{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:5b347b9c-48d8-5502-84ce-1b93d6aaf6da",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.eclipse.jetty/jetty-openid@9.4.53.v20231009-tuxcare.1",
      "type": "library",
      "group": "org.eclipse.jetty",
      "name": "jetty-openid",
      "version": "9.4.53.v20231009-tuxcare.1",
      "purl": "pkg:maven/org.eclipse.jetty/jetty-openid@9.4.53.v20231009-tuxcare.1"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:e38dd1ec-a4c4-591f-93ba-8f1528400f22",
      "id": "CVE-2020-25711",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-25711 affects version 9.4.53.v20231009-tuxcare.1 of org.eclipse.jetty:jetty-openid."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-openid@9.4.53.v20231009-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a9cd776d-3416-5bd0-b68c-d549d0cb731b",
      "id": "CVE-2020-27216",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-27216 affects version 9.4.53.v20231009-tuxcare.1 of org.eclipse.jetty:jetty-openid."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-openid@9.4.53.v20231009-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9fa0dff5-c678-5fe6-b8da-7710177d3858",
      "id": "CVE-2021-28169",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-28169 affects version 9.4.53.v20231009-tuxcare.1 of org.eclipse.jetty:jetty-openid."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-openid@9.4.53.v20231009-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6acc814c-59ce-540e-8e67-ca12d7efb504",
      "id": "CVE-2021-34428",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-34428 affects version 9.4.53.v20231009-tuxcare.1 of org.eclipse.jetty:jetty-openid."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-openid@9.4.53.v20231009-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dc6c165f-35f8-57a9-8e56-7cbd340ee6e5",
      "id": "CVE-2023-36478",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-36478 affects version 9.4.53.v20231009-tuxcare.1 of org.eclipse.jetty:jetty-openid."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-openid@9.4.53.v20231009-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a30a4095-c6dc-5384-aab0-4f52ad987cc7",
      "id": "CVE-2023-36479",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-36479 affects version 9.4.53.v20231009-tuxcare.1 of org.eclipse.jetty:jetty-openid."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-openid@9.4.53.v20231009-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7fd9c5be-b055-58c6-b544-7b69ccafe9a3",
      "id": "CVE-2023-40167",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-40167 affects version 9.4.53.v20231009-tuxcare.1 of org.eclipse.jetty:jetty-openid."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-openid@9.4.53.v20231009-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:764d8709-4676-518c-b3b3-4b5c8429ed83",
      "id": "CVE-2023-41900",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-41900 affects version 9.4.53.v20231009-tuxcare.1 of org.eclipse.jetty:jetty-openid."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-openid@9.4.53.v20231009-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aa827abd-f020-5a86-bc89-7d75f81ed4ac",
      "id": "CVE-2024-13009",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-13009 affects version 9.4.53.v20231009-tuxcare.1 of org.eclipse.jetty:jetty-openid."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-openid@9.4.53.v20231009-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ed66828f-742b-5ffc-a3b4-75ee18c55302",
      "id": "CVE-2024-22201",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-22201 is fixed in version 9.4.53.v20231009-tuxcare.1 of org.eclipse.jetty:jetty-openid."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-openid@9.4.53.v20231009-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fb2310ed-215b-56db-a15a-d88b996c7d0a",
      "id": "CVE-2024-6762",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-6762 affects version 9.4.53.v20231009-tuxcare.1 of org.eclipse.jetty:jetty-openid."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-openid@9.4.53.v20231009-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a3c2ce53-2043-597f-8100-786e7e3d800a",
      "id": "CVE-2024-6763",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-6763 affects version 9.4.53.v20231009-tuxcare.1 of org.eclipse.jetty:jetty-openid."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-openid@9.4.53.v20231009-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7bf8bb0d-d9e0-5a4a-90a0-86e417d90217",
      "id": "CVE-2024-9823",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-9823 affects version 9.4.53.v20231009-tuxcare.1 of org.eclipse.jetty:jetty-openid."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-openid@9.4.53.v20231009-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1f6a627f-db0d-516b-b96f-0ad2fcdc4965",
      "id": "CVE-2025-11143",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-11143 affects version 9.4.53.v20231009-tuxcare.1 of org.eclipse.jetty:jetty-openid."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-openid@9.4.53.v20231009-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:62c9cf83-ec19-5daa-b1a7-8e39b3585910",
      "id": "CVE-2025-1948",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-1948 affects version 9.4.53.v20231009-tuxcare.1 of org.eclipse.jetty:jetty-openid."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-openid@9.4.53.v20231009-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f030a47e-b83e-55f4-9312-ee31c48df4c7",
      "id": "CVE-2025-5115",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-5115 affects version 9.4.53.v20231009-tuxcare.1 of org.eclipse.jetty:jetty-openid."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-openid@9.4.53.v20231009-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:97e23d4d-f78a-56c3-9c02-8626ca07c15d",
      "id": "CVE-2026-1605",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-1605 affects version 9.4.53.v20231009-tuxcare.1 of org.eclipse.jetty:jetty-openid."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-openid@9.4.53.v20231009-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aeaa12e4-d2e9-5043-b453-42530bfd9f5a",
      "id": "CVE-2026-5795",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-5795 affects version 9.4.53.v20231009-tuxcare.1 of org.eclipse.jetty:jetty-openid."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-openid@9.4.53.v20231009-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:89a088b6-0b25-5351-ac04-34c5cdff16fc",
      "id": "GHSA-58qw-p7qm-5rvh",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-58qw-p7qm-5rvh affects version 9.4.53.v20231009-tuxcare.1 of org.eclipse.jetty:jetty-openid."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty/jetty-openid@9.4.53.v20231009-tuxcare.1"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.eclipse.jetty/jetty-openid@9.4.53.v20231009-tuxcare.1"
    }
  ]
}