{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:46c1302e-d719-55f6-934d-33b76aa73706",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.eclipse.jetty/jetty-maven-plugin@9.2.16.v20160414-tuxcare.1",
      "type": "library",
      "group": "org.eclipse.jetty",
      "name": "jetty-maven-plugin",
      "version": "9.2.16.v20160414-tuxcare.1",
      "purl": "pkg:maven/org.eclipse.jetty/jetty-maven-plugin@9.2.16.v20160414-tuxcare.1"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:7c21666c-d7aa-59b4-8da3-11f89e951787",
      "id": "CVE-2017-7656",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2017-7656 is fixed in version 9.2.16.v20160414-tuxcare.1 of org.eclipse.jetty:jetty-maven-plugin."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-maven-plugin@9.2.16.v20160414-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:abab61ec-255f-5825-821c-7902be1c4c3f",
      "id": "CVE-2017-7657",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2017-7657 is fixed in version 9.2.16.v20160414-tuxcare.1 of org.eclipse.jetty:jetty-maven-plugin."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-maven-plugin@9.2.16.v20160414-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c288d314-69ca-5a0d-a7ff-d9ec4e24c3f5",
      "id": "CVE-2017-7658",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-7658 affects version 9.2.16.v20160414-tuxcare.1 of org.eclipse.jetty:jetty-maven-plugin."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-maven-plugin@9.2.16.v20160414-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:32b957d3-b098-594f-96ad-da9653fa272a",
      "id": "CVE-2017-9735",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2017-9735 is fixed in version 9.2.16.v20160414-tuxcare.1 of org.eclipse.jetty:jetty-maven-plugin."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-maven-plugin@9.2.16.v20160414-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1523fc3e-e7cc-5eb6-9239-27845216f4bd",
      "id": "CVE-2018-12536",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2018-12536 is fixed in version 9.2.16.v20160414-tuxcare.1 of org.eclipse.jetty:jetty-maven-plugin."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-maven-plugin@9.2.16.v20160414-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:749b93a7-1748-5a3b-b5ae-13b6e3447457",
      "id": "CVE-2018-12538",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-12538 affects version 9.2.16.v20160414-tuxcare.1 of org.eclipse.jetty:jetty-maven-plugin."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-maven-plugin@9.2.16.v20160414-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ebcf7e6f-6fea-5837-abb3-9414495b0bac",
      "id": "CVE-2018-12545",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-12545 affects version 9.2.16.v20160414-tuxcare.1 of org.eclipse.jetty:jetty-maven-plugin."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-maven-plugin@9.2.16.v20160414-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:22a90ba8-a381-5f89-804b-1327dfc0ef37",
      "id": "CVE-2019-10241",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2019-10241 is fixed in version 9.2.16.v20160414-tuxcare.1 of org.eclipse.jetty:jetty-maven-plugin."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-maven-plugin@9.2.16.v20160414-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:badbd554-6c3e-56a4-a6ae-4c8eb4bb7193",
      "id": "CVE-2019-10246",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-10246 affects version 9.2.16.v20160414-tuxcare.1 of org.eclipse.jetty:jetty-maven-plugin."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-maven-plugin@9.2.16.v20160414-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e99a4544-72b4-5273-a378-087482e2cc20",
      "id": "CVE-2019-10247",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-10247 affects version 9.2.16.v20160414-tuxcare.1 of org.eclipse.jetty:jetty-maven-plugin."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-maven-plugin@9.2.16.v20160414-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e39b66f6-c64b-55bd-beca-b5b765791514",
      "id": "CVE-2019-17638",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2019-17638 is fixed in version 9.2.16.v20160414-tuxcare.1 of org.eclipse.jetty:jetty-maven-plugin."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-maven-plugin@9.2.16.v20160414-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:70215ea6-96a1-5dcf-9814-32a265552fc9",
      "id": "CVE-2020-27216",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2020-27216 is fixed in version 9.2.16.v20160414-tuxcare.1 of org.eclipse.jetty:jetty-maven-plugin."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-maven-plugin@9.2.16.v20160414-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b2acb0d5-06d0-57b0-9cb2-0aae857d68a3",
      "id": "CVE-2020-27218",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-27218 affects version 9.2.16.v20160414-tuxcare.1 of org.eclipse.jetty:jetty-maven-plugin."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-maven-plugin@9.2.16.v20160414-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e8fb6f61-cbce-56ff-8b0a-7b45b6bc4d02",
      "id": "CVE-2021-28165",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-28165 is fixed in version 9.2.16.v20160414-tuxcare.1 of org.eclipse.jetty:jetty-maven-plugin."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-maven-plugin@9.2.16.v20160414-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3852f28c-38b5-563a-95d2-73ced5ac1565",
      "id": "CVE-2021-28169",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-28169 is fixed in version 9.2.16.v20160414-tuxcare.1 of org.eclipse.jetty:jetty-maven-plugin."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-maven-plugin@9.2.16.v20160414-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9e562519-e9e6-53cf-aae3-cdb7bd043697",
      "id": "CVE-2021-34428",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-34428 affects version 9.2.16.v20160414-tuxcare.1 of org.eclipse.jetty:jetty-maven-plugin."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-maven-plugin@9.2.16.v20160414-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1a947578-ea02-5a0d-b7c6-b15f051e6caf",
      "id": "CVE-2022-2047",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-2047 affects version 9.2.16.v20160414-tuxcare.1 of org.eclipse.jetty:jetty-maven-plugin."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-maven-plugin@9.2.16.v20160414-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:756b5a2b-0033-5996-bd0e-b749a5b24a5f",
      "id": "CVE-2022-2048",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-2048 affects version 9.2.16.v20160414-tuxcare.1 of org.eclipse.jetty:jetty-maven-plugin."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-maven-plugin@9.2.16.v20160414-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d7001d89-3564-5c41-baba-49a68917f1c6",
      "id": "CVE-2023-26048",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-26048 affects version 9.2.16.v20160414-tuxcare.1 of org.eclipse.jetty:jetty-maven-plugin."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-maven-plugin@9.2.16.v20160414-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f7fbed21-db93-597d-975d-527dd44904bd",
      "id": "CVE-2023-26049",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-26049 affects version 9.2.16.v20160414-tuxcare.1 of org.eclipse.jetty:jetty-maven-plugin."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-maven-plugin@9.2.16.v20160414-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:026242be-111f-5eb7-812f-62fdd87fee8d",
      "id": "CVE-2023-36479",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-36479 is fixed in version 9.2.16.v20160414-tuxcare.1 of org.eclipse.jetty:jetty-maven-plugin."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-maven-plugin@9.2.16.v20160414-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eba984c6-d881-5ac4-9ac5-81aa275e3e98",
      "id": "CVE-2023-40167",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-40167 affects version 9.2.16.v20160414-tuxcare.1 of org.eclipse.jetty:jetty-maven-plugin."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-maven-plugin@9.2.16.v20160414-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0822bdfe-731d-5a88-b5ad-d42978a27e4b",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-44487 affects version 9.2.16.v20160414-tuxcare.1 of org.eclipse.jetty:jetty-maven-plugin."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-maven-plugin@9.2.16.v20160414-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:872b6d4c-b29d-5ad0-8816-60aec947d6b8",
      "id": "CVE-2024-13009",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-13009 affects version 9.2.16.v20160414-tuxcare.1 of org.eclipse.jetty:jetty-maven-plugin."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-maven-plugin@9.2.16.v20160414-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f69dea8f-e35e-5e28-b05d-9a6ffa439a67",
      "id": "CVE-2024-6762",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-6762 affects version 9.2.16.v20160414-tuxcare.1 of org.eclipse.jetty:jetty-maven-plugin."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-maven-plugin@9.2.16.v20160414-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:046b4b6d-b45e-5392-b917-2ddedae56f28",
      "id": "CVE-2024-6763",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-6763 affects version 9.2.16.v20160414-tuxcare.1 of org.eclipse.jetty:jetty-maven-plugin."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-maven-plugin@9.2.16.v20160414-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:235eadad-116e-549a-bc53-fb4869c2b914",
      "id": "CVE-2024-8184",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-8184 affects version 9.2.16.v20160414-tuxcare.1 of org.eclipse.jetty:jetty-maven-plugin."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-maven-plugin@9.2.16.v20160414-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:704f8f0b-3eb5-52dd-bb86-3bd2ae9e4d2d",
      "id": "CVE-2024-9823",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-9823 is fixed in version 9.2.16.v20160414-tuxcare.1 of org.eclipse.jetty:jetty-maven-plugin."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-maven-plugin@9.2.16.v20160414-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:83aa3f16-f7d1-5011-889f-a7d9e77aa294",
      "id": "CVE-2025-11143",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2025-11143 does not affect version 9.2.16.v20160414-tuxcare.1 of org.eclipse.jetty:jetty-maven-plugin. Jetty version 9.2.16.v20160414 is not affected to CVE-2025-11143 according to advisories."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-maven-plugin@9.2.16.v20160414-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4a5e7bd1-64de-5b3d-9218-c22a2ffdf2fb",
      "id": "CVE-2026-1605",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-1605 affects version 9.2.16.v20160414-tuxcare.1 of org.eclipse.jetty:jetty-maven-plugin."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-maven-plugin@9.2.16.v20160414-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ca1520f1-e977-5566-8d0a-7fa1cdf3fd98",
      "id": "CVE-2026-2332",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-2332 affects version 9.2.16.v20160414-tuxcare.1 of org.eclipse.jetty:jetty-maven-plugin."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-maven-plugin@9.2.16.v20160414-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6ffc12c1-25fc-5275-82d8-04cd2a3e4163",
      "id": "CVE-2026-5795",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-5795 affects version 9.2.16.v20160414-tuxcare.1 of org.eclipse.jetty:jetty-maven-plugin."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-maven-plugin@9.2.16.v20160414-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:640f7963-907c-55e7-a9c0-82e2bd04dee8",
      "id": "GHSA-58qw-p7qm-5rvh",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability GHSA-58qw-p7qm-5rvh is fixed in version 9.2.16.v20160414-tuxcare.1 of org.eclipse.jetty:jetty-maven-plugin."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-maven-plugin@9.2.16.v20160414-tuxcare.1"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.eclipse.jetty/jetty-maven-plugin@9.2.16.v20160414-tuxcare.1"
    }
  ]
}