{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:f490f033-2910-5bb7-8af0-5b25746dd2ac",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:pypi/pypdf@5.9.0.post10+tuxcare",
      "type": "library",
      "name": "pypdf",
      "version": "5.9.0.post10+tuxcare",
      "purl": "pkg:pypi/pypdf@5.9.0.post10+tuxcare"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:40eb60b3-82f1-587d-a33f-132e37287332",
      "id": "CVE-2025-55197",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55197 is fixed in version 5.9.0.post10+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post10+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b576ad26-de38-5fd6-adc6-d6e286fb4e6a",
      "id": "CVE-2025-62707",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-62707 is fixed in version 5.9.0.post10+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post10+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:81ecd34d-ebef-59f6-8e8d-bd1cfa76c345",
      "id": "CVE-2025-62708",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-62708 is fixed in version 5.9.0.post10+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post10+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:22368e9f-b53e-5e10-93c6-b83f6d907604",
      "id": "CVE-2025-66019",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66019 affects version 5.9.0.post10+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post10+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6db47af8-e88e-53a1-adf8-3e09e5dff631",
      "id": "CVE-2026-22690",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22690 affects version 5.9.0.post10+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post10+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d68fb331-6db6-565c-8ad0-3d4f23f6ef8d",
      "id": "CVE-2026-22691",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22691 affects version 5.9.0.post10+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post10+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:94b6880a-5aaf-5f1c-9d8d-321d80461a6b",
      "id": "CVE-2026-24688",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24688 affects version 5.9.0.post10+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post10+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fc068cbf-b4e0-5603-9b09-5659f7590b3d",
      "id": "CVE-2026-27024",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-27024 affects version 5.9.0.post10+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post10+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3b06f374-eeb4-5f02-bc6d-c21f21931101",
      "id": "CVE-2026-27025",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-27025 affects version 5.9.0.post10+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post10+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:11ef6357-debb-5df5-b0b5-81d398391255",
      "id": "CVE-2026-27026",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-27026 affects version 5.9.0.post10+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post10+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:21d14870-f80c-50a3-a797-355fa2f88bed",
      "id": "CVE-2026-27628",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-27628 is fixed in version 5.9.0.post10+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post10+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ab1ba8b4-d631-5fa7-b0de-8c7e8ed03f7a",
      "id": "CVE-2026-27888",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-27888 affects version 5.9.0.post10+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post10+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6751b115-f93c-5d4b-af23-11384100d35d",
      "id": "CVE-2026-28351",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-28351 affects version 5.9.0.post10+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post10+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1bfb4f83-1de4-589c-aeb8-31ce8c9383a4",
      "id": "CVE-2026-28804",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-28804 affects version 5.9.0.post10+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post10+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:efca9281-ea2b-5f0d-a220-db29a34e5018",
      "id": "CVE-2026-31826",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-31826 affects version 5.9.0.post10+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post10+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8b034280-0a7b-5459-a4c2-874a7712864d",
      "id": "CVE-2026-33123",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33123 affects version 5.9.0.post10+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post10+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3240b9c6-6051-56a1-be42-c344ec7a0d96",
      "id": "CVE-2026-33699",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33699 affects version 5.9.0.post10+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post10+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b88a3e18-e96e-558f-be33-c427c3d131c2",
      "id": "CVE-2026-40260",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-40260 affects version 5.9.0.post10+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post10+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:54ea8e44-8bce-598d-b853-070758376fac",
      "id": "CVE-2026-41168",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41168 is fixed in version 5.9.0.post10+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post10+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1f82358e-d4a4-53b4-8fd5-a4d77237390a",
      "id": "CVE-2026-41312",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41312 is fixed in version 5.9.0.post10+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post10+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d40b6f97-c425-50c8-8980-ffa93d46850e",
      "id": "CVE-2026-41313",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41313 is fixed in version 5.9.0.post10+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post10+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e9dae5ec-921a-5c42-be32-259882a6fa73",
      "id": "CVE-2026-41314",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41314 is fixed in version 5.9.0.post10+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post10+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:96821218-2109-530f-99da-c54f1bff493f",
      "id": "CVE-2026-48155",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-48155 is fixed in version 5.9.0.post10+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post10+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:34de3304-e031-5368-9790-ab81fe7248d9",
      "id": "CVE-2026-48156",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-48156 is fixed in version 5.9.0.post10+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post10+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:97e71750-0139-5b22-9692-6f55ec8d8669",
      "id": "CVE-2026-48735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48735 affects version 5.9.0.post10+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post10+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5e4f8808-b5dd-5382-a394-7d9e1c2e681f",
      "id": "CVE-2026-49460",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-49460 is fixed in version 5.9.0.post10+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post10+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4a8bbced-5a67-5bda-b3e8-7688698daf68",
      "id": "CVE-2026-49461",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-49461 is fixed in version 5.9.0.post10+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post10+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b35917bd-158d-5564-b0f5-d09b9d8103f2",
      "id": "CVE-2026-54530",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-54530 is fixed in version 5.9.0.post10+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post10+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6a6f7134-9a73-5284-a05a-b1396cc61559",
      "id": "CVE-2026-54531",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-54531 is fixed in version 5.9.0.post10+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post10+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7d4b308a-2d73-50fb-a1af-e3bdec0988e1",
      "id": "CVE-2026-54651",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54651 affects version 5.9.0.post10+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post10+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1f2b6801-f2b2-5f69-9ae5-c42b7557d77c",
      "id": "CVE-2026-59935",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59935 affects version 5.9.0.post10+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post10+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2616cc49-2ee4-56d8-b166-6ec3e2e05327",
      "id": "CVE-2026-59936",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59936 affects version 5.9.0.post10+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post10+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8e5586f4-4b99-50ae-b66e-95bc0245f1ce",
      "id": "CVE-2026-59937",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59937 affects version 5.9.0.post10+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post10+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3ff5d8d3-e4ea-519b-8b18-9172b1c7c875",
      "id": "CVE-2026-59938",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59938 affects version 5.9.0.post10+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post10+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:20e6d000-1f54-5f2a-b742-33162d46b00f",
      "id": "GHSA-4pxv-j86v-mhcw",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-4pxv-j86v-mhcw affects version 5.9.0.post10+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post10+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0ec2fdd8-836c-5bd8-9fd4-1045a5cbd5e7",
      "id": "GHSA-7gw9-cf7v-778f",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-7gw9-cf7v-778f affects version 5.9.0.post10+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post10+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d2d68ec4-d617-524c-9014-1f37e1f7b8b8",
      "id": "GHSA-9m86-7pmv-2852",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-9m86-7pmv-2852 affects version 5.9.0.post10+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post10+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:213b7cb7-5f2e-583e-9f58-1edf7122a091",
      "id": "GHSA-jj6c-8h6c-hppx",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-jj6c-8h6c-hppx affects version 5.9.0.post10+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post10+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3ce588a8-a3ba-5c97-8cbf-3075c0568fd6",
      "id": "GHSA-jm82-fx9c-mx94",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability GHSA-jm82-fx9c-mx94 is fixed in version 5.9.0.post10+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post10+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:87551862-eaee-5491-bbc2-f42583587935",
      "id": "GHSA-x284-j5p8-9c5p",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-x284-j5p8-9c5p affects version 5.9.0.post10+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post10+tuxcare"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:pypi/pypdf@5.9.0.post10+tuxcare"
    }
  ]
}