{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:f7a0c300-58cd-55ff-95ff-a08ea140b467",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.hadoop/hadoop-mapreduce-client-core@2.7.1.tuxcare.1",
      "type": "library",
      "group": "org.apache.hadoop",
      "name": "hadoop-mapreduce-client-core",
      "version": "2.7.1.tuxcare.1",
      "purl": "pkg:maven/org.apache.hadoop/hadoop-mapreduce-client-core@2.7.1.tuxcare.1"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:143b3af1-3b08-50a1-ac78-31901e24a555",
      "id": "CVE-2016-3086",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-3086 affects version 2.7.1.tuxcare.1 of org.apache.hadoop:hadoop-mapreduce-client-core."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.hadoop/hadoop-mapreduce-client-core@2.7.1.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:87265651-75b9-59dd-bccc-98c52dcdfb6a",
      "id": "CVE-2016-5001",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-5001 affects version 2.7.1.tuxcare.1 of org.apache.hadoop:hadoop-mapreduce-client-core."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.hadoop/hadoop-mapreduce-client-core@2.7.1.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d9964396-845a-5942-b40d-66a18d58b300",
      "id": "CVE-2016-5393",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-5393 affects version 2.7.1.tuxcare.1 of org.apache.hadoop:hadoop-mapreduce-client-core."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.hadoop/hadoop-mapreduce-client-core@2.7.1.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e80e81e0-30ee-5c2e-9324-56510ac192a1",
      "id": "CVE-2016-6811",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6811 affects version 2.7.1.tuxcare.1 of org.apache.hadoop:hadoop-mapreduce-client-core."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.hadoop/hadoop-mapreduce-client-core@2.7.1.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:56031449-aad3-5f7f-bdb4-df99c88bf1e3",
      "id": "CVE-2017-15713",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-15713 affects version 2.7.1.tuxcare.1 of org.apache.hadoop:hadoop-mapreduce-client-core."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.hadoop/hadoop-mapreduce-client-core@2.7.1.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4403ee57-364b-57c8-af78-eeaf6c468c4b",
      "id": "CVE-2017-15718",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-15718 affects version 2.7.1.tuxcare.1 of org.apache.hadoop:hadoop-mapreduce-client-core."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.hadoop/hadoop-mapreduce-client-core@2.7.1.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eae8315c-c19f-5af9-9384-6325a6db030a",
      "id": "CVE-2017-3166",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-3166 affects version 2.7.1.tuxcare.1 of org.apache.hadoop:hadoop-mapreduce-client-core."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.hadoop/hadoop-mapreduce-client-core@2.7.1.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:884412ba-2fa6-5b4e-936e-02e36f65b5c1",
      "id": "CVE-2017-7669",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-7669 affects version 2.7.1.tuxcare.1 of org.apache.hadoop:hadoop-mapreduce-client-core."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.hadoop/hadoop-mapreduce-client-core@2.7.1.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:16d836db-66ef-5871-84a9-250456b4a7e9",
      "id": "CVE-2018-11765",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11765 affects version 2.7.1.tuxcare.1 of org.apache.hadoop:hadoop-mapreduce-client-core."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.hadoop/hadoop-mapreduce-client-core@2.7.1.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9e6610ab-e44f-5a60-8fe8-1b4794320180",
      "id": "CVE-2018-11766",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11766 affects version 2.7.1.tuxcare.1 of org.apache.hadoop:hadoop-mapreduce-client-core."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.hadoop/hadoop-mapreduce-client-core@2.7.1.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c9aa1f65-965c-545f-a0dc-6c3095f0f3fa",
      "id": "CVE-2018-11768",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11768 affects version 2.7.1.tuxcare.1 of org.apache.hadoop:hadoop-mapreduce-client-core."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.hadoop/hadoop-mapreduce-client-core@2.7.1.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:481e85fd-7e74-5318-ae75-4281187f765b",
      "id": "CVE-2018-1296",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1296 affects version 2.7.1.tuxcare.1 of org.apache.hadoop:hadoop-mapreduce-client-core."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.hadoop/hadoop-mapreduce-client-core@2.7.1.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2e9a655a-cb1e-54bf-9e03-6244be696b11",
      "id": "CVE-2018-8009",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-8009 affects version 2.7.1.tuxcare.1 of org.apache.hadoop:hadoop-mapreduce-client-core."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.hadoop/hadoop-mapreduce-client-core@2.7.1.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bca9cb6b-062d-554e-a2cb-2cfa21947768",
      "id": "CVE-2018-8029",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-8029 affects version 2.7.1.tuxcare.1 of org.apache.hadoop:hadoop-mapreduce-client-core."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.hadoop/hadoop-mapreduce-client-core@2.7.1.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e10d56bd-4d0d-5ccb-85e7-944322a68bd6",
      "id": "CVE-2020-9492",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9492 affects version 2.7.1.tuxcare.1 of org.apache.hadoop:hadoop-mapreduce-client-core."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.hadoop/hadoop-mapreduce-client-core@2.7.1.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dbf3fb05-f9bf-5b15-a38e-9cfc9bacc584",
      "id": "CVE-2021-25642",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-25642 affects version 2.7.1.tuxcare.1 of org.apache.hadoop:hadoop-mapreduce-client-core."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.hadoop/hadoop-mapreduce-client-core@2.7.1.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4ba508aa-9028-5217-bdef-48a1264ac407",
      "id": "CVE-2021-33036",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-33036 affects version 2.7.1.tuxcare.1 of org.apache.hadoop:hadoop-mapreduce-client-core."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.hadoop/hadoop-mapreduce-client-core@2.7.1.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:16cb46d2-dfca-5dfd-b96e-b970a71c4814",
      "id": "CVE-2021-37404",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-37404 affects version 2.7.1.tuxcare.1 of org.apache.hadoop:hadoop-mapreduce-client-core."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.hadoop/hadoop-mapreduce-client-core@2.7.1.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7391b5f9-15aa-5a94-a5d7-dd35bdc48921",
      "id": "CVE-2022-25168",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-25168 affects version 2.7.1.tuxcare.1 of org.apache.hadoop:hadoop-mapreduce-client-core."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.hadoop/hadoop-mapreduce-client-core@2.7.1.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a2284482-c27d-58d2-86ca-40f2fee04dbb",
      "id": "CVE-2022-26612",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-26612 affects version 2.7.1.tuxcare.1 of org.apache.hadoop:hadoop-mapreduce-client-core."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.hadoop/hadoop-mapreduce-client-core@2.7.1.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9b59a255-53b5-5c96-98d7-34b9c55dbdeb",
      "id": "CVE-2024-23454",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-23454 is fixed in version 2.7.1.tuxcare.1 of org.apache.hadoop:hadoop-mapreduce-client-core."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.hadoop/hadoop-mapreduce-client-core@2.7.1.tuxcare.1"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.hadoop/hadoop-mapreduce-client-core@2.7.1.tuxcare.1"
    }
  ]
}