@@ -2,10 +2,10 @@ SPDXVersion: SPDX-2.3
22DataLicense: CC0-1.0
33SPDXID: SPDXRef-DOCUMENT
44DocumentName: Python-cve-bin-tool
5- DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-cd098b6e-d3fd-4cd2-bae8-9649c9842de8
5+ DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-1d0fa934-b15d-43f1-8b71-ecc92bca3f10
66LicenseListVersion: 3.22
7- Creator: Tool: sbom4python-0.11.2
8- Created: 2024-09-30T00:39:14Z
7+ Creator: Tool: sbom4python-0.11.3
8+ Created: 2024-10-07T00:38:36Z
99CreatorComment: <text>This document has been automatically generated.</text>
1010#####
1111
@@ -27,34 +27,34 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:terri_oda:cve-bin-tool:3.4:*:*:*:*:*:*
2727
2828PackageName: aiohttp
2929SPDXID: SPDXRef-2-aiohttp
30- PackageVersion: 3.10.8
30+ PackageVersion: 3.10.9
3131PrimaryPackagePurpose: LIBRARY
3232PackageSupplier: NOASSERTION
33- PackageDownloadLocation: https://pypi.org/project/aiohttp/3.10.8 /#files
33+ PackageDownloadLocation: https://pypi.org/project/aiohttp/3.10.9 /#files
3434FilesAnalyzed: false
3535PackageHomePage: https://github.com/aio-libs/aiohttp
3636PackageLicenseDeclared: NOASSERTION
3737PackageLicenseConcluded: Apache-2.0
3838PackageLicenseComments: <text>aiohttp declares Apache 2 which is not currently a valid SPDX License identifier or expression.</text>
3939PackageCopyrightText: NOASSERTION
4040PackageSummary: <text>Async http client/server framework (asyncio)</text>
41- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
8 41+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
9 4242#####
4343
4444PackageName: aiohappyeyeballs
4545SPDXID: SPDXRef-3-aiohappyeyeballs
46- PackageVersion: 2.4.2
46+ PackageVersion: 2.4.3
4747PrimaryPackagePurpose: LIBRARY
4848PackageSupplier: Organization: J. Nick Koston (
[email protected] )
49- PackageDownloadLocation: https://pypi.org/project/aiohappyeyeballs/2.4.2 /#files
49+ PackageDownloadLocation: https://pypi.org/project/aiohappyeyeballs/2.4.3 /#files
5050FilesAnalyzed: false
5151PackageHomePage: https://github.com/aio-libs/aiohappyeyeballs
52- PackageLicenseDeclared: Python -2.0.1
53- PackageLicenseConcluded: Python -2.0.1
52+ PackageLicenseDeclared: PSF -2.0
53+ PackageLicenseConcluded: PSF -2.0
5454PackageCopyrightText: NOASSERTION
5555PackageSummary: <text>Happy Eyeballs for asyncio</text>
56- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
2 57- ExternalRef: SECURITY cpe23Type cpe:2.3:a:j._nick_koston:aiohappyeyeballs:2.4.2 :*:*:*:*:*:*:*
56+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
3 57+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:j._nick_koston:aiohappyeyeballs:2.4.3 :*:*:*:*:*:*:*
5858#####
5959
6060PackageName: aiosignal
@@ -947,18 +947,18 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:the_purl_authors:packageurl-python:0.1
947947
948948PackageName: rich
949949SPDXID: SPDXRef-57-rich
950- PackageVersion: 13.8.1
950+ PackageVersion: 13.9.2
951951PrimaryPackagePurpose: LIBRARY
952952PackageSupplier: Person: Will McGugan (
[email protected] )
953- PackageDownloadLocation: https://pypi.org/project/rich/13.8.1 /#files
953+ PackageDownloadLocation: https://pypi.org/project/rich/13.9.2 /#files
954954FilesAnalyzed: false
955955PackageHomePage: https://github.com/Textualize/rich
956956PackageLicenseDeclared: MIT
957957PackageLicenseConcluded: MIT
958958PackageCopyrightText: NOASSERTION
959959PackageSummary: <text>Render rich text, tables, progress bars, syntax highlighting, markdown and more to the terminal</text>
960- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/rich@13.8.1
961- ExternalRef: SECURITY cpe23Type cpe:2.3:a:will_mcgugan:rich:13.8.1 :*:*:*:*:*:*:*
960+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/rich@13.9.2
961+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:will_mcgugan:rich:13.9.2 :*:*:*:*:*:*:*
962962#####
963963
964964PackageName: markdown-it-py
@@ -1343,6 +1343,7 @@ Relationship: SPDXRef-55-csaf-tool DEPENDS_ON SPDXRef-56-packageurl-python
13431343Relationship: SPDXRef-55-csaf-tool DEPENDS_ON SPDXRef-57-rich
13441344Relationship: SPDXRef-57-rich DEPENDS_ON SPDXRef-58-markdown-it-py
13451345Relationship: SPDXRef-57-rich DEPENDS_ON SPDXRef-60-pygments
1346+ Relationship: SPDXRef-57-rich DEPENDS_ON SPDXRef-9-typing-extensions
13461347Relationship: SPDXRef-58-markdown-it-py DEPENDS_ON SPDXRef-59-mdurl
13471348Relationship: SPDXRef-62-plotly DEPENDS_ON SPDXRef-61-packaging
13481349Relationship: SPDXRef-62-plotly DEPENDS_ON SPDXRef-63-tenacity
0 commit comments