|
2 | 2 | "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
|
3 | 3 | "bomFormat": "CycloneDX",
|
4 | 4 | "specVersion": "1.6",
|
5 |
| - "serialNumber": "urn:uuid:4a56dddb-a60e-493e-9986-7d39cd1e54b5", |
| 5 | + "serialNumber": "urn:uuid:fd15e6cd-7f46-4ab9-81bc-e8e62b3a992a", |
6 | 6 | "version": 1,
|
7 | 7 | "metadata": {
|
8 |
| - "timestamp": "2025-06-09T00:44:41Z", |
| 8 | + "timestamp": "2025-06-16T00:44:06Z", |
9 | 9 | "lifecycles": [
|
10 | 10 | {
|
11 | 11 | "phase": "build"
|
|
31 | 31 | "type": "application",
|
32 | 32 | "bom-ref": "1-cve-bin-tool",
|
33 | 33 | "name": "cve-bin-tool",
|
34 |
| - "version": "3.4", |
| 34 | + "version": "3.4.1rc0", |
35 | 35 | "supplier": {
|
36 | 36 | "name": "Terri Oda",
|
37 | 37 | "contact": [
|
|
40 | 40 | }
|
41 | 41 | ]
|
42 | 42 | },
|
43 |
| - "cpe": "cpe:2.3:a:terri_oda:cve-bin-tool:3.4:*:*:*:*:*:*:*", |
| 43 | + "cpe": "cpe:2.3:a:terri_oda:cve-bin-tool:3.4.1rc0:*:*:*:*:*:*:*", |
44 | 44 | "description": "CVE Binary Checker Tool",
|
45 | 45 | "hashes": [
|
46 | 46 | {
|
47 | 47 | "alg": "SHA-256",
|
48 |
| - "content": "48c897ea59b84ee3142b3353f0bc5689232a5f464e4106ac9b7f1e5f691f888d" |
| 48 | + "content": "93d666f2742df44dc5ca76e61b72884cb1f95378cc253d505b18b1f0a13a501b" |
49 | 49 | }
|
50 | 50 | ],
|
51 | 51 | "licenses": [
|
|
64 | 64 | "comment": "Home page for project"
|
65 | 65 | },
|
66 | 66 | {
|
67 |
| - "url": "https://pypi.org/project/cve-bin-tool/3.4/#files", |
| 67 | + "url": "https://pypi.org/project/cve-bin-tool/3.4.1rc0/#files", |
68 | 68 | "type": "distribution",
|
69 | 69 | "comment": "Download location for component"
|
70 | 70 | }
|
71 | 71 | ],
|
72 |
| - "purl": "pkg:pypi/cve-bin-tool@3.4", |
| 72 | + "purl": "pkg:pypi/cve-bin-tool@3.4.1rc0", |
73 | 73 | "properties": [
|
74 | 74 | {
|
75 | 75 | "name": "release_date",
|
76 |
| - "value": "2024-09-17T18:57:44Z" |
| 76 | + "value": "2025-06-13T18:33:45Z" |
77 | 77 | },
|
78 | 78 | {
|
79 | 79 | "name": "language",
|
|
89 | 89 | "type": "library",
|
90 | 90 | "bom-ref": "2-aiohttp",
|
91 | 91 | "name": "aiohttp",
|
92 |
| - "version": "3.12.11", |
| 92 | + "version": "3.12.13", |
93 | 93 | "description": "Async http client/server framework (asyncio)",
|
94 | 94 | "hashes": [
|
95 | 95 | {
|
96 | 96 | "alg": "SHA-256",
|
97 |
| - "content": "ff576cb82b995ff213e58255bc776a06ebd5ebb94a587aab2fb5df8ee4e3f967" |
| 97 | + "content": "5421af8f22a98f640261ee48aae3a37f0c41371e99412d55eaf2f8a46d5dad29" |
98 | 98 | }
|
99 | 99 | ],
|
100 | 100 | "licenses": [
|
|
113 | 113 | "comment": "Home page for project"
|
114 | 114 | },
|
115 | 115 | {
|
116 |
| - "url": "https://pypi.org/project/aiohttp/3.12.11/#files", |
| 116 | + "url": "https://pypi.org/project/aiohttp/3.12.13/#files", |
117 | 117 | "type": "distribution",
|
118 | 118 | "comment": "Download location for component"
|
119 | 119 | },
|
|
150 | 150 | "type": "vcs"
|
151 | 151 | }
|
152 | 152 | ],
|
153 |
| - "purl": "pkg:pypi/aiohttp@3.12.11", |
| 153 | + "purl": "pkg:pypi/aiohttp@3.12.13", |
154 | 154 | "properties": [
|
155 | 155 | {
|
156 | 156 | "name": "release_date",
|
157 |
| - "value": "2025-06-07T15:50:24Z" |
| 157 | + "value": "2025-06-14T15:12:58Z" |
158 | 158 | },
|
159 | 159 | {
|
160 | 160 | "name": "language",
|
|
316 | 316 | "type": "library",
|
317 | 317 | "bom-ref": "5-frozenlist",
|
318 | 318 | "name": "frozenlist",
|
319 |
| - "version": "1.6.2", |
| 319 | + "version": "1.7.0", |
320 | 320 | "description": "A list-like structure which implements collections.abc.MutableSequence",
|
321 | 321 | "hashes": [
|
322 | 322 | {
|
323 | 323 | "alg": "SHA-256",
|
324 |
| - "content": "92836b9903e52f787f4f4bfc6cf3b03cf19de4cbc09f5969e58806f876d8647f" |
| 324 | + "content": "cc4df77d638aa2ed703b878dd093725b72a824c3c546c076e8fdf276f78ee84a" |
325 | 325 | }
|
326 | 326 | ],
|
327 | 327 | "licenses": [
|
|
340 | 340 | "comment": "Home page for project"
|
341 | 341 | },
|
342 | 342 | {
|
343 |
| - "url": "https://pypi.org/project/frozenlist/1.6.2/#files", |
| 343 | + "url": "https://pypi.org/project/frozenlist/1.7.0/#files", |
344 | 344 | "type": "distribution",
|
345 | 345 | "comment": "Download location for component"
|
346 | 346 | },
|
|
381 | 381 | "type": "vcs"
|
382 | 382 | }
|
383 | 383 | ],
|
384 |
| - "purl": "pkg:pypi/frozenlist@1.6.2", |
| 384 | + "purl": "pkg:pypi/frozenlist@1.7.0", |
385 | 385 | "properties": [
|
386 | 386 | {
|
387 | 387 | "name": "release_date",
|
388 |
| - "value": "2025-06-03T21:45:13Z" |
| 388 | + "value": "2025-06-09T22:59:46Z" |
389 | 389 | },
|
390 | 390 | {
|
391 | 391 | "name": "language",
|
|
714 | 714 | "type": "library",
|
715 | 715 | "bom-ref": "10-propcache",
|
716 | 716 | "name": "propcache",
|
717 |
| - "version": "0.3.1", |
| 717 | + "version": "0.3.2", |
718 | 718 | "supplier": {
|
719 | 719 | "name": "Andrew Svetlov",
|
720 | 720 | "contact": [
|
|
723 | 723 | }
|
724 | 724 | ]
|
725 | 725 | },
|
726 |
| - "cpe": "cpe:2.3:a:andrew_svetlov:propcache:0.3.1:*:*:*:*:*:*:*", |
| 726 | + "cpe": "cpe:2.3:a:andrew_svetlov:propcache:0.3.2:*:*:*:*:*:*:*", |
727 | 727 | "description": "Accelerated property cache",
|
728 | 728 | "hashes": [
|
729 | 729 | {
|
730 | 730 | "alg": "SHA-256",
|
731 |
| - "content": "f27785888d2fdd918bc36de8b8739f2d6c791399552333721b58193f68ea3e98" |
| 731 | + "content": "22d9962a358aedbb7a2e36187ff273adeaab9743373a272976d2e348d08c7770" |
732 | 732 | }
|
733 | 733 | ],
|
734 | 734 | "licenses": [
|
|
747 | 747 | "comment": "Home page for project"
|
748 | 748 | },
|
749 | 749 | {
|
750 |
| - "url": "https://pypi.org/project/propcache/0.3.1/#files", |
| 750 | + "url": "https://pypi.org/project/propcache/0.3.2/#files", |
751 | 751 | "type": "distribution",
|
752 | 752 | "comment": "Download location for component"
|
753 | 753 | },
|
|
788 | 788 | "type": "vcs"
|
789 | 789 | }
|
790 | 790 | ],
|
791 |
| - "purl": "pkg:pypi/propcache@0.3.1", |
| 791 | + "purl": "pkg:pypi/propcache@0.3.2", |
792 | 792 | "properties": [
|
793 | 793 | {
|
794 | 794 | "name": "release_date",
|
795 |
| - "value": "2025-03-26T03:03:35Z" |
| 795 | + "value": "2025-06-09T22:53:40Z" |
796 | 796 | },
|
797 | 797 | {
|
798 | 798 | "name": "language",
|
|
808 | 808 | "type": "library",
|
809 | 809 | "bom-ref": "11-yarl",
|
810 | 810 | "name": "yarl",
|
811 |
| - "version": "1.20.0", |
| 811 | + "version": "1.20.1", |
812 | 812 | "supplier": {
|
813 | 813 | "name": "Andrew Svetlov",
|
814 | 814 | "contact": [
|
|
817 | 817 | }
|
818 | 818 | ]
|
819 | 819 | },
|
820 |
| - "cpe": "cpe:2.3:a:andrew_svetlov:yarl:1.20.0:*:*:*:*:*:*:*", |
| 820 | + "cpe": "cpe:2.3:a:andrew_svetlov:yarl:1.20.1:*:*:*:*:*:*:*", |
821 | 821 | "description": "Yet another URL library",
|
822 | 822 | "hashes": [
|
823 | 823 | {
|
824 | 824 | "alg": "SHA-256",
|
825 |
| - "content": "f1f6670b9ae3daedb325fa55fbe31c22c8228f6e0b513772c2e1c623caa6ab22" |
| 825 | + "content": "6032e6da6abd41e4acda34d75a816012717000fa6839f37124a47fcefc49bec4" |
826 | 826 | }
|
827 | 827 | ],
|
828 | 828 | "licenses": [
|
|
841 | 841 | "comment": "Home page for project"
|
842 | 842 | },
|
843 | 843 | {
|
844 |
| - "url": "https://pypi.org/project/yarl/1.20.0/#files", |
| 844 | + "url": "https://pypi.org/project/yarl/1.20.1/#files", |
845 | 845 | "type": "distribution",
|
846 | 846 | "comment": "Download location for component"
|
847 | 847 | },
|
|
882 | 882 | "type": "vcs"
|
883 | 883 | }
|
884 | 884 | ],
|
885 |
| - "purl": "pkg:pypi/yarl@1.20.0", |
| 885 | + "purl": "pkg:pypi/yarl@1.20.1", |
886 | 886 | "properties": [
|
887 | 887 | {
|
888 | 888 | "name": "release_date",
|
889 |
| - "value": "2025-04-17T00:41:27Z" |
| 889 | + "value": "2025-06-10T00:42:31Z" |
890 | 890 | },
|
891 | 891 | {
|
892 | 892 | "name": "language",
|
|
3016 | 3016 | },
|
3017 | 3017 | "cpe": "cpe:2.3:a:jason_r.:zipp:3.23.0:*:*:*:*:*:*:*",
|
3018 | 3018 | "description": "Backport of pathlib-compatible object wrapper for zip files",
|
| 3019 | + "hashes": [ |
| 3020 | + { |
| 3021 | + "alg": "SHA-256", |
| 3022 | + "content": "071652d6115ed432f5ce1d34c336c0adfd6a884660d1e9712a256d3d3bd4b14e" |
| 3023 | + } |
| 3024 | + ], |
3019 | 3025 | "externalReferences": [
|
3020 | 3026 | {
|
3021 | 3027 | "url": "https://pypi.org/project/zipp/3.23.0/#files",
|
|
3031 | 3037 | "properties": [
|
3032 | 3038 | {
|
3033 | 3039 | "name": "release_date",
|
3034 |
| - "value": "2025-04-27T15:29:00Z" |
| 3040 | + "value": "2025-06-08T17:06:38Z" |
3035 | 3041 | },
|
3036 | 3042 | {
|
3037 | 3043 | "name": "language",
|
|
4228 | 4234 | "type": "library",
|
4229 | 4235 | "bom-ref": "64-narwhals",
|
4230 | 4236 | "name": "narwhals",
|
4231 |
| - "version": "1.41.1", |
| 4237 | + "version": "1.42.1", |
4232 | 4238 | "supplier": {
|
4233 | 4239 | "name": "Marco Gorelli",
|
4234 | 4240 | "contact": [
|
|
4237 | 4243 | }
|
4238 | 4244 | ]
|
4239 | 4245 | },
|
4240 |
| - "cpe": "cpe:2.3:a:marco_gorelli:narwhals:1.41.1:*:*:*:*:*:*:*", |
| 4246 | + "cpe": "cpe:2.3:a:marco_gorelli:narwhals:1.42.1:*:*:*:*:*:*:*", |
4241 | 4247 | "description": "Extremely lightweight compatibility layer between dataframe libraries",
|
4242 | 4248 | "licenses": [
|
4243 | 4249 | {
|
|
4255 | 4261 | "comment": "Home page for project"
|
4256 | 4262 | },
|
4257 | 4263 | {
|
4258 |
| - "url": "https://pypi.org/project/narwhals/1.41.1/#files", |
| 4264 | + "url": "https://pypi.org/project/narwhals/1.42.1/#files", |
4259 | 4265 | "type": "distribution",
|
4260 | 4266 | "comment": "Download location for component"
|
4261 | 4267 | },
|
|
4272 | 4278 | "type": "issue-tracker"
|
4273 | 4279 | }
|
4274 | 4280 | ],
|
4275 |
| - "purl": "pkg:pypi/narwhals@1.41.1", |
| 4281 | + "purl": "pkg:pypi/narwhals@1.42.1", |
4276 | 4282 | "properties": [
|
4277 | 4283 | {
|
4278 | 4284 | "name": "release_date",
|
|
4370 | 4376 | "type": "library",
|
4371 | 4377 | "bom-ref": "66-requests",
|
4372 | 4378 | "name": "requests",
|
4373 |
| - "version": "2.32.3", |
| 4379 | + "version": "2.32.4", |
4374 | 4380 | "supplier": {
|
4375 | 4381 | "name": "Kenneth Reitz",
|
4376 | 4382 | "contact": [
|
|
4379 | 4385 | }
|
4380 | 4386 | ]
|
4381 | 4387 | },
|
4382 |
| - "cpe": "cpe:2.3:a:kenneth_reitz:requests:2.32.3:*:*:*:*:*:*:*", |
| 4388 | + "cpe": "cpe:2.3:a:kenneth_reitz:requests:2.32.4:*:*:*:*:*:*:*", |
4383 | 4389 | "description": "Python HTTP for Humans.",
|
4384 | 4390 | "hashes": [
|
4385 | 4391 | {
|
4386 | 4392 | "alg": "SHA-256",
|
4387 |
| - "content": "70761cfe03c773ceb22aa2f671b4757976145175cdfca038c02654d061d6dcc6" |
| 4393 | + "content": "27babd3cda2a6d50b30443204ee89830707d396671944c998b5975b031ac2b2c" |
4388 | 4394 | }
|
4389 | 4395 | ],
|
4390 | 4396 | "licenses": [
|
|
4403 | 4409 | "comment": "Home page for project"
|
4404 | 4410 | },
|
4405 | 4411 | {
|
4406 |
| - "url": "https://pypi.org/project/requests/2.32.3/#files", |
| 4412 | + "url": "https://pypi.org/project/requests/2.32.4/#files", |
4407 | 4413 | "type": "distribution",
|
4408 | 4414 | "comment": "Download location for component"
|
4409 | 4415 | },
|
|
4416 | 4422 | "type": "vcs"
|
4417 | 4423 | }
|
4418 | 4424 | ],
|
4419 |
| - "purl": "pkg:pypi/requests@2.32.3", |
| 4425 | + "purl": "pkg:pypi/requests@2.32.4", |
4420 | 4426 | "properties": [
|
4421 | 4427 | {
|
4422 | 4428 | "name": "release_date",
|
4423 |
| - "value": "2024-05-29T15:37:47Z" |
| 4429 | + "value": "2025-06-09T16:43:05Z" |
4424 | 4430 | },
|
4425 | 4431 | {
|
4426 | 4432 | "name": "language",
|
|
4565 | 4571 | "type": "library",
|
4566 | 4572 | "bom-ref": "69-certifi",
|
4567 | 4573 | "name": "certifi",
|
4568 |
| - "version": "2025.4.26", |
| 4574 | + "version": "2025.6.15", |
4569 | 4575 | "supplier": {
|
4570 | 4576 | "name": "Kenneth Reitz",
|
4571 | 4577 | "contact": [
|
|
4574 | 4580 | }
|
4575 | 4581 | ]
|
4576 | 4582 | },
|
4577 |
| - "cpe": "cpe:2.3:a:kenneth_reitz:certifi:2025.4.26:*:*:*:*:*:*:*", |
| 4583 | + "cpe": "cpe:2.3:a:kenneth_reitz:certifi:2025.6.15:*:*:*:*:*:*:*", |
4578 | 4584 | "description": "Python package for providing Mozilla's CA Bundle.",
|
4579 | 4585 | "hashes": [
|
4580 | 4586 | {
|
4581 | 4587 | "alg": "SHA-256",
|
4582 |
| - "content": "30350364dfe371162649852c63336a15c70c6510c2ad5015b21c2345311805f3" |
| 4588 | + "content": "2e0c7ce7cb5d8f8634ca55d2ba7e6ec2689a2fd6537d8dec1296a477a4910057" |
4583 | 4589 | }
|
4584 | 4590 | ],
|
4585 | 4591 | "licenses": [
|
|
4598 | 4604 | "comment": "Home page for project"
|
4599 | 4605 | },
|
4600 | 4606 | {
|
4601 |
| - "url": "https://pypi.org/project/certifi/2025.4.26/#files", |
| 4607 | + "url": "https://pypi.org/project/certifi/2025.6.15/#files", |
4602 | 4608 | "type": "distribution",
|
4603 | 4609 | "comment": "Download location for component"
|
4604 | 4610 | },
|
|
4607 | 4613 | "type": "vcs"
|
4608 | 4614 | }
|
4609 | 4615 | ],
|
4610 |
| - "purl": "pkg:pypi/certifi@2025.4.26", |
| 4616 | + "purl": "pkg:pypi/certifi@2025.6.15", |
4611 | 4617 | "properties": [
|
4612 | 4618 | {
|
4613 | 4619 | "name": "release_date",
|
4614 |
| - "value": "2025-04-26T02:12:27Z" |
| 4620 | + "value": "2025-06-15T02:45:49Z" |
4615 | 4621 | },
|
4616 | 4622 | {
|
4617 | 4623 | "name": "language",
|
|
0 commit comments