{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:70222514-b242-521a-857d-c874eb8805cf",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.2",
      "type": "library",
      "group": "org.eclipse.jetty",
      "name": "jetty-jaspi",
      "version": "9.4.53.v20231009-tuxcare.2",
      "purl": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.2"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:9169d625-83e4-5479-8558-2982732f921a",
      "id": "CVE-2020-25711",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-25711 affects version 9.4.53.v20231009-tuxcare.2 of org.eclipse.jetty:jetty-jaspi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e5849caf-39bd-5e94-b44d-8fb71599d1e6",
      "id": "CVE-2020-27216",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-27216 affects version 9.4.53.v20231009-tuxcare.2 of org.eclipse.jetty:jetty-jaspi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3ab0d106-4a34-5257-be6d-56d1326e058e",
      "id": "CVE-2021-28169",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-28169 affects version 9.4.53.v20231009-tuxcare.2 of org.eclipse.jetty:jetty-jaspi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e9bed410-e8a4-5bd9-8fb3-da8b64ab9010",
      "id": "CVE-2021-34428",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-34428 affects version 9.4.53.v20231009-tuxcare.2 of org.eclipse.jetty:jetty-jaspi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cab2befb-9674-53c8-9230-b761f32098fb",
      "id": "CVE-2023-36478",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-36478 affects version 9.4.53.v20231009-tuxcare.2 of org.eclipse.jetty:jetty-jaspi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:da94b95a-966b-54a4-81e6-2db4e68c5033",
      "id": "CVE-2023-36479",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-36479 affects version 9.4.53.v20231009-tuxcare.2 of org.eclipse.jetty:jetty-jaspi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e3cdc4f6-acb8-5651-94c0-ac77776a9c1d",
      "id": "CVE-2023-40167",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-40167 affects version 9.4.53.v20231009-tuxcare.2 of org.eclipse.jetty:jetty-jaspi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:628794f5-b490-5126-bd12-7760a733216b",
      "id": "CVE-2023-41900",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-41900 affects version 9.4.53.v20231009-tuxcare.2 of org.eclipse.jetty:jetty-jaspi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cf52a883-8fd3-5ff9-a87f-20f7bc7c4126",
      "id": "CVE-2024-13009",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-13009 is fixed in version 9.4.53.v20231009-tuxcare.2 of org.eclipse.jetty:jetty-jaspi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2f99f63b-7123-503a-8c1f-e292d46ecc0f",
      "id": "CVE-2024-22201",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22201 is fixed in version 9.4.53.v20231009-tuxcare.2 of org.eclipse.jetty:jetty-jaspi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d323f811-fde5-5a4f-9498-5cbc60482dac",
      "id": "CVE-2024-6762",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-6762 affects version 9.4.53.v20231009-tuxcare.2 of org.eclipse.jetty:jetty-jaspi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:13a9af47-7dff-50ed-b017-5b4f9b9ddbce",
      "id": "CVE-2024-6763",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-6763 affects version 9.4.53.v20231009-tuxcare.2 of org.eclipse.jetty:jetty-jaspi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:40656162-2425-50a0-bf59-eadc3fd44b07",
      "id": "CVE-2024-9823",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-9823 affects version 9.4.53.v20231009-tuxcare.2 of org.eclipse.jetty:jetty-jaspi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e8af99b1-e419-50f9-b93d-f6d2b36f8734",
      "id": "CVE-2025-11143",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-11143 affects version 9.4.53.v20231009-tuxcare.2 of org.eclipse.jetty:jetty-jaspi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3d6d19fb-11f1-5310-bbb7-42df601696e3",
      "id": "CVE-2025-1948",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-1948 affects version 9.4.53.v20231009-tuxcare.2 of org.eclipse.jetty:jetty-jaspi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a0672c7f-36fa-53a5-8972-5bdfebf2edf2",
      "id": "CVE-2025-5115",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-5115 affects version 9.4.53.v20231009-tuxcare.2 of org.eclipse.jetty:jetty-jaspi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:013fce85-61d5-53b5-a5ea-c59d34ae4637",
      "id": "CVE-2026-1605",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-1605 affects version 9.4.53.v20231009-tuxcare.2 of org.eclipse.jetty:jetty-jaspi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:887ec240-6356-5137-b8fb-5ed345f0432a",
      "id": "CVE-2026-5795",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-5795 affects version 9.4.53.v20231009-tuxcare.2 of org.eclipse.jetty:jetty-jaspi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e13d7cfc-5a07-5116-9a2a-7affc14376b3",
      "id": "GHSA-58qw-p7qm-5rvh",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-58qw-p7qm-5rvh affects version 9.4.53.v20231009-tuxcare.2 of org.eclipse.jetty:jetty-jaspi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.2"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.eclipse.jetty/jetty-jaspi@9.4.53.v20231009-tuxcare.2"
    }
  ]
}