|
2 | 2 | "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
|
3 | 3 | "bomFormat": "CycloneDX",
|
4 | 4 | "specVersion": "1.6",
|
5 |
| - "serialNumber": "urn:uuid:eceb771e-1645-4a2c-adc6-a53bd131f608", |
| 5 | + "serialNumber": "urn:uuid:e590664e-704c-4ef2-83fb-1bb29edfc0f7", |
6 | 6 | "version": 1,
|
7 | 7 | "metadata": {
|
8 |
| - "timestamp": "2024-08-12T00:35:48Z", |
| 8 | + "timestamp": "2024-08-19T00:36:28Z", |
9 | 9 | "lifecycles": [
|
10 | 10 | {
|
11 | 11 | "phase": "build"
|
|
74 | 74 | "type": "library",
|
75 | 75 | "bom-ref": "2-aiohttp",
|
76 | 76 | "name": "aiohttp",
|
77 |
| - "version": "3.10.3", |
| 77 | + "version": "3.10.4", |
78 | 78 | "description": "Async http client/server framework (asyncio)",
|
79 | 79 | "licenses": [
|
80 | 80 | {
|
|
87 | 87 | ],
|
88 | 88 | "externalReferences": [
|
89 | 89 | {
|
90 |
| - "url": "https://pypi.org/project/aiohttp/3.10.3", |
| 90 | + "url": "https://pypi.org/project/aiohttp/3.10.4", |
91 | 91 | "type": "distribution",
|
92 | 92 | "comment": "Download location for component"
|
93 | 93 | }
|
94 | 94 | ],
|
95 |
| - "purl": "pkg:pypi/[email protected].3", |
| 95 | + "purl": "pkg:pypi/[email protected].4", |
96 | 96 | "properties": [
|
97 | 97 | {
|
98 | 98 | "name": "language",
|
|
108 | 108 | "type": "library",
|
109 | 109 | "bom-ref": "3-aiohappyeyeballs",
|
110 | 110 | "name": "aiohappyeyeballs",
|
111 |
| - "version": "2.3.5", |
| 111 | + "version": "2.3.7", |
112 | 112 | "supplier": {
|
113 | 113 | "name": "J. Nick Koston",
|
114 | 114 | "contact": [
|
|
117 | 117 | }
|
118 | 118 | ]
|
119 | 119 | },
|
120 |
| - "cpe": "cpe:2.3:a:j._nick_koston:aiohappyeyeballs:2.3.5:*:*:*:*:*:*:*", |
| 120 | + "cpe": "cpe:2.3:a:j._nick_koston:aiohappyeyeballs:2.3.7:*:*:*:*:*:*:*", |
121 | 121 | "description": "Happy Eyeballs for asyncio",
|
122 |
| - "hashes": [ |
123 |
| - { |
124 |
| - "alg": "SHA-1", |
125 |
| - "content": "01595bbda3380154cc4e72702a1f82502a15940a" |
126 |
| - } |
127 |
| - ], |
128 | 122 | "licenses": [
|
129 | 123 | {
|
130 | 124 | "license": {
|
131 |
| - "id": "Python-2.0", |
132 |
| - "url": "https://opensource.org/licenses/Python-2.0", |
| 125 | + "id": "Python-2.0.1", |
| 126 | + "url": "https://www.python.org/download/releases/2.0.1/license/", |
133 | 127 | "acknowledgement": "concluded"
|
134 | 128 | }
|
135 | 129 | }
|
136 | 130 | ],
|
137 | 131 | "externalReferences": [
|
138 | 132 | {
|
139 |
| - "url": "https://pypi.org/project/aiohappyeyeballs/2.3.5", |
| 133 | + "url": "https://pypi.org/project/aiohappyeyeballs/2.3.7", |
140 | 134 | "type": "distribution",
|
141 | 135 | "comment": "Download location for component"
|
142 | 136 | }
|
143 | 137 | ],
|
144 |
| - "purl": "pkg:pypi/[email protected].5", |
| 138 | + "purl": "pkg:pypi/[email protected].7", |
145 | 139 | "properties": [
|
146 | 140 | {
|
147 | 141 | "name": "language",
|
|
494 | 488 | "type": "library",
|
495 | 489 | "bom-ref": "12-soupsieve",
|
496 | 490 | "name": "soupsieve",
|
497 |
| - "version": "2.5", |
| 491 | + "version": "2.6", |
498 | 492 | "supplier": {
|
499 | 493 | "name": "Isaac Muse",
|
500 | 494 | "contact": [
|
|
503 | 497 | }
|
504 | 498 | ]
|
505 | 499 | },
|
506 |
| - "cpe": "cpe:2.3:a:isaac_muse:soupsieve:2.5:*:*:*:*:*:*:*", |
| 500 | + "cpe": "cpe:2.3:a:isaac_muse:soupsieve:2.6:*:*:*:*:*:*:*", |
507 | 501 | "description": "A modern CSS selector implementation for Beautiful Soup.",
|
508 |
| - "hashes": [ |
509 |
| - { |
510 |
| - "alg": "SHA-1", |
511 |
| - "content": "51ec317ada7e34f70fad6bfddaef8a2cfac1aebd" |
512 |
| - } |
513 |
| - ], |
514 | 502 | "externalReferences": [
|
515 | 503 | {
|
516 |
| - "url": "https://pypi.org/project/soupsieve/2.5", |
| 504 | + "url": "https://pypi.org/project/soupsieve/2.6", |
517 | 505 | "type": "distribution",
|
518 | 506 | "comment": "Download location for component"
|
519 | 507 | }
|
520 | 508 | ],
|
521 |
| - "purl": "pkg:pypi/soupsieve@2.5", |
| 509 | + "purl": "pkg:pypi/soupsieve@2.6", |
522 | 510 | "properties": [
|
523 | 511 | {
|
524 | 512 | "name": "language",
|
|
1038 | 1026 | "type": "library",
|
1039 | 1027 | "bom-ref": "24-cachetools",
|
1040 | 1028 | "name": "cachetools",
|
1041 |
| - "version": "5.4.0", |
| 1029 | + "version": "5.5.0", |
1042 | 1030 | "supplier": {
|
1043 | 1031 | "name": "Thomas Kemmer",
|
1044 | 1032 | "contact": [
|
|
1047 | 1035 | }
|
1048 | 1036 | ]
|
1049 | 1037 | },
|
1050 |
| - "cpe": "cpe:2.3:a:thomas_kemmer:cachetools:5.4.0:*:*:*:*:*:*:*", |
| 1038 | + "cpe": "cpe:2.3:a:thomas_kemmer:cachetools:5.5.0:*:*:*:*:*:*:*", |
1051 | 1039 | "description": "Extensible memoizing collections and decorators",
|
1052 | 1040 | "licenses": [
|
1053 | 1041 | {
|
|
1060 | 1048 | ],
|
1061 | 1049 | "externalReferences": [
|
1062 | 1050 | {
|
1063 |
| - "url": "https://pypi.org/project/cachetools/5.4.0", |
| 1051 | + "url": "https://pypi.org/project/cachetools/5.5.0", |
1064 | 1052 | "type": "distribution",
|
1065 | 1053 | "comment": "Download location for component"
|
1066 | 1054 | }
|
1067 | 1055 | ],
|
1068 |
| - "purl": "pkg:pypi/cachetools@5.4.0", |
| 1056 | + "purl": "pkg:pypi/cachetools@5.5.0", |
1069 | 1057 | "properties": [
|
1070 | 1058 | {
|
1071 | 1059 | "name": "language",
|
|
1938 | 1926 | "type": "library",
|
1939 | 1927 | "bom-ref": "44-importlib-resources",
|
1940 | 1928 | "name": "importlib-resources",
|
1941 |
| - "version": "6.4.0", |
| 1929 | + "version": "6.4.3", |
1942 | 1930 | "supplier": {
|
1943 | 1931 | "name": "Barry Warsaw",
|
1944 | 1932 | "contact": [
|
|
1947 | 1935 | }
|
1948 | 1936 | ]
|
1949 | 1937 | },
|
1950 |
| - "cpe": "cpe:2.3:a:barry_warsaw:importlib-resources:6.4.0:*:*:*:*:*:*:*", |
| 1938 | + "cpe": "cpe:2.3:a:barry_warsaw:importlib-resources:6.4.3:*:*:*:*:*:*:*", |
1951 | 1939 | "description": "Read resources from Python packages",
|
1952 |
| - "hashes": [ |
1953 |
| - { |
1954 |
| - "alg": "SHA-1", |
1955 |
| - "content": "1f4d3f10a3ed5d65b3092a39369c08e71e30a97c" |
1956 |
| - } |
1957 |
| - ], |
1958 | 1940 | "externalReferences": [
|
1959 | 1941 | {
|
1960 |
| - "url": "https://pypi.org/project/importlib-resources/6.4.0", |
| 1942 | + "url": "https://pypi.org/project/importlib-resources/6.4.3", |
1961 | 1943 | "type": "distribution",
|
1962 | 1944 | "comment": "Download location for component"
|
1963 | 1945 | }
|
1964 | 1946 | ],
|
1965 |
| - "purl": "pkg:pypi/[email protected].0", |
| 1947 | + "purl": "pkg:pypi/[email protected].3", |
1966 | 1948 | "properties": [
|
1967 | 1949 | {
|
1968 | 1950 | "name": "language",
|
|
2226 | 2208 | "type": "library",
|
2227 | 2209 | "bom-ref": "52-lib4sbom",
|
2228 | 2210 | "name": "lib4sbom",
|
2229 |
| - "version": "0.7.2", |
| 2211 | + "version": "0.7.3", |
2230 | 2212 | "supplier": {
|
2231 | 2213 | "name": "Anthony Harrison",
|
2232 | 2214 | "contact": [
|
|
2235 | 2217 | }
|
2236 | 2218 | ]
|
2237 | 2219 | },
|
2238 |
| - "cpe": "cpe:2.3:a:anthony_harrison:lib4sbom:0.7.2:*:*:*:*:*:*:*", |
| 2220 | + "cpe": "cpe:2.3:a:anthony_harrison:lib4sbom:0.7.3:*:*:*:*:*:*:*", |
2239 | 2221 | "description": "Software Bill of Material (SBOM) generator and consumer library",
|
2240 | 2222 | "licenses": [
|
2241 | 2223 | {
|
|
2248 | 2230 | ],
|
2249 | 2231 | "externalReferences": [
|
2250 | 2232 | {
|
2251 |
| - "url": "https://pypi.org/project/lib4sbom/0.7.2", |
| 2233 | + "url": "https://pypi.org/project/lib4sbom/0.7.3", |
2252 | 2234 | "type": "distribution",
|
2253 | 2235 | "comment": "Download location for component"
|
2254 | 2236 | }
|
2255 | 2237 | ],
|
2256 |
| - "purl": "pkg:pypi/[email protected].2", |
| 2238 | + "purl": "pkg:pypi/[email protected].3", |
2257 | 2239 | "properties": [
|
2258 | 2240 | {
|
2259 | 2241 | "name": "language",
|
|
2465 | 2447 | },
|
2466 | 2448 | "cpe": "cpe:2.3:a:the_purl_authors:packageurl-python:0.15.6:*:*:*:*:*:*:*",
|
2467 | 2449 | "description": "A purl aka. Package URL parser and builder",
|
| 2450 | + "hashes": [ |
| 2451 | + { |
| 2452 | + "alg": "SHA-1", |
| 2453 | + "content": "14a11b50ab723796888133d3722b5b3e2845b084" |
| 2454 | + } |
| 2455 | + ], |
2468 | 2456 | "licenses": [
|
2469 | 2457 | {
|
2470 | 2458 | "license": {
|
|
3096 | 3084 | "type": "library",
|
3097 | 3085 | "bom-ref": "72-setuptools",
|
3098 | 3086 | "name": "setuptools",
|
3099 |
| - "version": "72.1.0", |
| 3087 | + "version": "72.2.0", |
3100 | 3088 | "supplier": {
|
3101 | 3089 | "name": "Python Packaging Authority",
|
3102 | 3090 | "contact": [
|
|
3105 | 3093 | }
|
3106 | 3094 | ]
|
3107 | 3095 | },
|
3108 |
| - "cpe": "cpe:2.3:a:python_packaging_authority:setuptools:72.1.0:*:*:*:*:*:*:*", |
| 3096 | + "cpe": "cpe:2.3:a:python_packaging_authority:setuptools:72.2.0:*:*:*:*:*:*:*", |
3109 | 3097 | "description": "Easily download, build, install, upgrade, and uninstall Python packages",
|
3110 | 3098 | "externalReferences": [
|
3111 | 3099 | {
|
3112 |
| - "url": "https://pypi.org/project/setuptools/72.1.0", |
| 3100 | + "url": "https://pypi.org/project/setuptools/72.2.0", |
3113 | 3101 | "type": "distribution",
|
3114 | 3102 | "comment": "Download location for component"
|
3115 | 3103 | }
|
3116 | 3104 | ],
|
3117 |
| - "purl": "pkg:pypi/setuptools@72.1.0", |
| 3105 | + "purl": "pkg:pypi/setuptools@72.2.0", |
3118 | 3106 | "properties": [
|
3119 | 3107 | {
|
3120 | 3108 | "name": "language",
|
|
0 commit comments