{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:0b29934a-99e5-5580-b149-98b8aed3c984",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:pypi/pypdf@5.9.0.post8+tuxcare",
      "type": "library",
      "name": "pypdf",
      "version": "5.9.0.post8+tuxcare",
      "purl": "pkg:pypi/pypdf@5.9.0.post8+tuxcare"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:376a67c4-f10f-567c-b08b-52f44f24ec60",
      "id": "CVE-2025-55197",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55197 is fixed in version 5.9.0.post8+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post8+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:72f63cc2-969c-5205-8b83-ad01296c1015",
      "id": "CVE-2025-62707",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-62707 is fixed in version 5.9.0.post8+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post8+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4806193c-a3ec-58a7-8a03-6387210316d7",
      "id": "CVE-2025-62708",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-62708 is fixed in version 5.9.0.post8+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post8+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0a99b95e-a892-5523-bad2-5c60b236d3a2",
      "id": "CVE-2025-66019",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66019 affects version 5.9.0.post8+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post8+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eedf161e-42c8-5b13-9dfc-f719cd0dfcd1",
      "id": "CVE-2026-22690",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22690 affects version 5.9.0.post8+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post8+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:10b0635f-a94a-560f-8478-954081156b88",
      "id": "CVE-2026-22691",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22691 affects version 5.9.0.post8+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post8+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a7428ccb-8229-5d24-b09b-42f96c6ec7b6",
      "id": "CVE-2026-24688",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24688 affects version 5.9.0.post8+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post8+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:12e28abc-a30c-5317-9e9d-bc00d3a5ab4b",
      "id": "CVE-2026-27024",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-27024 affects version 5.9.0.post8+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post8+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7937c07d-961b-50d8-9a78-bc310abe1187",
      "id": "CVE-2026-27025",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-27025 affects version 5.9.0.post8+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post8+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b9b4ab2b-31dd-5bd8-b69d-4598750c5a2f",
      "id": "CVE-2026-27026",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-27026 affects version 5.9.0.post8+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post8+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fb35fa2f-76b5-5605-b480-7be7bd8a1155",
      "id": "CVE-2026-27628",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-27628 is fixed in version 5.9.0.post8+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post8+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:192114aa-f465-5d77-a986-9857c59ff7cb",
      "id": "CVE-2026-27888",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-27888 affects version 5.9.0.post8+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post8+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a85d619f-3b2d-529e-bd47-a96923fd094a",
      "id": "CVE-2026-28351",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-28351 affects version 5.9.0.post8+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post8+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d01183d6-be38-5665-9ac8-7fbf8862fd1a",
      "id": "CVE-2026-28804",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-28804 affects version 5.9.0.post8+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post8+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:159a7006-a07e-55cd-a0d3-0b152e8b6e10",
      "id": "CVE-2026-31826",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-31826 affects version 5.9.0.post8+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post8+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eeafee3e-262b-5b4a-856f-ff66f9d6893d",
      "id": "CVE-2026-33123",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33123 affects version 5.9.0.post8+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post8+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:56344f1c-3a94-5dad-8a50-4ef7b39b282a",
      "id": "CVE-2026-33699",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33699 affects version 5.9.0.post8+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post8+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:20fa288e-b656-56bd-830b-a1bd309227f2",
      "id": "CVE-2026-40260",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-40260 affects version 5.9.0.post8+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post8+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:046239f1-9b6e-5acb-9d9a-b9f465754adb",
      "id": "CVE-2026-41168",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41168 is fixed in version 5.9.0.post8+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post8+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:853acf8f-1933-5afa-b71a-83d3334c9718",
      "id": "CVE-2026-41312",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41312 is fixed in version 5.9.0.post8+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post8+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1a84ab33-061e-55f0-accc-85610713e3a5",
      "id": "CVE-2026-41313",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41313 is fixed in version 5.9.0.post8+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post8+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:826755bd-bdbe-5cbb-a55a-eb0391ff3867",
      "id": "CVE-2026-41314",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41314 is fixed in version 5.9.0.post8+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post8+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:34cd6ec2-7f92-582e-b563-d849beada371",
      "id": "CVE-2026-48155",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48155 affects version 5.9.0.post8+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post8+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:52221e26-538f-5340-9fb5-e7f78a473a49",
      "id": "CVE-2026-48156",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-48156 is fixed in version 5.9.0.post8+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post8+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:071e37a6-a2b3-58fa-8bdd-ddb5f4cc1c34",
      "id": "CVE-2026-48735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48735 affects version 5.9.0.post8+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post8+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d0c6de41-09c2-5e75-bc56-0acd7b92351a",
      "id": "CVE-2026-49460",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-49460 is fixed in version 5.9.0.post8+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post8+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c37ca8e4-e75d-5c66-b4b8-c41d57b45454",
      "id": "CVE-2026-49461",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-49461 is fixed in version 5.9.0.post8+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post8+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c0713829-839a-5240-8587-0ffa8ee2c7f0",
      "id": "CVE-2026-54530",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54530 affects version 5.9.0.post8+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post8+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6361a864-f55b-5b85-8846-8871f5f851fe",
      "id": "CVE-2026-54531",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54531 affects version 5.9.0.post8+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post8+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2351111b-5cf4-585e-ac90-6c2e0363ad96",
      "id": "CVE-2026-54651",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54651 affects version 5.9.0.post8+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post8+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7f2839af-c25d-51b2-b6a3-b91e7f3eebe0",
      "id": "CVE-2026-59935",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59935 affects version 5.9.0.post8+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post8+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1bf4e24c-aaa4-587a-aab5-a602573a6f9d",
      "id": "CVE-2026-59936",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59936 affects version 5.9.0.post8+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post8+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:658a6bf1-88e5-536a-bd17-b0b98cccd1d8",
      "id": "CVE-2026-59937",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59937 affects version 5.9.0.post8+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post8+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:141047c4-bdd4-5b7e-9e0c-c33e4bbd3ad4",
      "id": "CVE-2026-59938",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59938 affects version 5.9.0.post8+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post8+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3f066c11-ed39-5ab5-98be-b75897194c68",
      "id": "GHSA-4pxv-j86v-mhcw",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-4pxv-j86v-mhcw affects version 5.9.0.post8+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post8+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:217efcbd-233f-55e9-b4c7-65583ffc5191",
      "id": "GHSA-7gw9-cf7v-778f",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-7gw9-cf7v-778f affects version 5.9.0.post8+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post8+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:55b3e52d-c739-5af7-9d5d-525afe760f00",
      "id": "GHSA-9m86-7pmv-2852",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-9m86-7pmv-2852 affects version 5.9.0.post8+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post8+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4edac9e3-a437-5053-898b-1a6d4936927b",
      "id": "GHSA-jj6c-8h6c-hppx",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-jj6c-8h6c-hppx affects version 5.9.0.post8+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post8+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:46e6b17a-d204-590e-ad8d-7ea1d85007a6",
      "id": "GHSA-jm82-fx9c-mx94",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-jm82-fx9c-mx94 affects version 5.9.0.post8+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post8+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b3796bda-5799-55bc-b01d-23badcb22f8d",
      "id": "GHSA-x284-j5p8-9c5p",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-x284-j5p8-9c5p affects version 5.9.0.post8+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post8+tuxcare"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:pypi/pypdf@5.9.0.post8+tuxcare"
    }
  ]
}