|
2 | 2 | "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json", |
3 | 3 | "bomFormat": "CycloneDX", |
4 | 4 | "specVersion": "1.6", |
5 | | - "serialNumber": "urn:uuid:47e6a14f-10a8-4eb7-966a-331648defc49", |
| 5 | + "serialNumber": "urn:uuid:5120ad42-a307-4215-97b3-1c1b4ff43500", |
6 | 6 | "version": 1, |
7 | 7 | "metadata": { |
8 | | - "timestamp": "2025-10-13T00:40:50Z", |
| 8 | + "timestamp": "2025-10-27T00:42:37Z", |
9 | 9 | "lifecycles": [ |
10 | 10 | { |
11 | 11 | "phase": "build" |
|
79 | 79 | "type": "library", |
80 | 80 | "bom-ref": "2-aiohttp", |
81 | 81 | "name": "aiohttp", |
82 | | - "version": "3.13.0", |
| 82 | + "version": "3.13.1", |
83 | 83 | "description": "Async http client/server framework (asyncio)", |
84 | 84 | "hashes": [ |
85 | 85 | { |
86 | 86 | "alg": "SHA-256", |
87 | | - "content": "ca69ec38adf5cadcc21d0b25e2144f6a25b7db7bea7e730bac25075bc305eff0" |
| 87 | + "content": "2349a6b642020bf20116a8a5c83bae8ba071acf1461c7cbe45fc7fafd552e7e2" |
88 | 88 | } |
89 | 89 | ], |
90 | 90 | "licenses": [ |
|
100 | 100 | "comment": "Home page for project" |
101 | 101 | }, |
102 | 102 | { |
103 | | - "url": "https://pypi.org/project/aiohttp/3.13.0/#files", |
| 103 | + "url": "https://pypi.org/project/aiohttp/3.13.1/#files", |
104 | 104 | "type": "distribution", |
105 | 105 | "comment": "Download location for component" |
106 | 106 | }, |
|
137 | 137 | "type": "vcs" |
138 | 138 | } |
139 | 139 | ], |
140 | | - "purl": "pkg:pypi/[email protected].0", |
| 140 | + "purl": "pkg:pypi/[email protected].1", |
141 | 141 | "properties": [ |
142 | 142 | { |
143 | 143 | "name": "release_date", |
144 | | - "value": "2025-10-06T19:54:40Z" |
| 144 | + "value": "2025-10-17T13:58:56Z" |
145 | 145 | }, |
146 | 146 | { |
147 | 147 | "name": "language", |
|
305 | 305 | "name": "frozenlist", |
306 | 306 | "version": "1.8.0", |
307 | 307 | "description": "A list-like structure which implements collections.abc.MutableSequence", |
| 308 | + "hashes": [ |
| 309 | + { |
| 310 | + "alg": "SHA-256", |
| 311 | + "content": "b37f6d31b3dcea7deb5e9696e529a6aa4a898adc33db82da12e4c60a7c4d2011" |
| 312 | + } |
| 313 | + ], |
308 | 314 | "licenses": [ |
309 | 315 | { |
310 | 316 | "license": { |
|
366 | 372 | "properties": [ |
367 | 373 | { |
368 | 374 | "name": "release_date", |
369 | | - "value": "2025-07-03T22:54:42Z" |
| 375 | + "value": "2025-10-06T05:35:23Z" |
370 | 376 | }, |
371 | 377 | { |
372 | 378 | "name": "language", |
|
812 | 818 | }, |
813 | 819 | "cpe": "cpe:2.3:a:kim_davies:idna:3.11:*:*:*:*:*:*:*", |
814 | 820 | "description": "Internationalized Domain Names in Applications (IDNA)", |
| 821 | + "hashes": [ |
| 822 | + { |
| 823 | + "alg": "SHA-256", |
| 824 | + "content": "771a87f49d9defaf64091e6e6fe9c18d4833f140bd19464795bc32d966ca37ea" |
| 825 | + } |
| 826 | + ], |
815 | 827 | "externalReferences": [ |
816 | 828 | { |
817 | 829 | "url": "https://pypi.org/project/idna/3.11/#files", |
|
835 | 847 | "properties": [ |
836 | 848 | { |
837 | 849 | "name": "release_date", |
838 | | - "value": "2025-10-06T14:08:42Z" |
| 850 | + "value": "2025-10-12T14:55:18Z" |
839 | 851 | }, |
840 | 852 | { |
841 | 853 | "name": "language", |
|
1301 | 1313 | "type": "library", |
1302 | 1314 | "bom-ref": "19-argcomplete", |
1303 | 1315 | "name": "argcomplete", |
1304 | | - "version": "3.6.2", |
| 1316 | + "version": "3.6.3", |
1305 | 1317 | "supplier": { |
1306 | 1318 | "name": "Andrey Kislyuk", |
1307 | 1319 | "contact": [ |
|
1310 | 1322 | } |
1311 | 1323 | ] |
1312 | 1324 | }, |
1313 | | - "cpe": "cpe:2.3:a:andrey_kislyuk:argcomplete:3.6.2:*:*:*:*:*:*:*", |
| 1325 | + "cpe": "cpe:2.3:a:andrey_kislyuk:argcomplete:3.6.3:*:*:*:*:*:*:*", |
1314 | 1326 | "description": "Bash tab completion for argparse", |
1315 | 1327 | "hashes": [ |
1316 | 1328 | { |
1317 | 1329 | "alg": "SHA-256", |
1318 | | - "content": "65b3133a29ad53fb42c48cf5114752c7ab66c1c38544fdf6460f450c09b42591" |
| 1330 | + "content": "f5007b3a600ccac5d25bbce33089211dfd49eab4a7718da3f10e3082525a92ce" |
1319 | 1331 | } |
1320 | 1332 | ], |
1321 | 1333 | "licenses": [ |
|
1334 | 1346 | "comment": "Home page for project" |
1335 | 1347 | }, |
1336 | 1348 | { |
1337 | | - "url": "https://pypi.org/project/argcomplete/3.6.2/#files", |
| 1349 | + "url": "https://pypi.org/project/argcomplete/3.6.3/#files", |
1338 | 1350 | "type": "distribution", |
1339 | 1351 | "comment": "Download location for component" |
1340 | 1352 | }, |
|
1355 | 1367 | "type": "log" |
1356 | 1368 | } |
1357 | 1369 | ], |
1358 | | - "purl": "pkg:pypi/[email protected].2", |
| 1370 | + "purl": "pkg:pypi/[email protected].3", |
1359 | 1371 | "properties": [ |
1360 | 1372 | { |
1361 | 1373 | "name": "release_date", |
1362 | | - "value": "2025-04-03T04:57:01Z" |
| 1374 | + "value": "2025-10-20T03:33:33Z" |
1363 | 1375 | }, |
1364 | 1376 | { |
1365 | 1377 | "name": "language", |
|
3049 | 3061 | "type": "library", |
3050 | 3062 | "bom-ref": "47-referencing", |
3051 | 3063 | "name": "referencing", |
3052 | | - "version": "0.36.2", |
| 3064 | + "version": "0.37.0", |
3053 | 3065 | "supplier": { |
3054 | 3066 | "name": "Julian Berman", |
3055 | 3067 | "contact": [ |
|
3058 | 3070 | } |
3059 | 3071 | ] |
3060 | 3072 | }, |
3061 | | - "cpe": "cpe:2.3:a:julian_berman:referencing:0.36.2:*:*:*:*:*:*:*", |
| 3073 | + "cpe": "cpe:2.3:a:julian_berman:referencing:0.37.0:*:*:*:*:*:*:*", |
3062 | 3074 | "description": "JSON Referencing + Python", |
3063 | 3075 | "hashes": [ |
3064 | 3076 | { |
3065 | 3077 | "alg": "SHA-256", |
3066 | | - "content": "e8699adbbf8b5c7de96d8ffa0eb5c158b3beafce084968e2ea8bb08c6794dcd0" |
| 3078 | + "content": "381329a9f99628c9069361716891d34ad94af76e461dcb0335825aecc7692231" |
3067 | 3079 | } |
3068 | 3080 | ], |
3069 | 3081 | "externalReferences": [ |
|
3073 | 3085 | "comment": "Home page for project" |
3074 | 3086 | }, |
3075 | 3087 | { |
3076 | | - "url": "https://pypi.org/project/referencing/0.36.2/#files", |
| 3088 | + "url": "https://pypi.org/project/referencing/0.37.0/#files", |
3077 | 3089 | "type": "distribution", |
3078 | 3090 | "comment": "Download location for component" |
3079 | 3091 | }, |
|
3102 | 3114 | "type": "vcs" |
3103 | 3115 | } |
3104 | 3116 | ], |
3105 | | - "purl": "pkg:pypi/referencing@0.36.2", |
| 3117 | + "purl": "pkg:pypi/referencing@0.37.0", |
3106 | 3118 | "properties": [ |
3107 | 3119 | { |
3108 | 3120 | "name": "release_date", |
3109 | | - "value": "2025-01-25T08:48:14Z" |
| 3121 | + "value": "2025-10-13T15:30:47Z" |
3110 | 3122 | }, |
3111 | 3123 | { |
3112 | 3124 | "name": "language", |
|
3122 | 3134 | "type": "library", |
3123 | 3135 | "bom-ref": "48-rpds-py", |
3124 | 3136 | "name": "rpds-py", |
3125 | | - "version": "0.27.1", |
| 3137 | + "version": "0.28.0", |
3126 | 3138 | "supplier": { |
3127 | 3139 | "name": "Julian Berman", |
3128 | 3140 | "contact": [ |
|
3131 | 3143 | } |
3132 | 3144 | ] |
3133 | 3145 | }, |
3134 | | - "cpe": "cpe:2.3:a:julian_berman:rpds-py:0.27.1:*:*:*:*:*:*:*", |
| 3146 | + "cpe": "cpe:2.3:a:julian_berman:rpds-py:0.28.0:*:*:*:*:*:*:*", |
3135 | 3147 | "description": "Python bindings to Rust's persistent data structures (rpds)", |
3136 | 3148 | "hashes": [ |
3137 | 3149 | { |
3138 | 3150 | "alg": "SHA-256", |
3139 | | - "content": "68afeec26d42ab3b47e541b272166a0b4400313946871cba3ed3a4fc0cab1cef" |
| 3151 | + "content": "7b6013db815417eeb56b2d9d7324e64fcd4fa289caeee6e7a78b2e11fc9b438a" |
3140 | 3152 | } |
3141 | 3153 | ], |
3142 | 3154 | "externalReferences": [ |
|
3146 | 3158 | "comment": "Home page for project" |
3147 | 3159 | }, |
3148 | 3160 | { |
3149 | | - "url": "https://pypi.org/project/rpds-py/0.27.1/#files", |
| 3161 | + "url": "https://pypi.org/project/rpds-py/0.28.0/#files", |
3150 | 3162 | "type": "distribution", |
3151 | 3163 | "comment": "Download location for component" |
3152 | 3164 | }, |
|
3175 | 3187 | "type": "other" |
3176 | 3188 | } |
3177 | 3189 | ], |
3178 | | - "purl": "pkg:pypi/rpds-py@0.27.1", |
| 3190 | + "purl": "pkg:pypi/rpds-py@0.28.0", |
3179 | 3191 | "properties": [ |
3180 | 3192 | { |
3181 | 3193 | "name": "release_date", |
3182 | | - "value": "2025-08-27T12:12:25Z" |
| 3194 | + "value": "2025-10-22T22:21:15Z" |
3183 | 3195 | }, |
3184 | 3196 | { |
3185 | 3197 | "name": "language", |
|
3455 | 3467 | "type": "library", |
3456 | 3468 | "bom-ref": "53-xmlschema", |
3457 | 3469 | "name": "xmlschema", |
3458 | | - "version": "4.1.0", |
| 3470 | + "version": "4.2.0", |
3459 | 3471 | "supplier": { |
3460 | 3472 | "name": "Davide Brunato", |
3461 | 3473 | "contact": [ |
|
3464 | 3476 | } |
3465 | 3477 | ] |
3466 | 3478 | }, |
3467 | | - "cpe": "cpe:2.3:a:davide_brunato:xmlschema:4.1.0:*:*:*:*:*:*:*", |
| 3479 | + "cpe": "cpe:2.3:a:davide_brunato:xmlschema:4.2.0:*:*:*:*:*:*:*", |
3468 | 3480 | "description": "An XML Schema validator and decoder", |
3469 | 3481 | "hashes": [ |
3470 | 3482 | { |
3471 | 3483 | "alg": "SHA-256", |
3472 | | - "content": "eabf610f398a58700bc4ac94380ad9ce558297a3f9ca8b7722ed3f7888eb4498" |
| 3484 | + "content": "82d24a50eea5e7f2d603312813848cd66fddf8fa2b6730839c6aa3d66312e3b6" |
3473 | 3485 | } |
3474 | 3486 | ], |
3475 | 3487 | "externalReferences": [ |
|
3479 | 3491 | "comment": "Home page for project" |
3480 | 3492 | }, |
3481 | 3493 | { |
3482 | | - "url": "https://pypi.org/project/xmlschema/4.1.0/#files", |
| 3494 | + "url": "https://pypi.org/project/xmlschema/4.2.0/#files", |
3483 | 3495 | "type": "distribution", |
3484 | 3496 | "comment": "Download location for component" |
3485 | 3497 | } |
3486 | 3498 | ], |
3487 | | - "purl": "pkg:pypi/xmlschema@4.1.0", |
| 3499 | + "purl": "pkg:pypi/xmlschema@4.2.0", |
3488 | 3500 | "properties": [ |
3489 | 3501 | { |
3490 | 3502 | "name": "release_date", |
3491 | | - "value": "2025-06-05T21:17:35Z" |
| 3503 | + "value": "2025-10-14T09:19:28Z" |
3492 | 3504 | }, |
3493 | 3505 | { |
3494 | 3506 | "name": "language", |
|
4113 | 4125 | "type": "library", |
4114 | 4126 | "bom-ref": "64-narwhals", |
4115 | 4127 | "name": "narwhals", |
4116 | | - "version": "2.7.0", |
| 4128 | + "version": "2.9.0", |
4117 | 4129 | "supplier": { |
4118 | 4130 | "name": "Marco Gorelli", |
4119 | 4131 | "contact": [ |
|
4122 | 4134 | } |
4123 | 4135 | ] |
4124 | 4136 | }, |
4125 | | - "cpe": "cpe:2.3:a:marco_gorelli:narwhals:2.7.0:*:*:*:*:*:*:*", |
| 4137 | + "cpe": "cpe:2.3:a:marco_gorelli:narwhals:2.9.0:*:*:*:*:*:*:*", |
4126 | 4138 | "description": "Extremely lightweight compatibility layer between dataframe libraries", |
| 4139 | + "hashes": [ |
| 4140 | + { |
| 4141 | + "alg": "SHA-256", |
| 4142 | + "content": "c59f7de4763004ae81691ce16df71b4e55aead0ead7ccde8c8f2ef8c9559c765" |
| 4143 | + } |
| 4144 | + ], |
4127 | 4145 | "licenses": [ |
4128 | 4146 | { |
4129 | 4147 | "license": { |
|
4140 | 4158 | "comment": "Home page for project" |
4141 | 4159 | }, |
4142 | 4160 | { |
4143 | | - "url": "https://pypi.org/project/narwhals/2.7.0/#files", |
| 4161 | + "url": "https://pypi.org/project/narwhals/2.9.0/#files", |
4144 | 4162 | "type": "distribution", |
4145 | 4163 | "comment": "Download location for component" |
4146 | 4164 | }, |
|
4157 | 4175 | "type": "issue-tracker" |
4158 | 4176 | } |
4159 | 4177 | ], |
4160 | | - "purl": "pkg:pypi/narwhals@2.7.0", |
| 4178 | + "purl": "pkg:pypi/narwhals@2.9.0", |
4161 | 4179 | "properties": [ |
4162 | 4180 | { |
4163 | 4181 | "name": "release_date", |
4164 | | - "value": "2025-10-02T16:10:22Z" |
| 4182 | + "value": "2025-10-20T12:19:15Z" |
4165 | 4183 | }, |
4166 | 4184 | { |
4167 | 4185 | "name": "language", |
|
4321 | 4339 | "type": "library", |
4322 | 4340 | "bom-ref": "67-charset-normalizer", |
4323 | 4341 | "name": "charset-normalizer", |
4324 | | - "version": "3.4.3", |
| 4342 | + "version": "3.4.4", |
4325 | 4343 | "supplier": { |
4326 | 4344 | "name": "Ahmed R .", |
4327 | 4345 | "contact": [ |
|
4330 | 4348 | } |
4331 | 4349 | ] |
4332 | 4350 | }, |
4333 | | - "cpe": "cpe:2.3:a:ahmed_r.:charset-normalizer:3.4.3:*:*:*:*:*:*:*", |
| 4351 | + "cpe": "cpe:2.3:a:ahmed_r.:charset-normalizer:3.4.4:*:*:*:*:*:*:*", |
4334 | 4352 | "description": "The Real First Universal Charset Detector. Open, modern and actively maintained alternative to Chardet.", |
4335 | 4353 | "hashes": [ |
4336 | 4354 | { |
4337 | 4355 | "alg": "SHA-256", |
4338 | | - "content": "fb7f67a1bfa6e40b438170ebdc8158b78dc465a5a67b6dde178a46987b244a72" |
| 4356 | + "content": "e824f1492727fa856dd6eda4f7cee25f8518a12f3c4a56a74e8095695089cf6d" |
4339 | 4357 | } |
4340 | 4358 | ], |
4341 | 4359 | "licenses": [ |
|
4349 | 4367 | ], |
4350 | 4368 | "externalReferences": [ |
4351 | 4369 | { |
4352 | | - "url": "https://pypi.org/project/charset-normalizer/3.4.3/#files", |
| 4370 | + "url": "https://pypi.org/project/charset-normalizer/3.4.4/#files", |
4353 | 4371 | "type": "distribution", |
4354 | 4372 | "comment": "Download location for component" |
4355 | 4373 | }, |
|
4370 | 4388 | "type": "issue-tracker" |
4371 | 4389 | } |
4372 | 4390 | ], |
4373 | | - "purl": "pkg:pypi/[email protected].3", |
| 4391 | + "purl": "pkg:pypi/[email protected].4", |
4374 | 4392 | "properties": [ |
4375 | 4393 | { |
4376 | 4394 | "name": "release_date", |
4377 | | - "value": "2025-08-09T07:55:36Z" |
| 4395 | + "value": "2025-10-14T04:40:11Z" |
4378 | 4396 | }, |
4379 | 4397 | { |
4380 | 4398 | "name": "language", |
|
0 commit comments