Skip to content

Bump cyclonedx-python-lib from 11.7.0 to 11.8.0#1250

Merged
spoorcc merged 3 commits into
mainfrom
dependabot/pip/main/cyclonedx-python-lib-11.8.0
Jun 7, 2026
Merged

Bump cyclonedx-python-lib from 11.7.0 to 11.8.0#1250
spoorcc merged 3 commits into
mainfrom
dependabot/pip/main/cyclonedx-python-lib-11.8.0

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Jun 4, 2026

Copy link
Copy Markdown
Contributor

Bumps cyclonedx-python-lib from 11.7.0 to 11.8.0.

Release notes

Sourced from cyclonedx-python-lib's releases.

v11.8.0 (2026-06-04)

Documentation

Features

  • Add support CycloneDX 1.7.1 & 1.6.2 & 1.5.1 (#985, 303889b)

  • Pull SPDX license IDs v1.1-3.28.0 (#986, 42ff044)


What's Changed

Full Changelog: CycloneDX/cyclonedx-python-lib@v11.7.0...v11.8.0

v11.7.1-alpha.2 (2026-05-04)

test release during CycloneDX/cyclonedx-python-lib#969


Detailed Changes: v11.7.0...v11.7.1-alpha.2

v11.7.1-alpha.1 (2026-05-04)

test release during CycloneDX/cyclonedx-python-lib#969


... (truncated)

Changelog

Sourced from cyclonedx-python-lib's changelog.

v11.8.0 (2026-06-04)

Documentation

Features

  • Add support CycloneDX 1.7.1 & 1.6.2 & 1.5.1 (#985, 303889b)

  • Pull SPDX license IDs v1.1-3.28.0 (#986, 42ff044)

Commits
  • e537812 chore(release): 11.8.0
  • 42ff044 feat: pull SPDX license IDs v1.1-3.28.0 (#986)
  • 590402a chore(deps): bump actions/upload-artifact from 6.0.0 to 7.0.1 (#963)
  • 051abce chore(deps): bump actions/download-artifact from 7.0.0 to 8.0.1 (#964)
  • bc961ef chore(deps): bump actions/create-github-app-token from 3.1.1 to 3.2.0 (#982)
  • 303889b feat: add support CycloneDX 1.7.1 & 1.6.2 & 1.5.1 (#985)
  • 392ba60 chore(ci): comments for pinned actions (#984)
  • 0daf3f9 chore: Update CONTRIBUTING.md (#975)
  • 1a6dfb0 Update PULL_REQUEST_TEMPLATE.md (#974)
  • 52c29af chore: add zizmor workflow to harden GitHub Actions security (#968)
  • Additional commits viewable in compare view

@dependabot dependabot Bot added the dependencies Packages this project depends on label Jun 4, 2026
Bumps [cyclonedx-python-lib](https://github.com/CycloneDX/cyclonedx-python-lib) from 11.7.0 to 11.8.0.
- [Release notes](https://github.com/CycloneDX/cyclonedx-python-lib/releases)
- [Changelog](https://github.com/CycloneDX/cyclonedx-python-lib/blob/main/CHANGELOG.md)
- [Commits](CycloneDX/cyclonedx-python-lib@v11.7.0...v11.8.0)

---
updated-dependencies:
- dependency-name: cyclonedx-python-lib
  dependency-version: 11.8.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot force-pushed the dependabot/pip/main/cyclonedx-python-lib-11.8.0 branch from b7bfd0e to 63b0bc2 Compare June 6, 2026 20:58
spoorcc pushed a commit that referenced this pull request Jun 7, 2026
actions/dependency-review-action calls api.deps.dev (Google Open
Source Insights) to look up vulnerability data; without it the job
fails with "domain not allowed" before it can do any useful work.

#1250
@spoorcc spoorcc merged commit d9fcd24 into main Jun 7, 2026
34 checks passed
@spoorcc spoorcc deleted the dependabot/pip/main/cyclonedx-python-lib-11.8.0 branch June 7, 2026 08:24
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Packages this project depends on

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant