{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:0ad00c0e-d1b7-561f-9218-ca3cdcf8fec0",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:pypi/pypdf@5.9.0.post7+tuxcare",
      "type": "library",
      "name": "pypdf",
      "version": "5.9.0.post7+tuxcare",
      "purl": "pkg:pypi/pypdf@5.9.0.post7+tuxcare"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:050c8745-b7b4-545e-93c4-eab1a4f115a6",
      "id": "CVE-2025-55197",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55197 is fixed in version 5.9.0.post7+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:312cdcf7-316c-5f3e-8221-8e72103e8672",
      "id": "CVE-2025-62707",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-62707 is fixed in version 5.9.0.post7+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f5f131b6-2120-55cc-86d8-79a79533a82c",
      "id": "CVE-2025-62708",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-62708 is fixed in version 5.9.0.post7+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b751dd29-e58d-5927-993a-154d18fbba3c",
      "id": "CVE-2025-66019",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66019 affects version 5.9.0.post7+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d70610be-1d5e-5312-ae27-6526b4abc103",
      "id": "CVE-2026-22690",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22690 affects version 5.9.0.post7+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b6fa7af2-2b91-5fb6-9851-41e9cf4a62dc",
      "id": "CVE-2026-22691",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22691 affects version 5.9.0.post7+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a0376041-fe33-56ec-a3b3-d0aac4cd43c6",
      "id": "CVE-2026-24688",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24688 affects version 5.9.0.post7+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fd15dccc-b079-54a9-9569-3bb3d3ca1d4f",
      "id": "CVE-2026-27024",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-27024 affects version 5.9.0.post7+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:613bf850-872c-5ad7-8b74-fe81f5e4951f",
      "id": "CVE-2026-27025",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-27025 affects version 5.9.0.post7+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:61820f13-abaa-56de-911a-f33df663509b",
      "id": "CVE-2026-27026",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-27026 affects version 5.9.0.post7+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9089653a-d786-58c2-a492-32b723dbc764",
      "id": "CVE-2026-27628",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-27628 is fixed in version 5.9.0.post7+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:71c71dcc-b08f-54a4-8dcc-766038bc0ec3",
      "id": "CVE-2026-27888",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-27888 affects version 5.9.0.post7+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c91441be-2f91-53a0-85ca-dcb6d11101dd",
      "id": "CVE-2026-28351",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-28351 affects version 5.9.0.post7+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4a3cf27f-922d-506e-a22e-9769d81c4d4f",
      "id": "CVE-2026-28804",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-28804 affects version 5.9.0.post7+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7797b873-7b6a-5cd5-8a51-b92337ecffee",
      "id": "CVE-2026-31826",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-31826 affects version 5.9.0.post7+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:572f2a55-670c-5239-9749-79250feb1bef",
      "id": "CVE-2026-33123",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33123 affects version 5.9.0.post7+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fd519a77-dbd9-5028-9f31-4d7d15625637",
      "id": "CVE-2026-33699",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33699 affects version 5.9.0.post7+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c3bd179d-bf55-5eaf-8075-cb4aeda15b6b",
      "id": "CVE-2026-40260",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-40260 affects version 5.9.0.post7+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a1d60d68-1fc6-5ef8-8e7e-1f5adc9a7ab4",
      "id": "CVE-2026-41168",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41168 is fixed in version 5.9.0.post7+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2ee10411-a9db-5973-800d-0b2b7f4f3b9f",
      "id": "CVE-2026-41312",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41312 is fixed in version 5.9.0.post7+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:514a1b3d-3d0a-53a2-b585-a2f75b069dda",
      "id": "CVE-2026-41313",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41313 is fixed in version 5.9.0.post7+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c49d5a9b-b7f9-5159-a621-dc3a584a1159",
      "id": "CVE-2026-41314",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41314 is fixed in version 5.9.0.post7+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8631d248-46de-5b4c-b088-1300d4c86a8f",
      "id": "CVE-2026-48155",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48155 affects version 5.9.0.post7+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0b5715da-192c-5b81-8547-65ddf8e097c9",
      "id": "CVE-2026-48156",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-48156 is fixed in version 5.9.0.post7+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5a26ed12-5558-588a-9a20-fbf9682460e0",
      "id": "CVE-2026-48735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48735 affects version 5.9.0.post7+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eda49bc6-f745-5325-8965-fb6ef4cfbeb1",
      "id": "CVE-2026-49460",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-49460 is fixed in version 5.9.0.post7+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:00dfb7b4-cc0a-5ff6-bd6a-3420833d4f0c",
      "id": "CVE-2026-49461",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-49461 affects version 5.9.0.post7+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:47543372-659f-58ed-8756-17a78c5ed797",
      "id": "CVE-2026-54530",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54530 affects version 5.9.0.post7+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b382a1e5-b106-5dbf-bdd7-b50d33928912",
      "id": "CVE-2026-54531",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54531 affects version 5.9.0.post7+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cb458a21-deda-5b73-ba29-7511f9115429",
      "id": "CVE-2026-54651",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54651 affects version 5.9.0.post7+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f08e0c71-a284-5d0a-a887-608828abb9dd",
      "id": "CVE-2026-59935",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59935 affects version 5.9.0.post7+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:72a89dca-efd0-50f2-98f2-1347abed4ce4",
      "id": "CVE-2026-59936",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59936 affects version 5.9.0.post7+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:00d028bb-888f-51bd-91b5-2165324d3fe8",
      "id": "CVE-2026-59937",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59937 affects version 5.9.0.post7+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9dd000be-fe20-52cd-8f88-4590d8debe5e",
      "id": "CVE-2026-59938",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59938 affects version 5.9.0.post7+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a80209bc-39e2-5d05-930b-096a2dc556f0",
      "id": "GHSA-4pxv-j86v-mhcw",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-4pxv-j86v-mhcw affects version 5.9.0.post7+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c54d143b-2e81-5ef4-84d8-c7917d31351a",
      "id": "GHSA-7gw9-cf7v-778f",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-7gw9-cf7v-778f affects version 5.9.0.post7+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5bea9222-77ce-57e5-b837-2b59de95cb3d",
      "id": "GHSA-9m86-7pmv-2852",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-9m86-7pmv-2852 affects version 5.9.0.post7+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4969cbd3-9051-5647-8046-c757d517205b",
      "id": "GHSA-jj6c-8h6c-hppx",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-jj6c-8h6c-hppx affects version 5.9.0.post7+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2906c8c1-258f-58a0-825b-d2dc55bfb6f5",
      "id": "GHSA-jm82-fx9c-mx94",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-jm82-fx9c-mx94 affects version 5.9.0.post7+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dc47992a-80ec-5e55-9ba1-f872f0e26159",
      "id": "GHSA-x284-j5p8-9c5p",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-x284-j5p8-9c5p affects version 5.9.0.post7+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post7+tuxcare"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:pypi/pypdf@5.9.0.post7+tuxcare"
    }
  ]
}