{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:c3e97e66-7c20-59f0-b38e-8df4cbc5c8bf",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.eclipse.jetty/jetty-alpn-openjdk8-server@9.4.53.v20231009-tuxcare.3",
      "type": "library",
      "group": "org.eclipse.jetty",
      "name": "jetty-alpn-openjdk8-server",
      "version": "9.4.53.v20231009-tuxcare.3",
      "purl": "pkg:maven/org.eclipse.jetty/jetty-alpn-openjdk8-server@9.4.53.v20231009-tuxcare.3"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:ed31b19e-4b17-54b4-85bf-b2aa684ebe0b",
      "id": "CVE-2020-25711",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-25711 affects version 9.4.53.v20231009-tuxcare.3 of org.eclipse.jetty:jetty-alpn-openjdk8-server."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-alpn-openjdk8-server@9.4.53.v20231009-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b093feff-81f2-5d55-98bd-7ce1c181aa20",
      "id": "CVE-2020-27216",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-27216 affects version 9.4.53.v20231009-tuxcare.3 of org.eclipse.jetty:jetty-alpn-openjdk8-server."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-alpn-openjdk8-server@9.4.53.v20231009-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d704577f-aaff-5c02-acf7-3df7ac0c35de",
      "id": "CVE-2021-28169",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-28169 affects version 9.4.53.v20231009-tuxcare.3 of org.eclipse.jetty:jetty-alpn-openjdk8-server."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-alpn-openjdk8-server@9.4.53.v20231009-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6a0ccff7-eb35-597c-a94d-ecec60673beb",
      "id": "CVE-2021-34428",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-34428 affects version 9.4.53.v20231009-tuxcare.3 of org.eclipse.jetty:jetty-alpn-openjdk8-server."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-alpn-openjdk8-server@9.4.53.v20231009-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a7e5d79f-9cce-509e-ab70-8c9ab7e2ae9f",
      "id": "CVE-2023-36478",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-36478 affects version 9.4.53.v20231009-tuxcare.3 of org.eclipse.jetty:jetty-alpn-openjdk8-server."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-alpn-openjdk8-server@9.4.53.v20231009-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e67b161c-774d-5174-bc42-ac9c05208f9a",
      "id": "CVE-2023-36479",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-36479 affects version 9.4.53.v20231009-tuxcare.3 of org.eclipse.jetty:jetty-alpn-openjdk8-server."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-alpn-openjdk8-server@9.4.53.v20231009-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:174694a0-9ac9-5b3a-98b5-4a05204d4e75",
      "id": "CVE-2023-40167",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-40167 affects version 9.4.53.v20231009-tuxcare.3 of org.eclipse.jetty:jetty-alpn-openjdk8-server."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-alpn-openjdk8-server@9.4.53.v20231009-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5d6753b0-b4bc-5841-8f08-2420c256ce25",
      "id": "CVE-2023-41900",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-41900 affects version 9.4.53.v20231009-tuxcare.3 of org.eclipse.jetty:jetty-alpn-openjdk8-server."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-alpn-openjdk8-server@9.4.53.v20231009-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:819ce387-e3c6-5bcd-87f8-ef529977f7cc",
      "id": "CVE-2024-13009",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-13009 is fixed in version 9.4.53.v20231009-tuxcare.3 of org.eclipse.jetty:jetty-alpn-openjdk8-server."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-alpn-openjdk8-server@9.4.53.v20231009-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d9849bae-5b52-567f-bdbb-cffda9efb530",
      "id": "CVE-2024-22201",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22201 is fixed in version 9.4.53.v20231009-tuxcare.3 of org.eclipse.jetty:jetty-alpn-openjdk8-server."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-alpn-openjdk8-server@9.4.53.v20231009-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:43044eff-aff1-551d-a347-506aec1bf298",
      "id": "CVE-2024-6762",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-6762 is fixed in version 9.4.53.v20231009-tuxcare.3 of org.eclipse.jetty:jetty-alpn-openjdk8-server."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-alpn-openjdk8-server@9.4.53.v20231009-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:308dd7d1-26d4-5ab8-ab58-e72a50086451",
      "id": "CVE-2024-6763",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-6763 is fixed in version 9.4.53.v20231009-tuxcare.3 of org.eclipse.jetty:jetty-alpn-openjdk8-server."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-alpn-openjdk8-server@9.4.53.v20231009-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:53c3f53c-eabd-508a-b1da-c34f4ad339c3",
      "id": "CVE-2024-9823",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-9823 is fixed in version 9.4.53.v20231009-tuxcare.3 of org.eclipse.jetty:jetty-alpn-openjdk8-server."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-alpn-openjdk8-server@9.4.53.v20231009-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:209e761d-479a-5c2f-808e-7b1088693780",
      "id": "CVE-2025-11143",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-11143 is fixed in version 9.4.53.v20231009-tuxcare.3 of org.eclipse.jetty:jetty-alpn-openjdk8-server."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-alpn-openjdk8-server@9.4.53.v20231009-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ec77ac77-d9ff-58e1-bbbd-3f11d12417b3",
      "id": "CVE-2025-1948",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-1948 affects version 9.4.53.v20231009-tuxcare.3 of org.eclipse.jetty:jetty-alpn-openjdk8-server."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-alpn-openjdk8-server@9.4.53.v20231009-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:39420515-ffd5-5fe4-899c-9fcd6648e711",
      "id": "CVE-2025-5115",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-5115 affects version 9.4.53.v20231009-tuxcare.3 of org.eclipse.jetty:jetty-alpn-openjdk8-server."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-alpn-openjdk8-server@9.4.53.v20231009-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:775f4709-da1b-59ba-91e3-528fd1bb089e",
      "id": "CVE-2026-1605",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-1605 affects version 9.4.53.v20231009-tuxcare.3 of org.eclipse.jetty:jetty-alpn-openjdk8-server."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-alpn-openjdk8-server@9.4.53.v20231009-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7f40b26c-8790-5249-9740-da44ccc0f0e7",
      "id": "CVE-2026-5795",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-5795 affects version 9.4.53.v20231009-tuxcare.3 of org.eclipse.jetty:jetty-alpn-openjdk8-server."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-alpn-openjdk8-server@9.4.53.v20231009-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f4f9f21d-166e-5855-b3b7-ee7462d38716",
      "id": "GHSA-58qw-p7qm-5rvh",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-58qw-p7qm-5rvh affects version 9.4.53.v20231009-tuxcare.3 of org.eclipse.jetty:jetty-alpn-openjdk8-server."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-alpn-openjdk8-server@9.4.53.v20231009-tuxcare.3"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.eclipse.jetty/jetty-alpn-openjdk8-server@9.4.53.v20231009-tuxcare.3"
    }
  ]
}