{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:d1d85be5-d8b8-5929-a45c-e9ee81bc06c6",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare",
      "type": "library",
      "name": "pypdf",
      "version": "5.9.0.post12+tuxcare",
      "purl": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:86347249-1283-527a-aa88-9e942a463a95",
      "id": "CVE-2025-55197",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55197 is fixed in version 5.9.0.post12+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8ddb64e4-b493-5a08-89f3-6937ae25bb19",
      "id": "CVE-2025-62707",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-62707 is fixed in version 5.9.0.post12+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:db6b51c4-8ab5-5d5b-9bc0-55ee1259cb22",
      "id": "CVE-2025-62708",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-62708 is fixed in version 5.9.0.post12+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d98053aa-a3f3-54fc-ab91-9a5322243b06",
      "id": "CVE-2025-66019",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66019 affects version 5.9.0.post12+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4455821e-7e61-5a1f-a368-18a91c717ff0",
      "id": "CVE-2026-22690",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22690 affects version 5.9.0.post12+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e48d55b5-6994-547f-9923-abcd6116b8e4",
      "id": "CVE-2026-22691",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22691 affects version 5.9.0.post12+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9a3ff76d-6dcc-5f37-bbec-4571a7e26160",
      "id": "CVE-2026-24688",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24688 affects version 5.9.0.post12+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:77aa798d-d182-5eda-a592-90e7c464287d",
      "id": "CVE-2026-27024",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-27024 affects version 5.9.0.post12+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bc9007f6-0e8b-59ed-b070-228986761c62",
      "id": "CVE-2026-27025",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-27025 affects version 5.9.0.post12+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8e1e6bb2-c2ff-5a45-8732-1fc8cc9ad103",
      "id": "CVE-2026-27026",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-27026 affects version 5.9.0.post12+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d7298825-8f29-558e-8b2c-41482b640795",
      "id": "CVE-2026-27628",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-27628 is fixed in version 5.9.0.post12+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5d287540-dea4-5f5e-8af4-f7d3b1b67dbe",
      "id": "CVE-2026-27888",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-27888 affects version 5.9.0.post12+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1d7965a6-eb29-585c-b5aa-3ed67c1afb07",
      "id": "CVE-2026-28351",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-28351 affects version 5.9.0.post12+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9a2d0b82-fe02-559a-8299-c7105d6f1671",
      "id": "CVE-2026-28804",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-28804 affects version 5.9.0.post12+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1920f1da-a286-5b47-9ab1-5c69f83da636",
      "id": "CVE-2026-31826",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-31826 is fixed in version 5.9.0.post12+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:75c819cf-5962-5656-afc3-b6373a557650",
      "id": "CVE-2026-33123",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33123 affects version 5.9.0.post12+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6228af51-fbe1-5711-8d0b-18f4e58306e3",
      "id": "CVE-2026-33699",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33699 affects version 5.9.0.post12+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d8e3c01d-eb7b-57da-81d3-be63742d0982",
      "id": "CVE-2026-40260",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-40260 affects version 5.9.0.post12+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7ec7eed7-8c9d-5fbc-8132-4d90a73b39b9",
      "id": "CVE-2026-41168",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41168 is fixed in version 5.9.0.post12+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:41ca8522-c6fd-59db-80ed-f6da3210796f",
      "id": "CVE-2026-41312",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41312 is fixed in version 5.9.0.post12+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:642aa827-daff-5b35-bd48-7306272e8e6c",
      "id": "CVE-2026-41313",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41313 is fixed in version 5.9.0.post12+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cb100884-5a7b-59d4-85ac-e19c03d941de",
      "id": "CVE-2026-41314",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41314 is fixed in version 5.9.0.post12+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a72176bf-216f-56c4-bb83-60dc5d327301",
      "id": "CVE-2026-48155",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-48155 is fixed in version 5.9.0.post12+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1fe6e050-6b04-5b02-b923-088c108f2c84",
      "id": "CVE-2026-48156",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-48156 is fixed in version 5.9.0.post12+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fa0756a1-d4b3-58c6-9813-e279892f90c1",
      "id": "CVE-2026-48735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48735 affects version 5.9.0.post12+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c2f5e8c6-e7c7-5461-92a2-8f02a08dc530",
      "id": "CVE-2026-49460",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-49460 is fixed in version 5.9.0.post12+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:13197495-b4af-5fbb-ab2a-da132d819458",
      "id": "CVE-2026-49461",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-49461 is fixed in version 5.9.0.post12+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b07163be-9f5e-556d-806b-3cab2bd54333",
      "id": "CVE-2026-54530",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-54530 is fixed in version 5.9.0.post12+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c93eefd7-7512-5913-9e1f-2431eba0cd8b",
      "id": "CVE-2026-54531",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-54531 is fixed in version 5.9.0.post12+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a5bc08e9-fd59-542d-9b94-d687ca1f2b0d",
      "id": "CVE-2026-54651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-54651 is fixed in version 5.9.0.post12+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a5df4cdd-a7a9-5ce4-a9e4-5b1793a39243",
      "id": "CVE-2026-59935",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59935 affects version 5.9.0.post12+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7e02d275-6981-5e8e-9d15-6cb917d170b0",
      "id": "CVE-2026-59936",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59936 affects version 5.9.0.post12+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c2450fd4-274f-539d-abc9-9c7f0761659a",
      "id": "CVE-2026-59937",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59937 is fixed in version 5.9.0.post12+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bfe9bf8b-8359-5725-b4d5-ccee68d1efbb",
      "id": "CVE-2026-59938",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59938 is fixed in version 5.9.0.post12+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c0d5356d-e10c-5633-a52f-e96986b71a44",
      "id": "CVE-2026-71852",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-71852 is fixed in version 5.9.0.post12+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:32fcc4df-9e9b-5b5d-a9b4-f0e918ddb28d",
      "id": "CVE-2026-71870",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-71870 is fixed in version 5.9.0.post12+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a39dde7a-02c7-58c5-b840-d33fe6b7e475",
      "id": "GHSA-4pxv-j86v-mhcw",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-4pxv-j86v-mhcw affects version 5.9.0.post12+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5b1ef891-766e-5da8-b90c-a477306679dc",
      "id": "GHSA-7gw9-cf7v-778f",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-7gw9-cf7v-778f affects version 5.9.0.post12+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:593b9f35-6050-5536-94a6-3126c1adb399",
      "id": "GHSA-9m86-7pmv-2852",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-9m86-7pmv-2852 affects version 5.9.0.post12+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:06d68c93-8a9a-5f46-b561-d2453d37ac91",
      "id": "GHSA-jj6c-8h6c-hppx",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-jj6c-8h6c-hppx affects version 5.9.0.post12+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:53e7e3ac-05e4-5ea0-83e8-463860302d40",
      "id": "GHSA-jm82-fx9c-mx94",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability GHSA-jm82-fx9c-mx94 is fixed in version 5.9.0.post12+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c5e034a5-a569-5965-bf71-5e4fabd6153f",
      "id": "GHSA-x284-j5p8-9c5p",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-x284-j5p8-9c5p affects version 5.9.0.post12+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:pypi/pypdf@5.9.0.post12+tuxcare"
    }
  ]
}