|
2 | 2 | "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
|
3 | 3 | "bomFormat": "CycloneDX",
|
4 | 4 | "specVersion": "1.6",
|
5 |
| - "serialNumber": "urn:uuid:485924ac-6344-4b78-b66d-e84d13270170", |
| 5 | + "serialNumber": "urn:uuid:87b9b11e-38e1-4e9a-8f7a-3548bf602f43", |
6 | 6 | "version": 1,
|
7 | 7 | "metadata": {
|
8 |
| - "timestamp": "2024-08-05T00:37:48Z", |
| 8 | + "timestamp": "2024-08-12T00:35:43Z", |
9 | 9 | "lifecycles": [
|
10 | 10 | {
|
11 | 11 | "phase": "build"
|
|
15 | 15 | "components": [
|
16 | 16 | {
|
17 | 17 | "name": "sbom4python",
|
18 |
| - "version": "0.11.0", |
| 18 | + "version": "0.11.1", |
19 | 19 | "type": "application"
|
20 | 20 | }
|
21 | 21 | ]
|
|
74 | 74 | "type": "library",
|
75 | 75 | "bom-ref": "2-aiohttp",
|
76 | 76 | "name": "aiohttp",
|
77 |
| - "version": "3.10.1", |
| 77 | + "version": "3.10.3", |
78 | 78 | "description": "Async http client/server framework (asyncio)",
|
79 | 79 | "licenses": [
|
80 | 80 | {
|
|
87 | 87 | ],
|
88 | 88 | "externalReferences": [
|
89 | 89 | {
|
90 |
| - "url": "https://pypi.org/project/aiohttp/3.10.1", |
| 90 | + "url": "https://pypi.org/project/aiohttp/3.10.3", |
91 | 91 | "type": "distribution",
|
92 | 92 | "comment": "Download location for component"
|
93 | 93 | }
|
94 | 94 | ],
|
95 |
| - "purl": "pkg:pypi/[email protected].1", |
| 95 | + "purl": "pkg:pypi/[email protected].3", |
96 | 96 | "properties": [
|
97 | 97 | {
|
98 | 98 | "name": "language",
|
|
108 | 108 | "type": "library",
|
109 | 109 | "bom-ref": "3-aiohappyeyeballs",
|
110 | 110 | "name": "aiohappyeyeballs",
|
111 |
| - "version": "2.3.4", |
| 111 | + "version": "2.3.5", |
112 | 112 | "supplier": {
|
113 | 113 | "name": "J. Nick Koston",
|
114 | 114 | "contact": [
|
|
117 | 117 | }
|
118 | 118 | ]
|
119 | 119 | },
|
120 |
| - "cpe": "cpe:2.3:a:j._nick_koston:aiohappyeyeballs:2.3.4:*:*:*:*:*:*:*", |
| 120 | + "cpe": "cpe:2.3:a:j._nick_koston:aiohappyeyeballs:2.3.5:*:*:*:*:*:*:*", |
121 | 121 | "description": "Happy Eyeballs for asyncio",
|
| 122 | + "hashes": [ |
| 123 | + { |
| 124 | + "alg": "SHA-1", |
| 125 | + "content": "01595bbda3380154cc4e72702a1f82502a15940a" |
| 126 | + } |
| 127 | + ], |
122 | 128 | "licenses": [
|
123 | 129 | {
|
124 | 130 | "license": {
|
125 |
| - "id": "PSF-2.0", |
| 131 | + "id": "Python-2.0", |
126 | 132 | "url": "https://opensource.org/licenses/Python-2.0",
|
127 | 133 | "acknowledgement": "concluded"
|
128 | 134 | }
|
129 | 135 | }
|
130 | 136 | ],
|
131 | 137 | "externalReferences": [
|
132 | 138 | {
|
133 |
| - "url": "https://pypi.org/project/aiohappyeyeballs/2.3.4", |
| 139 | + "url": "https://pypi.org/project/aiohappyeyeballs/2.3.5", |
134 | 140 | "type": "distribution",
|
135 | 141 | "comment": "Download location for component"
|
136 | 142 | }
|
137 | 143 | ],
|
138 |
| - "purl": "pkg:pypi/[email protected].4", |
| 144 | + "purl": "pkg:pypi/[email protected].5", |
139 | 145 | "properties": [
|
140 | 146 | {
|
141 | 147 | "name": "language",
|
|
273 | 279 | "type": "library",
|
274 | 280 | "bom-ref": "7-attrs",
|
275 | 281 | "name": "attrs",
|
276 |
| - "version": "24.1.0", |
| 282 | + "version": "24.2.0", |
277 | 283 | "supplier": {
|
278 | 284 | "name": "Hynek Schlawack",
|
279 | 285 | "contact": [
|
|
282 | 288 | }
|
283 | 289 | ]
|
284 | 290 | },
|
285 |
| - "cpe": "cpe:2.3:a:hynek_schlawack:attrs:24.1.0:*:*:*:*:*:*:*", |
| 291 | + "cpe": "cpe:2.3:a:hynek_schlawack:attrs:24.2.0:*:*:*:*:*:*:*", |
286 | 292 | "description": "Classes Without Boilerplate",
|
287 | 293 | "externalReferences": [
|
288 | 294 | {
|
289 |
| - "url": "https://pypi.org/project/attrs/24.1.0", |
| 295 | + "url": "https://pypi.org/project/attrs/24.2.0", |
290 | 296 | "type": "distribution",
|
291 | 297 | "comment": "Download location for component"
|
292 | 298 | }
|
293 | 299 | ],
|
294 |
| - "purl": "pkg:pypi/attrs@24.1.0", |
| 300 | + "purl": "pkg:pypi/attrs@24.2.0", |
295 | 301 | "properties": [
|
296 | 302 | {
|
297 | 303 | "name": "language",
|
|
761 | 767 | "type": "library",
|
762 | 768 | "bom-ref": "18-argcomplete",
|
763 | 769 | "name": "argcomplete",
|
764 |
| - "version": "3.4.0", |
| 770 | + "version": "3.5.0", |
765 | 771 | "supplier": {
|
766 | 772 | "name": "Andrey Kislyuk",
|
767 | 773 | "contact": [
|
|
770 | 776 | }
|
771 | 777 | ]
|
772 | 778 | },
|
773 |
| - "cpe": "cpe:2.3:a:andrey_kislyuk:argcomplete:3.4.0:*:*:*:*:*:*:*", |
| 779 | + "cpe": "cpe:2.3:a:andrey_kislyuk:argcomplete:3.5.0:*:*:*:*:*:*:*", |
774 | 780 | "description": "Bash tab completion for argparse",
|
775 | 781 | "licenses": [
|
776 | 782 | {
|
|
783 | 789 | ],
|
784 | 790 | "externalReferences": [
|
785 | 791 | {
|
786 |
| - "url": "https://pypi.org/project/argcomplete/3.4.0", |
| 792 | + "url": "https://pypi.org/project/argcomplete/3.5.0", |
787 | 793 | "type": "distribution",
|
788 | 794 | "comment": "Download location for component"
|
789 | 795 | }
|
790 | 796 | ],
|
791 |
| - "purl": "pkg:pypi/argcomplete@3.4.0", |
| 797 | + "purl": "pkg:pypi/argcomplete@3.5.0", |
792 | 798 | "properties": [
|
793 | 799 | {
|
794 | 800 | "name": "language",
|
|
1625 | 1631 | "type": "library",
|
1626 | 1632 | "bom-ref": "37-cffi",
|
1627 | 1633 | "name": "cffi",
|
1628 |
| - "version": "1.16.0", |
| 1634 | + "version": "1.17.0", |
1629 | 1635 | "supplier": {
|
1630 | 1636 | "name": "Armin Maciej Fijalkowski",
|
1631 | 1637 | "contact": [
|
|
1634 | 1640 | }
|
1635 | 1641 | ]
|
1636 | 1642 | },
|
1637 |
| - "cpe": "cpe:2.3:a:armin_maciej_fijalkowski:cffi:1.16.0:*:*:*:*:*:*:*", |
| 1643 | + "cpe": "cpe:2.3:a:armin_maciej_fijalkowski:cffi:1.17.0:*:*:*:*:*:*:*", |
1638 | 1644 | "description": "Foreign Function Interface for Python calling C code.",
|
1639 |
| - "hashes": [ |
1640 |
| - { |
1641 |
| - "alg": "SHA-1", |
1642 |
| - "content": "ba44abd69cf6f0f1cc90db34cd067275dc10fc71" |
1643 |
| - } |
1644 |
| - ], |
1645 | 1645 | "licenses": [
|
1646 | 1646 | {
|
1647 | 1647 | "license": {
|
|
1653 | 1653 | ],
|
1654 | 1654 | "externalReferences": [
|
1655 | 1655 | {
|
1656 |
| - "url": "https://pypi.org/project/cffi/1.16.0", |
| 1656 | + "url": "https://pypi.org/project/cffi/1.17.0", |
1657 | 1657 | "type": "distribution",
|
1658 | 1658 | "comment": "Download location for component"
|
1659 | 1659 | }
|
1660 | 1660 | ],
|
1661 |
| - "purl": "pkg:pypi/cffi@1.16.0", |
| 1661 | + "purl": "pkg:pypi/cffi@1.17.0", |
1662 | 1662 | "properties": [
|
1663 | 1663 | {
|
1664 | 1664 | "name": "language",
|
|
1904 | 1904 | "type": "library",
|
1905 | 1905 | "bom-ref": "43-zipp",
|
1906 | 1906 | "name": "zipp",
|
1907 |
| - "version": "3.19.2", |
| 1907 | + "version": "3.20.0", |
1908 | 1908 | "supplier": {
|
1909 | 1909 | "name": "Jason R .",
|
1910 | 1910 | "contact": [
|
|
1913 | 1913 | }
|
1914 | 1914 | ]
|
1915 | 1915 | },
|
1916 |
| - "cpe": "cpe:2.3:a:jason_r.:zipp:3.19.2:*:*:*:*:*:*:*", |
| 1916 | + "cpe": "cpe:2.3:a:jason_r.:zipp:3.20.0:*:*:*:*:*:*:*", |
1917 | 1917 | "description": "Backport of pathlib-compatible object wrapper for zip files",
|
1918 | 1918 | "externalReferences": [
|
1919 | 1919 | {
|
1920 |
| - "url": "https://pypi.org/project/zipp/3.19.2", |
| 1920 | + "url": "https://pypi.org/project/zipp/3.20.0", |
1921 | 1921 | "type": "distribution",
|
1922 | 1922 | "comment": "Download location for component"
|
1923 | 1923 | }
|
1924 | 1924 | ],
|
1925 |
| - "purl": "pkg:pypi/zipp@3.19.2", |
| 1925 | + "purl": "pkg:pypi/zipp@3.20.0", |
1926 | 1926 | "properties": [
|
1927 | 1927 | {
|
1928 | 1928 | "name": "language",
|
|
2114 | 2114 | "type": "library",
|
2115 | 2115 | "bom-ref": "49-rpds-py",
|
2116 | 2116 | "name": "rpds-py",
|
2117 |
| - "version": "0.19.1", |
| 2117 | + "version": "0.20.0", |
2118 | 2118 | "supplier": {
|
2119 | 2119 | "name": "Julian Berman"
|
2120 | 2120 | },
|
2121 |
| - "cpe": "cpe:2.3:a:julian_berman:rpds-py:0.19.1:*:*:*:*:*:*:*", |
| 2121 | + "cpe": "cpe:2.3:a:julian_berman:rpds-py:0.20.0:*:*:*:*:*:*:*", |
2122 | 2122 | "description": "Python bindings to Rust's persistent data structures (rpds)",
|
2123 | 2123 | "licenses": [
|
2124 | 2124 | {
|
|
2131 | 2131 | ],
|
2132 | 2132 | "externalReferences": [
|
2133 | 2133 | {
|
2134 |
| - "url": "https://pypi.org/project/rpds-py/0.19.1", |
| 2134 | + "url": "https://pypi.org/project/rpds-py/0.20.0", |
2135 | 2135 | "type": "distribution",
|
2136 | 2136 | "comment": "Download location for component"
|
2137 | 2137 | }
|
2138 | 2138 | ],
|
2139 |
| - "purl": "pkg:pypi/rpds-py@0.19.1", |
| 2139 | + "purl": "pkg:pypi/rpds-py@0.20.0", |
2140 | 2140 | "properties": [
|
2141 | 2141 | {
|
2142 | 2142 | "name": "language",
|
|
2195 | 2195 | "type": "library",
|
2196 | 2196 | "bom-ref": "51-pyyaml",
|
2197 | 2197 | "name": "pyyaml",
|
2198 |
| - "version": "6.0.1", |
| 2198 | + "version": "6.0.2", |
2199 | 2199 | "supplier": {
|
2200 | 2200 | "name": "Kirill Simonov",
|
2201 | 2201 | "contact": [
|
|
2204 | 2204 | }
|
2205 | 2205 | ]
|
2206 | 2206 | },
|
2207 |
| - "cpe": "cpe:2.3:a:kirill_simonov:pyyaml:6.0.1:*:*:*:*:*:*:*", |
| 2207 | + "cpe": "cpe:2.3:a:kirill_simonov:pyyaml:6.0.2:*:*:*:*:*:*:*", |
2208 | 2208 | "description": "YAML parser and emitter for Python",
|
2209 |
| - "hashes": [ |
2210 |
| - { |
2211 |
| - "alg": "SHA-1", |
2212 |
| - "content": "c42fa3bff1eabdb64763bb1526d9ea1ccb708479" |
2213 |
| - } |
2214 |
| - ], |
2215 | 2209 | "licenses": [
|
2216 | 2210 | {
|
2217 | 2211 | "license": {
|
|
2223 | 2217 | ],
|
2224 | 2218 | "externalReferences": [
|
2225 | 2219 | {
|
2226 |
| - "url": "https://pypi.org/project/pyyaml/6.0.1", |
| 2220 | + "url": "https://pypi.org/project/pyyaml/6.0.2", |
2227 | 2221 | "type": "distribution",
|
2228 | 2222 | "comment": "Download location for component"
|
2229 | 2223 | }
|
2230 | 2224 | ],
|
2231 |
| - "purl": "pkg:pypi/[email protected].1", |
| 2225 | + "purl": "pkg:pypi/[email protected].2", |
2232 | 2226 | "properties": [
|
2233 | 2227 | {
|
2234 | 2228 | "name": "language",
|
|
3243 | 3237 | "70-toml",
|
3244 | 3238 | "67-urllib3",
|
3245 | 3239 | "71-xmlschema",
|
| 3240 | + "43-zipp", |
3246 | 3241 | "73-zstandard"
|
3247 | 3242 | ]
|
3248 | 3243 | },
|
|
0 commit comments