{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:a82b0538-ef02-5582-8de4-d4359e27e014",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:pypi/django@5.0.post7+tuxcare",
      "type": "library",
      "name": "django",
      "version": "5.0.post7+tuxcare",
      "purl": "pkg:pypi/django@5.0.post7+tuxcare"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:5cb53e29-7e5f-5070-92b3-9cea4d213b48",
      "id": "CVE-2024-24680",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-24680 is fixed in version 5.0.post7+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ca0b2fdb-4c32-5832-a4fa-3e861fd243f5",
      "id": "CVE-2024-27351",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-27351 affects version 5.0.post7+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ae196e4f-c249-5f0b-a2b6-ccc6367143a9",
      "id": "CVE-2024-38875",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38875 is fixed in version 5.0.post7+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bf4b11b9-5780-570c-b513-fe92bb977385",
      "id": "CVE-2024-39329",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-39329 affects version 5.0.post7+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a824bb24-cbcb-5a92-9043-f004dfe503e6",
      "id": "CVE-2024-39330",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-39330 is fixed in version 5.0.post7+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:26d78014-ae62-5f42-bd3e-8a84769c70f5",
      "id": "CVE-2024-39614",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-39614 is fixed in version 5.0.post7+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fdae6811-0366-534f-8eed-ba7bc21a7f1b",
      "id": "CVE-2024-41989",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-41989 affects version 5.0.post7+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9ad3926d-5c35-5e80-9ebb-9d351425c420",
      "id": "CVE-2024-41990",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-41990 is fixed in version 5.0.post7+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6a2c34d2-b78e-513e-a24e-25a45e6e163e",
      "id": "CVE-2024-41991",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-41991 affects version 5.0.post7+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ae03113a-365b-55d1-87c7-29955630fe36",
      "id": "CVE-2024-42005",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-42005 is fixed in version 5.0.post7+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5a0b7ed3-1f0d-5e99-affb-9164d395d07f",
      "id": "CVE-2024-45230",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-45230 affects version 5.0.post7+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eca359b0-7cb5-5fbf-a90a-c52369392b82",
      "id": "CVE-2024-45231",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-45231 affects version 5.0.post7+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d07b1007-6b0e-59b2-b0a4-1d9b0e42bbde",
      "id": "CVE-2024-53907",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-53907 is fixed in version 5.0.post7+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a27cc542-aaa5-54f9-92d8-4b87b48b9536",
      "id": "CVE-2024-53908",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-53908 affects version 5.0.post7+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:67892f4e-b183-5d60-a0c0-affa4e1f8bc5",
      "id": "CVE-2024-56374",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-56374 affects version 5.0.post7+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:31bf3983-fb39-5fd7-8d57-d1e3816151f5",
      "id": "CVE-2025-13372",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-13372 affects version 5.0.post7+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f8661d7e-e1c7-5872-a6ac-9221de0a0c35",
      "id": "CVE-2025-13473",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-13473 affects version 5.0.post7+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1d614925-704d-5957-b037-ca4abfb1172a",
      "id": "CVE-2025-14550",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-14550 affects version 5.0.post7+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:59018007-aa59-5605-ace1-bda74ba2341e",
      "id": "CVE-2025-26699",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-26699 affects version 5.0.post7+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:20e85f19-f6a6-54c4-a32e-542013dd02cc",
      "id": "CVE-2025-27556",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-27556 affects version 5.0.post7+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8b361916-aef9-589d-b502-05e52021163a",
      "id": "CVE-2025-48432",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-48432 affects version 5.0.post7+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:93081730-2595-59bc-90bb-c6a023399732",
      "id": "CVE-2025-57833",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-57833 affects version 5.0.post7+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:db4d4eb8-ad35-5895-a75c-a71787dda166",
      "id": "CVE-2025-64458",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-64458 affects version 5.0.post7+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:21e606e8-b310-5ccc-9c98-d51b03fafd74",
      "id": "CVE-2025-64459",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-64459 is fixed in version 5.0.post7+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:047f4a8c-e956-5bdc-8a05-a943b5b495ef",
      "id": "CVE-2025-64460",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-64460 affects version 5.0.post7+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e21c0b15-be02-5b16-8e95-ba16a614dc56",
      "id": "CVE-2026-1207",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-1207 affects version 5.0.post7+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4ad0cea9-6bc5-5aa2-828b-dcfe333896f4",
      "id": "CVE-2026-1285",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-1285 affects version 5.0.post7+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:15fae5a3-536c-5243-bd2f-4fe1c02a86f5",
      "id": "CVE-2026-1287",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-1287 affects version 5.0.post7+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:169b717c-b9a3-5d47-b84a-8a80fb6e1ca4",
      "id": "CVE-2026-1312",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-1312 affects version 5.0.post7+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:be4ac208-318b-5cce-af19-fb454700ee5e",
      "id": "CVE-2026-48587",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48587 affects version 5.0.post7+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bfea6b05-df5e-57f2-8ee2-bb1d90773288",
      "id": "CVE-2026-48588",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48588 affects version 5.0.post7+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6fd0cda9-c47c-5652-afba-d7e64c5664e3",
      "id": "CVE-2026-53877",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-53877 affects version 5.0.post7+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2f484025-bc05-59bf-a5d0-6044ce10e13a",
      "id": "CVE-2026-53878",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-53878 does not affect version 5.0.post7+tuxcare of django. not_affected \u2014 Django 5.0 does not contain the vulnerable DomainNameValidator class. This validator was introduced in Django 5.1 (commit 4971a9afe5). Since the specific component affected by CVE-2026-53878 does not exist in this version, Django 5.0 cannot be affected by this vulnerability. Additionally, all domain validators present in Django 5.0 (_simple_domain_name_validator, EmailValidator, URLValidator) a..."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f6ff7501-4619-516a-982c-7d3e7a2dfac5",
      "id": "CVE-2026-6873",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-6873 affects version 5.0.post7+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post7+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:be013a91-d7d1-5c59-b988-d2eb504c6868",
      "id": "CVE-2026-8404",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-8404 affects version 5.0.post7+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post7+tuxcare"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:pypi/django@5.0.post7+tuxcare"
    }
  ]
}