github.com/devseccon/trivy@v0.47.1-0.20231123133102-bd902a0bd996/pkg/sbom/cyclonedx/testdata/sad/invalid-purl.json (about)

     1  {
     2    "bomFormat": "CycloneDX",
     3    "specVersion": "1.5",
     4    "serialNumber": "urn:uuid:c986ba94-e37d-49c8-9e30-96daccd0415b",
     5    "version": 1,
     6    "metadata": {
     7      "timestamp": "2022-05-28T10:20:03.79527Z",
     8      "tools": [
     9        {
    10          "vendor": "aquasecurity",
    11          "name": "trivy",
    12          "version": "dev"
    13        }
    14      ],
    15      "component": {
    16        "bom-ref": "0f585d64-4815-4b72-92c5-97dae191fa4a",
    17        "type": "application",
    18        "name": "maven-test-project",
    19        "properties": [
    20          {
    21            "name": "aquasecurity:trivy:SchemaVersion",
    22            "value": "2"
    23          }
    24        ]
    25      }
    26    },
    27    "components": [
    28      {
    29        "bom-ref": "pkg:composer/pear/core@1.13.1",
    30        "type": "library",
    31        "name": "pear/core",
    32        "version": "1.13.1",
    33        "purl": "pkg:composer/pear/core@1.13.1"
    34      },
    35      {
    36        "bom-ref": "pkg:composer/pear/log@1.13.1",
    37        "type": "library",
    38        "name": "pear/log",
    39        "version": "1.13.1",
    40        "purl": "invalid-purl-format"
    41      }
    42    ],
    43    "dependencies": [
    44      {
    45        "ref": "pkg:composer/pear/core@1.13.1",
    46        "dependsOn": [
    47          "pkg:composer/pear/log@1.13.1"
    48        ]
    49      }
    50    ],
    51    "vulnerabilities": []
    52  }