{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:1a451a55-64d5-56e7-99db-0e451fe9b4d9",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "activemq-runtime-config",
      "purl": "pkg:maven/org.apache.activemq/activemq-runtime-config@6.1.8-tuxcare.2",
      "type": "library",
      "group": "org.apache.activemq",
      "bom-ref": "pkg:maven/org.apache.activemq/activemq-runtime-config@6.1.8-tuxcare.2",
      "version": "6.1.8-tuxcare.2",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2025-66168",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-runtime-config@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:fb80bb4e-69ed-5654-9f2c-f8aa722d6fb3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66168 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-runtime-config."
      }
    },
    {
      "id": "CVE-2026-33227",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-runtime-config@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:3a25bba5-36c8-5df5-b9b5-f014e5982877",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33227 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-runtime-config."
      }
    },
    {
      "id": "CVE-2026-34197",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-runtime-config@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:72d92b98-384d-5396-8e62-3ed6f45ab680",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-34197 is fixed in version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-runtime-config."
      }
    },
    {
      "id": "CVE-2026-39304",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-runtime-config@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:dcf15c62-5809-5146-b129-db262a9caa16",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-39304 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-runtime-config."
      }
    },
    {
      "id": "CVE-2026-40046",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-runtime-config@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:0624995d-b408-579c-8fdc-97aa53eccd8a",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-40046 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-runtime-config."
      }
    },
    {
      "id": "CVE-2026-40466",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-runtime-config@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:e185982b-e96f-5664-9b48-4fa186d003d4",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-40466 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-runtime-config."
      }
    },
    {
      "id": "CVE-2026-41043",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-runtime-config@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:e1ba97fa-e042-5da8-8098-dc5bf6555922",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41043 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-runtime-config."
      }
    },
    {
      "id": "CVE-2026-41044",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-runtime-config@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:5a36352a-4198-5e15-942a-5b25e5ef7b95",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41044 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-runtime-config."
      }
    },
    {
      "id": "CVE-2026-42253",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-runtime-config@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:41e1f7f9-fd7a-5baf-95ae-8919bf739ac3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42253 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-runtime-config."
      }
    },
    {
      "id": "CVE-2026-42588",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-runtime-config@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:1bc08bfd-8082-5c0e-b338-aad6a6074536",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42588 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-runtime-config."
      }
    },
    {
      "id": "CVE-2026-45505",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-runtime-config@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:7b559c48-21da-550c-bb85-f5c06e23f752",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45505 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-runtime-config."
      }
    },
    {
      "id": "CVE-2026-46605",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-runtime-config@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:2a3ba0ac-c7e5-56ac-876d-c829242e5474",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-46605 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-runtime-config."
      }
    },
    {
      "id": "CVE-2026-49157",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-runtime-config@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:b90bbcde-4219-5126-aa16-6299e49f88f5",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-49157 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-runtime-config."
      }
    },
    {
      "id": "CVE-2026-49270",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-runtime-config@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:452326c5-81a0-5d5e-b98e-a0897c5682ee",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-49270 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-runtime-config."
      }
    },
    {
      "id": "CVE-2026-49432",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-runtime-config@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:30ba547d-0840-50a9-a1a5-ef23bd63dc22",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-49432 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-runtime-config."
      }
    },
    {
      "id": "CVE-2026-49434",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-runtime-config@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:f2baa5b5-7797-5f6e-a427-f01c5d4367e1",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-49434 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-runtime-config."
      }
    },
    {
      "id": "CVE-2026-49877",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-runtime-config@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:87288433-b499-5114-b4a8-52a3df7e279f",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-49877 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-runtime-config."
      }
    },
    {
      "id": "CVE-2026-50734",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-runtime-config@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:daf87b18-ac65-5362-9d7d-8e1904e33c1c",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50734 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-runtime-config."
      }
    },
    {
      "id": "CVE-2026-52760",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-runtime-config@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:42c40643-c727-5d4c-b8c2-ef0154dd0363",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-52760 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-runtime-config."
      }
    },
    {
      "id": "CVE-2026-53916",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-runtime-config@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:76703c1a-6f15-5eae-8492-86f8873fae05",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-53916 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-runtime-config."
      }
    },
    {
      "id": "CVE-2026-53917",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-runtime-config@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:cae2d424-72e3-56cd-bb2b-494f783b5579",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-53917 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-runtime-config."
      }
    },
    {
      "id": "CVE-2026-54475",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-runtime-config@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:e340e34a-a3ac-5ca2-a27f-c2bcfed2e63c",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54475 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-runtime-config."
      }
    },
    {
      "id": "CVE-2026-59878",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-runtime-config@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:e55aa01f-015d-5c04-86b3-78881b94c445",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59878 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-runtime-config."
      }
    },
    {
      "id": "CVE-2026-61487",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-runtime-config@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:cd12426e-e17e-5d1d-9526-2e07a1275d05",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-61487 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-runtime-config."
      }
    },
    {
      "id": "CVE-2026-74761",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-runtime-config@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:8d040f30-6e7b-5c72-86e2-041e029f5b7e",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-74761 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-runtime-config."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.activemq/activemq-runtime-config@6.1.8-tuxcare.2"
    }
  ]
}