{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:75e759da-9691-5c83-a5ab-0bebf4232489",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.eclipse.jetty.spdy/spdy-jetty-http@8.2.0.v20160908-tuxcare.2",
      "type": "library",
      "group": "org.eclipse.jetty.spdy",
      "name": "spdy-jetty-http",
      "version": "8.2.0.v20160908-tuxcare.2",
      "purl": "pkg:maven/org.eclipse.jetty.spdy/spdy-jetty-http@8.2.0.v20160908-tuxcare.2"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:4902ef08-7ab8-5b71-b1eb-8ba500a7c920",
      "id": "CVE-2015-2080",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2015-2080 is a false positive for org.eclipse.jetty.spdy:spdy-jetty-http 8.2.0.v20160908-tuxcare.2."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.spdy/spdy-jetty-http@8.2.0.v20160908-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3611bb72-9fae-5088-a612-7fa4239cd107",
      "id": "CVE-2017-7656",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2017-7656 is fixed in version 8.2.0.v20160908-tuxcare.2 of org.eclipse.jetty.spdy:spdy-jetty-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.spdy/spdy-jetty-http@8.2.0.v20160908-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9da275b6-2600-5715-a30f-3d28bf67afc0",
      "id": "CVE-2017-7657",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2017-7657 is fixed in version 8.2.0.v20160908-tuxcare.2 of org.eclipse.jetty.spdy:spdy-jetty-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.spdy/spdy-jetty-http@8.2.0.v20160908-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d447e3ae-ecba-502d-91d2-8ddf931a55af",
      "id": "CVE-2017-7658",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2017-7658 is fixed in version 8.2.0.v20160908-tuxcare.2 of org.eclipse.jetty.spdy:spdy-jetty-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.spdy/spdy-jetty-http@8.2.0.v20160908-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:30bcc8c1-1d56-5985-9fd7-71ae166f0a1a",
      "id": "CVE-2017-9735",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2017-9735 is fixed in version 8.2.0.v20160908-tuxcare.2 of org.eclipse.jetty.spdy:spdy-jetty-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.spdy/spdy-jetty-http@8.2.0.v20160908-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7bfb5d88-9f42-56f7-b593-dbcfb0eb2423",
      "id": "CVE-2018-12536",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-12536 affects version 8.2.0.v20160908-tuxcare.2 of org.eclipse.jetty.spdy:spdy-jetty-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.spdy/spdy-jetty-http@8.2.0.v20160908-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9c5bc972-c2fc-5690-a4ad-6e07d93f2f5a",
      "id": "CVE-2018-12538",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-12538 affects version 8.2.0.v20160908-tuxcare.2 of org.eclipse.jetty.spdy:spdy-jetty-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.spdy/spdy-jetty-http@8.2.0.v20160908-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8d8f5cd3-db3f-5b12-aec7-929378e48ea0",
      "id": "CVE-2018-12545",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-12545 affects version 8.2.0.v20160908-tuxcare.2 of org.eclipse.jetty.spdy:spdy-jetty-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.spdy/spdy-jetty-http@8.2.0.v20160908-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1e0fa225-de54-5d62-8250-79a3d07a77a0",
      "id": "CVE-2019-10241",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-10241 affects version 8.2.0.v20160908-tuxcare.2 of org.eclipse.jetty.spdy:spdy-jetty-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.spdy/spdy-jetty-http@8.2.0.v20160908-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9a3493fb-9583-530d-bf7d-2293399301bb",
      "id": "CVE-2019-10246",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-10246 affects version 8.2.0.v20160908-tuxcare.2 of org.eclipse.jetty.spdy:spdy-jetty-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.spdy/spdy-jetty-http@8.2.0.v20160908-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fb68c16a-72d2-50b7-aadc-c9041ffa82e2",
      "id": "CVE-2019-10247",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2019-10247 is fixed in version 8.2.0.v20160908-tuxcare.2 of org.eclipse.jetty.spdy:spdy-jetty-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.spdy/spdy-jetty-http@8.2.0.v20160908-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3d0d310a-389e-518e-8651-1f0b7dfd3b79",
      "id": "CVE-2019-17638",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-17638 affects version 8.2.0.v20160908-tuxcare.2 of org.eclipse.jetty.spdy:spdy-jetty-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.spdy/spdy-jetty-http@8.2.0.v20160908-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3e14f9aa-6cfd-5361-b55c-bceef3a3e1e4",
      "id": "CVE-2020-27216",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2020-27216 is fixed in version 8.2.0.v20160908-tuxcare.2 of org.eclipse.jetty.spdy:spdy-jetty-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.spdy/spdy-jetty-http@8.2.0.v20160908-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d9db6a88-a636-520c-b9bb-c68d539a72a5",
      "id": "CVE-2020-27218",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-27218 affects version 8.2.0.v20160908-tuxcare.2 of org.eclipse.jetty.spdy:spdy-jetty-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.spdy/spdy-jetty-http@8.2.0.v20160908-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b80233a5-8f16-5ca0-9e66-cea9d852d957",
      "id": "CVE-2021-28165",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2021-28165 is a false positive for org.eclipse.jetty.spdy:spdy-jetty-http 8.2.0.v20160908-tuxcare.2."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.spdy/spdy-jetty-http@8.2.0.v20160908-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8226dd3a-b3ec-5ec4-a01a-74871c3f0eb3",
      "id": "CVE-2021-28169",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2021-28169 is a false positive for org.eclipse.jetty.spdy:spdy-jetty-http 8.2.0.v20160908-tuxcare.2."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.spdy/spdy-jetty-http@8.2.0.v20160908-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dcde48d8-49a0-5436-bfb4-49ea7e97772e",
      "id": "CVE-2021-34428",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-34428 is fixed in version 8.2.0.v20160908-tuxcare.2 of org.eclipse.jetty.spdy:spdy-jetty-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.spdy/spdy-jetty-http@8.2.0.v20160908-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4679aa21-fa1a-5bc1-b7f2-0d535445e52a",
      "id": "CVE-2022-2047",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-2047 affects version 8.2.0.v20160908-tuxcare.2 of org.eclipse.jetty.spdy:spdy-jetty-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.spdy/spdy-jetty-http@8.2.0.v20160908-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9f562876-08d3-5646-80ac-bbac3b056c53",
      "id": "CVE-2022-2048",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2022-2048 is a false positive for org.eclipse.jetty.spdy:spdy-jetty-http 8.2.0.v20160908-tuxcare.2."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.spdy/spdy-jetty-http@8.2.0.v20160908-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a9d94c98-8b38-5ec7-b91b-fa1639da0dd2",
      "id": "CVE-2023-26048",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-26048 is fixed in version 8.2.0.v20160908-tuxcare.2 of org.eclipse.jetty.spdy:spdy-jetty-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.spdy/spdy-jetty-http@8.2.0.v20160908-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cd4ac7a0-4c6c-59f4-ba97-fb4bf101dd02",
      "id": "CVE-2023-26049",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-26049 is fixed in version 8.2.0.v20160908-tuxcare.2 of org.eclipse.jetty.spdy:spdy-jetty-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.spdy/spdy-jetty-http@8.2.0.v20160908-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5ead0840-9dbc-5ec8-9a37-bfb217e2c5ee",
      "id": "CVE-2023-36479",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-36479 is fixed in version 8.2.0.v20160908-tuxcare.2 of org.eclipse.jetty.spdy:spdy-jetty-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.spdy/spdy-jetty-http@8.2.0.v20160908-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:968788be-7498-5d8c-8eb5-f4000f5ac10c",
      "id": "CVE-2023-40167",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-40167 affects version 8.2.0.v20160908-tuxcare.2 of org.eclipse.jetty.spdy:spdy-jetty-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.spdy/spdy-jetty-http@8.2.0.v20160908-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b9de23ac-7c34-5eaf-a22b-cdef81f8a772",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-44487 affects version 8.2.0.v20160908-tuxcare.2 of org.eclipse.jetty.spdy:spdy-jetty-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.spdy/spdy-jetty-http@8.2.0.v20160908-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b08e65c0-3cfc-59cb-b11b-4469e1cafecb",
      "id": "CVE-2024-13009",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-13009 affects version 8.2.0.v20160908-tuxcare.2 of org.eclipse.jetty.spdy:spdy-jetty-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.spdy/spdy-jetty-http@8.2.0.v20160908-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5555a6c8-abfc-5742-b866-f985b4c399ef",
      "id": "CVE-2024-6762",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-6762 affects version 8.2.0.v20160908-tuxcare.2 of org.eclipse.jetty.spdy:spdy-jetty-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.spdy/spdy-jetty-http@8.2.0.v20160908-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4a348cb3-c890-5f88-99d1-7d652b367028",
      "id": "CVE-2024-6763",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-6763 affects version 8.2.0.v20160908-tuxcare.2 of org.eclipse.jetty.spdy:spdy-jetty-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.spdy/spdy-jetty-http@8.2.0.v20160908-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f8d4a941-e66c-5844-abb6-261f59826f38",
      "id": "CVE-2024-8184",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-8184 affects version 8.2.0.v20160908-tuxcare.2 of org.eclipse.jetty.spdy:spdy-jetty-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.spdy/spdy-jetty-http@8.2.0.v20160908-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:19dfd0f7-0e23-5d28-83b7-6c04fe676dba",
      "id": "CVE-2025-11143",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-11143 affects version 8.2.0.v20160908-tuxcare.2 of org.eclipse.jetty.spdy:spdy-jetty-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.spdy/spdy-jetty-http@8.2.0.v20160908-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e4d2f85d-51df-5edc-9a5f-c82929f84c7c",
      "id": "CVE-2026-1605",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-1605 affects version 8.2.0.v20160908-tuxcare.2 of org.eclipse.jetty.spdy:spdy-jetty-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.spdy/spdy-jetty-http@8.2.0.v20160908-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:944d17d0-c24f-5829-99d8-8909928ca030",
      "id": "CVE-2026-2332",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-2332 affects version 8.2.0.v20160908-tuxcare.2 of org.eclipse.jetty.spdy:spdy-jetty-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.spdy/spdy-jetty-http@8.2.0.v20160908-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:21f67b9f-7a97-59e6-934e-e1a074d3ab26",
      "id": "CVE-2026-5795",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-5795 affects version 8.2.0.v20160908-tuxcare.2 of org.eclipse.jetty.spdy:spdy-jetty-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.spdy/spdy-jetty-http@8.2.0.v20160908-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f055a0f6-6d2a-59cc-bc26-446e4521c11a",
      "id": "GHSA-58qw-p7qm-5rvh",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-58qw-p7qm-5rvh affects version 8.2.0.v20160908-tuxcare.2 of org.eclipse.jetty.spdy:spdy-jetty-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.spdy/spdy-jetty-http@8.2.0.v20160908-tuxcare.2"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.eclipse.jetty.spdy/spdy-jetty-http@8.2.0.v20160908-tuxcare.2"
    }
  ]
}