diff --git a/sbom/cve-bin-tool-py3.10.json b/sbom/cve-bin-tool-py3.10.json index 9a7a6c81e9..9ffa050535 100644 --- a/sbom/cve-bin-tool-py3.10.json +++ b/sbom/cve-bin-tool-py3.10.json @@ -2,10 +2,10 @@ "$schema": "http://cyclonedx.org/schema/bom-1.5.schema.json", "bomFormat": "CycloneDX", "specVersion": "1.5", - "serialNumber": "urn:uuid:6f40516e-8cc0-4e34-bf8d-348ae81ded16", + "serialNumber": "urn:uuid:40d6248a-216c-4ad9-b692-0ba5b38f177f", "version": 1, "metadata": { - "timestamp": "2023-08-14T00:45:41Z", + "timestamp": "2023-08-21T00:24:46Z", "tools": { "components": [ { @@ -1527,7 +1527,7 @@ "type": "library", "bom-ref": "47-lib4sbom", "name": "lib4sbom", - "version": "0.4.2", + "version": "0.4.3", "supplier": { "name": "Anthony Harrison", "contact": [ @@ -1536,7 +1536,7 @@ } ] }, - "cpe": "cpe:2.3:a:anthony_harrison:lib4sbom:0.4.2:*:*:*:*:*:*:*", + "cpe": "cpe:2.3:a:anthony_harrison:lib4sbom:0.4.3:*:*:*:*:*:*:*", "description": "Software Bill of Material (SBOM) generator and consumer library", "licenses": [ { @@ -1548,12 +1548,12 @@ ], "externalReferences": [ { - "url": "https://pypi.org/project/lib4sbom/0.4.2", + "url": "https://pypi.org/project/lib4sbom/0.4.3", "type": "distribution", "comment": "Download location for component" } ], - "purl": "pkg:pypi/lib4sbom@0.4.2" + "purl": "pkg:pypi/lib4sbom@0.4.3" }, { "type": "library", @@ -1666,7 +1666,7 @@ "type": "library", "bom-ref": "51-plotly", "name": "plotly", - "version": "5.16.0", + "version": "5.16.1", "supplier": { "name": "Chris P", "contact": [ @@ -1675,7 +1675,7 @@ } ] }, - "cpe": "cpe:2.3:a:chris_p:plotly:5.16.0:*:*:*:*:*:*:*", + "cpe": "cpe:2.3:a:chris_p:plotly:5.16.1:*:*:*:*:*:*:*", "description": "An open-source, interactive data visualization library for Python", "licenses": [ { @@ -1687,18 +1687,18 @@ ], "externalReferences": [ { - "url": "https://pypi.org/project/plotly/5.16.0", + "url": "https://pypi.org/project/plotly/5.16.1", "type": "distribution", "comment": "Download location for component" } ], - "purl": "pkg:pypi/plotly@5.16.0" + "purl": "pkg:pypi/plotly@5.16.1" }, { "type": "library", "bom-ref": "52-tenacity", "name": "tenacity", - "version": "8.2.2", + "version": "8.2.3", "supplier": { "name": "Julien Danjou", "contact": [ @@ -1707,7 +1707,7 @@ } ] }, - "cpe": "cpe:2.3:a:julien_danjou:tenacity:8.2.2:*:*:*:*:*:*:*", + "cpe": "cpe:2.3:a:julien_danjou:tenacity:8.2.3:*:*:*:*:*:*:*", "description": "Retry code until it succeeds", "licenses": [ { @@ -1719,12 +1719,12 @@ ], "externalReferences": [ { - "url": "https://pypi.org/project/tenacity/8.2.2", + "url": "https://pypi.org/project/tenacity/8.2.3", "type": "distribution", "comment": "Download location for component" } ], - "purl": "pkg:pypi/tenacity@8.2.2", + "purl": "pkg:pypi/tenacity@8.2.3", "properties": [ { "name": "License Comments", diff --git a/sbom/cve-bin-tool-py3.10.spdx b/sbom/cve-bin-tool-py3.10.spdx index be2f39f19d..dd1c5fdfd5 100644 --- a/sbom/cve-bin-tool-py3.10.spdx +++ b/sbom/cve-bin-tool-py3.10.spdx @@ -2,10 +2,10 @@ SPDXVersion: SPDX-2.3 DataLicense: CC0-1.0 SPDXID: SPDXRef-DOCUMENT DocumentName: Python-cve-bin-tool -DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-7c81cabe-6439-445a-a042-d629b416431f +DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-f3c8b150-3c4b-4802-8882-7b512c33d04c LicenseListVersion: 3.21 Creator: Tool: sbom4python-0.10.0 -Created: 2023-08-14T00:44:13Z +Created: 2023-08-21T00:23:15Z CreatorComment: This document has been automatically generated. ##### @@ -718,17 +718,17 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:julian_berman:rpds-py:0.9.2:*:*:*:*:*: PackageName: lib4sbom SPDXID: SPDXRef-Package-47-lib4sbom -PackageVersion: 0.4.2 +PackageVersion: 0.4.3 PrimaryPackagePurpose: LIBRARY PackageSupplier: Person: Anthony Harrison (anthony.p.harrison@gmail.com) -PackageDownloadLocation: https://pypi.org/project/lib4sbom/0.4.2 +PackageDownloadLocation: https://pypi.org/project/lib4sbom/0.4.3 FilesAnalyzed: false PackageLicenseDeclared: Apache-2.0 PackageLicenseConcluded: Apache-2.0 PackageCopyrightText: NOASSERTION PackageSummary: Software Bill of Material (SBOM) generator and consumer library -ExternalRef: PACKAGE-MANAGER purl pkg:pypi/lib4sbom@0.4.2 -ExternalRef: SECURITY cpe23Type cpe:2.3:a:anthony_harrison:lib4sbom:0.4.2:*:*:*:*:*:*:* +ExternalRef: PACKAGE-MANAGER purl pkg:pypi/lib4sbom@0.4.3 +ExternalRef: SECURITY cpe23Type cpe:2.3:a:anthony_harrison:lib4sbom:0.4.3:*:*:*:*:*:*:* ##### PackageName: pyyaml @@ -780,33 +780,33 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:donald_stufft_and_individual_contribut PackageName: plotly SPDXID: SPDXRef-Package-51-plotly -PackageVersion: 5.16.0 +PackageVersion: 5.16.1 PrimaryPackagePurpose: LIBRARY PackageSupplier: Person: Chris P (chris@plot.ly) -PackageDownloadLocation: https://pypi.org/project/plotly/5.16.0 +PackageDownloadLocation: https://pypi.org/project/plotly/5.16.1 FilesAnalyzed: false PackageLicenseDeclared: MIT PackageLicenseConcluded: MIT PackageCopyrightText: NOASSERTION PackageSummary: An open-source, interactive data visualization library for Python -ExternalRef: PACKAGE-MANAGER purl pkg:pypi/plotly@5.16.0 -ExternalRef: SECURITY cpe23Type cpe:2.3:a:chris_p:plotly:5.16.0:*:*:*:*:*:*:* +ExternalRef: PACKAGE-MANAGER purl pkg:pypi/plotly@5.16.1 +ExternalRef: SECURITY cpe23Type cpe:2.3:a:chris_p:plotly:5.16.1:*:*:*:*:*:*:* ##### PackageName: tenacity SPDXID: SPDXRef-Package-52-tenacity -PackageVersion: 8.2.2 +PackageVersion: 8.2.3 PrimaryPackagePurpose: LIBRARY PackageSupplier: Person: Julien Danjou (julien@danjou.info) -PackageDownloadLocation: https://pypi.org/project/tenacity/8.2.2 +PackageDownloadLocation: https://pypi.org/project/tenacity/8.2.3 FilesAnalyzed: false PackageLicenseDeclared: NOASSERTION PackageLicenseConcluded: Apache-2.0 PackageLicenseComments: tenacity declares Apache 2.0 which is not currently a valid SPDX License identifier or expression. PackageCopyrightText: NOASSERTION PackageSummary: Retry code until it succeeds -ExternalRef: PACKAGE-MANAGER purl pkg:pypi/tenacity@8.2.2 -ExternalRef: SECURITY cpe23Type cpe:2.3:a:julien_danjou:tenacity:8.2.2:*:*:*:*:*:*:* +ExternalRef: PACKAGE-MANAGER purl pkg:pypi/tenacity@8.2.3 +ExternalRef: SECURITY cpe23Type cpe:2.3:a:julien_danjou:tenacity:8.2.3:*:*:*:*:*:*:* ##### PackageName: python-gnupg