-
-
Notifications
You must be signed in to change notification settings - Fork 86
Pull requests: CycloneDX/specification
Author
Label
Projects
Milestones
Reviews
Assignee
Sort
Pull requests list
chore(deps): bump zizmorcore/zizmor-action from 0.5.3 to 0.5.6
dependencies
Pull requests that update a dependency file
#939
opened May 23, 2026 by
dependabot
Bot
Loading…
chore(deps): bump shivammathur/setup-php from 2.37.0 to 2.37.1
dependencies
Pull requests that update a dependency file
#938
opened May 23, 2026 by
dependabot
Bot
Loading…
chore(deps): bump lib.slf4j.api from 2.0.16 to 2.0.18 in /tools
dependencies
Pull requests that update a dependency file
#937
opened May 23, 2026 by
dependabot
Bot
Loading…
Added new component identity model with updated test cases.
proposed core enhancement
request for comment
RFC notice sent
A public RFC notice was distributed to the CycloneDX mailing list for consideration
CycloneDX 1.7.1 - Schema Alignment & Typo-/Bug‑Fix Release
CDX 1.7
related to release v1.7
defect
documentation
format: ProtoBuf
format: XML
Add outputLength property to schema
cap: cryptography
Capability: Cryptography (CBOM)
#931
opened May 15, 2026 by
jvdsn
Contributor
Loading…
Initial commit of the party model and test cases.
breaking-changes
proposed core enhancement
request for comment
RFC notice sent
A public RFC notice was distributed to the CycloneDX mailing list for consideration
Added support for conditional components and associated unit tests
proposed core enhancement
request for comment
RFC notice sent
A public RFC notice was distributed to the CycloneDX mailing list for consideration
chore(deps): bump actions/download-artifact from 5.0.0 to 8.0.1
dependencies
Pull requests that update a dependency file
#926
opened May 9, 2026 by
dependabot
Bot
Loading…
fix: sync cryptographic algorithm family enum
cap: cryptography
Capability: Cryptography (CBOM)
cap: cryptography-registry
Capability: Cryptography Registry
#919
opened May 2, 2026 by
Mehrn0ush
Contributor
Loading…
chore(deps): bump commons-io:commons-io from 2.17.0 to 2.22.0 in /tools
dependencies
Pull requests that update a dependency file
#916
opened Apr 25, 2026 by
dependabot
Bot
Loading…
chore(deps): bump actions/setup-python from 5.6.0 to 6.2.0
dependencies
Pull requests that update a dependency file
#913
opened Apr 18, 2026 by
dependabot
Bot
Loading…
chore(deps-dev): bump com.networknt:json-schema-validator from 1.5.5 to 3.0.2 in /tools
dependencies
Pull requests that update a dependency file
#912
opened Apr 18, 2026 by
dependabot
Bot
Loading…
chore(deps): bump actions/upload-artifact from 4.6.2 to 7.0.1
dependencies
Pull requests that update a dependency file
#911
opened Apr 18, 2026 by
dependabot
Bot
Loading…
chore(deps): bump actions/checkout from 5.0.1 to 6.0.2
dependencies
Pull requests that update a dependency file
#910
opened Apr 18, 2026 by
dependabot
Bot
Loading…
CBOM: add custom fingerprints
cap: cryptography
Capability: Cryptography (CBOM)
promote to tc54
Promote to Ecma Technical Committee 54
proposed core enhancement
request for comment
RFC notice sent
A public RFC notice was distributed to the CycloneDX mailing list for consideration
RFC vote accepted
Migrate enveloped signature support from JSF to JSS
proposed core enhancement
request for comment
RFC notice sent
A public RFC notice was distributed to the CycloneDX mailing list for consideration
chore(deps-dev): bump org.apache.maven.plugins:maven-surefire-plugin from 3.5.2 to 3.5.5 in /tools
dependencies
Pull requests that update a dependency file
#854
opened Feb 28, 2026 by
dependabot
Bot
Loading…
Previous Next
ProTip!
Follow long discussions with comments:>50.