{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:903e398f-99ca-5e24-b652-4da3bdc58dcf",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "activemq-web",
      "purl": "pkg:maven/org.apache.activemq/activemq-web@6.1.8-tuxcare.2",
      "type": "library",
      "group": "org.apache.activemq",
      "bom-ref": "pkg:maven/org.apache.activemq/activemq-web@6.1.8-tuxcare.2",
      "version": "6.1.8-tuxcare.2",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2025-66168",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-web@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:9c9c8fa5-b487-561b-9ef1-72e42ebf18de",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66168 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-web."
      }
    },
    {
      "id": "CVE-2026-33227",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-web@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:cf5237ef-aa86-5acf-ac26-8eb70715bdc0",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33227 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-web."
      }
    },
    {
      "id": "CVE-2026-34197",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-web@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:edf11690-5532-58f8-8454-8e74366a5188",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-34197 is fixed in version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-web."
      }
    },
    {
      "id": "CVE-2026-39304",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-web@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:2683244f-8e9e-5946-bb2c-e1243938eaad",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-39304 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-web."
      }
    },
    {
      "id": "CVE-2026-40046",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-web@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:7bdf5afc-8013-5ce8-8d97-783fb61ac3f1",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-40046 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-web."
      }
    },
    {
      "id": "CVE-2026-40466",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-web@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:f3f2d168-a1bd-57aa-b392-d19c1577a1ef",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-40466 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-web."
      }
    },
    {
      "id": "CVE-2026-41043",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-web@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:5db5c59f-58ab-57a0-9a3a-4357aee22fea",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41043 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-web."
      }
    },
    {
      "id": "CVE-2026-41044",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-web@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:4c6eebf5-c7c1-5847-becd-23a20fa25b6b",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41044 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-web."
      }
    },
    {
      "id": "CVE-2026-42253",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-web@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:bca5b2e1-1a8d-5932-9e21-482970dab66b",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42253 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-web."
      }
    },
    {
      "id": "CVE-2026-42588",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-web@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:caffe833-56b0-509b-9519-418dafa8f61e",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42588 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-web."
      }
    },
    {
      "id": "CVE-2026-45505",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-web@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:69bfe8f8-6b0a-5c4c-8c31-1cec1b1d9b3e",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45505 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-web."
      }
    },
    {
      "id": "CVE-2026-46605",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-web@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:a3e1ebb9-cee1-511b-a324-c320ff24e685",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-46605 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-web."
      }
    },
    {
      "id": "CVE-2026-49157",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-web@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:63461609-e919-5954-8d78-51ad9e8073e6",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-49157 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-web."
      }
    },
    {
      "id": "CVE-2026-49270",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-web@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:fc21a415-188b-513f-a74b-058267e6d059",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-49270 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-web."
      }
    },
    {
      "id": "CVE-2026-49432",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-web@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:dd296a1e-7480-56b6-879b-08114fbf5a56",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-49432 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-web."
      }
    },
    {
      "id": "CVE-2026-49434",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-web@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:fde2a31f-7618-54fa-a511-f1bc77c058e1",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-49434 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-web."
      }
    },
    {
      "id": "CVE-2026-49877",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-web@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:1eda7354-dad6-5f14-894c-787d1e813082",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-49877 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-web."
      }
    },
    {
      "id": "CVE-2026-50734",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-web@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:dda5f290-e4e7-557b-a61d-eda363e188ea",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50734 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-web."
      }
    },
    {
      "id": "CVE-2026-52760",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-web@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:b02f32ad-74a2-56fc-9248-32fd0d60fadd",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-52760 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-web."
      }
    },
    {
      "id": "CVE-2026-53916",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-web@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:fa09ea4b-5998-52aa-b457-e213afda579d",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-53916 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-web."
      }
    },
    {
      "id": "CVE-2026-53917",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-web@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:0414517e-f839-5774-80a9-5f3e04542e56",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-53917 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-web."
      }
    },
    {
      "id": "CVE-2026-54475",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-web@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:957d26bf-0226-50fe-baee-3a9fac386208",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54475 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-web."
      }
    },
    {
      "id": "CVE-2026-59878",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-web@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:00f55550-b461-5719-99c7-7a3808577c70",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59878 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-web."
      }
    },
    {
      "id": "CVE-2026-61487",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-web@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:92a80946-eb02-5a2b-8026-f6d758badad7",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-61487 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-web."
      }
    },
    {
      "id": "CVE-2026-74761",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-web@6.1.8-tuxcare.2"
        }
      ],
      "bom-ref": "urn:uuid:9779ec22-3126-57ed-995c-61d026580cdc",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-74761 affects version 6.1.8-tuxcare.2 of org.apache.activemq:activemq-web."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.activemq/activemq-web@6.1.8-tuxcare.2"
    }
  ]
}