Skip to content

Commit 447aa39

Browse files
committed
Update validator dependencies in SBOM
Signed-off-by: Marc-Etienne Vargenau <[email protected]>
1 parent 06c3ff6 commit 447aa39

File tree

3 files changed

+30
-30
lines changed

3 files changed

+30
-30
lines changed

tools/openchain_telco_sbom_validator/open-source-compliance-artifacts/openchain-telco-sbom-validator-0.3.2.spdx

Lines changed: 10 additions & 10 deletions
Original file line numberDiff line numberDiff line change
@@ -9,7 +9,7 @@ DocumentNamespace: https://nokia.com/spdx/openchain-telco-sbom-validator-0.3.2
99
LicenseListVersion: 3.27
1010
Creator: Organization: Nokia
1111
Creator: Tool: pypispdx - 0.1.0
12-
Created: 2025-10-16T19:08:35Z
12+
Created: 2025-10-28T14:11:03Z
1313
CreatorComment: CISA SBOM type: Analyzed
1414

1515
##### Package: openchain-telco-sbom-validator
@@ -32,12 +32,12 @@ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/[email protected]
3232

3333
PackageName: beartype
3434
SPDXID: SPDXRef-beartype
35-
PackageVersion: 0.22.2
35+
PackageVersion: 0.22.4
3636
PackageSupplier: Organization: https://pypi.org
37-
PackageDownloadLocation: https://files.pythonhosted.org/packages/04/96/43ed27f27127155f24f5cf85df0c27fd2ac2ab67d94cecc8f76933f91679/beartype-0.22.2.tar.gz
37+
PackageDownloadLocation: https://files.pythonhosted.org/packages/e8/77/af43bdf737723b28130f2cb595ec0f23e0e757d211fe068fd0ccdb77d786/beartype-0.22.4.tar.gz
3838
FilesAnalyzed: false
39-
PackageChecksum: SHA256: ff3a7df26af8d15fa87f97934f0f6d41bbdadca971c410819104998dd26013d2
40-
PackageChecksum: MD5: ebe743c61f9d2c5e62664fd1c793e686
39+
PackageChecksum: SHA256: 68284c7803efd190b1b4639a0ab1a17677af9571b8a2ef5a169d10cb8955b01f
40+
PackageChecksum: MD5: f47fcd48146586d724483fc97bf52987
4141
PackageLicenseConcluded: MIT
4242
PackageLicenseDeclared: MIT
4343
PackageCopyrightText: © Copyright 2014-2025 Beartype authors.
@@ -227,16 +227,16 @@ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/[email protected]
227227

228228
PackageName: rdflib
229229
SPDXID: SPDXRef-rdflib
230-
PackageVersion: 7.2.1
230+
PackageVersion: 7.3.0
231231
PackageSupplier: Organization: https://pypi.org
232-
PackageDownloadLocation: https://files.pythonhosted.org/packages/8d/99/d2fec85e5f6bdfe4367dea143119cb4469bf48710487939df0abf7e22003/rdflib-7.2.1.tar.gz
232+
PackageDownloadLocation: https://files.pythonhosted.org/packages/c8/cd/01e49acce660e7f9d161f8885004313f9973cbc5ccbcb11888c147f3fa3a/rdflib-7.3.0.tar.gz
233233
FilesAnalyzed: false
234-
PackageChecksum: SHA256: cf9b7fa25234e8925da8b1fb09700f8349b5f0f100e785fb4260e737308292ac
235-
PackageChecksum: MD5: dce6e85ebf83d0a095bc83d1665188ec
234+
PackageChecksum: SHA256: 2da6a5d3d0da2d095dd7de49e388db1c97542efc035bda4000c154d2b6cf8a6e
235+
PackageChecksum: MD5: d5959c8e188bcfb41c6d8f820014f81c
236236
PackageLicenseConcluded: BSD-3-Clause
237237
PackageLicenseDeclared: BSD-3-Clause
238238
PackageCopyrightText: Copyright the RDFLib authors
239-
ExternalRef: PACKAGE-MANAGER purl pkg:pypi/rdflib@7.2.1
239+
ExternalRef: PACKAGE-MANAGER purl pkg:pypi/rdflib@7.3.0
240240

241241
##### Package: requests
242242

tools/openchain_telco_sbom_validator/open-source-compliance-artifacts/openchain-telco-sbom-validator-0.3.2.spdx.json

Lines changed: 10 additions & 10 deletions
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,7 @@
11
{
22
"SPDXID": "SPDXRef-DOCUMENT",
33
"creationInfo": {
4-
"created": "2025-10-16T19:08:35Z",
4+
"created": "2025-10-28T14:11:03Z",
55
"creators": [
66
"Organization: Nokia",
77
"Tool: pypispdx - 0.1.0"
@@ -48,15 +48,15 @@
4848
"checksums": [
4949
{
5050
"algorithm": "SHA256",
51-
"checksumValue": "ff3a7df26af8d15fa87f97934f0f6d41bbdadca971c410819104998dd26013d2"
51+
"checksumValue": "68284c7803efd190b1b4639a0ab1a17677af9571b8a2ef5a169d10cb8955b01f"
5252
},
5353
{
5454
"algorithm": "MD5",
55-
"checksumValue": "ebe743c61f9d2c5e62664fd1c793e686"
55+
"checksumValue": "f47fcd48146586d724483fc97bf52987"
5656
}
5757
],
5858
"copyrightText": "\u00a9 Copyright 2014-2025 Beartype authors.",
59-
"downloadLocation": "https://files.pythonhosted.org/packages/04/96/43ed27f27127155f24f5cf85df0c27fd2ac2ab67d94cecc8f76933f91679/beartype-0.22.2.tar.gz",
59+
"downloadLocation": "https://files.pythonhosted.org/packages/e8/77/af43bdf737723b28130f2cb595ec0f23e0e757d211fe068fd0ccdb77d786/beartype-0.22.4.tar.gz",
6060
"externalRefs": [
6161
{
6262
"referenceCategory": "PACKAGE_MANAGER",
@@ -69,7 +69,7 @@
6969
"licenseDeclared": "MIT",
7070
"name": "beartype",
7171
"supplier": "Organization: https://pypi.org",
72-
"versionInfo": "0.22.2"
72+
"versionInfo": "0.22.4"
7373
},
7474
{
7575
"SPDXID": "SPDXRef-boolean-py",
@@ -412,19 +412,19 @@
412412
"checksums": [
413413
{
414414
"algorithm": "SHA256",
415-
"checksumValue": "cf9b7fa25234e8925da8b1fb09700f8349b5f0f100e785fb4260e737308292ac"
415+
"checksumValue": "2da6a5d3d0da2d095dd7de49e388db1c97542efc035bda4000c154d2b6cf8a6e"
416416
},
417417
{
418418
"algorithm": "MD5",
419-
"checksumValue": "dce6e85ebf83d0a095bc83d1665188ec"
419+
"checksumValue": "d5959c8e188bcfb41c6d8f820014f81c"
420420
}
421421
],
422422
"copyrightText": "Copyright the RDFLib authors",
423-
"downloadLocation": "https://files.pythonhosted.org/packages/8d/99/d2fec85e5f6bdfe4367dea143119cb4469bf48710487939df0abf7e22003/rdflib-7.2.1.tar.gz",
423+
"downloadLocation": "https://files.pythonhosted.org/packages/c8/cd/01e49acce660e7f9d161f8885004313f9973cbc5ccbcb11888c147f3fa3a/rdflib-7.3.0.tar.gz",
424424
"externalRefs": [
425425
{
426426
"referenceCategory": "PACKAGE_MANAGER",
427-
"referenceLocator": "pkg:pypi/rdflib@7.2.1",
427+
"referenceLocator": "pkg:pypi/rdflib@7.3.0",
428428
"referenceType": "purl"
429429
}
430430
],
@@ -433,7 +433,7 @@
433433
"licenseDeclared": "BSD-3-Clause",
434434
"name": "rdflib",
435435
"supplier": "Organization: https://pypi.org",
436-
"versionInfo": "7.2.1"
436+
"versionInfo": "7.3.0"
437437
},
438438
{
439439
"SPDXID": "SPDXRef-requests",

tools/openchain_telco_sbom_validator/open-source-compliance-artifacts/openchain-telco-sbom-validator-0.3.2.spdx.yml

Lines changed: 10 additions & 10 deletions
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,7 @@
11
SPDXID: SPDXRef-DOCUMENT
22
creationInfo:
33
comment: 'CISA SBOM type: Analyzed'
4-
created: '2025-10-16T19:08:35Z'
4+
created: '2025-10-28T14:11:03Z'
55
creators:
66
- 'Organization: Nokia'
77
- 'Tool: pypispdx - 0.1.0'
@@ -32,11 +32,11 @@ packages:
3232
- SPDXID: SPDXRef-beartype
3333
checksums:
3434
- algorithm: SHA256
35-
checksumValue: ff3a7df26af8d15fa87f97934f0f6d41bbdadca971c410819104998dd26013d2
35+
checksumValue: 68284c7803efd190b1b4639a0ab1a17677af9571b8a2ef5a169d10cb8955b01f
3636
- algorithm: MD5
37-
checksumValue: ebe743c61f9d2c5e62664fd1c793e686
37+
checksumValue: f47fcd48146586d724483fc97bf52987
3838
copyrightText: "\xA9 Copyright 2014-2025 Beartype authors."
39-
downloadLocation: https://files.pythonhosted.org/packages/04/96/43ed27f27127155f24f5cf85df0c27fd2ac2ab67d94cecc8f76933f91679/beartype-0.22.2.tar.gz
39+
downloadLocation: https://files.pythonhosted.org/packages/e8/77/af43bdf737723b28130f2cb595ec0f23e0e757d211fe068fd0ccdb77d786/beartype-0.22.4.tar.gz
4040
externalRefs:
4141
- referenceCategory: PACKAGE_MANAGER
4242
referenceLocator: pkg:pypi/[email protected]
@@ -46,7 +46,7 @@ packages:
4646
licenseDeclared: MIT
4747
name: beartype
4848
supplier: 'Organization: https://pypi.org'
49-
versionInfo: 0.22.2
49+
versionInfo: 0.22.4
5050
- SPDXID: SPDXRef-boolean-py
5151
checksums:
5252
- algorithm: SHA256
@@ -267,21 +267,21 @@ packages:
267267
- SPDXID: SPDXRef-rdflib
268268
checksums:
269269
- algorithm: SHA256
270-
checksumValue: cf9b7fa25234e8925da8b1fb09700f8349b5f0f100e785fb4260e737308292ac
270+
checksumValue: 2da6a5d3d0da2d095dd7de49e388db1c97542efc035bda4000c154d2b6cf8a6e
271271
- algorithm: MD5
272-
checksumValue: dce6e85ebf83d0a095bc83d1665188ec
272+
checksumValue: d5959c8e188bcfb41c6d8f820014f81c
273273
copyrightText: Copyright the RDFLib authors
274-
downloadLocation: https://files.pythonhosted.org/packages/8d/99/d2fec85e5f6bdfe4367dea143119cb4469bf48710487939df0abf7e22003/rdflib-7.2.1.tar.gz
274+
downloadLocation: https://files.pythonhosted.org/packages/c8/cd/01e49acce660e7f9d161f8885004313f9973cbc5ccbcb11888c147f3fa3a/rdflib-7.3.0.tar.gz
275275
externalRefs:
276276
- referenceCategory: PACKAGE_MANAGER
277-
referenceLocator: pkg:pypi/rdflib@7.2.1
277+
referenceLocator: pkg:pypi/rdflib@7.3.0
278278
referenceType: purl
279279
filesAnalyzed: false
280280
licenseConcluded: BSD-3-Clause
281281
licenseDeclared: BSD-3-Clause
282282
name: rdflib
283283
supplier: 'Organization: https://pypi.org'
284-
versionInfo: 7.2.1
284+
versionInfo: 7.3.0
285285
- SPDXID: SPDXRef-requests
286286
checksums:
287287
- algorithm: SHA256

0 commit comments

Comments
 (0)