{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:24e9e810-b1d2-5729-be1c-60e1f7163544",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:pypi/pypdf@5.9.0.post1+tuxcare",
      "type": "library",
      "name": "pypdf",
      "version": "5.9.0.post1+tuxcare",
      "purl": "pkg:pypi/pypdf@5.9.0.post1+tuxcare"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:70ba38ac-2c8b-594b-a824-7b9cdecd4ee7",
      "id": "CVE-2025-55197",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55197 is fixed in version 5.9.0.post1+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:92516b9a-85c7-559e-9408-bda48b286c6b",
      "id": "CVE-2025-62707",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-62707 affects version 5.9.0.post1+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f413c160-6991-5cfd-9f07-f5e4ece6ec6a",
      "id": "CVE-2025-62708",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-62708 affects version 5.9.0.post1+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:36e5e54f-334e-5051-bc20-59a3c52f09c5",
      "id": "CVE-2025-66019",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66019 affects version 5.9.0.post1+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6ab99c16-2293-5498-98c3-d9fa4d23fd08",
      "id": "CVE-2026-22690",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22690 affects version 5.9.0.post1+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:088228e4-40e8-58db-aa24-12ae5f33be29",
      "id": "CVE-2026-22691",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22691 affects version 5.9.0.post1+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7c1a9104-992c-590e-8832-bc661fa019c7",
      "id": "CVE-2026-24688",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24688 affects version 5.9.0.post1+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b08b7257-508c-514e-bc79-fc211cee99e1",
      "id": "CVE-2026-27024",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-27024 affects version 5.9.0.post1+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dbbd1740-3e70-5c7e-976b-6f1b5b4a3d5d",
      "id": "CVE-2026-27025",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-27025 affects version 5.9.0.post1+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a5d8a9c8-3a65-5a3d-8e05-aa011030eef4",
      "id": "CVE-2026-27026",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-27026 affects version 5.9.0.post1+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:caa8e353-585c-5a6b-8fb9-12465877ac8d",
      "id": "CVE-2026-27628",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-27628 affects version 5.9.0.post1+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:01b09fe0-5e84-5a2a-8c57-ffd019e097db",
      "id": "CVE-2026-27888",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-27888 affects version 5.9.0.post1+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1f025382-2cb9-5a7d-b9f4-01817e5ba092",
      "id": "CVE-2026-28351",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-28351 affects version 5.9.0.post1+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6cd2d13d-c80b-5752-94ac-244b6f0bc023",
      "id": "CVE-2026-28804",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-28804 affects version 5.9.0.post1+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c0ceae4f-f5ff-5c32-9a9f-93b79715af24",
      "id": "CVE-2026-31826",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-31826 affects version 5.9.0.post1+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cc83c065-78bf-5f72-9116-2083e3078ee7",
      "id": "CVE-2026-33123",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33123 affects version 5.9.0.post1+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fda20db4-046a-5a09-a630-292d9f0fdf6a",
      "id": "CVE-2026-33699",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33699 affects version 5.9.0.post1+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:167b145c-e8fe-56ec-a992-4065cda04dda",
      "id": "CVE-2026-40260",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-40260 affects version 5.9.0.post1+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9b8f55b4-c620-5da8-9fec-df8c3f69eb19",
      "id": "CVE-2026-41168",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41168 affects version 5.9.0.post1+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:30bbfd22-0fef-5d07-9c5b-5d1ed7fdb744",
      "id": "CVE-2026-41312",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41312 affects version 5.9.0.post1+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:789d7daf-6c5e-528a-9bea-2aa21b77f13e",
      "id": "CVE-2026-41313",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41313 affects version 5.9.0.post1+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:29a5a738-e6ec-510c-91f6-f427b8cee723",
      "id": "CVE-2026-41314",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41314 affects version 5.9.0.post1+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a76856e2-15d1-51cd-9fa3-16c6f063cd96",
      "id": "CVE-2026-48155",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48155 affects version 5.9.0.post1+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:540fafe1-a42b-52a3-ae07-c76b578d215d",
      "id": "CVE-2026-48156",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48156 affects version 5.9.0.post1+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:345da088-c4ad-5fbb-9524-fb6e2439a7f3",
      "id": "CVE-2026-48735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48735 affects version 5.9.0.post1+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bd0a964f-c832-5ba7-987c-1cc348542a0c",
      "id": "CVE-2026-49460",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-49460 affects version 5.9.0.post1+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b4974d21-0dba-5a01-bb18-606903d0762f",
      "id": "CVE-2026-49461",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-49461 affects version 5.9.0.post1+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1d22c982-89ed-5d9a-8274-781896656b36",
      "id": "CVE-2026-54530",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54530 affects version 5.9.0.post1+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:96df2b83-6ebb-5b79-8d66-5104c80312ae",
      "id": "CVE-2026-54531",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54531 affects version 5.9.0.post1+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:93078f42-553b-593c-9769-3f15bc81cd3e",
      "id": "CVE-2026-54651",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54651 affects version 5.9.0.post1+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4458d29c-2885-595a-919c-51c51c67cc73",
      "id": "CVE-2026-59935",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59935 affects version 5.9.0.post1+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b93c1add-c6d7-5028-bc52-e0b3dc5b939d",
      "id": "CVE-2026-59936",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59936 affects version 5.9.0.post1+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3d5eee1d-7321-5db1-8d61-123c3f89df97",
      "id": "CVE-2026-59937",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59937 affects version 5.9.0.post1+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:505db3d8-4aaf-5da7-90c0-36f1b1d5e7d1",
      "id": "CVE-2026-59938",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59938 affects version 5.9.0.post1+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c1404a64-fe80-5f7a-8e77-e3eda568d6f4",
      "id": "GHSA-4pxv-j86v-mhcw",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-4pxv-j86v-mhcw affects version 5.9.0.post1+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:950bd9c5-d934-5bd7-886b-267fb0b62cce",
      "id": "GHSA-7gw9-cf7v-778f",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-7gw9-cf7v-778f affects version 5.9.0.post1+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3f3766e5-5acc-574b-be89-0f2ee0e0155f",
      "id": "GHSA-9m86-7pmv-2852",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-9m86-7pmv-2852 affects version 5.9.0.post1+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2c3842a0-27f3-585b-a9cc-576a833c2b93",
      "id": "GHSA-jj6c-8h6c-hppx",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-jj6c-8h6c-hppx affects version 5.9.0.post1+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:be826ca6-5e14-5a5f-bc77-2d7aa5ec070d",
      "id": "GHSA-jm82-fx9c-mx94",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-jm82-fx9c-mx94 affects version 5.9.0.post1+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:679cbfd9-b996-5c10-b983-2dee15a16733",
      "id": "GHSA-x284-j5p8-9c5p",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-x284-j5p8-9c5p affects version 5.9.0.post1+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post1+tuxcare"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:pypi/pypdf@5.9.0.post1+tuxcare"
    }
  ]
}