{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:ad38c8aa-3034-5532-ae95-242c47eacab2",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "activemq-cf",
      "purl": "pkg:maven/org.apache.activemq/activemq-cf@6.1.8-tuxcare.2",
      "type": "library",
      "group": "org.apache.activemq",
      "bom-ref": "pkg:maven/org.apache.activemq/activemq-cf@6.1.8-tuxcare.2",
      "version": "6.1.8-tuxcare.2",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2025-66168",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-cf@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:07172d9e-731c-5a18-af5c-978769775b97",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66168 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-cf."
      }
    },
    {
      "id": "CVE-2026-33227",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-cf@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:5ae80e07-a426-5086-a209-966a2c3baf70",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33227 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-cf."
      }
    },
    {
      "id": "CVE-2026-34197",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-cf@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:f89e00f3-a870-5578-b6e7-29e66419c3f2",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-34197 is fixed in version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-cf."
      }
    },
    {
      "id": "CVE-2026-39304",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-cf@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:b920c8cb-6cd6-52ce-be59-4079a9e693c5",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-39304 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-cf."
      }
    },
    {
      "id": "CVE-2026-40046",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-cf@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:a3eb9d12-a9cb-54a0-a40d-5434e202a19f",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-40046 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-cf."
      }
    },
    {
      "id": "CVE-2026-40466",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-cf@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:ceb2bed2-acd7-59cf-a025-b827b65602b1",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-40466 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-cf."
      }
    },
    {
      "id": "CVE-2026-41043",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-cf@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:0644ece5-9b2b-5452-ab26-8be825d894d9",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41043 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-cf."
      }
    },
    {
      "id": "CVE-2026-41044",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-cf@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:47360e1c-e0db-5159-b664-9aff607f8def",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41044 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-cf."
      }
    },
    {
      "id": "CVE-2026-42253",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-cf@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:7a081ab1-886e-525b-b775-3302a5bcb79f",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42253 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-cf."
      }
    },
    {
      "id": "CVE-2026-42588",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-cf@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:f6a9c1b7-1c7d-5e06-8322-232921d4922c",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42588 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-cf."
      }
    },
    {
      "id": "CVE-2026-45505",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-cf@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:6419fc4e-ba33-5920-b278-342e193f9010",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45505 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-cf."
      }
    },
    {
      "id": "CVE-2026-46605",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-cf@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:99f55b20-bd5f-5490-88a9-6103a8803f2b",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-46605 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-cf."
      }
    },
    {
      "id": "CVE-2026-49157",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-cf@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:0c95cc82-6617-5cd1-879a-4c39ab054bf8",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-49157 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-cf."
      }
    },
    {
      "id": "CVE-2026-49270",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-cf@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:f1c4f788-51f4-5904-bdbc-344380ad0f68",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-49270 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-cf."
      }
    },
    {
      "id": "CVE-2026-49432",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-cf@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:0c57b339-ebf3-5b30-88b3-62670b7eeb41",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-49432 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-cf."
      }
    },
    {
      "id": "CVE-2026-49434",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-cf@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:3a0076b4-4830-51bf-b2a4-ca618fe70d40",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-49434 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-cf."
      }
    },
    {
      "id": "CVE-2026-49877",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-cf@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:7c64c57f-a4ef-5d7d-beec-f5cdf78c1343",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-49877 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-cf."
      }
    },
    {
      "id": "CVE-2026-50734",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-cf@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:65668d02-79ec-5f45-a881-59ce1badf5fa",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50734 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-cf."
      }
    },
    {
      "id": "CVE-2026-52760",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-cf@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:e0219a05-c1c6-55d2-bde5-3767201e2f89",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-52760 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-cf."
      }
    },
    {
      "id": "CVE-2026-53916",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-cf@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:9fdb87bd-77b0-5632-bc10-6d13d2c01adf",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-53916 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-cf."
      }
    },
    {
      "id": "CVE-2026-53917",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-cf@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:123536b0-17ea-58a7-8ac9-4f24fed111f2",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-53917 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-cf."
      }
    },
    {
      "id": "CVE-2026-54475",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-cf@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:615a9471-b705-59ae-ab62-f4c5039f9f17",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54475 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-cf."
      }
    },
    {
      "id": "CVE-2026-59878",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-cf@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:3a71e266-ce93-530b-b508-d9c30737fcca",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59878 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-cf."
      }
    },
    {
      "id": "CVE-2026-61487",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-cf@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:6e3564d1-1726-54b0-be5f-fc4ceae9bd82",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-61487 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-cf."
      }
    },
    {
      "id": "CVE-2026-74761",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-cf@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:6b7f5329-3e58-58a1-a91b-9a902abcea22",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-74761 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-cf."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.activemq/activemq-cf@6.1.8-tuxcare.2"
    }
  ]
}