{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:b67e913d-83fc-5975-9557-491d24783aab",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:pypi/pypdf@5.9.0.post9+tuxcare",
      "type": "library",
      "name": "pypdf",
      "version": "5.9.0.post9+tuxcare",
      "purl": "pkg:pypi/pypdf@5.9.0.post9+tuxcare"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:b529b546-db3b-5858-a639-063c02fc68c3",
      "id": "CVE-2025-55197",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55197 is fixed in version 5.9.0.post9+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post9+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cd42b155-742b-55da-98b7-f8e2c2f786d2",
      "id": "CVE-2025-62707",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-62707 is fixed in version 5.9.0.post9+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post9+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:76e503b9-2f00-5a14-9d42-cb7963cb8425",
      "id": "CVE-2025-62708",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-62708 is fixed in version 5.9.0.post9+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post9+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bf32a214-859a-55a2-b714-9a37003375a9",
      "id": "CVE-2025-66019",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66019 affects version 5.9.0.post9+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post9+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bc63ecc4-0885-5206-aefb-3b3e0d654edf",
      "id": "CVE-2026-22690",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22690 affects version 5.9.0.post9+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post9+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f135b1ff-efb2-5184-bc13-96df17690408",
      "id": "CVE-2026-22691",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22691 affects version 5.9.0.post9+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post9+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2d3cc441-4087-53ef-a236-37be1f89041b",
      "id": "CVE-2026-24688",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24688 affects version 5.9.0.post9+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post9+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d2ba54eb-0711-51b7-a2a3-f89373cbe7b1",
      "id": "CVE-2026-27024",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-27024 affects version 5.9.0.post9+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post9+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aa91862c-8c1a-561c-9ff6-cfcef5f47f80",
      "id": "CVE-2026-27025",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-27025 affects version 5.9.0.post9+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post9+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8885a944-1e46-50f4-a584-c17e4284c186",
      "id": "CVE-2026-27026",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-27026 affects version 5.9.0.post9+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post9+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:829fd1c4-dd95-5048-a05a-622d2c3a9515",
      "id": "CVE-2026-27628",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-27628 is fixed in version 5.9.0.post9+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post9+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:82233c94-2450-5545-8ffa-b934af9b80f8",
      "id": "CVE-2026-27888",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-27888 affects version 5.9.0.post9+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post9+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b82d338b-2579-50ab-bb46-ee38949b944a",
      "id": "CVE-2026-28351",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-28351 affects version 5.9.0.post9+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post9+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fd11854c-328b-554d-99a6-f52b98180091",
      "id": "CVE-2026-28804",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-28804 affects version 5.9.0.post9+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post9+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3ccb3c82-3cb7-560d-82f9-fa6ad5d08261",
      "id": "CVE-2026-31826",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-31826 affects version 5.9.0.post9+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post9+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:72422322-919a-5ef9-8e05-e035a83c1474",
      "id": "CVE-2026-33123",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33123 affects version 5.9.0.post9+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post9+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f19c05a0-7a5a-5c2f-aa43-eae3940e879b",
      "id": "CVE-2026-33699",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33699 affects version 5.9.0.post9+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post9+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ded4b868-2577-5542-a5ee-60f34332bf3a",
      "id": "CVE-2026-40260",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-40260 affects version 5.9.0.post9+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post9+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1549af8c-8635-528e-8a0c-c4c87b7059e7",
      "id": "CVE-2026-41168",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41168 is fixed in version 5.9.0.post9+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post9+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e2fc2bc3-858e-57b0-8960-a5347ebe7a4b",
      "id": "CVE-2026-41312",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41312 is fixed in version 5.9.0.post9+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post9+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:97bd6aea-dfa8-51ee-b17d-a10826fc9fae",
      "id": "CVE-2026-41313",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41313 is fixed in version 5.9.0.post9+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post9+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:55fad0dd-fbb8-5cb8-8e15-50a1ec82c1f7",
      "id": "CVE-2026-41314",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41314 is fixed in version 5.9.0.post9+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post9+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0b2f0f0d-90bd-575b-aa19-89c0e2dad827",
      "id": "CVE-2026-48155",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-48155 is fixed in version 5.9.0.post9+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post9+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f3c4e341-b7b5-5726-a8ac-91e11efc2cc4",
      "id": "CVE-2026-48156",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-48156 is fixed in version 5.9.0.post9+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post9+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:244a67cb-36b4-5242-bbcd-e9968b90f71a",
      "id": "CVE-2026-48735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48735 affects version 5.9.0.post9+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post9+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:42968407-6ea8-56c0-8e06-c4c5ee5fa8fa",
      "id": "CVE-2026-49460",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-49460 is fixed in version 5.9.0.post9+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post9+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:36e3dc6f-d096-531a-9ae1-aac49c78a555",
      "id": "CVE-2026-49461",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-49461 is fixed in version 5.9.0.post9+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post9+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:31eeae52-2ee5-5420-ab55-cb062d0671d9",
      "id": "CVE-2026-54530",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54530 affects version 5.9.0.post9+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post9+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:957e93a2-87a4-503b-8b4c-61c3920161ad",
      "id": "CVE-2026-54531",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54531 affects version 5.9.0.post9+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post9+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:409fa90c-386a-58a6-adb6-9c7a1053bf4c",
      "id": "CVE-2026-54651",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54651 affects version 5.9.0.post9+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post9+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:770ed9f9-8a59-5327-987d-2c4c2133974f",
      "id": "CVE-2026-59935",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59935 affects version 5.9.0.post9+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post9+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:909433c7-ed9a-5fbd-90a6-2239efc65564",
      "id": "CVE-2026-59936",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59936 affects version 5.9.0.post9+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post9+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:57c69c6d-5ab9-5581-9349-9470a7ff3e9a",
      "id": "CVE-2026-59937",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59937 affects version 5.9.0.post9+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post9+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a0e8260e-f320-5adb-98eb-af303be6d8a6",
      "id": "CVE-2026-59938",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59938 affects version 5.9.0.post9+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post9+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2d5e470d-4508-5a4d-bb8b-56cb0937e012",
      "id": "GHSA-4pxv-j86v-mhcw",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-4pxv-j86v-mhcw affects version 5.9.0.post9+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post9+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1a9cf7e1-de9b-5236-89be-33867f5b6560",
      "id": "GHSA-7gw9-cf7v-778f",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-7gw9-cf7v-778f affects version 5.9.0.post9+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post9+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9335438e-edfb-508a-801b-df0acb632d61",
      "id": "GHSA-9m86-7pmv-2852",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-9m86-7pmv-2852 affects version 5.9.0.post9+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post9+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:add9e20b-ba17-5d3d-8de7-249a60904b94",
      "id": "GHSA-jj6c-8h6c-hppx",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-jj6c-8h6c-hppx affects version 5.9.0.post9+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post9+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d8f963b3-9cea-51ba-9909-2d5696326e52",
      "id": "GHSA-jm82-fx9c-mx94",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability GHSA-jm82-fx9c-mx94 is fixed in version 5.9.0.post9+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post9+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3534f263-571d-56ac-ae94-cd5eefd1f475",
      "id": "GHSA-x284-j5p8-9c5p",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-x284-j5p8-9c5p affects version 5.9.0.post9+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post9+tuxcare"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:pypi/pypdf@5.9.0.post9+tuxcare"
    }
  ]
}