diff --git a/sbom/cve-bin-tool-py3.9.json b/sbom/cve-bin-tool-py3.9.json index 750a00929f..d1697aec4d 100644 --- a/sbom/cve-bin-tool-py3.9.json +++ b/sbom/cve-bin-tool-py3.9.json @@ -2,10 +2,10 @@ "$schema": "http://cyclonedx.org/schema/bom-1.5.schema.json", "bomFormat": "CycloneDX", "specVersion": "1.5", - "serialNumber": "urn:uuid:e21e9286-328d-4cc3-9fc2-6cd992a3e22a", + "serialNumber": "urn:uuid:6cffe2e5-f097-426f-93e1-c6436c2f0c75", "version": 1, "metadata": { - "timestamp": "2024-02-26T00:27:46Z", + "timestamp": "2024-03-04T00:27:21Z", "tools": { "components": [ { @@ -1554,7 +1554,7 @@ "type": "library", "bom-ref": "37-cachetools", "name": "cachetools", - "version": "5.3.2", + "version": "5.3.3", "supplier": { "name": "Thomas Kemmer", "contact": [ @@ -1563,7 +1563,7 @@ } ] }, - "cpe": "cpe:2.3:a:thomas_kemmer:cachetools:5.3.2:*:*:*:*:*:*:*", + "cpe": "cpe:2.3:a:thomas_kemmer:cachetools:5.3.3:*:*:*:*:*:*:*", "description": "Extensible memoizing collections and decorators", "licenses": [ { @@ -1575,12 +1575,12 @@ ], "externalReferences": [ { - "url": "https://pypi.org/project/cachetools/5.3.2", + "url": "https://pypi.org/project/cachetools/5.3.3", "type": "distribution", "comment": "Download location for component" } ], - "purl": "pkg:pypi/cachetools@5.3.2", + "purl": "pkg:pypi/cachetools@5.3.3", "properties": [ { "name": "language", @@ -2054,11 +2054,11 @@ "type": "library", "bom-ref": "50-packageurl-python", "name": "packageurl-python", - "version": "0.13.4", + "version": "0.14.0", "supplier": { "name": "the purl authors" }, - "cpe": "cpe:2.3:a:the_purl_authors:packageurl-python:0.13.4:*:*:*:*:*:*:*", + "cpe": "cpe:2.3:a:the_purl_authors:packageurl-python:0.14.0:*:*:*:*:*:*:*", "description": "A purl aka. Package URL parser and builder", "licenses": [ { @@ -2070,12 +2070,12 @@ ], "externalReferences": [ { - "url": "https://pypi.org/project/packageurl-python/0.13.4", + "url": "https://pypi.org/project/packageurl-python/0.14.0", "type": "distribution", "comment": "Download location for component" } ], - "purl": "pkg:pypi/packageurl-python@0.13.4", + "purl": "pkg:pypi/packageurl-python@0.14.0", "properties": [ { "name": "language", @@ -2423,7 +2423,7 @@ "type": "library", "bom-ref": "59-rich", "name": "rich", - "version": "13.7.0", + "version": "13.7.1", "supplier": { "name": "Will McGugan", "contact": [ @@ -2432,7 +2432,7 @@ } ] }, - "cpe": "cpe:2.3:a:will_mcgugan:rich:13.7.0:*:*:*:*:*:*:*", + "cpe": "cpe:2.3:a:will_mcgugan:rich:13.7.1:*:*:*:*:*:*:*", "description": "Render rich text, tables, progress bars, syntax highlighting, markdown and more to the terminal", "licenses": [ { @@ -2444,12 +2444,12 @@ ], "externalReferences": [ { - "url": "https://pypi.org/project/rich/13.7.0", + "url": "https://pypi.org/project/rich/13.7.1", "type": "distribution", "comment": "Download location for component" } ], - "purl": "pkg:pypi/rich@13.7.0", + "purl": "pkg:pypi/rich@13.7.1", "properties": [ { "name": "language", diff --git a/sbom/cve-bin-tool-py3.9.spdx b/sbom/cve-bin-tool-py3.9.spdx index 358631ef8c..433431ec56 100644 --- a/sbom/cve-bin-tool-py3.9.spdx +++ b/sbom/cve-bin-tool-py3.9.spdx @@ -2,10 +2,10 @@ SPDXVersion: SPDX-2.3 DataLicense: CC0-1.0 SPDXID: SPDXRef-DOCUMENT DocumentName: Python-cve-bin-tool -DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-c1984b20-59ff-41c0-8f2e-fd0c3f25483a +DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-c9bf0ce8-a725-41cf-a9fc-94bd05a25de3 LicenseListVersion: 3.22 Creator: Tool: sbom4python-0.10.3 -Created: 2024-02-26T00:26:08Z +Created: 2024-03-04T00:25:42Z CreatorComment: This document has been automatically generated. ##### @@ -568,17 +568,17 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:google_cloud_platform:google-auth:2.28 PackageName: cachetools SPDXID: SPDXRef-Package-37-cachetools -PackageVersion: 5.3.2 +PackageVersion: 5.3.3 PrimaryPackagePurpose: LIBRARY PackageSupplier: Person: Thomas Kemmer (tkemmer@computer.org) -PackageDownloadLocation: https://pypi.org/project/cachetools/5.3.2 +PackageDownloadLocation: https://pypi.org/project/cachetools/5.3.3 FilesAnalyzed: false PackageLicenseDeclared: MIT PackageLicenseConcluded: MIT PackageCopyrightText: NOASSERTION PackageSummary: Extensible memoizing collections and decorators -ExternalRef: PACKAGE-MANAGER purl pkg:pypi/cachetools@5.3.2 -ExternalRef: SECURITY cpe23Type cpe:2.3:a:thomas_kemmer:cachetools:5.3.2:*:*:*:*:*:*:* +ExternalRef: PACKAGE-MANAGER purl pkg:pypi/cachetools@5.3.3 +ExternalRef: SECURITY cpe23Type cpe:2.3:a:thomas_kemmer:cachetools:5.3.3:*:*:*:*:*:*:* ##### PackageName: monotonic @@ -763,17 +763,17 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:raphael_barrois:semantic-version:2.10. PackageName: packageurl-python SPDXID: SPDXRef-Package-50-packageurl-python -PackageVersion: 0.13.4 +PackageVersion: 0.14.0 PrimaryPackagePurpose: LIBRARY PackageSupplier: Person: the purl authors -PackageDownloadLocation: https://pypi.org/project/packageurl-python/0.13.4 +PackageDownloadLocation: https://pypi.org/project/packageurl-python/0.14.0 FilesAnalyzed: false PackageLicenseDeclared: MIT PackageLicenseConcluded: MIT PackageCopyrightText: NOASSERTION PackageSummary: A purl aka. Package URL parser and builder -ExternalRef: PACKAGE-MANAGER purl pkg:pypi/packageurl-python@0.13.4 -ExternalRef: SECURITY cpe23Type cpe:2.3:a:the_purl_authors:packageurl-python:0.13.4:*:*:*:*:*:*:* +ExternalRef: PACKAGE-MANAGER purl pkg:pypi/packageurl-python@0.14.0 +ExternalRef: SECURITY cpe23Type cpe:2.3:a:the_purl_authors:packageurl-python:0.14.0:*:*:*:*:*:*:* ##### PackageName: packaging @@ -901,17 +901,17 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:andrey_petrov:urllib3:2.2.1:*:*:*:*:*: PackageName: rich SPDXID: SPDXRef-Package-59-rich -PackageVersion: 13.7.0 +PackageVersion: 13.7.1 PrimaryPackagePurpose: LIBRARY PackageSupplier: Person: Will McGugan (willmcgugan@gmail.com) -PackageDownloadLocation: https://pypi.org/project/rich/13.7.0 +PackageDownloadLocation: https://pypi.org/project/rich/13.7.1 FilesAnalyzed: false PackageLicenseDeclared: MIT PackageLicenseConcluded: MIT PackageCopyrightText: NOASSERTION PackageSummary: Render rich text, tables, progress bars, syntax highlighting, markdown and more to the terminal -ExternalRef: PACKAGE-MANAGER purl pkg:pypi/rich@13.7.0 -ExternalRef: SECURITY cpe23Type cpe:2.3:a:will_mcgugan:rich:13.7.0:*:*:*:*:*:*:* +ExternalRef: PACKAGE-MANAGER purl pkg:pypi/rich@13.7.1 +ExternalRef: SECURITY cpe23Type cpe:2.3:a:will_mcgugan:rich:13.7.1:*:*:*:*:*:*:* ##### PackageName: markdown-it-py