{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:fb129db9-a474-58b1-882a-7cb7819b4993",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.5",
      "type": "library",
      "group": "org.eclipse.jetty",
      "name": "jetty-jaspi",
      "version": "9.4.53.v20231009-tuxcare.5",
      "purl": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.5"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:f5152926-1af9-5e22-a6cc-cba972f2dd56",
      "id": "CVE-2020-25711",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-25711 affects version 9.4.53.v20231009-tuxcare.5 of org.eclipse.jetty:jetty-jaspi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:381814e3-a3c9-5225-b081-6f420d19c96e",
      "id": "CVE-2020-27216",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-27216 affects version 9.4.53.v20231009-tuxcare.5 of org.eclipse.jetty:jetty-jaspi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:375d25d7-3eb8-5540-ae7b-b3cf567f28a1",
      "id": "CVE-2021-28169",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-28169 affects version 9.4.53.v20231009-tuxcare.5 of org.eclipse.jetty:jetty-jaspi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d677a6ef-57bd-570b-82e1-c98c28f4d9e3",
      "id": "CVE-2021-34428",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-34428 affects version 9.4.53.v20231009-tuxcare.5 of org.eclipse.jetty:jetty-jaspi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1b99f658-e908-511f-8c00-3fd52a4037d8",
      "id": "CVE-2023-36478",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-36478 affects version 9.4.53.v20231009-tuxcare.5 of org.eclipse.jetty:jetty-jaspi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:99d11049-a9bb-5255-b7cf-c19724f49499",
      "id": "CVE-2023-36479",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-36479 affects version 9.4.53.v20231009-tuxcare.5 of org.eclipse.jetty:jetty-jaspi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b11752f9-68a5-5e9e-ae8a-450b9b00345d",
      "id": "CVE-2023-40167",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-40167 affects version 9.4.53.v20231009-tuxcare.5 of org.eclipse.jetty:jetty-jaspi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:97698392-a8fb-59e4-add8-8830801c2fc3",
      "id": "CVE-2023-41900",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-41900 affects version 9.4.53.v20231009-tuxcare.5 of org.eclipse.jetty:jetty-jaspi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bd7a4189-c982-59d8-8c89-dc8f883fcc61",
      "id": "CVE-2024-13009",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-13009 is fixed in version 9.4.53.v20231009-tuxcare.5 of org.eclipse.jetty:jetty-jaspi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1b18d78b-dc36-529f-b350-24b38d9c2876",
      "id": "CVE-2024-22201",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22201 is fixed in version 9.4.53.v20231009-tuxcare.5 of org.eclipse.jetty:jetty-jaspi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8578b736-0379-523c-ac94-20d41b78d73c",
      "id": "CVE-2024-6762",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-6762 is fixed in version 9.4.53.v20231009-tuxcare.5 of org.eclipse.jetty:jetty-jaspi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4d805d8c-26e1-57dc-ae89-c2a12b81d9da",
      "id": "CVE-2024-6763",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-6763 is fixed in version 9.4.53.v20231009-tuxcare.5 of org.eclipse.jetty:jetty-jaspi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:38bbd6cd-0d76-5beb-b71e-8010514d8571",
      "id": "CVE-2024-9823",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-9823 is fixed in version 9.4.53.v20231009-tuxcare.5 of org.eclipse.jetty:jetty-jaspi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:92540e47-517f-548e-9b7d-45498226ec36",
      "id": "CVE-2025-11143",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-11143 is fixed in version 9.4.53.v20231009-tuxcare.5 of org.eclipse.jetty:jetty-jaspi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:57460758-dd9b-5181-b18f-71f77d93e7fc",
      "id": "CVE-2025-1948",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-1948 affects version 9.4.53.v20231009-tuxcare.5 of org.eclipse.jetty:jetty-jaspi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f37c1530-0485-5d22-a061-c78a00fd2bff",
      "id": "CVE-2025-5115",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-5115 affects version 9.4.53.v20231009-tuxcare.5 of org.eclipse.jetty:jetty-jaspi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fa9a266e-1e2a-54fa-8c15-e43d359b2c8b",
      "id": "CVE-2026-1605",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-1605 affects version 9.4.53.v20231009-tuxcare.5 of org.eclipse.jetty:jetty-jaspi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9a0e19e8-9a0b-53d7-96d2-c553ffd2ff90",
      "id": "CVE-2026-2332",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-2332 affects version 9.4.53.v20231009-tuxcare.5 of org.eclipse.jetty:jetty-jaspi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b576f1a2-d532-5e56-9a5d-52cd17f65ff1",
      "id": "CVE-2026-5795",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-5795 affects version 9.4.53.v20231009-tuxcare.5 of org.eclipse.jetty:jetty-jaspi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:554f3279-edc9-57c6-9324-37add33f1d48",
      "id": "GHSA-58qw-p7qm-5rvh",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-58qw-p7qm-5rvh affects version 9.4.53.v20231009-tuxcare.5 of org.eclipse.jetty:jetty-jaspi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.5"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.5"
    }
  ]
}