{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:4b8cb9b4-37ba-5330-bd59-a194b844b17f",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:pypi/tornado@5.1.1.post3+tuxcare",
      "type": "library",
      "name": "tornado",
      "version": "5.1.1.post3+tuxcare",
      "purl": "pkg:pypi/tornado@5.1.1.post3+tuxcare"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:e05d74cb-f2ba-5bb8-9fbb-22dbe5deb7c1",
      "id": "CVE-2023-28370",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-28370 is fixed in version 5.1.1.post3+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post3+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:35ba0d12-67d0-5d1d-bd6d-d2f5e8bc8331",
      "id": "CVE-2024-52804",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52804 is fixed in version 5.1.1.post3+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post3+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fc8dbd65-7a03-5514-9711-c4f72272776a",
      "id": "CVE-2025-47287",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-47287 is fixed in version 5.1.1.post3+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post3+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d257e32e-ad56-5da3-86e3-c0bb83ef0864",
      "id": "CVE-2025-67724",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-67724 affects version 5.1.1.post3+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post3+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9075cc3d-2d4a-59af-94d8-176b52bcdb9d",
      "id": "CVE-2025-67725",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-67725 affects version 5.1.1.post3+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post3+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:84d004db-7109-53f5-b944-403d3f76a2ac",
      "id": "CVE-2025-67726",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-67726 affects version 5.1.1.post3+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post3+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f6c2b9ad-22ae-5ac6-bfa7-1e51ac425dcb",
      "id": "CVE-2026-31958",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-31958 affects version 5.1.1.post3+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post3+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c7e634fe-04b1-5b96-83df-af47cdb87444",
      "id": "CVE-2026-35536",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-35536 affects version 5.1.1.post3+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post3+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5d669679-a100-579d-9adc-5379c7482ee0",
      "id": "CVE-2026-49853",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-49853 affects version 5.1.1.post3+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post3+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:33e8b82b-dc44-5467-a612-efff7f25201c",
      "id": "CVE-2026-49854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-49854 affects version 5.1.1.post3+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post3+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e9df6022-006e-5114-a834-e37d728ff7d9",
      "id": "CVE-2026-49855",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-49855 affects version 5.1.1.post3+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post3+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7d8202cc-6cb7-5c78-80dd-5a9ef4df1201",
      "id": "GHSA-753j-mpmx-qq6g",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-753j-mpmx-qq6g affects version 5.1.1.post3+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post3+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bcf8cef4-08fb-5c9c-b704-f8239fd1e70b",
      "id": "GHSA-78cv-mqj4-43f7",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-78cv-mqj4-43f7 affects version 5.1.1.post3+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post3+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f476fb38-6a67-5a2f-b720-f59adcbf0f0d",
      "id": "GHSA-pw6j-qg29-8w7f",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-pw6j-qg29-8w7f affects version 5.1.1.post3+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post3+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4e224b3c-e9f3-54ff-8efa-632e0fb75000",
      "id": "GHSA-qppv-j76h-2rpx",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-qppv-j76h-2rpx affects version 5.1.1.post3+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post3+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5b470cc3-3870-5626-ae49-b260f2ab83e4",
      "id": "GHSA-w235-7p84-xx57",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-w235-7p84-xx57 affects version 5.1.1.post3+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post3+tuxcare"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:pypi/tornado@5.1.1.post3+tuxcare"
    }
  ]
}