{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:fda8f902-f653-5dc2-8634-fef9664d915b",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:pypi/django@4.0.post13+tuxcare",
      "type": "library",
      "name": "django",
      "version": "4.0.post13+tuxcare",
      "purl": "pkg:pypi/django@4.0.post13+tuxcare"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:36cf6eac-6649-5a18-9315-d8c03e5fe50e",
      "id": "CVE-2021-45115",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-45115 is fixed in version 4.0.post13+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post13+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bc3f8f26-f054-5581-b927-c1a2d910102e",
      "id": "CVE-2021-45116",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-45116 is fixed in version 4.0.post13+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post13+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bf2461b0-0652-5f63-9b85-8f0e9d47565c",
      "id": "CVE-2021-45452",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-45452 is fixed in version 4.0.post13+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post13+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a9f6e4a9-fa68-5cf9-9a9a-5dab5de84f75",
      "id": "CVE-2022-22818",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-22818 is fixed in version 4.0.post13+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post13+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8c058ee8-3b5b-50a9-a49c-25096900c6b9",
      "id": "CVE-2022-23833",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-23833 is fixed in version 4.0.post13+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post13+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3f5adf3f-124d-5209-936f-7a3bb2d76556",
      "id": "CVE-2022-28346",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-28346 is fixed in version 4.0.post13+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post13+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bc819bd6-e167-5746-b2ed-0bf5db0d7222",
      "id": "CVE-2022-28347",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-28347 is fixed in version 4.0.post13+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post13+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4aafc5f3-7386-5aa5-8824-48c7344751eb",
      "id": "CVE-2022-34265",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-34265 is fixed in version 4.0.post13+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post13+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c195b964-2997-566b-b70e-d3d87d5492b1",
      "id": "CVE-2022-36359",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-36359 is fixed in version 4.0.post13+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post13+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:920189bd-b903-5720-8831-47e325956c02",
      "id": "CVE-2022-41323",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-41323 is fixed in version 4.0.post13+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post13+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:06930d9d-c086-514b-8b2f-bbc1701187e0",
      "id": "CVE-2023-23969",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-23969 is fixed in version 4.0.post13+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post13+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:66df890a-1f58-5da6-9bea-d377139c0d0f",
      "id": "CVE-2023-24580",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-24580 is fixed in version 4.0.post13+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post13+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:43163418-2883-5039-bc89-f2c03e20fed9",
      "id": "CVE-2023-31047",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-31047 is fixed in version 4.0.post13+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post13+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5f5abfcd-723d-5e93-8595-48bd830da105",
      "id": "CVE-2023-36053",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-36053 is fixed in version 4.0.post13+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post13+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:133dd6d0-9fdc-5e74-9418-8baced6b7980",
      "id": "CVE-2023-43665",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-43665 is fixed in version 4.0.post13+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post13+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:60998279-00f8-5413-b4c8-bceb6a3ae733",
      "id": "CVE-2023-46695",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-46695 affects version 4.0.post13+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post13+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:70b54782-6b92-5300-9a67-d103526c1f07",
      "id": "CVE-2024-45231",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-45231 affects version 4.0.post13+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post13+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d05cef04-6162-5c0c-b220-e030d51a1c3b",
      "id": "CVE-2025-13372",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-13372 affects version 4.0.post13+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post13+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cdadcb70-6985-5314-b2c0-f38c84efa23b",
      "id": "CVE-2025-13473",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-13473 affects version 4.0.post13+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post13+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b754af9b-72c9-58e9-943b-3272e4178224",
      "id": "CVE-2025-14550",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-14550 is fixed in version 4.0.post13+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post13+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e5ebd8a0-dfbc-5937-99dc-62b54ebb13d4",
      "id": "CVE-2025-48432",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-48432 affects version 4.0.post13+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post13+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:89a6bb97-f45b-50df-8268-37553b57830c",
      "id": "CVE-2025-57833",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-57833 affects version 4.0.post13+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post13+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:968a3b61-211e-553f-8f1c-6e8cd424e1fd",
      "id": "CVE-2025-64458",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-64458 is fixed in version 4.0.post13+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post13+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:26d8fed0-c5a9-56a5-b6e4-ea3343e24ca5",
      "id": "CVE-2025-64459",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-64459 affects version 4.0.post13+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post13+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:10b9d81e-97da-58e1-a0c6-e69cdc37c557",
      "id": "CVE-2025-64460",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-64460 is fixed in version 4.0.post13+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post13+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:11169b58-8445-5daf-81f2-872422dd9016",
      "id": "CVE-2026-1207",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-1207 is fixed in version 4.0.post13+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post13+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b617c284-f561-562b-bd50-84fec7bcccb9",
      "id": "CVE-2026-1285",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-1285 affects version 4.0.post13+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post13+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:06facbe9-c833-5772-bc03-26401b2d919b",
      "id": "CVE-2026-1287",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-1287 affects version 4.0.post13+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post13+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a650357d-4bce-58cf-bd3f-c7dc8d1c5d12",
      "id": "CVE-2026-1312",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-1312 is fixed in version 4.0.post13+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post13+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0a01b40f-da56-5ac5-8af4-bc59b121aae2",
      "id": "CVE-2026-48587",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48587 affects version 4.0.post13+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post13+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7eb6280e-ed18-5085-927f-f2f4c953050e",
      "id": "CVE-2026-48588",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-48588 affects version 4.0.post13+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post13+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4a9686e7-c1eb-593c-9337-b3a3118275f7",
      "id": "CVE-2026-53877",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-53877 affects version 4.0.post13+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post13+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c805465f-2afa-5189-8209-7ec6c8c362e1",
      "id": "CVE-2026-53878",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-53878 does not affect version 4.0.post13+tuxcare of django. not_affected \u2014 Django 4.0 is not affected by CVE-2026-53878. The vulnerable component DomainNameValidator does not exist in this version (it was introduced in Django 5.1). All domain validation in Django 4.0 is performed by EmailValidator, URLValidator, and _simple_domain_name_validator, which properly reject domain names containing newline characters through various mechanisms (regex anchors, explicit unsafe..."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post13+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:79429780-4714-59df-b58c-5206f2e7ed24",
      "id": "CVE-2026-6873",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-6873 affects version 4.0.post13+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post13+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:428b54e5-9ea8-543f-b449-b2de9423f47a",
      "id": "CVE-2026-8404",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-8404 affects version 4.0.post13+tuxcare of django."
      },
      "affects": [
        {
          "ref": "pkg:pypi/django@4.0.post13+tuxcare"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:pypi/django@4.0.post13+tuxcare"
    }
  ]
}