CycloneDX / specification

OWASP CycloneDX is a full-stack Bill of Materials (BOM) standard that provides advanced supply chain capabilities for cyber risk reduction. SBOM, SaaSBOM, HBOM, AI/ML-BOM, CBOM, OBOM, MBOM, VDR, and VEX
https://cyclonedx.org/
Apache License 2.0
338 stars 57 forks source link

Link to Purl Version Specification does not work #404

Open weichslgartner opened 3 months ago

weichslgartner commented 3 months ago

The link to the purl version range defined in https://github.com/CycloneDX/specification/blob/8af880d5f2ba0a107de88a920a76cedd5ba75083/schema/bom-1.5.xsd#L3647 (https://github.com/package-url/purl-spec/VERSION-RANGE-SPEC.rst) does not work at the moment.

Currently the Version-Range Spec is not merged to main but only available in a different branch: https://github.com/package-url/purl-spec/blob/version-range-spec/VERSION-RANGE-SPEC.rst

Once the spec is merged the problem should resolve by itself, but in the meantime it is a dead link.

jkowalleck commented 3 months ago

duplicates #311, #399 & related to #187