{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:e88cded7-2522-5b8a-97dd-2a6fc9c298cc",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:pypi/django@5.1.10.post4+tuxcare",
      "type": "library",
      "name": "django",
      "version": "5.1.10.post4+tuxcare",
      "purl": "pkg:pypi/django@5.1.10.post4+tuxcare"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:7ee8ceb3-070c-5355-8770-509792d85752",
      "id": "CVE-2025-13372",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-13372 is fixed in version 5.1.10.post4+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.1.10.post4+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9dc6ee10-18ce-5237-98ab-436539e6945b",
      "id": "CVE-2025-13473",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-13473 is fixed in version 5.1.10.post4+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.1.10.post4+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5492f5be-6411-57b8-a15f-fd4d48d03080",
      "id": "CVE-2025-14550",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-14550 is fixed in version 5.1.10.post4+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.1.10.post4+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:695c02a9-ef1b-57c1-99b6-79fd29ec29d6",
      "id": "CVE-2025-57833",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-57833 is fixed in version 5.1.10.post4+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.1.10.post4+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:811182a9-e47b-5dd6-9355-372da630f26d",
      "id": "CVE-2025-59681",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-59681 is fixed in version 5.1.10.post4+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.1.10.post4+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e5d21c4a-060d-5078-b2af-8b7e97c61c31",
      "id": "CVE-2025-59682",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-59682 is fixed in version 5.1.10.post4+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.1.10.post4+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9a1accba-7d25-5955-8865-509e6849de62",
      "id": "CVE-2025-64458",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-64458 is fixed in version 5.1.10.post4+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.1.10.post4+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:48dbd803-b610-5d88-bcb9-0cca264dfc0c",
      "id": "CVE-2025-64459",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-64459 is fixed in version 5.1.10.post4+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.1.10.post4+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:463c162e-3a03-5bc2-a323-e4ed614fa377",
      "id": "CVE-2025-64460",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-64460 is fixed in version 5.1.10.post4+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.1.10.post4+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:557965fc-aa9d-5b84-905c-cb3c02dc629a",
      "id": "CVE-2026-1207",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-1207 is fixed in version 5.1.10.post4+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.1.10.post4+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:72c386dd-0bd9-5fde-912d-bf5224d9ef6b",
      "id": "CVE-2026-1285",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-1285 is fixed in version 5.1.10.post4+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.1.10.post4+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:127ba021-cf8c-5806-a130-49c0a94d9e0c",
      "id": "CVE-2026-1287",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-1287 is fixed in version 5.1.10.post4+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.1.10.post4+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fa731a52-b7ce-5eca-b683-bbba38d243d2",
      "id": "CVE-2026-1312",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-1312 is fixed in version 5.1.10.post4+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.1.10.post4+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7104ddba-b9d7-51e0-bb30-e9b98ad39454",
      "id": "CVE-2026-48587",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-48587 is fixed in version 5.1.10.post4+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.1.10.post4+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:15f09631-235b-5ee2-b7cc-409abeef4687",
      "id": "CVE-2026-48588",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-48588 is fixed in version 5.1.10.post4+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.1.10.post4+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4809d097-8b69-5b92-b6ae-69529abcea86",
      "id": "CVE-2026-53877",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-53877 is fixed in version 5.1.10.post4+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.1.10.post4+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:afb77746-ba58-5e29-85ec-c1dbe68e0b0f",
      "id": "CVE-2026-53878",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-53878 does not affect version 5.1.10.post4+tuxcare of django. not_affected \u2014 Django 5.1.10 is not affected by CVE-2026-53878. While DomainNameValidator does accept domain names with trailing newlines (due to Python regex '$' matching before newlines), Django itself is protected by HttpResponse's runtime newline checks. All HTTP responses in Django go through ResponseHeaders._convert_to_charset() which explicitly checks for and rejects '\\n' and '\\r' characters in header ..."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.1.10.post4+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:56e0a49f-3118-5743-9fcc-e08ccf6a6ae3",
      "id": "CVE-2026-6873",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-6873 is fixed in version 5.1.10.post4+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.1.10.post4+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aea5145f-b39b-54e1-9be1-7318048d3b3c",
      "id": "CVE-2026-8404",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-8404 is fixed in version 5.1.10.post4+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@5.1.10.post4+tuxcare"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:pypi/django@5.1.10.post4+tuxcare"
    }
  ]
}