{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:9f7fda41-42f6-5dfe-98b1-a6b4af742b86",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:npm/re2@1.23.3",
      "type": "library",
      "name": "re2",
      "version": "1.23.3",
      "purl": "pkg:npm/re2@1.23.3"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:ee2c2281-20e1-56dd-9a6a-57637fc44cef",
      "id": "CVE-2026-67550",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-67550 affects version 1.23.3 of re2."
      },
      "affects": [
        {
          "ref": "pkg:npm/re2@1.23.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:345a1e62-a06d-508c-b680-741a88ad0368",
      "id": "CVE-2026-68499",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-68499 affects version 1.23.3 of re2."
      },
      "affects": [
        {
          "ref": "pkg:npm/re2@1.23.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e9630e6f-daa8-5e02-8b1b-ac736ce445c4",
      "id": "CVE-2026-71430",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-71430 affects version 1.23.3 of re2."
      },
      "affects": [
        {
          "ref": "pkg:npm/re2@1.23.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b9432ef1-8ca6-5df0-b512-1bdb7a6c57c0",
      "id": "CVE-2026-71498",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-71498 affects version 1.23.3 of re2."
      },
      "affects": [
        {
          "ref": "pkg:npm/re2@1.23.3"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:npm/re2@1.23.3"
    }
  ]
}