@@ -2,10 +2,10 @@ SPDXVersion: SPDX-2.3
2
2
DataLicense: CC0-1.0
3
3
SPDXID: SPDXRef-DOCUMENT
4
4
DocumentName: Python-cve-bin-tool
5
- DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-44fef178-29ca-49aa-a90e-4e9fa1d6ed6d
5
+ DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-156d1333-107b-45f2-9bab-245ab3e876cb
6
6
LicenseListVersion: 3.21
7
7
Creator: Tool: sbom4python-0.10.0
8
- Created: 2023-10-23T00:25:18Z
8
+ Created: 2023-10-30T00:24:47Z
9
9
CreatorComment: <text>This document has been automatically generated.</text>
10
10
#####
11
11
@@ -240,18 +240,18 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:nir_cohen:distro:1.8.0:*:*:*:*:*:*:*
240
240
241
241
PackageName: gsutil
242
242
SPDXID: SPDXRef-Package-16-gsutil
243
- PackageVersion: 5.26
243
+ PackageVersion: 5.27
244
244
PrimaryPackagePurpose: LIBRARY
245
245
PackageSupplier: Person: Google Inc. (
[email protected] )
246
- PackageDownloadLocation: https://pypi.org/project/gsutil/5.26
246
+ PackageDownloadLocation: https://pypi.org/project/gsutil/5.27
247
247
FilesAnalyzed: false
248
248
PackageLicenseDeclared: NOASSERTION
249
249
PackageLicenseConcluded: Apache-2.0
250
250
PackageLicenseComments: <text>gsutil declares Apache 2.0 which is not currently a valid SPDX License identifier or expression.</text>
251
251
PackageCopyrightText: NOASSERTION
252
252
PackageSummary: <text>A command line tool for interacting with cloud storage services.</text>
253
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/gsutil@5.26
254
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:google_inc.:gsutil:5.26 :*:*:*:*:*:*:*
253
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/gsutil@5.27
254
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:google_inc.:gsutil:5.27 :*:*:*:*:*:*:*
255
255
#####
256
256
257
257
PackageName: argcomplete
@@ -473,33 +473,33 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:sybren_a._stuvel:rsa:4.7.2:*:*:*:*:*:*
473
473
474
474
PackageName: pyopenssl
475
475
SPDXID: SPDXRef-Package-31-pyopenssl
476
- PackageVersion: 23.2 .0
476
+ PackageVersion: 23.3 .0
477
477
PrimaryPackagePurpose: LIBRARY
478
478
PackageSupplier: Organization: The pyOpenSSL developers (
[email protected] )
479
- PackageDownloadLocation: https://pypi.org/project/pyOpenSSL/23.2 .0
479
+ PackageDownloadLocation: https://pypi.org/project/pyOpenSSL/23.3 .0
480
480
FilesAnalyzed: false
481
481
PackageLicenseDeclared: NOASSERTION
482
482
PackageLicenseConcluded: Apache-2.0
483
483
PackageLicenseComments: <text>pyOpenSSL declares Apache License, Version 2.0 which is not currently a valid SPDX License identifier or expression.</text>
484
484
PackageCopyrightText: NOASSERTION
485
485
PackageSummary: <text>Python wrapper module around the OpenSSL library</text>
486
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/pyopenssl@23.2 .0
487
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:the_pyopenssl_developers:pyopenssl:23.2 .0:*:*:*:*:*:*:*
486
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/pyopenssl@23.3 .0
487
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:the_pyopenssl_developers:pyopenssl:23.3 .0:*:*:*:*:*:*:*
488
488
#####
489
489
490
490
PackageName: cryptography
491
491
SPDXID: SPDXRef-Package-32-cryptography
492
- PackageVersion: 41.0.4
492
+ PackageVersion: 41.0.5
493
493
PrimaryPackagePurpose: LIBRARY
494
494
PackageSupplier: Organization: The Python Cryptographic Authority and individual contributors (
[email protected] )
495
- PackageDownloadLocation: https://pypi.org/project/cryptography/41.0.4
495
+ PackageDownloadLocation: https://pypi.org/project/cryptography/41.0.5
496
496
FilesAnalyzed: false
497
497
PackageLicenseDeclared: Apache-2.0 OR BSD-3-Clause
498
498
PackageLicenseConcluded: Apache-2.0 OR BSD-3-Clause
499
499
PackageCopyrightText: NOASSERTION
500
500
PackageSummary: <text>cryptography is a package which provides cryptographic recipes and primitives to Python developers.</text>
501
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] .
4
502
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:the_python_cryptographic_authority_and_individual_contributors:cryptography:41.0.4 :*:*:*:*:*:*:*
501
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] .
5
502
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:the_python_cryptographic_authority_and_individual_contributors:cryptography:41.0.5 :*:*:*:*:*:*:*
503
503
#####
504
504
505
505
PackageName: cffi
@@ -582,17 +582,17 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:google_cloud_platform:google-auth:2.23
582
582
583
583
PackageName: cachetools
584
584
SPDXID: SPDXRef-Package-38-cachetools
585
- PackageVersion: 5.3.1
585
+ PackageVersion: 5.3.2
586
586
PrimaryPackagePurpose: LIBRARY
587
587
PackageSupplier: Person: Thomas Kemmer (
[email protected] )
588
- PackageDownloadLocation: https://pypi.org/project/cachetools/5.3.1
588
+ PackageDownloadLocation: https://pypi.org/project/cachetools/5.3.2
589
589
FilesAnalyzed: false
590
590
PackageLicenseDeclared: MIT
591
591
PackageLicenseConcluded: MIT
592
592
PackageCopyrightText: NOASSERTION
593
593
PackageSummary: <text>Extensible memoizing collections and decorators</text>
594
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] .
1
595
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:thomas_kemmer:cachetools:5.3.1 :*:*:*:*:*:*:*
594
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] .
2
595
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:thomas_kemmer:cachetools:5.3.2 :*:*:*:*:*:*:*
596
596
#####
597
597
598
598
PackageName: monotonic
@@ -809,17 +809,17 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:donald_stufft_and_individual_contribut
809
809
810
810
PackageName: plotly
811
811
SPDXID: SPDXRef-Package-53-plotly
812
- PackageVersion: 5.17 .0
812
+ PackageVersion: 5.18 .0
813
813
PrimaryPackagePurpose: LIBRARY
814
814
PackageSupplier: Person: Chris P (
[email protected] )
815
- PackageDownloadLocation: https://pypi.org/project/plotly/5.17 .0
815
+ PackageDownloadLocation: https://pypi.org/project/plotly/5.18 .0
816
816
FilesAnalyzed: false
817
817
PackageLicenseDeclared: MIT
818
818
PackageLicenseConcluded: MIT
819
819
PackageCopyrightText: NOASSERTION
820
820
PackageSummary: <text>An open-source, interactive data visualization library for Python</text>
821
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/plotly@5.17 .0
822
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:chris_p:plotly:5.17 .0:*:*:*:*:*:*:*
821
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/plotly@5.18 .0
822
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:chris_p:plotly:5.18 .0:*:*:*:*:*:*:*
823
823
#####
824
824
825
825
PackageName: tenacity
0 commit comments