{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:d93a6689-8ca8-5099-be47-1bd255b616b3",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare",
      "type": "library",
      "name": "pypdf",
      "version": "5.9.0.post14+tuxcare",
      "purl": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:af380f98-b19a-5892-82ca-d1273e7a486e",
      "id": "CVE-2025-55197",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55197 is fixed in version 5.9.0.post14+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:54d74acf-f989-56c9-95ac-431d4521d71e",
      "id": "CVE-2025-62707",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-62707 is fixed in version 5.9.0.post14+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:13f0883a-8219-564a-9ba0-fb5e47a30559",
      "id": "CVE-2025-62708",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-62708 is fixed in version 5.9.0.post14+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:26503255-6671-59ed-995d-2b8e67705964",
      "id": "CVE-2025-66019",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66019 affects version 5.9.0.post14+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:06d8ee6e-bfaf-5f08-8624-6985a5d157fd",
      "id": "CVE-2026-22690",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22690 affects version 5.9.0.post14+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:620ffb3f-7da3-54db-8597-c34f088a236e",
      "id": "CVE-2026-22691",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-22691 affects version 5.9.0.post14+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ca6e4873-1614-52c9-bc8e-bc0d3b041c22",
      "id": "CVE-2026-24688",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24688 affects version 5.9.0.post14+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d7787b80-f594-5768-8094-3cb0f6064b63",
      "id": "CVE-2026-27024",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-27024 affects version 5.9.0.post14+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ec373032-61ac-5b52-8fee-787c170b06de",
      "id": "CVE-2026-27025",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-27025 affects version 5.9.0.post14+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f8cbe959-86b8-5f32-9c49-7903dc048efe",
      "id": "CVE-2026-27026",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-27026 affects version 5.9.0.post14+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:608d14b2-b1fa-5721-b383-5683baed2c5d",
      "id": "CVE-2026-27628",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-27628 is fixed in version 5.9.0.post14+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:252be832-8687-5ee9-adb4-634ffdb168eb",
      "id": "CVE-2026-27888",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-27888 affects version 5.9.0.post14+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9324d1fe-76dd-5938-b825-31313e4da6a0",
      "id": "CVE-2026-28351",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-28351 affects version 5.9.0.post14+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b8365ef5-b8f1-55e0-8f91-19e387f98c7d",
      "id": "CVE-2026-28804",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-28804 affects version 5.9.0.post14+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e6ff2be5-b41f-52bf-9f98-722277fc1493",
      "id": "CVE-2026-31826",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-31826 is fixed in version 5.9.0.post14+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4994813d-64e5-5e39-82f8-3dab654c79c0",
      "id": "CVE-2026-33123",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33123 affects version 5.9.0.post14+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1c31cefc-1fd9-5c77-9b60-69497c5ee9be",
      "id": "CVE-2026-33699",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33699 affects version 5.9.0.post14+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ba993cb0-500f-58cc-9be8-3814a48b7193",
      "id": "CVE-2026-40260",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-40260 affects version 5.9.0.post14+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6726b924-01eb-5dee-88ac-cc812d4d4ed2",
      "id": "CVE-2026-41168",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41168 is fixed in version 5.9.0.post14+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bf37e086-e82f-5b97-adf9-cbd08818bcd4",
      "id": "CVE-2026-41312",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41312 is fixed in version 5.9.0.post14+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:04b7c42b-17df-503c-a9e3-1ff02b6f455a",
      "id": "CVE-2026-41313",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41313 is fixed in version 5.9.0.post14+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6aab0fa2-0cc7-5d27-8898-26c4f893ecd9",
      "id": "CVE-2026-41314",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-41314 is fixed in version 5.9.0.post14+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1eef507e-cf1b-5139-91ab-c3e5c10ebfbe",
      "id": "CVE-2026-48155",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-48155 is fixed in version 5.9.0.post14+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e5c2813f-b6ce-58fa-8183-f6024ced937f",
      "id": "CVE-2026-48156",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-48156 is fixed in version 5.9.0.post14+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3752bf4a-2717-5a88-9d86-cc9320b21daa",
      "id": "CVE-2026-48735",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48735 affects version 5.9.0.post14+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bc387e51-d38d-5f7c-8a0e-11807e9b3ad5",
      "id": "CVE-2026-49460",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-49460 is fixed in version 5.9.0.post14+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d4e7c73f-22a7-5a61-84df-6f377d8559db",
      "id": "CVE-2026-49461",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-49461 is fixed in version 5.9.0.post14+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f9404bd4-5bf9-58c4-b6d7-fe5a96637bb3",
      "id": "CVE-2026-54530",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-54530 is fixed in version 5.9.0.post14+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:50ef3a4b-2165-5272-afb6-e0025ad5cdaf",
      "id": "CVE-2026-54531",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-54531 is fixed in version 5.9.0.post14+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:44c69a10-ec1d-5a85-923c-4d8db77d5fc6",
      "id": "CVE-2026-54651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-54651 is fixed in version 5.9.0.post14+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bc82fb66-ac97-53f3-a260-0079d0b1e753",
      "id": "CVE-2026-59935",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59935 is fixed in version 5.9.0.post14+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ae3f2972-daf0-58d8-b12f-b5bdc9fe39f1",
      "id": "CVE-2026-59936",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59936 is fixed in version 5.9.0.post14+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:46981ef7-0d50-5474-ba38-c7a83ab4a233",
      "id": "CVE-2026-59937",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59937 is fixed in version 5.9.0.post14+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8e38c291-988d-59e4-8fb4-9f2d799829cd",
      "id": "CVE-2026-59938",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-59938 is fixed in version 5.9.0.post14+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:40a3292e-ec35-56e7-85cd-331efc025963",
      "id": "CVE-2026-71852",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-71852 is fixed in version 5.9.0.post14+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0a995462-7510-566c-9a57-896c0fef3355",
      "id": "CVE-2026-71870",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-71870 is fixed in version 5.9.0.post14+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cef0924a-0a40-53b1-af0b-88bc47294a4f",
      "id": "GHSA-4pxv-j86v-mhcw",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-4pxv-j86v-mhcw affects version 5.9.0.post14+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cc2d7fd5-0362-5afb-9df2-de48432aa10e",
      "id": "GHSA-7gw9-cf7v-778f",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-7gw9-cf7v-778f affects version 5.9.0.post14+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:60818f14-21ac-5f5f-be84-90ae22ef33d9",
      "id": "GHSA-9m86-7pmv-2852",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-9m86-7pmv-2852 affects version 5.9.0.post14+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e23d1942-f2eb-550a-86ad-daf7fc95fa78",
      "id": "GHSA-jj6c-8h6c-hppx",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-jj6c-8h6c-hppx affects version 5.9.0.post14+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:88c1cdba-cb8c-5cd8-b524-492cec72ac86",
      "id": "GHSA-jm82-fx9c-mx94",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability GHSA-jm82-fx9c-mx94 is fixed in version 5.9.0.post14+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4b88317f-3656-5fb6-b342-58608e085a90",
      "id": "GHSA-x284-j5p8-9c5p",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-x284-j5p8-9c5p affects version 5.9.0.post14+tuxcare of pypdf."
      },
      "affects": [
        {
          "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:pypi/pypdf@5.9.0.post14+tuxcare"
    }
  ]
}