{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:c100fc00-6342-5a30-a1f5-0c84d96d714c",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:pypi/tornado@5.1.1.post1+tuxcare",
      "type": "library",
      "name": "tornado",
      "version": "5.1.1.post1+tuxcare",
      "purl": "pkg:pypi/tornado@5.1.1.post1+tuxcare"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:bb143f14-3e54-5593-85ca-4aa5f9207e9d",
      "id": "CVE-2023-28370",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-28370 affects version 5.1.1.post1+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:64bd3436-6451-59df-92c6-af718487d0cc",
      "id": "CVE-2024-52804",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52804 is fixed in version 5.1.1.post1+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d1371938-2610-5779-b515-0d8bcb5e248d",
      "id": "CVE-2025-47287",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-47287 is fixed in version 5.1.1.post1+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a88baa2a-700f-545a-843a-322e5da841df",
      "id": "CVE-2025-67724",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-67724 affects version 5.1.1.post1+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2eac92af-41a6-50e1-982a-1034b63efe8b",
      "id": "CVE-2025-67725",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-67725 affects version 5.1.1.post1+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bbd13e49-b77f-572b-9e65-6efd1d58fb73",
      "id": "CVE-2025-67726",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-67726 affects version 5.1.1.post1+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c990d2c2-a461-5903-8d01-af95dd327895",
      "id": "CVE-2026-31958",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-31958 affects version 5.1.1.post1+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7486ea5e-18eb-5403-a2a0-74bb047de18a",
      "id": "CVE-2026-35536",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-35536 affects version 5.1.1.post1+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0417e586-948a-50f7-8505-04a4b5a3580d",
      "id": "CVE-2026-49853",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-49853 affects version 5.1.1.post1+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:85a5d5da-5b50-58d5-86ca-907639ae363f",
      "id": "CVE-2026-49854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-49854 affects version 5.1.1.post1+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d617a165-a653-5a2c-ac82-f835120faa13",
      "id": "CVE-2026-49855",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-49855 affects version 5.1.1.post1+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fda29a58-5099-5b86-a7f9-2121317d2ade",
      "id": "GHSA-753j-mpmx-qq6g",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-753j-mpmx-qq6g affects version 5.1.1.post1+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:87f43455-223b-5aad-ace4-bd73706d2382",
      "id": "GHSA-78cv-mqj4-43f7",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-78cv-mqj4-43f7 affects version 5.1.1.post1+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:61fa7cff-5e4d-5dc6-a0d6-68b16d613cd1",
      "id": "GHSA-pw6j-qg29-8w7f",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-pw6j-qg29-8w7f affects version 5.1.1.post1+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c002d7a7-95e1-51ba-ad53-f5e15a8ba110",
      "id": "GHSA-qppv-j76h-2rpx",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-qppv-j76h-2rpx affects version 5.1.1.post1+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post1+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b0932e92-fc2f-5ff2-ba60-60ee4dbe112d",
      "id": "GHSA-w235-7p84-xx57",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-w235-7p84-xx57 affects version 5.1.1.post1+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post1+tuxcare"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:pypi/tornado@5.1.1.post1+tuxcare"
    }
  ]
}