@@ -2,10 +2,10 @@ SPDXVersion: SPDX-2.3
22DataLicense: CC0-1.0
33SPDXID: SPDXRef-DOCUMENT
44DocumentName: Python-cve-bin-tool
5- DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-338caa4b-fa2f-4952-85af-6060239a3f2a
5+ DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-3dbef033-c277-49cc-ad39-52824d6daa6c
66LicenseListVersion: 3.26
77Creator: Tool: sbom4python-0.12.4
8- Created: 2025-08-18T00 :45:46Z
8+ Created: 2025-08-25T00 :45:01Z
99CreatorComment: <text>SBOM Type: Build - This document has been automatically generated.</text>
1010#####
1111
@@ -271,22 +271,22 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:kim_davies:idna:3.10:*:*:*:*:*:*:*
271271
272272PackageName: beautifulsoup4
273273SPDXID: SPDXRef-12-beautifulsoup4
274- PackageVersion: 4.13.4
274+ PackageVersion: 4.13.5
275275PrimaryPackagePurpose: LIBRARY
276276PackageSupplier: Person: Leonard Richardson (
[email protected] )
277- PackageDownloadLocation: https://pypi.org/project/beautifulsoup4/4.13.4 /#files
277+ PackageDownloadLocation: https://pypi.org/project/beautifulsoup4/4.13.5 /#files
278278FilesAnalyzed: false
279279PackageHomePage: https://www.crummy.com/software/BeautifulSoup/bs4/
280- PackageChecksum: SHA256: 9bbbb14bfde9d79f38b8cd5f8c7c85f4b8f2523190ebed90e950a8dea4cb1c4b
280+ PackageChecksum: SHA256: 642085eaa22233aceadff9c69651bc51e8bf3f874fb6d7104ece2beb24b47c4a
281281PackageLicenseDeclared: NOASSERTION
282282PackageLicenseConcluded: MIT
283283PackageLicenseComments: <text>beautifulsoup4 declares MIT License which is not currently a valid SPDX License identifier or expression.</text>
284284PackageCopyrightText: NOASSERTION
285285PackageSummary: <text>Screen-scraping library</text>
286- ReleaseDate: 2025-04-15T17:05:12Z
286+ ReleaseDate: 2025-08-24T14:06:14Z
287287ExternalRef: OTHER other https://www.crummy.com/software/BeautifulSoup/bs4/download/
288- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] .
4 289- ExternalRef: SECURITY cpe23Type cpe:2.3:a:leonard_richardson:beautifulsoup4:4.13.4 :*:*:*:*:*:*:*
288+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] .
5 289+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:leonard_richardson:beautifulsoup4:4.13.5 :*:*:*:*:*:*:*
290290#####
291291
292292PackageName: soupsieve
@@ -902,7 +902,6 @@ PrimaryPackagePurpose: LIBRARY
902902PackageSupplier: NOASSERTION
903903PackageDownloadLocation: https://pypi.org/project/markupsafe/3.0.2/#files
904904FilesAnalyzed: false
905- PackageChecksum: SHA256: 7e94c425039cde14257288fd61dcfb01963e658efbc0ff54f5306b06054700f8
906905PackageLicenseDeclared: NOASSERTION
907906PackageLicenseConcluded: NOASSERTION
908907PackageLicenseComments: <text>markupsafe declares Copyright 2010 Pallets
@@ -936,7 +935,7 @@ SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
936935 which is not currently a valid SPDX License identifier or expression.</text>
937936PackageCopyrightText: NOASSERTION
938937PackageSummary: <text>Safely add untrusted strings to HTML/XML markup.</text>
939- ReleaseDate: 2024-10-18T15:20:51Z
938+ ReleaseDate: 2025-03-05T20:05:00Z
940939ExternalRef: OTHER other https://palletsprojects.com/donate
941940ExternalRef: OTHER documentation https://markupsafe.palletsprojects.com/
942941ExternalRef: OTHER log https://markupsafe.palletsprojects.com/changes/
947946
948947PackageName: jsonschema
949948SPDXID: SPDXRef-45-jsonschema
950- PackageVersion: 4.25.0
949+ PackageVersion: 4.25.1
951950PrimaryPackagePurpose: LIBRARY
952951PackageSupplier: Person: Julian Berman (
[email protected] )
953- PackageDownloadLocation: https://pypi.org/project/jsonschema/4.25.0 /#files
952+ PackageDownloadLocation: https://pypi.org/project/jsonschema/4.25.1 /#files
954953FilesAnalyzed: false
955954PackageHomePage: https://github.com/python-jsonschema/jsonschema
956- PackageChecksum: SHA256: 24c2e8da302de79c8b9382fee3e76b355e44d2a4364bb207159ce10b517bd716
955+ PackageChecksum: SHA256: 3fba0169e345c7175110351d456342c364814cfcf3b964ba4587f22915230a63
957956PackageLicenseDeclared: NOASSERTION
958957PackageLicenseConcluded: NOASSERTION
959958PackageCopyrightText: NOASSERTION
960959PackageSummary: <text>An implementation of JSON Schema validation for Python</text>
961- ReleaseDate: 2025-07-18T15:39:42Z
960+ ReleaseDate: 2025-08-18T17:03:48Z
962961ExternalRef: OTHER documentation https://python-jsonschema.readthedocs.io/
963962ExternalRef: OTHER issue-tracker https://github.com/python-jsonschema/jsonschema/issues/
964963ExternalRef: OTHER other https://github.com/sponsors/Julian
965964ExternalRef: OTHER other https://tidelift.com/subscription/pkg/pypi-jsonschema?utm_source=pypi-jsonschema&utm_medium=referral&utm_campaign=pypi-link
966965ExternalRef: OTHER log https://github.com/python-jsonschema/jsonschema/blob/main/CHANGELOG.rst
967966ExternalRef: OTHER vcs https://github.com/python-jsonschema/jsonschema
968- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] .
0 969- ExternalRef: SECURITY cpe23Type cpe:2.3:a:julian_berman:jsonschema:4.25.0 :*:*:*:*:*:*:*
967+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] .
1 968+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:julian_berman:jsonschema:4.25.1 :*:*:*:*:*:*:*
970969#####
971970
972971PackageName: jsonschema-specifications
@@ -1378,22 +1377,22 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:vinay_sajip:python-gnupg:0.5.5:*:*:*:*
13781377
13791378PackageName: requests
13801379SPDXID: SPDXRef-65-requests
1381- PackageVersion: 2.32.4
1380+ PackageVersion: 2.32.5
13821381PrimaryPackagePurpose: LIBRARY
13831382PackageSupplier: Person: Kenneth Reitz (
[email protected] )
1384- PackageDownloadLocation: https://pypi.org/project/requests/2.32.4 /#files
1383+ PackageDownloadLocation: https://pypi.org/project/requests/2.32.5 /#files
13851384FilesAnalyzed: false
13861385PackageHomePage: https://requests.readthedocs.io
1387- PackageChecksum: SHA256: 27babd3cda2a6d50b30443204ee89830707d396671944c998b5975b031ac2b2c
1386+ PackageChecksum: SHA256: 2462f94637a34fd532264295e186976db0f5d453d1cdd31473c85a6a161affb6
13881387PackageLicenseDeclared: Apache-2.0
13891388PackageLicenseConcluded: Apache-2.0
13901389PackageCopyrightText: NOASSERTION
13911390PackageSummary: <text>Python HTTP for Humans.</text>
1392- ReleaseDate: 2025-06-09T16:43:05Z
1391+ ReleaseDate: 2025-08-18T20:46:00Z
13931392ExternalRef: OTHER documentation https://requests.readthedocs.io
13941393ExternalRef: OTHER vcs https://github.com/psf/requests
1395- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] .
4 1396- ExternalRef: SECURITY cpe23Type cpe:2.3:a:kenneth_reitz:requests:2.32.4 :*:*:*:*:*:*:*
1394+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] .
5 1395+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:kenneth_reitz:requests:2.32.5 :*:*:*:*:*:*:*
13971396#####
13981397
13991398PackageName: charset-normalizer
15211520PackageDownloadLocation: https://pypi.org/project/zstandard/0.24.0/#files
15221521FilesAnalyzed: false
15231522PackageHomePage: https://github.com/indygreg/python-zstandard
1523+ PackageChecksum: SHA256: af1394c2c5febc44e0bbf0fc6428263fa928b50d1b1982ce1d870dc793a8e5f4
15241524PackageLicenseDeclared: NOASSERTION
15251525PackageLicenseConcluded: BSD-3-Clause
15261526PackageLicenseComments: <text>zstandard declares BSD which is not currently a valid SPDX License identifier or expression.</text>
15271527PackageCopyrightText: NOASSERTION
15281528PackageSummary: <text>Zstandard bindings for Python</text>
1529- ReleaseDate: 2025-06-08T17:06:38Z
1529+ ReleaseDate: 2025-08-17T18:21:12Z
15301530ExternalRef: OTHER documentation https://python-zstandard.readthedocs.io/en/latest/
15311531ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected] 15321532ExternalRef: SECURITY cpe23Type cpe:2.3:a:gregory_szorc:zstandard:0.24.0:*:*:*:*:*:*:*
0 commit comments