Skip to content

msaad00/agent-bom

v0.86.5 Maintenance

This release keeps dependencies and maintenance posture current for teams operating this tool.

✓ No known CVEs patched
Read the diff → Tool health → What is this tool? →

✓ No known CVEs patched in this version

Topics

ai-agents ai-security ai-supply-chain aibom blast-radius cloud-security
+14 more
compliance container-security cyclonedx security kubernetes llm-security mcp mcp-server owasp sarif sbom security-scanner supply-chain-security vulnerability-scanning

Affected surfaces

deps

ReleasePort's take

Light signal
editorial:auto 13d

The release upgrades the urllib3 dependency from version 2.6.3 to 2.7.0.

Why it matters: Update your dependency manifests to pin urllib3 at 2.7.0; test integration in dev before production deployment.

Summary

AI summary

Minor fixes and improvements.

Changes in this release

Dependency Medium

urllib3 dependency bumped from version 2.6.3 to 2.7.0.

urllib3 dependency bumped from version 2.6.3 to 2.7.0.

Source: llm_adapter@2026-05-21

Confidence: high

Full changelog

What's Changed

  • chore(deps): bump urllib3 from 2.6.3 to 2.7.0 by @dependabot[bot] in https://github.com/msaad00/agent-bom/pull/2511

Full Changelog: https://github.com/msaad00/agent-bom/compare/v0.86.4...v0.86.5

Weekly OSS security release digest.

The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.

No spam, unsubscribe anytime.

Share this release

Track msaad00/agent-bom

Get notified when new releases ship.

Sign up free

About msaad00/agent-bom

AI supply chain security scanner with 18 MCP tools. Auto-discovers 20 MCP clients, scans dependencies for CVEs (OSV/NVD/EPSS/CISA KEV), maps blast radius from vulnerabilities to exposed credentials and tools, runs CIS benchmarks, generates CycloneDX/SPDX SBOMs, and enforces compliance across OWASP LLM Top 10, MITRE ATLAS, NIST AI RMF, and EU AI Act.

All releases →

Related context

Beta — feedback welcome: [email protected]