|
2 | 2 | "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
|
3 | 3 | "bomFormat": "CycloneDX",
|
4 | 4 | "specVersion": "1.6",
|
5 |
| - "serialNumber": "urn:uuid:265c3965-1ebd-48a3-aa33-dbd9c129df65", |
| 5 | + "serialNumber": "urn:uuid:4f14492e-e8e7-4d53-bdf3-83433fde8690", |
6 | 6 | "version": 1,
|
7 | 7 | "metadata": {
|
8 |
| - "timestamp": "2025-06-09T00:44:40Z", |
| 8 | + "timestamp": "2025-06-16T00:45:59Z", |
9 | 9 | "lifecycles": [
|
10 | 10 | {
|
11 | 11 | "phase": "build"
|
|
31 | 31 | "type": "application",
|
32 | 32 | "bom-ref": "1-cve-bin-tool",
|
33 | 33 | "name": "cve-bin-tool",
|
34 |
| - "version": "3.4", |
| 34 | + "version": "3.4.1rc0", |
35 | 35 | "supplier": {
|
36 | 36 | "name": "Terri Oda",
|
37 | 37 | "contact": [
|
|
40 | 40 | }
|
41 | 41 | ]
|
42 | 42 | },
|
43 |
| - "cpe": "cpe:2.3:a:terri_oda:cve-bin-tool:3.4:*:*:*:*:*:*:*", |
| 43 | + "cpe": "cpe:2.3:a:terri_oda:cve-bin-tool:3.4.1rc0:*:*:*:*:*:*:*", |
44 | 44 | "description": "CVE Binary Checker Tool",
|
45 | 45 | "hashes": [
|
46 | 46 | {
|
47 | 47 | "alg": "SHA-256",
|
48 |
| - "content": "48c897ea59b84ee3142b3353f0bc5689232a5f464e4106ac9b7f1e5f691f888d" |
| 48 | + "content": "93d666f2742df44dc5ca76e61b72884cb1f95378cc253d505b18b1f0a13a501b" |
49 | 49 | }
|
50 | 50 | ],
|
51 | 51 | "licenses": [
|
|
64 | 64 | "comment": "Home page for project"
|
65 | 65 | },
|
66 | 66 | {
|
67 |
| - "url": "https://pypi.org/project/cve-bin-tool/3.4/#files", |
| 67 | + "url": "https://pypi.org/project/cve-bin-tool/3.4.1rc0/#files", |
68 | 68 | "type": "distribution",
|
69 | 69 | "comment": "Download location for component"
|
70 | 70 | }
|
71 | 71 | ],
|
72 |
| - "purl": "pkg:pypi/cve-bin-tool@3.4", |
| 72 | + "purl": "pkg:pypi/cve-bin-tool@3.4.1rc0", |
73 | 73 | "properties": [
|
74 | 74 | {
|
75 | 75 | "name": "release_date",
|
76 |
| - "value": "2024-09-17T18:57:44Z" |
| 76 | + "value": "2025-06-13T18:33:45Z" |
77 | 77 | },
|
78 | 78 | {
|
79 | 79 | "name": "language",
|
|
89 | 89 | "type": "library",
|
90 | 90 | "bom-ref": "2-aiohttp",
|
91 | 91 | "name": "aiohttp",
|
92 |
| - "version": "3.12.11", |
| 92 | + "version": "3.12.13", |
93 | 93 | "description": "Async http client/server framework (asyncio)",
|
94 | 94 | "hashes": [
|
95 | 95 | {
|
96 | 96 | "alg": "SHA-256",
|
97 |
| - "content": "ff576cb82b995ff213e58255bc776a06ebd5ebb94a587aab2fb5df8ee4e3f967" |
| 97 | + "content": "5421af8f22a98f640261ee48aae3a37f0c41371e99412d55eaf2f8a46d5dad29" |
98 | 98 | }
|
99 | 99 | ],
|
100 | 100 | "licenses": [
|
|
113 | 113 | "comment": "Home page for project"
|
114 | 114 | },
|
115 | 115 | {
|
116 |
| - "url": "https://pypi.org/project/aiohttp/3.12.11/#files", |
| 116 | + "url": "https://pypi.org/project/aiohttp/3.12.13/#files", |
117 | 117 | "type": "distribution",
|
118 | 118 | "comment": "Download location for component"
|
119 | 119 | },
|
|
150 | 150 | "type": "vcs"
|
151 | 151 | }
|
152 | 152 | ],
|
153 |
| - "purl": "pkg:pypi/aiohttp@3.12.11", |
| 153 | + "purl": "pkg:pypi/aiohttp@3.12.13", |
154 | 154 | "properties": [
|
155 | 155 | {
|
156 | 156 | "name": "release_date",
|
157 |
| - "value": "2025-06-07T15:50:24Z" |
| 157 | + "value": "2025-06-14T15:12:58Z" |
158 | 158 | },
|
159 | 159 | {
|
160 | 160 | "name": "language",
|
|
316 | 316 | "type": "library",
|
317 | 317 | "bom-ref": "5-frozenlist",
|
318 | 318 | "name": "frozenlist",
|
319 |
| - "version": "1.6.2", |
| 319 | + "version": "1.7.0", |
320 | 320 | "description": "A list-like structure which implements collections.abc.MutableSequence",
|
321 | 321 | "hashes": [
|
322 | 322 | {
|
323 | 323 | "alg": "SHA-256",
|
324 |
| - "content": "92836b9903e52f787f4f4bfc6cf3b03cf19de4cbc09f5969e58806f876d8647f" |
| 324 | + "content": "cc4df77d638aa2ed703b878dd093725b72a824c3c546c076e8fdf276f78ee84a" |
325 | 325 | }
|
326 | 326 | ],
|
327 | 327 | "licenses": [
|
|
340 | 340 | "comment": "Home page for project"
|
341 | 341 | },
|
342 | 342 | {
|
343 |
| - "url": "https://pypi.org/project/frozenlist/1.6.2/#files", |
| 343 | + "url": "https://pypi.org/project/frozenlist/1.7.0/#files", |
344 | 344 | "type": "distribution",
|
345 | 345 | "comment": "Download location for component"
|
346 | 346 | },
|
|
381 | 381 | "type": "vcs"
|
382 | 382 | }
|
383 | 383 | ],
|
384 |
| - "purl": "pkg:pypi/frozenlist@1.6.2", |
| 384 | + "purl": "pkg:pypi/frozenlist@1.7.0", |
385 | 385 | "properties": [
|
386 | 386 | {
|
387 | 387 | "name": "release_date",
|
388 |
| - "value": "2025-06-03T21:45:13Z" |
| 388 | + "value": "2025-06-09T22:59:46Z" |
389 | 389 | },
|
390 | 390 | {
|
391 | 391 | "name": "language",
|
|
632 | 632 | "type": "library",
|
633 | 633 | "bom-ref": "9-propcache",
|
634 | 634 | "name": "propcache",
|
635 |
| - "version": "0.3.1", |
| 635 | + "version": "0.3.2", |
636 | 636 | "supplier": {
|
637 | 637 | "name": "Andrew Svetlov",
|
638 | 638 | "contact": [
|
|
641 | 641 | }
|
642 | 642 | ]
|
643 | 643 | },
|
644 |
| - "cpe": "cpe:2.3:a:andrew_svetlov:propcache:0.3.1:*:*:*:*:*:*:*", |
| 644 | + "cpe": "cpe:2.3:a:andrew_svetlov:propcache:0.3.2:*:*:*:*:*:*:*", |
645 | 645 | "description": "Accelerated property cache",
|
646 | 646 | "hashes": [
|
647 | 647 | {
|
648 | 648 | "alg": "SHA-256",
|
649 |
| - "content": "f27785888d2fdd918bc36de8b8739f2d6c791399552333721b58193f68ea3e98" |
| 649 | + "content": "22d9962a358aedbb7a2e36187ff273adeaab9743373a272976d2e348d08c7770" |
650 | 650 | }
|
651 | 651 | ],
|
652 | 652 | "licenses": [
|
|
665 | 665 | "comment": "Home page for project"
|
666 | 666 | },
|
667 | 667 | {
|
668 |
| - "url": "https://pypi.org/project/propcache/0.3.1/#files", |
| 668 | + "url": "https://pypi.org/project/propcache/0.3.2/#files", |
669 | 669 | "type": "distribution",
|
670 | 670 | "comment": "Download location for component"
|
671 | 671 | },
|
|
706 | 706 | "type": "vcs"
|
707 | 707 | }
|
708 | 708 | ],
|
709 |
| - "purl": "pkg:pypi/propcache@0.3.1", |
| 709 | + "purl": "pkg:pypi/propcache@0.3.2", |
710 | 710 | "properties": [
|
711 | 711 | {
|
712 | 712 | "name": "release_date",
|
713 |
| - "value": "2025-03-26T03:03:35Z" |
| 713 | + "value": "2025-06-09T22:53:40Z" |
714 | 714 | },
|
715 | 715 | {
|
716 | 716 | "name": "language",
|
|
726 | 726 | "type": "library",
|
727 | 727 | "bom-ref": "10-yarl",
|
728 | 728 | "name": "yarl",
|
729 |
| - "version": "1.20.0", |
| 729 | + "version": "1.20.1", |
730 | 730 | "supplier": {
|
731 | 731 | "name": "Andrew Svetlov",
|
732 | 732 | "contact": [
|
|
735 | 735 | }
|
736 | 736 | ]
|
737 | 737 | },
|
738 |
| - "cpe": "cpe:2.3:a:andrew_svetlov:yarl:1.20.0:*:*:*:*:*:*:*", |
| 738 | + "cpe": "cpe:2.3:a:andrew_svetlov:yarl:1.20.1:*:*:*:*:*:*:*", |
739 | 739 | "description": "Yet another URL library",
|
740 | 740 | "hashes": [
|
741 | 741 | {
|
742 | 742 | "alg": "SHA-256",
|
743 |
| - "content": "f1f6670b9ae3daedb325fa55fbe31c22c8228f6e0b513772c2e1c623caa6ab22" |
| 743 | + "content": "6032e6da6abd41e4acda34d75a816012717000fa6839f37124a47fcefc49bec4" |
744 | 744 | }
|
745 | 745 | ],
|
746 | 746 | "licenses": [
|
|
759 | 759 | "comment": "Home page for project"
|
760 | 760 | },
|
761 | 761 | {
|
762 |
| - "url": "https://pypi.org/project/yarl/1.20.0/#files", |
| 762 | + "url": "https://pypi.org/project/yarl/1.20.1/#files", |
763 | 763 | "type": "distribution",
|
764 | 764 | "comment": "Download location for component"
|
765 | 765 | },
|
|
800 | 800 | "type": "vcs"
|
801 | 801 | }
|
802 | 802 | ],
|
803 |
| - "purl": "pkg:pypi/yarl@1.20.0", |
| 803 | + "purl": "pkg:pypi/yarl@1.20.1", |
804 | 804 | "properties": [
|
805 | 805 | {
|
806 | 806 | "name": "release_date",
|
807 |
| - "value": "2025-04-17T00:41:27Z" |
| 807 | + "value": "2025-06-10T00:42:31Z" |
808 | 808 | },
|
809 | 809 | {
|
810 | 810 | "name": "language",
|
|
2934 | 2934 | },
|
2935 | 2935 | "cpe": "cpe:2.3:a:jason_r.:zipp:3.23.0:*:*:*:*:*:*:*",
|
2936 | 2936 | "description": "Backport of pathlib-compatible object wrapper for zip files",
|
| 2937 | + "hashes": [ |
| 2938 | + { |
| 2939 | + "alg": "SHA-256", |
| 2940 | + "content": "071652d6115ed432f5ce1d34c336c0adfd6a884660d1e9712a256d3d3bd4b14e" |
| 2941 | + } |
| 2942 | + ], |
2937 | 2943 | "externalReferences": [
|
2938 | 2944 | {
|
2939 | 2945 | "url": "https://pypi.org/project/zipp/3.23.0/#files",
|
|
2949 | 2955 | "properties": [
|
2950 | 2956 | {
|
2951 | 2957 | "name": "release_date",
|
2952 |
| - "value": "2024-06-25T18:38:02Z" |
| 2958 | + "value": "2025-06-08T17:06:38Z" |
2953 | 2959 | },
|
2954 | 2960 | {
|
2955 | 2961 | "name": "language",
|
|
4146 | 4152 | "type": "library",
|
4147 | 4153 | "bom-ref": "63-narwhals",
|
4148 | 4154 | "name": "narwhals",
|
4149 |
| - "version": "1.41.1", |
| 4155 | + "version": "1.42.1", |
4150 | 4156 | "supplier": {
|
4151 | 4157 | "name": "Marco Gorelli",
|
4152 | 4158 | "contact": [
|
|
4155 | 4161 | }
|
4156 | 4162 | ]
|
4157 | 4163 | },
|
4158 |
| - "cpe": "cpe:2.3:a:marco_gorelli:narwhals:1.41.1:*:*:*:*:*:*:*", |
| 4164 | + "cpe": "cpe:2.3:a:marco_gorelli:narwhals:1.42.1:*:*:*:*:*:*:*", |
4159 | 4165 | "description": "Extremely lightweight compatibility layer between dataframe libraries",
|
4160 | 4166 | "licenses": [
|
4161 | 4167 | {
|
|
4173 | 4179 | "comment": "Home page for project"
|
4174 | 4180 | },
|
4175 | 4181 | {
|
4176 |
| - "url": "https://pypi.org/project/narwhals/1.41.1/#files", |
| 4182 | + "url": "https://pypi.org/project/narwhals/1.42.1/#files", |
4177 | 4183 | "type": "distribution",
|
4178 | 4184 | "comment": "Download location for component"
|
4179 | 4185 | },
|
|
4190 | 4196 | "type": "issue-tracker"
|
4191 | 4197 | }
|
4192 | 4198 | ],
|
4193 |
| - "purl": "pkg:pypi/narwhals@1.41.1", |
| 4199 | + "purl": "pkg:pypi/narwhals@1.42.1", |
4194 | 4200 | "properties": [
|
4195 | 4201 | {
|
4196 | 4202 | "name": "release_date",
|
|
4288 | 4294 | "type": "library",
|
4289 | 4295 | "bom-ref": "65-requests",
|
4290 | 4296 | "name": "requests",
|
4291 |
| - "version": "2.32.3", |
| 4297 | + "version": "2.32.4", |
4292 | 4298 | "supplier": {
|
4293 | 4299 | "name": "Kenneth Reitz",
|
4294 | 4300 | "contact": [
|
|
4297 | 4303 | }
|
4298 | 4304 | ]
|
4299 | 4305 | },
|
4300 |
| - "cpe": "cpe:2.3:a:kenneth_reitz:requests:2.32.3:*:*:*:*:*:*:*", |
| 4306 | + "cpe": "cpe:2.3:a:kenneth_reitz:requests:2.32.4:*:*:*:*:*:*:*", |
4301 | 4307 | "description": "Python HTTP for Humans.",
|
4302 | 4308 | "hashes": [
|
4303 | 4309 | {
|
4304 | 4310 | "alg": "SHA-256",
|
4305 |
| - "content": "70761cfe03c773ceb22aa2f671b4757976145175cdfca038c02654d061d6dcc6" |
| 4311 | + "content": "27babd3cda2a6d50b30443204ee89830707d396671944c998b5975b031ac2b2c" |
4306 | 4312 | }
|
4307 | 4313 | ],
|
4308 | 4314 | "licenses": [
|
|
4321 | 4327 | "comment": "Home page for project"
|
4322 | 4328 | },
|
4323 | 4329 | {
|
4324 |
| - "url": "https://pypi.org/project/requests/2.32.3/#files", |
| 4330 | + "url": "https://pypi.org/project/requests/2.32.4/#files", |
4325 | 4331 | "type": "distribution",
|
4326 | 4332 | "comment": "Download location for component"
|
4327 | 4333 | },
|
|
4334 | 4340 | "type": "vcs"
|
4335 | 4341 | }
|
4336 | 4342 | ],
|
4337 |
| - "purl": "pkg:pypi/requests@2.32.3", |
| 4343 | + "purl": "pkg:pypi/requests@2.32.4", |
4338 | 4344 | "properties": [
|
4339 | 4345 | {
|
4340 | 4346 | "name": "release_date",
|
4341 |
| - "value": "2024-05-29T15:37:47Z" |
| 4347 | + "value": "2025-06-09T16:43:05Z" |
4342 | 4348 | },
|
4343 | 4349 | {
|
4344 | 4350 | "name": "language",
|
|
4483 | 4489 | "type": "library",
|
4484 | 4490 | "bom-ref": "68-certifi",
|
4485 | 4491 | "name": "certifi",
|
4486 |
| - "version": "2025.4.26", |
| 4492 | + "version": "2025.6.15", |
4487 | 4493 | "supplier": {
|
4488 | 4494 | "name": "Kenneth Reitz",
|
4489 | 4495 | "contact": [
|
|
4492 | 4498 | }
|
4493 | 4499 | ]
|
4494 | 4500 | },
|
4495 |
| - "cpe": "cpe:2.3:a:kenneth_reitz:certifi:2025.4.26:*:*:*:*:*:*:*", |
| 4501 | + "cpe": "cpe:2.3:a:kenneth_reitz:certifi:2025.6.15:*:*:*:*:*:*:*", |
4496 | 4502 | "description": "Python package for providing Mozilla's CA Bundle.",
|
4497 | 4503 | "hashes": [
|
4498 | 4504 | {
|
4499 | 4505 | "alg": "SHA-256",
|
4500 |
| - "content": "30350364dfe371162649852c63336a15c70c6510c2ad5015b21c2345311805f3" |
| 4506 | + "content": "2e0c7ce7cb5d8f8634ca55d2ba7e6ec2689a2fd6537d8dec1296a477a4910057" |
4501 | 4507 | }
|
4502 | 4508 | ],
|
4503 | 4509 | "licenses": [
|
|
4516 | 4522 | "comment": "Home page for project"
|
4517 | 4523 | },
|
4518 | 4524 | {
|
4519 |
| - "url": "https://pypi.org/project/certifi/2025.4.26/#files", |
| 4525 | + "url": "https://pypi.org/project/certifi/2025.6.15/#files", |
4520 | 4526 | "type": "distribution",
|
4521 | 4527 | "comment": "Download location for component"
|
4522 | 4528 | },
|
|
4525 | 4531 | "type": "vcs"
|
4526 | 4532 | }
|
4527 | 4533 | ],
|
4528 |
| - "purl": "pkg:pypi/certifi@2025.4.26", |
| 4534 | + "purl": "pkg:pypi/certifi@2025.6.15", |
4529 | 4535 | "properties": [
|
4530 | 4536 | {
|
4531 | 4537 | "name": "release_date",
|
4532 |
| - "value": "2025-04-26T02:12:27Z" |
| 4538 | + "value": "2025-06-15T02:45:49Z" |
4533 | 4539 | },
|
4534 | 4540 | {
|
4535 | 4541 | "name": "language",
|
|
0 commit comments