{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:65a80603-4617-56b7-9a71-d3d852df01c3",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:pypi/pypdf@5.9.0.post11+tuxcare",
      "type": "library",
      "name": "pypdf",
      "version": "5.9.0.post11+tuxcare",
      "purl": "pkg:pypi/pypdf@5.9.0.post11+tuxcare"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:82e33165-47e5-5242-bcfc-0bfc23cc6af1",
      "id": "CVE-2025-55197",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55197 is fixed in version 5.9.0.post11+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post11+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3ad9995c-ef4f-58c1-9308-2b3323ab0c13",
      "id": "CVE-2025-62707",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-62707 is fixed in version 5.9.0.post11+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post11+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d4c2d5a2-d2af-5034-a8db-23080e968826",
      "id": "CVE-2025-62708",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-62708 is fixed in version 5.9.0.post11+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post11+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d9c76f49-633a-59d8-af4d-edb74400f03d",
      "id": "CVE-2025-66019",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66019 affects version 5.9.0.post11+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post11+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0223e34c-903d-58ec-a5ba-b9d7c23f93c2",
      "id": "CVE-2026-22690",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22690 affects version 5.9.0.post11+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post11+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:558569fa-ed07-5730-abbe-eebb57055ddc",
      "id": "CVE-2026-22691",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22691 affects version 5.9.0.post11+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post11+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2793c8f5-45fc-5aed-a6f5-d9a23dc5148f",
      "id": "CVE-2026-24688",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24688 affects version 5.9.0.post11+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post11+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:05769c47-ed44-5208-8bfa-da06e3abc6a7",
      "id": "CVE-2026-27024",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-27024 affects version 5.9.0.post11+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post11+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c625d083-8834-50c8-b33d-b0e51049d3ff",
      "id": "CVE-2026-27025",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-27025 affects version 5.9.0.post11+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post11+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fdf3d233-897e-59bf-86b4-aa7cb7a7abcc",
      "id": "CVE-2026-27026",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-27026 affects version 5.9.0.post11+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post11+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1f4e4e9a-3c73-5add-9aaa-ea87057b6572",
      "id": "CVE-2026-27628",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-27628 is fixed in version 5.9.0.post11+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post11+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a2dfd6fd-c2fb-5aeb-88d2-6f153f487fa9",
      "id": "CVE-2026-27888",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-27888 affects version 5.9.0.post11+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post11+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:14e9bc65-177e-5d2c-8822-e86a964b092f",
      "id": "CVE-2026-28351",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-28351 affects version 5.9.0.post11+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post11+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:37ea8a44-9c49-597c-81fc-19211ea77ad2",
      "id": "CVE-2026-28804",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-28804 affects version 5.9.0.post11+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post11+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a528a9d9-8d3b-5c11-bbd8-760c49bd05bf",
      "id": "CVE-2026-31826",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-31826 affects version 5.9.0.post11+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post11+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:646b0ff2-a29c-511b-9fd4-7c4274f59eb1",
      "id": "CVE-2026-33123",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33123 affects version 5.9.0.post11+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post11+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f851f2cc-aba3-5f9c-9f00-796751dc1272",
      "id": "CVE-2026-33699",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33699 affects version 5.9.0.post11+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post11+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:250f61d9-e25f-54c4-9df0-97b76b73b64c",
      "id": "CVE-2026-40260",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-40260 affects version 5.9.0.post11+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post11+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dc7a44f8-d201-5cc2-aec7-586a04a49f76",
      "id": "CVE-2026-41168",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41168 is fixed in version 5.9.0.post11+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post11+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a8b682a9-99c1-5ee2-ab3a-f4153e3c0449",
      "id": "CVE-2026-41312",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41312 is fixed in version 5.9.0.post11+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post11+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c09afda6-855e-5073-be7c-f8896b1e57fa",
      "id": "CVE-2026-41313",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41313 is fixed in version 5.9.0.post11+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post11+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:055433b9-82cc-5eca-917a-f3e09cc7511e",
      "id": "CVE-2026-41314",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41314 is fixed in version 5.9.0.post11+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post11+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f2632e79-cc50-5ffb-a6bd-be6c23d78f56",
      "id": "CVE-2026-48155",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-48155 is fixed in version 5.9.0.post11+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post11+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3b2dce22-970b-53c7-9975-227d61f7d2a6",
      "id": "CVE-2026-48156",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-48156 is fixed in version 5.9.0.post11+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post11+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3a7b16ca-9a33-57bd-90f4-ff9667ae5d6b",
      "id": "CVE-2026-48735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48735 affects version 5.9.0.post11+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post11+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:93e3c6ac-d32a-5f01-983f-b4bb62f1f585",
      "id": "CVE-2026-49460",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-49460 is fixed in version 5.9.0.post11+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post11+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:92fd2b1d-1f1d-5e12-be3a-9b732f39f1ec",
      "id": "CVE-2026-49461",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-49461 is fixed in version 5.9.0.post11+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post11+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4cdb4fa6-0761-5a24-af87-c92cf6bc9a9b",
      "id": "CVE-2026-54530",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-54530 is fixed in version 5.9.0.post11+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post11+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:50e2bde7-b459-531a-9930-e576245cf675",
      "id": "CVE-2026-54531",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-54531 is fixed in version 5.9.0.post11+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post11+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:37eb2e8e-26bf-55e5-b111-13969b288270",
      "id": "CVE-2026-54651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-54651 is fixed in version 5.9.0.post11+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post11+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1a866024-3fbb-5303-9562-e4bdf8bf5e5d",
      "id": "CVE-2026-59935",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59935 affects version 5.9.0.post11+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post11+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f80f4c1e-7d08-5543-9f93-bc01b61e54d4",
      "id": "CVE-2026-59936",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59936 affects version 5.9.0.post11+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post11+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:46ee7ed4-f745-5119-be74-6c4cfc44f7b9",
      "id": "CVE-2026-59937",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59937 affects version 5.9.0.post11+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post11+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:49ae7a08-2d19-505e-9a1d-85753744efa8",
      "id": "CVE-2026-59938",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59938 affects version 5.9.0.post11+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post11+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c5953947-9f21-5b12-81c8-df298cd55ee2",
      "id": "GHSA-4pxv-j86v-mhcw",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-4pxv-j86v-mhcw affects version 5.9.0.post11+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post11+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:58443214-3daf-5933-938a-1a794685b989",
      "id": "GHSA-7gw9-cf7v-778f",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-7gw9-cf7v-778f affects version 5.9.0.post11+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post11+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cc05e7d8-1f7f-5e19-bbe8-51b2d7459870",
      "id": "GHSA-9m86-7pmv-2852",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-9m86-7pmv-2852 affects version 5.9.0.post11+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post11+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:441932b1-ba72-57b2-975b-1ed342a20935",
      "id": "GHSA-jj6c-8h6c-hppx",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-jj6c-8h6c-hppx affects version 5.9.0.post11+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post11+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7754b2f9-22e9-5a7e-ac0a-35b35c83e311",
      "id": "GHSA-jm82-fx9c-mx94",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability GHSA-jm82-fx9c-mx94 is fixed in version 5.9.0.post11+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post11+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d7d08d18-b0b2-5a5a-9d25-ae0b36c8a18d",
      "id": "GHSA-x284-j5p8-9c5p",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-x284-j5p8-9c5p affects version 5.9.0.post11+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post11+tuxcare"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:pypi/pypdf@5.9.0.post11+tuxcare"
    }
  ]
}