diff --git a/sbom/cve-bin-tool-py3.10.json b/sbom/cve-bin-tool-py3.10.json
index 9a7a6c81e9..27f702ee52 100644
--- a/sbom/cve-bin-tool-py3.10.json
+++ b/sbom/cve-bin-tool-py3.10.json
@@ -2,10 +2,10 @@
"$schema": "http://cyclonedx.org/schema/bom-1.5.schema.json",
"bomFormat": "CycloneDX",
"specVersion": "1.5",
- "serialNumber": "urn:uuid:6f40516e-8cc0-4e34-bf8d-348ae81ded16",
+ "serialNumber": "urn:uuid:f62d6780-b1d8-43d4-bfc0-2530e12cc9ec",
"version": 1,
"metadata": {
- "timestamp": "2023-08-14T00:45:41Z",
+ "timestamp": "2023-08-21T00:45:22Z",
"tools": {
"components": [
{
@@ -1527,7 +1527,7 @@
"type": "library",
"bom-ref": "47-lib4sbom",
"name": "lib4sbom",
- "version": "0.4.2",
+ "version": "0.4.3",
"supplier": {
"name": "Anthony Harrison",
"contact": [
@@ -1536,7 +1536,7 @@
}
]
},
- "cpe": "cpe:2.3:a:anthony_harrison:lib4sbom:0.4.2:*:*:*:*:*:*:*",
+ "cpe": "cpe:2.3:a:anthony_harrison:lib4sbom:0.4.3:*:*:*:*:*:*:*",
"description": "Software Bill of Material (SBOM) generator and consumer library",
"licenses": [
{
@@ -1548,12 +1548,12 @@
],
"externalReferences": [
{
- "url": "https://pypi.org/project/lib4sbom/0.4.2",
+ "url": "https://pypi.org/project/lib4sbom/0.4.3",
"type": "distribution",
"comment": "Download location for component"
}
],
- "purl": "pkg:pypi/lib4sbom@0.4.2"
+ "purl": "pkg:pypi/lib4sbom@0.4.3"
},
{
"type": "library",
@@ -1666,7 +1666,7 @@
"type": "library",
"bom-ref": "51-plotly",
"name": "plotly",
- "version": "5.16.0",
+ "version": "5.16.1",
"supplier": {
"name": "Chris P",
"contact": [
@@ -1675,7 +1675,7 @@
}
]
},
- "cpe": "cpe:2.3:a:chris_p:plotly:5.16.0:*:*:*:*:*:*:*",
+ "cpe": "cpe:2.3:a:chris_p:plotly:5.16.1:*:*:*:*:*:*:*",
"description": "An open-source, interactive data visualization library for Python",
"licenses": [
{
@@ -1687,18 +1687,18 @@
],
"externalReferences": [
{
- "url": "https://pypi.org/project/plotly/5.16.0",
+ "url": "https://pypi.org/project/plotly/5.16.1",
"type": "distribution",
"comment": "Download location for component"
}
],
- "purl": "pkg:pypi/plotly@5.16.0"
+ "purl": "pkg:pypi/plotly@5.16.1"
},
{
"type": "library",
"bom-ref": "52-tenacity",
"name": "tenacity",
- "version": "8.2.2",
+ "version": "8.2.3",
"supplier": {
"name": "Julien Danjou",
"contact": [
@@ -1707,7 +1707,7 @@
}
]
},
- "cpe": "cpe:2.3:a:julien_danjou:tenacity:8.2.2:*:*:*:*:*:*:*",
+ "cpe": "cpe:2.3:a:julien_danjou:tenacity:8.2.3:*:*:*:*:*:*:*",
"description": "Retry code until it succeeds",
"licenses": [
{
@@ -1719,12 +1719,12 @@
],
"externalReferences": [
{
- "url": "https://pypi.org/project/tenacity/8.2.2",
+ "url": "https://pypi.org/project/tenacity/8.2.3",
"type": "distribution",
"comment": "Download location for component"
}
],
- "purl": "pkg:pypi/tenacity@8.2.2",
+ "purl": "pkg:pypi/tenacity@8.2.3",
"properties": [
{
"name": "License Comments",
diff --git a/sbom/cve-bin-tool-py3.10.spdx b/sbom/cve-bin-tool-py3.10.spdx
index be2f39f19d..a93a8d2d9c 100644
--- a/sbom/cve-bin-tool-py3.10.spdx
+++ b/sbom/cve-bin-tool-py3.10.spdx
@@ -2,10 +2,10 @@ SPDXVersion: SPDX-2.3
DataLicense: CC0-1.0
SPDXID: SPDXRef-DOCUMENT
DocumentName: Python-cve-bin-tool
-DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-7c81cabe-6439-445a-a042-d629b416431f
+DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-9b739ca3-ad28-48f7-8800-9a48f222c82b
LicenseListVersion: 3.21
Creator: Tool: sbom4python-0.10.0
-Created: 2023-08-14T00:44:13Z
+Created: 2023-08-21T00:44:04Z
CreatorComment: This document has been automatically generated.
#####
@@ -718,17 +718,17 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:julian_berman:rpds-py:0.9.2:*:*:*:*:*:
PackageName: lib4sbom
SPDXID: SPDXRef-Package-47-lib4sbom
-PackageVersion: 0.4.2
+PackageVersion: 0.4.3
PrimaryPackagePurpose: LIBRARY
PackageSupplier: Person: Anthony Harrison (anthony.p.harrison@gmail.com)
-PackageDownloadLocation: https://pypi.org/project/lib4sbom/0.4.2
+PackageDownloadLocation: https://pypi.org/project/lib4sbom/0.4.3
FilesAnalyzed: false
PackageLicenseDeclared: Apache-2.0
PackageLicenseConcluded: Apache-2.0
PackageCopyrightText: NOASSERTION
PackageSummary: Software Bill of Material (SBOM) generator and consumer library
-ExternalRef: PACKAGE-MANAGER purl pkg:pypi/lib4sbom@0.4.2
-ExternalRef: SECURITY cpe23Type cpe:2.3:a:anthony_harrison:lib4sbom:0.4.2:*:*:*:*:*:*:*
+ExternalRef: PACKAGE-MANAGER purl pkg:pypi/lib4sbom@0.4.3
+ExternalRef: SECURITY cpe23Type cpe:2.3:a:anthony_harrison:lib4sbom:0.4.3:*:*:*:*:*:*:*
#####
PackageName: pyyaml
@@ -780,33 +780,33 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:donald_stufft_and_individual_contribut
PackageName: plotly
SPDXID: SPDXRef-Package-51-plotly
-PackageVersion: 5.16.0
+PackageVersion: 5.16.1
PrimaryPackagePurpose: LIBRARY
PackageSupplier: Person: Chris P (chris@plot.ly)
-PackageDownloadLocation: https://pypi.org/project/plotly/5.16.0
+PackageDownloadLocation: https://pypi.org/project/plotly/5.16.1
FilesAnalyzed: false
PackageLicenseDeclared: MIT
PackageLicenseConcluded: MIT
PackageCopyrightText: NOASSERTION
PackageSummary: An open-source, interactive data visualization library for Python
-ExternalRef: PACKAGE-MANAGER purl pkg:pypi/plotly@5.16.0
-ExternalRef: SECURITY cpe23Type cpe:2.3:a:chris_p:plotly:5.16.0:*:*:*:*:*:*:*
+ExternalRef: PACKAGE-MANAGER purl pkg:pypi/plotly@5.16.1
+ExternalRef: SECURITY cpe23Type cpe:2.3:a:chris_p:plotly:5.16.1:*:*:*:*:*:*:*
#####
PackageName: tenacity
SPDXID: SPDXRef-Package-52-tenacity
-PackageVersion: 8.2.2
+PackageVersion: 8.2.3
PrimaryPackagePurpose: LIBRARY
PackageSupplier: Person: Julien Danjou (julien@danjou.info)
-PackageDownloadLocation: https://pypi.org/project/tenacity/8.2.2
+PackageDownloadLocation: https://pypi.org/project/tenacity/8.2.3
FilesAnalyzed: false
PackageLicenseDeclared: NOASSERTION
PackageLicenseConcluded: Apache-2.0
PackageLicenseComments: tenacity declares Apache 2.0 which is not currently a valid SPDX License identifier or expression.
PackageCopyrightText: NOASSERTION
PackageSummary: Retry code until it succeeds
-ExternalRef: PACKAGE-MANAGER purl pkg:pypi/tenacity@8.2.2
-ExternalRef: SECURITY cpe23Type cpe:2.3:a:julien_danjou:tenacity:8.2.2:*:*:*:*:*:*:*
+ExternalRef: PACKAGE-MANAGER purl pkg:pypi/tenacity@8.2.3
+ExternalRef: SECURITY cpe23Type cpe:2.3:a:julien_danjou:tenacity:8.2.3:*:*:*:*:*:*:*
#####
PackageName: python-gnupg