@@ -2,10 +2,10 @@ SPDXVersion: SPDX-2.3
22DataLicense: CC0-1.0
33SPDXID: SPDXRef-DOCUMENT
44DocumentName: Python-cve-bin-tool
5- DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-83273c1a-c2a7-4932-bcfd-c8afe2b06d17
5+ DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-a9a33c0b-ebd3-45ac-a9ec-32d3d43f6e62
66LicenseListVersion: 3.22
77Creator: Tool: sbom4python-0.11.3
8- Created: 2024-10-14T00:36:22Z
8+ Created: 2024-10-21T00:37:27Z
99CreatorComment: <text>This document has been automatically generated.</text>
1010#####
1111
@@ -124,18 +124,18 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:andrew_svetlov:multidict:6.1.0:*:*:*:*
124124
125125PackageName: yarl
126126SPDXID: SPDXRef-8-yarl
127- PackageVersion: 1.15.2
127+ PackageVersion: 1.15.5
128128PrimaryPackagePurpose: LIBRARY
129129PackageSupplier: Person: Andrew Svetlov (
[email protected] )
130- PackageDownloadLocation: https://pypi.org/project/yarl/1.15.2 /#files
130+ PackageDownloadLocation: https://pypi.org/project/yarl/1.15.5 /#files
131131FilesAnalyzed: false
132132PackageHomePage: https://github.com/aio-libs/yarl
133133PackageLicenseDeclared: Apache-2.0
134134PackageLicenseConcluded: Apache-2.0
135135PackageCopyrightText: NOASSERTION
136136PackageSummary: <text>Yet another URL library</text>
137- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
2 138- ExternalRef: SECURITY cpe23Type cpe:2.3:a:andrew_svetlov:yarl:1.15.2 :*:*:*:*:*:*:*
137+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
5 138+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:andrew_svetlov:yarl:1.15.5 :*:*:*:*:*:*:*
139139#####
140140
141141PackageName: idna
@@ -599,18 +599,18 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:the_pyopenssl_developers:pyopenssl:24.
599599
600600PackageName: cryptography
601601SPDXID: SPDXRef-36-cryptography
602- PackageVersion: 43.0.1
602+ PackageVersion: 43.0.3
603603PrimaryPackagePurpose: LIBRARY
604604PackageSupplier: Organization: The cryptography developers The Python Cryptographic Authority and individual contributors (
[email protected] )
605- PackageDownloadLocation: https://pypi.org/project/cryptography/43.0.1 /#files
605+ PackageDownloadLocation: https://pypi.org/project/cryptography/43.0.3 /#files
606606FilesAnalyzed: false
607607PackageHomePage: https://github.com/pyca/cryptography
608608PackageLicenseDeclared: Apache-2.0 OR BSD-3-Clause
609609PackageLicenseConcluded: Apache-2.0 OR BSD-3-Clause
610610PackageCopyrightText: NOASSERTION
611611PackageSummary: <text>cryptography is a package which provides cryptographic recipes and primitives to Python developers.</text>
612- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
1 613- ExternalRef: SECURITY cpe23Type cpe:2.3:a:the_cryptography_developers_the_python_cryptographic_authority_and_individual_contributors:cryptography:43.0.1 :*:*:*:*:*:*:*
612+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
3 613+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:the_cryptography_developers_the_python_cryptographic_authority_and_individual_contributors:cryptography:43.0.3 :*:*:*:*:*:*:*
614614#####
615615
616616PackageName: cffi
716716
717717PackageName: markupsafe
718718SPDXID: SPDXRef-43-markupsafe
719- PackageVersion: 3.0.1
719+ PackageVersion: 3.0.2
720720PrimaryPackagePurpose: LIBRARY
721721PackageSupplier: NOASSERTION
722- PackageDownloadLocation: https://pypi.org/project/markupsafe/3.0.1 /#files
722+ PackageDownloadLocation: https://pypi.org/project/markupsafe/3.0.2 /#files
723723FilesAnalyzed: false
724724PackageLicenseDeclared: NOASSERTION
725725PackageLicenseConcluded: NOASSERTION
726726PackageLicenseComments: <text>markupsafe declares Copyright 2010 Pallets which is not currently a valid SPDX License identifier or expression.</text>
727727PackageCopyrightText: NOASSERTION
728728PackageSummary: <text>Safely add untrusted strings to HTML/XML markup.</text>
729- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
1 729+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
2 730730#####
731731
732732PackageName: jsonschema
@@ -1113,17 +1113,17 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:sean_ross:rpmfile:2.1.0:*:*:*:*:*:*:*
11131113
11141114PackageName: setuptools
11151115SPDXID: SPDXRef-67-setuptools
1116- PackageVersion: 75.1 .0
1116+ PackageVersion: 75.2 .0
11171117PrimaryPackagePurpose: LIBRARY
11181118PackageSupplier: Organization: Python Packaging Authority (
[email protected] )
1119- PackageDownloadLocation: https://pypi.org/project/setuptools/75.1 .0/#files
1119+ PackageDownloadLocation: https://pypi.org/project/setuptools/75.2 .0/#files
11201120FilesAnalyzed: false
11211121PackageLicenseDeclared: NOASSERTION
11221122PackageLicenseConcluded: NOASSERTION
11231123PackageCopyrightText: NOASSERTION
11241124PackageSummary: <text>Easily download, build, install, upgrade, and uninstall Python packages</text>
1125- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/setuptools@75.1 .0
1126- ExternalRef: SECURITY cpe23Type cpe:2.3:a:python_packaging_authority:setuptools:75.1 .0:*:*:*:*:*:*:*
1125+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/setuptools@75.2 .0
1126+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:python_packaging_authority:setuptools:75.2 .0:*:*:*:*:*:*:*
11271127#####
11281128
11291129PackageName: xmlschema
0 commit comments