barrois:semantic-version:2.10.
793
793
794
794
PackageName: packageurl-python
795
795
SPDXID: SPDXRef-Package-52-packageurl-python
796
- PackageVersion: 0.11.2
796
+ PackageVersion: 0.12.0
797
797
PrimaryPackagePurpose: LIBRARY
798
798
PackageSupplier: Person: the purl authors
799
- PackageDownloadLocation: https://pypi.org/project/packageurl-python/0.11.2
799
+ PackageDownloadLocation: https://pypi.org/project/packageurl-python/0.12.0
800
800
FilesAnalyzed: false
801
801
PackageLicenseDeclared: MIT
802
802
PackageLicenseConcluded: MIT
803
803
PackageCopyrightText: NOASSERTION
804
804
PackageSummary: <text>A purl aka. Package URL parser and builder</text>
805
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/packageurl-python@0.11.2
806
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:the_purl_authors:packageurl-python:0.11.2 :*:*:*:*:*:*:*
805
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/packageurl-python@0.12.0
806
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:the_purl_authors:packageurl-python:0.12.0 :*:*:*:*:*:*:*
807
807
#####
808
808
809
809
PackageName: packaging
@@ -991,17 +991,17 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:georg_brandl:pygments:2.17.2:*:*:*:*:*
991
991
992
992
PackageName: typing-extensions
993
993
SPDXID: SPDXRef-Package-65-typing-extensions
994
- PackageVersion: 4.8 .0
994
+ PackageVersion: 4.9 .0
995
995
PrimaryPackagePurpose: LIBRARY
996
996
PackageSupplier: Organization: Guido van Jukka ukasz Michael (
[email protected] )
997
- PackageDownloadLocation: https://pypi.org/project/typing_extensions/4.8 .0
997
+ PackageDownloadLocation: https://pypi.org/project/typing_extensions/4.9 .0
998
998
FilesAnalyzed: false
999
999
PackageLicenseDeclared: NOASSERTION
1000
1000
PackageLicenseConcluded: NOASSERTION
1001
1001
PackageCopyrightText: NOASSERTION
1002
1002
PackageSummary: <text>Backported and Experimental Type Hints for Python 3.8+</text>
1003
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/typing-extensions@4.8 .0
1004
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:guido_van_jukka_ukasz_michael:typing-extensions:4.8 .0:*:*:*:*:*:*:*
1003
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/typing-extensions@4.9 .0
1004
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:guido_van_jukka_ukasz_michael:typing-extensions:4.9 .0:*:*:*:*:*:*:*
1005
1005
#####
1006
1006
1007
1007
PackageName: rpmfile
0 commit comments