CycloneDX/bom-examples

Need v1.4 SBOM examples (with use of new v1.4 schema features, incl. JSF)

mrutkows opened this issue · 2 comments

Many new fields (schema) were added to between v1.3 and v1.4 yet there are not examples that ref. v1.4.

In addition, we would like examples that exhibit the use of many of these new fields such as "releaseNotes" and "vulnerabilities" (and all their sub-schemas and even proper object signing using JSF) in order to inform SBOM generation tooling, best practices as well as downstream validation (and signing verification).