Skip to content

Commit 1000191

Browse files
web-flowgithub-actions[bot]
authored andcommitted
chore: update SBOM for Python 3.9
1 parent d146836 commit 1000191

File tree

2 files changed

+85
-64
lines changed

2 files changed

+85
-64
lines changed

sbom/cve-bin-tool-py3.9.json

Lines changed: 50 additions & 32 deletions
Original file line numberDiff line numberDiff line change
@@ -2,10 +2,10 @@
22
"$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
33
"bomFormat": "CycloneDX",
44
"specVersion": "1.6",
5-
"serialNumber": "urn:uuid:0fa43716-8c8f-48a5-9055-05a17bd14ee1",
5+
"serialNumber": "urn:uuid:00a27aec-640b-493e-8d39-7fe2ec497e10",
66
"version": 1,
77
"metadata": {
8-
"timestamp": "2025-10-13T00:40:50Z",
8+
"timestamp": "2025-10-27T00:42:37Z",
99
"lifecycles": [
1010
{
1111
"phase": "build"
@@ -79,12 +79,12 @@
7979
"type": "library",
8080
"bom-ref": "2-aiohttp",
8181
"name": "aiohttp",
82-
"version": "3.13.0",
82+
"version": "3.13.1",
8383
"description": "Async http client/server framework (asyncio)",
8484
"hashes": [
8585
{
8686
"alg": "SHA-256",
87-
"content": "ca69ec38adf5cadcc21d0b25e2144f6a25b7db7bea7e730bac25075bc305eff0"
87+
"content": "2349a6b642020bf20116a8a5c83bae8ba071acf1461c7cbe45fc7fafd552e7e2"
8888
}
8989
],
9090
"licenses": [
@@ -100,7 +100,7 @@
100100
"comment": "Home page for project"
101101
},
102102
{
103-
"url": "https://pypi.org/project/aiohttp/3.13.0/#files",
103+
"url": "https://pypi.org/project/aiohttp/3.13.1/#files",
104104
"type": "distribution",
105105
"comment": "Download location for component"
106106
},
@@ -137,11 +137,11 @@
137137
"type": "vcs"
138138
}
139139
],
140-
"purl": "pkg:pypi/aiohttp@3.13.0",
140+
"purl": "pkg:pypi/aiohttp@3.13.1",
141141
"properties": [
142142
{
143143
"name": "release_date",
144-
"value": "2025-10-06T19:54:40Z"
144+
"value": "2025-10-17T13:58:56Z"
145145
},
146146
{
147147
"name": "language",
@@ -305,6 +305,12 @@
305305
"name": "frozenlist",
306306
"version": "1.8.0",
307307
"description": "A list-like structure which implements collections.abc.MutableSequence",
308+
"hashes": [
309+
{
310+
"alg": "SHA-256",
311+
"content": "b37f6d31b3dcea7deb5e9696e529a6aa4a898adc33db82da12e4c60a7c4d2011"
312+
}
313+
],
308314
"licenses": [
309315
{
310316
"license": {
@@ -366,7 +372,7 @@
366372
"properties": [
367373
{
368374
"name": "release_date",
369-
"value": "2025-07-03T22:54:42Z"
375+
"value": "2025-10-06T05:35:23Z"
370376
},
371377
{
372378
"name": "language",
@@ -894,6 +900,12 @@
894900
},
895901
"cpe": "cpe:2.3:a:kim_davies:idna:3.11:*:*:*:*:*:*:*",
896902
"description": "Internationalized Domain Names in Applications (IDNA)",
903+
"hashes": [
904+
{
905+
"alg": "SHA-256",
906+
"content": "771a87f49d9defaf64091e6e6fe9c18d4833f140bd19464795bc32d966ca37ea"
907+
}
908+
],
897909
"externalReferences": [
898910
{
899911
"url": "https://pypi.org/project/idna/3.11/#files",
@@ -917,7 +929,7 @@
917929
"properties": [
918930
{
919931
"name": "release_date",
920-
"value": "2025-10-06T14:08:42Z"
932+
"value": "2025-10-12T14:55:18Z"
921933
},
922934
{
923935
"name": "language",
@@ -1383,7 +1395,7 @@
13831395
"type": "library",
13841396
"bom-ref": "20-argcomplete",
13851397
"name": "argcomplete",
1386-
"version": "3.6.2",
1398+
"version": "3.6.3",
13871399
"supplier": {
13881400
"name": "Andrey Kislyuk",
13891401
"contact": [
@@ -1392,12 +1404,12 @@
13921404
}
13931405
]
13941406
},
1395-
"cpe": "cpe:2.3:a:andrey_kislyuk:argcomplete:3.6.2:*:*:*:*:*:*:*",
1407+
"cpe": "cpe:2.3:a:andrey_kislyuk:argcomplete:3.6.3:*:*:*:*:*:*:*",
13961408
"description": "Bash tab completion for argparse",
13971409
"hashes": [
13981410
{
13991411
"alg": "SHA-256",
1400-
"content": "65b3133a29ad53fb42c48cf5114752c7ab66c1c38544fdf6460f450c09b42591"
1412+
"content": "f5007b3a600ccac5d25bbce33089211dfd49eab4a7718da3f10e3082525a92ce"
14011413
}
14021414
],
14031415
"licenses": [
@@ -1416,7 +1428,7 @@
14161428
"comment": "Home page for project"
14171429
},
14181430
{
1419-
"url": "https://pypi.org/project/argcomplete/3.6.2/#files",
1431+
"url": "https://pypi.org/project/argcomplete/3.6.3/#files",
14201432
"type": "distribution",
14211433
"comment": "Download location for component"
14221434
},
@@ -1437,11 +1449,11 @@
14371449
"type": "log"
14381450
}
14391451
],
1440-
"purl": "pkg:pypi/argcomplete@3.6.2",
1452+
"purl": "pkg:pypi/argcomplete@3.6.3",
14411453
"properties": [
14421454
{
14431455
"name": "release_date",
1444-
"value": "2025-04-03T04:57:01Z"
1456+
"value": "2025-10-20T03:33:33Z"
14451457
},
14461458
{
14471459
"name": "language",
@@ -3646,7 +3658,7 @@
36463658
"type": "library",
36473659
"bom-ref": "56-xmlschema",
36483660
"name": "xmlschema",
3649-
"version": "4.1.0",
3661+
"version": "4.2.0",
36503662
"supplier": {
36513663
"name": "Davide Brunato",
36523664
"contact": [
@@ -3655,12 +3667,12 @@
36553667
}
36563668
]
36573669
},
3658-
"cpe": "cpe:2.3:a:davide_brunato:xmlschema:4.1.0:*:*:*:*:*:*:*",
3670+
"cpe": "cpe:2.3:a:davide_brunato:xmlschema:4.2.0:*:*:*:*:*:*:*",
36593671
"description": "An XML Schema validator and decoder",
36603672
"hashes": [
36613673
{
36623674
"alg": "SHA-256",
3663-
"content": "eabf610f398a58700bc4ac94380ad9ce558297a3f9ca8b7722ed3f7888eb4498"
3675+
"content": "82d24a50eea5e7f2d603312813848cd66fddf8fa2b6730839c6aa3d66312e3b6"
36643676
}
36653677
],
36663678
"externalReferences": [
@@ -3670,16 +3682,16 @@
36703682
"comment": "Home page for project"
36713683
},
36723684
{
3673-
"url": "https://pypi.org/project/xmlschema/4.1.0/#files",
3685+
"url": "https://pypi.org/project/xmlschema/4.2.0/#files",
36743686
"type": "distribution",
36753687
"comment": "Download location for component"
36763688
}
36773689
],
3678-
"purl": "pkg:pypi/xmlschema@4.1.0",
3690+
"purl": "pkg:pypi/xmlschema@4.2.0",
36793691
"properties": [
36803692
{
36813693
"name": "release_date",
3682-
"value": "2025-06-05T21:17:35Z"
3694+
"value": "2025-10-14T09:19:28Z"
36833695
},
36843696
{
36853697
"name": "language",
@@ -4304,7 +4316,7 @@
43044316
"type": "library",
43054317
"bom-ref": "67-narwhals",
43064318
"name": "narwhals",
4307-
"version": "2.7.0",
4319+
"version": "2.9.0",
43084320
"supplier": {
43094321
"name": "Marco Gorelli",
43104322
"contact": [
@@ -4313,8 +4325,14 @@
43134325
}
43144326
]
43154327
},
4316-
"cpe": "cpe:2.3:a:marco_gorelli:narwhals:2.7.0:*:*:*:*:*:*:*",
4328+
"cpe": "cpe:2.3:a:marco_gorelli:narwhals:2.9.0:*:*:*:*:*:*:*",
43174329
"description": "Extremely lightweight compatibility layer between dataframe libraries",
4330+
"hashes": [
4331+
{
4332+
"alg": "SHA-256",
4333+
"content": "c59f7de4763004ae81691ce16df71b4e55aead0ead7ccde8c8f2ef8c9559c765"
4334+
}
4335+
],
43184336
"licenses": [
43194337
{
43204338
"license": {
@@ -4331,7 +4349,7 @@
43314349
"comment": "Home page for project"
43324350
},
43334351
{
4334-
"url": "https://pypi.org/project/narwhals/2.7.0/#files",
4352+
"url": "https://pypi.org/project/narwhals/2.9.0/#files",
43354353
"type": "distribution",
43364354
"comment": "Download location for component"
43374355
},
@@ -4348,11 +4366,11 @@
43484366
"type": "issue-tracker"
43494367
}
43504368
],
4351-
"purl": "pkg:pypi/narwhals@2.7.0",
4369+
"purl": "pkg:pypi/narwhals@2.9.0",
43524370
"properties": [
43534371
{
43544372
"name": "release_date",
4355-
"value": "2025-10-02T16:10:22Z"
4373+
"value": "2025-10-20T12:19:15Z"
43564374
},
43574375
{
43584376
"name": "language",
@@ -4512,7 +4530,7 @@
45124530
"type": "library",
45134531
"bom-ref": "70-charset-normalizer",
45144532
"name": "charset-normalizer",
4515-
"version": "3.4.3",
4533+
"version": "3.4.4",
45164534
"supplier": {
45174535
"name": "Ahmed R .",
45184536
"contact": [
@@ -4521,12 +4539,12 @@
45214539
}
45224540
]
45234541
},
4524-
"cpe": "cpe:2.3:a:ahmed_r.:charset-normalizer:3.4.3:*:*:*:*:*:*:*",
4542+
"cpe": "cpe:2.3:a:ahmed_r.:charset-normalizer:3.4.4:*:*:*:*:*:*:*",
45254543
"description": "The Real First Universal Charset Detector. Open, modern and actively maintained alternative to Chardet.",
45264544
"hashes": [
45274545
{
45284546
"alg": "SHA-256",
4529-
"content": "fb7f67a1bfa6e40b438170ebdc8158b78dc465a5a67b6dde178a46987b244a72"
4547+
"content": "e824f1492727fa856dd6eda4f7cee25f8518a12f3c4a56a74e8095695089cf6d"
45304548
}
45314549
],
45324550
"licenses": [
@@ -4540,7 +4558,7 @@
45404558
],
45414559
"externalReferences": [
45424560
{
4543-
"url": "https://pypi.org/project/charset-normalizer/3.4.3/#files",
4561+
"url": "https://pypi.org/project/charset-normalizer/3.4.4/#files",
45444562
"type": "distribution",
45454563
"comment": "Download location for component"
45464564
},
@@ -4561,11 +4579,11 @@
45614579
"type": "issue-tracker"
45624580
}
45634581
],
4564-
"purl": "pkg:pypi/charset-normalizer@3.4.3",
4582+
"purl": "pkg:pypi/charset-normalizer@3.4.4",
45654583
"properties": [
45664584
{
45674585
"name": "release_date",
4568-
"value": "2025-08-09T07:55:36Z"
4586+
"value": "2025-10-14T04:40:11Z"
45694587
},
45704588
{
45714589
"name": "language",

0 commit comments

Comments
 (0)