@@ -2,10 +2,10 @@ SPDXVersion: SPDX-2.3
22DataLicense: CC0-1.0
33SPDXID: SPDXRef-DOCUMENT
44DocumentName: Python-cve-bin-tool
5- DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-4705584a-ef66-4c66-b17b-3a81ce10e8e5
5+ DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-f342fd75-77a2-483b-8170-2340b13d2867
66LicenseListVersion: 3.22
7- Creator: Tool: sbom4python-0.11.2
8- Created: 2024-09-30T00:38:38Z
7+ Creator: Tool: sbom4python-0.11.3
8+ Created: 2024-10-07T00:37:22Z
99CreatorComment: <text>This document has been automatically generated.</text>
1010#####
1111
@@ -27,34 +27,34 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:terri_oda:cve-bin-tool:3.4:*:*:*:*:*:*
2727
2828PackageName: aiohttp
2929SPDXID: SPDXRef-2-aiohttp
30- PackageVersion: 3.10.8
30+ PackageVersion: 3.10.9
3131PrimaryPackagePurpose: LIBRARY
3232PackageSupplier: NOASSERTION
33- PackageDownloadLocation: https://pypi.org/project/aiohttp/3.10.8 /#files
33+ PackageDownloadLocation: https://pypi.org/project/aiohttp/3.10.9 /#files
3434FilesAnalyzed: false
3535PackageHomePage: https://github.com/aio-libs/aiohttp
3636PackageLicenseDeclared: NOASSERTION
3737PackageLicenseConcluded: Apache-2.0
3838PackageLicenseComments: <text>aiohttp declares Apache 2 which is not currently a valid SPDX License identifier or expression.</text>
3939PackageCopyrightText: NOASSERTION
4040PackageSummary: <text>Async http client/server framework (asyncio)</text>
41- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
8 41+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
9 4242#####
4343
4444PackageName: aiohappyeyeballs
4545SPDXID: SPDXRef-3-aiohappyeyeballs
46- PackageVersion: 2.4.2
46+ PackageVersion: 2.4.3
4747PrimaryPackagePurpose: LIBRARY
4848PackageSupplier: Organization: J. Nick Koston (
[email protected] )
49- PackageDownloadLocation: https://pypi.org/project/aiohappyeyeballs/2.4.2 /#files
49+ PackageDownloadLocation: https://pypi.org/project/aiohappyeyeballs/2.4.3 /#files
5050FilesAnalyzed: false
5151PackageHomePage: https://github.com/aio-libs/aiohappyeyeballs
52- PackageLicenseDeclared: Python -2.0.1
53- PackageLicenseConcluded: Python -2.0.1
52+ PackageLicenseDeclared: PSF -2.0
53+ PackageLicenseConcluded: PSF -2.0
5454PackageCopyrightText: NOASSERTION
5555PackageSummary: <text>Happy Eyeballs for asyncio</text>
56- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
2 57- ExternalRef: SECURITY cpe23Type cpe:2.3:a:j._nick_koston:aiohappyeyeballs:2.4.2 :*:*:*:*:*:*:*
56+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/
[email protected] .
3 57+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:j._nick_koston:aiohappyeyeballs:2.4.3 :*:*:*:*:*:*:*
5858#####
5959
6060PackageName: aiosignal
@@ -917,18 +917,18 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:the_purl_authors:packageurl-python:0.1
917917
918918PackageName: rich
919919SPDXID: SPDXRef-55-rich
920- PackageVersion: 13.8.1
920+ PackageVersion: 13.9.2
921921PrimaryPackagePurpose: LIBRARY
922922PackageSupplier: Person: Will McGugan (
[email protected] )
923- PackageDownloadLocation: https://pypi.org/project/rich/13.8.1 /#files
923+ PackageDownloadLocation: https://pypi.org/project/rich/13.9.2 /#files
924924FilesAnalyzed: false
925925PackageHomePage: https://github.com/Textualize/rich
926926PackageLicenseDeclared: MIT
927927PackageLicenseConcluded: MIT
928928PackageCopyrightText: NOASSERTION
929929PackageSummary: <text>Render rich text, tables, progress bars, syntax highlighting, markdown and more to the terminal</text>
930- ExternalRef: PACKAGE_MANAGER purl pkg:pypi/rich@13.8.1
931- ExternalRef: SECURITY cpe23Type cpe:2.3:a:will_mcgugan:rich:13.8.1 :*:*:*:*:*:*:*
930+ ExternalRef: PACKAGE_MANAGER purl pkg:pypi/rich@13.9.2
931+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:will_mcgugan:rich:13.9.2 :*:*:*:*:*:*:*
932932#####
933933
934934PackageName: markdown-it-py
@@ -1326,6 +1326,7 @@ Relationship: SPDXRef-53-csaf-tool DEPENDS_ON SPDXRef-54-packageurl-python
13261326Relationship: SPDXRef-53-csaf-tool DEPENDS_ON SPDXRef-55-rich
13271327Relationship: SPDXRef-55-rich DEPENDS_ON SPDXRef-56-markdown-it-py
13281328Relationship: SPDXRef-55-rich DEPENDS_ON SPDXRef-58-pygments
1329+ Relationship: SPDXRef-55-rich DEPENDS_ON SPDXRef-9-typing-extensions
13291330Relationship: SPDXRef-56-markdown-it-py DEPENDS_ON SPDXRef-57-mdurl
13301331Relationship: SPDXRef-60-plotly DEPENDS_ON SPDXRef-59-packaging
13311332Relationship: SPDXRef-60-plotly DEPENDS_ON SPDXRef-61-tenacity
0 commit comments