{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:4fd6b134-69df-5dae-996d-03820bb8f056",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "django",
      "purl": "pkg:pypi/django@5.0.post14+tuxcare",
      "type": "library",
      "bom-ref": "pkg:pypi/django@5.0.post14+tuxcare",
      "version": "5.0.post14+tuxcare",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2024-24680",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post14+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:14182ed9-f000-54e5-bba7-0c534925255e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-24680 is fixed in version 5.0.post14+tuxcare of django."
      }
    },
    {
      "id": "CVE-2024-27351",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post14+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:43c55daf-c82b-56eb-9825-5ea3e7c78f35",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-27351 is fixed in version 5.0.post14+tuxcare of django."
      }
    },
    {
      "id": "CVE-2024-38875",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post14+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:9159827c-b6ea-5564-bc4a-3937a58ec289",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38875 is fixed in version 5.0.post14+tuxcare of django."
      }
    },
    {
      "id": "CVE-2024-39329",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post14+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:129ca083-8231-525c-b4e1-c7589fd9899f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-39329 is fixed in version 5.0.post14+tuxcare of django."
      }
    },
    {
      "id": "CVE-2024-39330",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post14+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:2244ef49-187a-56ce-89a3-7ac72d5f06dc",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-39330 is fixed in version 5.0.post14+tuxcare of django."
      }
    },
    {
      "id": "CVE-2024-39614",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post14+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:6a27cf17-c09e-5963-89ec-d097e4fade1d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-39614 is fixed in version 5.0.post14+tuxcare of django."
      }
    },
    {
      "id": "CVE-2024-41989",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post14+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:df116bc3-f431-5d4b-854a-801f34ab37b8",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-41989 is fixed in version 5.0.post14+tuxcare of django."
      }
    },
    {
      "id": "CVE-2024-41990",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post14+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:116b3921-ec63-5abd-b409-cd6d5b632bf5",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-41990 is fixed in version 5.0.post14+tuxcare of django."
      }
    },
    {
      "id": "CVE-2024-41991",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post14+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:cf2d579e-2063-55ee-8cb0-112b4ed2b3c4",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-41991 is fixed in version 5.0.post14+tuxcare of django."
      }
    },
    {
      "id": "CVE-2024-42005",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post14+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:4e2339e5-2265-5c5d-aa74-236a0bd7e566",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-42005 is fixed in version 5.0.post14+tuxcare of django."
      }
    },
    {
      "id": "CVE-2024-45230",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post14+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:57b9b94f-787f-5c66-a355-2d61ecfec338",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-45230 affects version 5.0.post14+tuxcare of django."
      }
    },
    {
      "id": "CVE-2024-45231",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post14+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:e7d0a17e-effb-5449-9d79-6703cf74df32",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-45231 is fixed in version 5.0.post14+tuxcare of django."
      }
    },
    {
      "id": "CVE-2024-53907",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post14+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:a827d6ef-2b0b-576c-8fe3-4e863955409c",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-53907 is fixed in version 5.0.post14+tuxcare of django."
      }
    },
    {
      "id": "CVE-2024-53908",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post14+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:1a78e84d-c5b1-5dee-ab44-7f6ca7f5d5ff",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-53908 is fixed in version 5.0.post14+tuxcare of django."
      }
    },
    {
      "id": "CVE-2024-56374",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post14+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:9de592a1-bebe-5e89-8bbe-e838d87da04e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-56374 is fixed in version 5.0.post14+tuxcare of django."
      }
    },
    {
      "id": "CVE-2025-13372",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post14+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:4a92ce6b-de08-5761-b5ce-9bdf8aa0a89b",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-13372 affects version 5.0.post14+tuxcare of django."
      }
    },
    {
      "id": "CVE-2025-13473",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post14+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:475a9fff-6d51-5da9-9686-d8d2abfe2eb4",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-13473 is fixed in version 5.0.post14+tuxcare of django."
      }
    },
    {
      "id": "CVE-2025-14550",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post14+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:bc3bc8d7-9b22-5a8b-8211-058a084ba701",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-14550 affects version 5.0.post14+tuxcare of django."
      }
    },
    {
      "id": "CVE-2025-26699",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post14+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:dc2ff037-34a0-5b14-8e7e-9329172e6828",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-26699 is fixed in version 5.0.post14+tuxcare of django."
      }
    },
    {
      "id": "CVE-2025-27556",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post14+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:66987c1e-40bc-5c2b-bbc0-49adadd24a48",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-27556 is fixed in version 5.0.post14+tuxcare of django."
      }
    },
    {
      "id": "CVE-2025-48432",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post14+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:9fccbd60-8966-552b-9eaf-7ae8be983c42",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48432 is fixed in version 5.0.post14+tuxcare of django."
      }
    },
    {
      "id": "CVE-2025-57833",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post14+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:e5c6ffa1-fa46-5f36-a9af-529887283cb9",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-57833 is fixed in version 5.0.post14+tuxcare of django."
      }
    },
    {
      "id": "CVE-2025-64458",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post14+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:0940bbb9-008f-56e7-acd9-a88de85bf57a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-64458 is fixed in version 5.0.post14+tuxcare of django."
      }
    },
    {
      "id": "CVE-2025-64459",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post14+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:d02e6d59-65b9-596e-82c1-cbec08661290",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-64459 is fixed in version 5.0.post14+tuxcare of django."
      }
    },
    {
      "id": "CVE-2025-64460",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post14+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:3803b6d3-ee15-57e9-a94a-2854e19ecfac",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-64460 is fixed in version 5.0.post14+tuxcare of django."
      }
    },
    {
      "id": "CVE-2026-1207",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post14+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:a95ee693-2a13-57cf-bcc6-efa9943c9f28",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-1207 is fixed in version 5.0.post14+tuxcare of django."
      }
    },
    {
      "id": "CVE-2026-1285",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post14+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:6967c064-6a51-50c7-be09-19d0e99afae9",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-1285 affects version 5.0.post14+tuxcare of django."
      }
    },
    {
      "id": "CVE-2026-1287",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post14+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:642bbf46-ff8e-56c5-96e7-191ecfeb8c80",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-1287 is fixed in version 5.0.post14+tuxcare of django."
      }
    },
    {
      "id": "CVE-2026-1312",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post14+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:78b55375-3973-5ca0-8721-9c87df023fe7",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-1312 affects version 5.0.post14+tuxcare of django."
      }
    },
    {
      "id": "CVE-2026-48587",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post14+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:8175275c-c1bd-5857-8e57-d683b38976bd",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-48587 is fixed in version 5.0.post14+tuxcare of django."
      }
    },
    {
      "id": "CVE-2026-48588",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post14+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:a08514e5-b10d-5c94-ab56-4c3eb2724880",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-48588 is fixed in version 5.0.post14+tuxcare of django."
      }
    },
    {
      "id": "CVE-2026-53877",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post14+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:e487ffce-80e5-5d70-9ed0-14f769b1ca40",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-53877 is fixed in version 5.0.post14+tuxcare of django."
      }
    },
    {
      "id": "CVE-2026-53878",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post14+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:a068b9c1-128c-5cba-9c96-0112648c4819",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-53878 does not affect version 5.0.post14+tuxcare of django. not_affected \u2014 Django 5.0 does not contain the vulnerable DomainNameValidator class. This validator was introduced in Django 5.1 (commit 4971a9afe5). Since the specific component affected by CVE-2026-53878 does not exist in this version, Django 5.0 cannot be affected by this vulnerability. Additionally, all domain validators present in Django 5.0 (_simple_domain_name_validator, EmailValidator, URLValidator) a...",
        "justification": "code_not_present"
      }
    },
    {
      "id": "CVE-2026-6873",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post14+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:8ebffaeb-6e89-5e4a-91fe-2fa6243fa8dd",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-6873 is fixed in version 5.0.post14+tuxcare of django."
      }
    },
    {
      "id": "CVE-2026-8404",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post14+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:ffe61d3c-9fc7-5f1c-8302-ff091a275395",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-8404 is fixed in version 5.0.post14+tuxcare of django."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:pypi/django@5.0.post14+tuxcare"
    }
  ]
}