{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:105f2168-4f0a-5174-9ef7-30fbd5e7710a",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:pypi/django@4.0.post18+tuxcare",
      "type": "library",
      "name": "django",
      "version": "4.0.post18+tuxcare",
      "purl": "pkg:pypi/django@4.0.post18+tuxcare"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:a96cd03b-b2a7-5391-9c25-2593ff23348e",
      "id": "CVE-2021-45115",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-45115 is fixed in version 4.0.post18+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post18+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:19b31265-252a-53eb-8496-41e2253ee2d2",
      "id": "CVE-2021-45116",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-45116 is fixed in version 4.0.post18+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post18+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:68ce85e1-7260-52ce-9a4a-029050e75db1",
      "id": "CVE-2021-45452",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-45452 is fixed in version 4.0.post18+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post18+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2560f57e-1bce-5ec7-9ac4-ed497e19e59f",
      "id": "CVE-2022-22818",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-22818 is fixed in version 4.0.post18+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post18+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0cf479cf-0473-531e-bdec-465a0e8aeb79",
      "id": "CVE-2022-23833",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-23833 is fixed in version 4.0.post18+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post18+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:152bd8c3-7277-5b80-83e1-68677ec81f0d",
      "id": "CVE-2022-28346",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-28346 is fixed in version 4.0.post18+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post18+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:41a74a3c-9744-5aa9-befe-c61552ecfd68",
      "id": "CVE-2022-28347",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-28347 is fixed in version 4.0.post18+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post18+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b775edfd-cac9-53d7-a1c9-615f15f73f0e",
      "id": "CVE-2022-34265",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-34265 is fixed in version 4.0.post18+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post18+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7d1153b3-bd13-5ce9-b296-ad748883749d",
      "id": "CVE-2022-36359",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-36359 is fixed in version 4.0.post18+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post18+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1d0859b9-7f12-56b6-b901-77f4719fc07f",
      "id": "CVE-2022-41323",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-41323 is fixed in version 4.0.post18+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post18+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:99db08e0-76fd-5cb3-8e34-df221031776f",
      "id": "CVE-2023-23969",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-23969 is fixed in version 4.0.post18+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post18+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4200acb4-26d8-53f2-ab8a-383a7abf22f3",
      "id": "CVE-2023-24580",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-24580 is fixed in version 4.0.post18+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post18+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:59a04fc4-6215-56ea-94de-59d42a3dbbf3",
      "id": "CVE-2023-31047",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-31047 is fixed in version 4.0.post18+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post18+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7a7f08d6-70ce-54e5-b421-7cef1a1d8cbc",
      "id": "CVE-2023-36053",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-36053 is fixed in version 4.0.post18+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post18+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a8f2460a-8c3a-57c9-a68e-925842c08e83",
      "id": "CVE-2023-43665",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-43665 is fixed in version 4.0.post18+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post18+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4fbace98-3820-5620-9a1a-ed79722e186b",
      "id": "CVE-2023-46695",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-46695 is fixed in version 4.0.post18+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post18+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eb0ac487-8bc5-5d5b-a6d0-4c9ea3fd4308",
      "id": "CVE-2024-45231",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-45231 is fixed in version 4.0.post18+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post18+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:716050ba-0758-507f-a3fc-1c10403f33d5",
      "id": "CVE-2025-13372",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-13372 is fixed in version 4.0.post18+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post18+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6b85f96f-14ed-5082-aa38-8c103a02048e",
      "id": "CVE-2025-13473",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-13473 is fixed in version 4.0.post18+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post18+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:62d9e98b-0533-5a11-9ed9-31cf23f44796",
      "id": "CVE-2025-14550",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-14550 is fixed in version 4.0.post18+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post18+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:348de5d3-d0f4-5341-95ed-b226b601db8a",
      "id": "CVE-2025-48432",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48432 is fixed in version 4.0.post18+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post18+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:628c899b-60ee-5ead-bf9d-ccea39f4b568",
      "id": "CVE-2025-57833",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-57833 affects version 4.0.post18+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post18+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c0b67b37-1b73-5fcc-803e-97337d18b4cc",
      "id": "CVE-2025-64458",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-64458 is fixed in version 4.0.post18+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post18+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2b32c202-8d5b-5d33-8f8e-680326923a9b",
      "id": "CVE-2025-64459",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-64459 is fixed in version 4.0.post18+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post18+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a53d742f-b249-5f7a-b5c6-02c39edf8c17",
      "id": "CVE-2025-64460",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-64460 is fixed in version 4.0.post18+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post18+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0d191b5d-b340-5854-9690-916c4bcfbaf6",
      "id": "CVE-2026-1207",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-1207 is fixed in version 4.0.post18+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post18+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b2060e0a-17ad-5a32-b0c3-59cceb5922fa",
      "id": "CVE-2026-1285",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-1285 is fixed in version 4.0.post18+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post18+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f53cd5e4-aca2-5564-965e-0a2d5b13db18",
      "id": "CVE-2026-1287",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-1287 is fixed in version 4.0.post18+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post18+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cca11aad-e5d2-58b3-b8a4-c4eb6a79f3e0",
      "id": "CVE-2026-1312",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-1312 is fixed in version 4.0.post18+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post18+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d704af6d-b1fa-5168-930b-8babb755f8a6",
      "id": "CVE-2026-48587",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48587 affects version 4.0.post18+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post18+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bcc91c22-882e-5c80-9875-1ccd1a266d8e",
      "id": "CVE-2026-48588",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-48588 is fixed in version 4.0.post18+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post18+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9532b37e-b639-5fea-9496-9c5202969ae8",
      "id": "CVE-2026-53877",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-53877 affects version 4.0.post18+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post18+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0a18a9f0-6859-58c9-b362-4ae1d0b34f35",
      "id": "CVE-2026-53878",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-53878 does not affect version 4.0.post18+tuxcare of django. not_affected \u2014 Django 4.0 is not affected by CVE-2026-53878. The vulnerable component DomainNameValidator does not exist in this version (it was introduced in Django 5.1). All domain validation in Django 4.0 is performed by EmailValidator, URLValidator, and _simple_domain_name_validator, which properly reject domain names containing newline characters through various mechanisms (regex anchors, explicit unsafe..."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post18+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9922e8d3-e151-562e-b6e7-963b7c041072",
      "id": "CVE-2026-6873",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-6873 affects version 4.0.post18+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post18+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a3f1acd7-59ab-5447-970b-50f591853e98",
      "id": "CVE-2026-8404",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-8404 is fixed in version 4.0.post18+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post18+tuxcare"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:pypi/django@4.0.post18+tuxcare"
    }
  ]
}