{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:08e26727-ce5a-56be-9e84-c72737e97247",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.activemq/activemq-mqtt@6.1.8-tuxcare.1",
      "type": "library",
      "group": "org.apache.activemq",
      "name": "activemq-mqtt",
      "version": "6.1.8-tuxcare.1",
      "purl": "pkg:maven/org.apache.activemq/activemq-mqtt@6.1.8-tuxcare.1"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:f4996d47-c1d8-5c2f-95b6-c7ff777c226a",
      "id": "CVE-2025-66168",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66168 affects version 6.1.8-tuxcare.1 of org.apache.activemq:activemq-mqtt."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-mqtt@6.1.8-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:654d2309-4694-5ac1-8fd5-90093247ec00",
      "id": "CVE-2026-33227",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33227 affects version 6.1.8-tuxcare.1 of org.apache.activemq:activemq-mqtt."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-mqtt@6.1.8-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a00d0dda-0692-5a98-bd37-6edfbe398df3",
      "id": "CVE-2026-34197",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34197 affects version 6.1.8-tuxcare.1 of org.apache.activemq:activemq-mqtt."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-mqtt@6.1.8-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7cd1c3ce-3009-502d-ba92-0d6f644bfda6",
      "id": "CVE-2026-39304",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-39304 affects version 6.1.8-tuxcare.1 of org.apache.activemq:activemq-mqtt."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-mqtt@6.1.8-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3f54966d-cce2-5bd9-afc7-1ba41cc8ad5c",
      "id": "CVE-2026-40046",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-40046 affects version 6.1.8-tuxcare.1 of org.apache.activemq:activemq-mqtt."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-mqtt@6.1.8-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:df54d16f-f990-54c2-b1fb-0dfaf3f86fb1",
      "id": "CVE-2026-40466",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-40466 affects version 6.1.8-tuxcare.1 of org.apache.activemq:activemq-mqtt."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-mqtt@6.1.8-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5e99fde5-2c45-54e6-9c09-b1677052981e",
      "id": "CVE-2026-41043",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41043 affects version 6.1.8-tuxcare.1 of org.apache.activemq:activemq-mqtt."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-mqtt@6.1.8-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:db9dab8d-ce5f-5b8d-94f1-ab362981016f",
      "id": "CVE-2026-41044",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41044 affects version 6.1.8-tuxcare.1 of org.apache.activemq:activemq-mqtt."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-mqtt@6.1.8-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:54a8cc89-048f-55db-9e36-c5e5f8bd7000",
      "id": "CVE-2026-42253",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42253 affects version 6.1.8-tuxcare.1 of org.apache.activemq:activemq-mqtt."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-mqtt@6.1.8-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d9a6e170-5fa1-507f-800c-9a689fc01a9e",
      "id": "CVE-2026-42588",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42588 affects version 6.1.8-tuxcare.1 of org.apache.activemq:activemq-mqtt."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-mqtt@6.1.8-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9f59773e-fa97-552f-bcbb-79d3975f5e8b",
      "id": "CVE-2026-45505",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-45505 affects version 6.1.8-tuxcare.1 of org.apache.activemq:activemq-mqtt."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-mqtt@6.1.8-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fc2b1dfd-0995-5acb-ab9d-c677d8330e4b",
      "id": "CVE-2026-46605",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-46605 affects version 6.1.8-tuxcare.1 of org.apache.activemq:activemq-mqtt."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-mqtt@6.1.8-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:60dae242-7e25-53d4-a693-68dfed7d5ce6",
      "id": "CVE-2026-49157",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-49157 affects version 6.1.8-tuxcare.1 of org.apache.activemq:activemq-mqtt."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-mqtt@6.1.8-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d17d111e-ece5-54d6-8f4e-57b55d4ff004",
      "id": "CVE-2026-49270",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-49270 affects version 6.1.8-tuxcare.1 of org.apache.activemq:activemq-mqtt."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-mqtt@6.1.8-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:79c8068f-156f-5ea7-9dbd-592e14b07fb3",
      "id": "CVE-2026-49432",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-49432 affects version 6.1.8-tuxcare.1 of org.apache.activemq:activemq-mqtt."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-mqtt@6.1.8-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b6f684ff-191c-55b2-a00d-d0d742193a73",
      "id": "CVE-2026-49434",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-49434 affects version 6.1.8-tuxcare.1 of org.apache.activemq:activemq-mqtt."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-mqtt@6.1.8-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:53117885-3d79-5e16-a64f-0fa701cac5d8",
      "id": "CVE-2026-49877",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-49877 affects version 6.1.8-tuxcare.1 of org.apache.activemq:activemq-mqtt."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-mqtt@6.1.8-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:72254a52-4f75-5c3d-a343-ab0aa1d76355",
      "id": "CVE-2026-50734",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-50734 affects version 6.1.8-tuxcare.1 of org.apache.activemq:activemq-mqtt."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-mqtt@6.1.8-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ee445570-ef38-50fe-a360-6875d3be08e1",
      "id": "CVE-2026-52760",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-52760 affects version 6.1.8-tuxcare.1 of org.apache.activemq:activemq-mqtt."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-mqtt@6.1.8-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:349e2705-bd7a-5b0b-ab7c-7db5dbd9e193",
      "id": "CVE-2026-53916",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-53916 affects version 6.1.8-tuxcare.1 of org.apache.activemq:activemq-mqtt."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-mqtt@6.1.8-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2e7bfd45-1043-54ae-8ab6-ac5010436f7c",
      "id": "CVE-2026-53917",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-53917 affects version 6.1.8-tuxcare.1 of org.apache.activemq:activemq-mqtt."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-mqtt@6.1.8-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:52e3686f-20f4-5f22-864b-5fc15ebb2e22",
      "id": "CVE-2026-54475",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-54475 affects version 6.1.8-tuxcare.1 of org.apache.activemq:activemq-mqtt."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-mqtt@6.1.8-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d331e9e3-db9d-5ae5-8376-1cea78d54293",
      "id": "CVE-2026-59878",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59878 affects version 6.1.8-tuxcare.1 of org.apache.activemq:activemq-mqtt."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-mqtt@6.1.8-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:39e00cb4-36d8-5ed9-b602-262f03ba4e97",
      "id": "CVE-2026-61487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-61487 affects version 6.1.8-tuxcare.1 of org.apache.activemq:activemq-mqtt."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-mqtt@6.1.8-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cb72b298-a1e5-5c96-bc25-41f72799c79f",
      "id": "CVE-2026-74761",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-74761 affects version 6.1.8-tuxcare.1 of org.apache.activemq:activemq-mqtt."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/activemq-mqtt@6.1.8-tuxcare.1"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.activemq/activemq-mqtt@6.1.8-tuxcare.1"
    }
  ]
}