{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:d7c1f846-08cd-5e94-aede-61a855ffe282",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "activemq-parent",
      "purl": "pkg:maven/org.apache.activemq/activemq-parent@6.1.8-tuxcare.2",
      "type": "library",
      "group": "org.apache.activemq",
      "bom-ref": "pkg:maven/org.apache.activemq/activemq-parent@6.1.8-tuxcare.2",
      "version": "6.1.8-tuxcare.2",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2025-66168",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-parent@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:e75d6908-b8ef-5bad-a649-d0c170d0411f",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66168 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-parent."
      }
    },
    {
      "id": "CVE-2026-33227",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-parent@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:4b9971bc-bab2-5ba6-8122-7e397ddac62b",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33227 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-parent."
      }
    },
    {
      "id": "CVE-2026-34197",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-parent@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:7911a7d5-ed11-543a-ab57-1ba4cfefd585",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-34197 is fixed in version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-parent."
      }
    },
    {
      "id": "CVE-2026-39304",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-parent@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:0fa2d213-57d9-5bab-bcde-73c0c791d6d7",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-39304 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-parent."
      }
    },
    {
      "id": "CVE-2026-40046",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-parent@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:98f0bba3-955b-5ab8-8f0a-8eeb46b54064",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-40046 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-parent."
      }
    },
    {
      "id": "CVE-2026-40466",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-parent@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:2dd3c52a-212d-5d16-9969-933c1a974f9f",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-40466 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-parent."
      }
    },
    {
      "id": "CVE-2026-41043",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-parent@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:c8a903a2-b7d1-5c7b-8b0a-2260f69b9eeb",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41043 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-parent."
      }
    },
    {
      "id": "CVE-2026-41044",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-parent@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:f747309c-a6a6-5c56-b007-6406dce7578d",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41044 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-parent."
      }
    },
    {
      "id": "CVE-2026-42253",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-parent@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:55954886-be57-57d2-add6-0329851bf9d5",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42253 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-parent."
      }
    },
    {
      "id": "CVE-2026-42588",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-parent@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:d426ece9-0589-59a4-8923-cdb58f87dc7c",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42588 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-parent."
      }
    },
    {
      "id": "CVE-2026-45505",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-parent@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:db3c563f-0a16-5186-b4c1-3ec0541971b5",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45505 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-parent."
      }
    },
    {
      "id": "CVE-2026-46605",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-parent@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:bc0be057-ead7-5ad8-b20b-d262897f9f1c",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-46605 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-parent."
      }
    },
    {
      "id": "CVE-2026-49157",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-parent@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:fa73a445-04e3-5f36-8f0e-306112ba68c7",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-49157 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-parent."
      }
    },
    {
      "id": "CVE-2026-49270",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-parent@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:8ebc4830-27cb-518b-a594-c6639ed9f9da",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-49270 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-parent."
      }
    },
    {
      "id": "CVE-2026-49432",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-parent@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:fcf6a0a1-72a6-5ded-934c-b0b2c2175cc7",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-49432 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-parent."
      }
    },
    {
      "id": "CVE-2026-49434",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-parent@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:6dfccea6-9932-54c4-b468-5767d9b3c579",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-49434 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-parent."
      }
    },
    {
      "id": "CVE-2026-49877",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-parent@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:092c0f28-97cc-53a9-a4bd-cc970a6babad",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-49877 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-parent."
      }
    },
    {
      "id": "CVE-2026-50734",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-parent@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:24e456c7-5541-57c8-85ac-b5711aaa5c58",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50734 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-parent."
      }
    },
    {
      "id": "CVE-2026-52760",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-parent@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:3a20374f-e0e6-5d20-ae15-a2ddfa8dd33b",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-52760 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-parent."
      }
    },
    {
      "id": "CVE-2026-53916",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-parent@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:6432f031-d289-5ad9-8b2e-bdc774acd4e9",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-53916 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-parent."
      }
    },
    {
      "id": "CVE-2026-53917",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-parent@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:35c1e91f-7fe3-51b0-86e7-2c0326c6e972",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-53917 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-parent."
      }
    },
    {
      "id": "CVE-2026-54475",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-parent@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:daac46f7-6974-5162-98d8-c2e08a4de5cd",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54475 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-parent."
      }
    },
    {
      "id": "CVE-2026-59878",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-parent@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:4541deba-f8ad-5803-8534-1ca7b5f7d8f3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59878 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-parent."
      }
    },
    {
      "id": "CVE-2026-61487",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-parent@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:7c4c33c5-9f6c-5dfe-acb5-320ca4cd701f",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-61487 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-parent."
      }
    },
    {
      "id": "CVE-2026-74761",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-parent@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:cb33f9f1-f4eb-592b-b3d1-ab0dba8accfd",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-74761 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-parent."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.activemq/activemq-parent@6.1.8-tuxcare.2"
    }
  ]
}