{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:0d304599-e656-5993-b420-2655da43d81d",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:pypi/django@4.0.post15+tuxcare",
      "type": "library",
      "name": "django",
      "version": "4.0.post15+tuxcare",
      "purl": "pkg:pypi/django@4.0.post15+tuxcare"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:33edf53d-1a5c-5791-a9e7-dd2c51011dac",
      "id": "CVE-2021-45115",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-45115 is fixed in version 4.0.post15+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post15+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cf293233-257d-5594-89a0-f308074784d6",
      "id": "CVE-2021-45116",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-45116 is fixed in version 4.0.post15+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post15+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:165e4722-5254-5011-bbac-31f23df2993e",
      "id": "CVE-2021-45452",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-45452 is fixed in version 4.0.post15+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post15+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fd650ed1-5400-5f45-81df-7a24cc375f47",
      "id": "CVE-2022-22818",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-22818 is fixed in version 4.0.post15+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post15+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9cd86d33-3289-5c1e-bf09-872dcf76a25d",
      "id": "CVE-2022-23833",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-23833 is fixed in version 4.0.post15+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post15+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6b99db8b-59af-5476-b2c0-f6af7615dc33",
      "id": "CVE-2022-28346",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-28346 is fixed in version 4.0.post15+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post15+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8cfbb45b-d810-574f-9b24-cf4a7f582178",
      "id": "CVE-2022-28347",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-28347 is fixed in version 4.0.post15+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post15+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a1873ed5-e291-5dbb-94f3-a5d24245886a",
      "id": "CVE-2022-34265",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-34265 is fixed in version 4.0.post15+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post15+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3c6cbcaf-0f22-5429-be3e-2ad6e0a61d8c",
      "id": "CVE-2022-36359",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-36359 is fixed in version 4.0.post15+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post15+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:295b09d6-a929-591b-adf7-d8892c24027e",
      "id": "CVE-2022-41323",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-41323 is fixed in version 4.0.post15+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post15+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1ed9e5af-d13a-5537-8660-1722536b7ae4",
      "id": "CVE-2023-23969",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-23969 is fixed in version 4.0.post15+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post15+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:79b99f6d-0bc2-56af-9cb5-8a9ea66003dc",
      "id": "CVE-2023-24580",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-24580 is fixed in version 4.0.post15+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post15+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:49d8463f-26fd-5609-8e75-b35957b09a02",
      "id": "CVE-2023-31047",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-31047 is fixed in version 4.0.post15+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post15+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a96209ff-89f0-5ff0-9ae7-360683078f90",
      "id": "CVE-2023-36053",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-36053 is fixed in version 4.0.post15+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post15+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3d4d5b8b-077c-5114-aa63-193ffbcb425e",
      "id": "CVE-2023-43665",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-43665 is fixed in version 4.0.post15+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post15+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a2f682fa-eeb4-53bb-968c-41964d26c804",
      "id": "CVE-2023-46695",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-46695 is fixed in version 4.0.post15+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post15+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:99086d7c-e81c-54e0-9205-eed0c01378a3",
      "id": "CVE-2024-45231",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-45231 affects version 4.0.post15+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post15+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cc4a9fcc-681b-59fd-a950-d3d433c4e82d",
      "id": "CVE-2025-13372",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-13372 affects version 4.0.post15+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post15+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:28aa91be-b95d-565f-863e-ed4f1eb5ace6",
      "id": "CVE-2025-13473",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-13473 affects version 4.0.post15+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post15+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5f34541f-bb63-5157-b910-8e61a48519ec",
      "id": "CVE-2025-14550",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-14550 is fixed in version 4.0.post15+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post15+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8779bc56-2e7f-520f-bf3f-9b6bfcdd6699",
      "id": "CVE-2025-48432",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48432 is fixed in version 4.0.post15+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post15+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8d5fba6b-96ab-58e2-8e54-f5115c5df572",
      "id": "CVE-2025-57833",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-57833 affects version 4.0.post15+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post15+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:53b155de-a12c-56aa-b57b-4eda1412dc7d",
      "id": "CVE-2025-64458",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-64458 is fixed in version 4.0.post15+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post15+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7698bf49-adf2-5d41-a33f-7679c4136c29",
      "id": "CVE-2025-64459",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-64459 is fixed in version 4.0.post15+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post15+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:acf200ff-ffd7-54f3-8f1f-74d7a91bf2b1",
      "id": "CVE-2025-64460",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-64460 is fixed in version 4.0.post15+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post15+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b82d2678-e6d4-50aa-b8c9-b7dfc6ad98a7",
      "id": "CVE-2026-1207",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-1207 is fixed in version 4.0.post15+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post15+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:11951e24-0110-53f6-8a6f-3f5e113658cc",
      "id": "CVE-2026-1285",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-1285 affects version 4.0.post15+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post15+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2a3bbe51-0fa9-5179-83a1-39ce38e18885",
      "id": "CVE-2026-1287",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-1287 affects version 4.0.post15+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post15+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e1c15d9d-cbe5-582d-a38f-2101d7ce108c",
      "id": "CVE-2026-1312",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-1312 is fixed in version 4.0.post15+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post15+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9ce3ce77-7a08-5839-8874-cbe3a91419a5",
      "id": "CVE-2026-48587",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48587 affects version 4.0.post15+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post15+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0a6ad55c-2962-5d25-8c2a-dbb208339890",
      "id": "CVE-2026-48588",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48588 affects version 4.0.post15+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post15+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:10b9895f-eb88-5995-95d1-61da64bf6720",
      "id": "CVE-2026-53877",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-53877 affects version 4.0.post15+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post15+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e8d98a31-2e2c-57b2-bfa0-00192c9ac035",
      "id": "CVE-2026-53878",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-53878 does not affect version 4.0.post15+tuxcare of django. not_affected \u2014 Django 4.0 is not affected by CVE-2026-53878. The vulnerable component DomainNameValidator does not exist in this version (it was introduced in Django 5.1). All domain validation in Django 4.0 is performed by EmailValidator, URLValidator, and _simple_domain_name_validator, which properly reject domain names containing newline characters through various mechanisms (regex anchors, explicit unsafe..."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post15+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3ac4ed84-237c-563f-80e4-075426f1251d",
      "id": "CVE-2026-6873",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-6873 affects version 4.0.post15+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post15+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ffe8455d-154c-51f6-b7a4-0f887835cf0b",
      "id": "CVE-2026-8404",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-8404 affects version 4.0.post15+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post15+tuxcare"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:pypi/django@4.0.post15+tuxcare"
    }
  ]
}