{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:aeb32753-8a7d-5161-9284-50015ae93b3f",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:pypi/tornado@5.1.1.post2+tuxcare",
      "type": "library",
      "name": "tornado",
      "version": "5.1.1.post2+tuxcare",
      "purl": "pkg:pypi/tornado@5.1.1.post2+tuxcare"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:7bcbd479-3288-5461-918e-aeed2055390c",
      "id": "CVE-2023-28370",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-28370 is fixed in version 5.1.1.post2+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post2+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1293064d-b46c-5a7d-96d6-c9bd4128b458",
      "id": "CVE-2024-52804",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52804 is fixed in version 5.1.1.post2+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post2+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d507c031-3d32-5c74-be27-e7f37f23e851",
      "id": "CVE-2025-47287",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-47287 is fixed in version 5.1.1.post2+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post2+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cb661e3b-7e66-5f77-a485-dbb9f9de2178",
      "id": "CVE-2025-67724",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-67724 affects version 5.1.1.post2+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post2+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dae70151-40ba-5cfa-9a9f-96af16077e40",
      "id": "CVE-2025-67725",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-67725 affects version 5.1.1.post2+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post2+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:34fe8af6-cae7-5331-9298-0f87a659336c",
      "id": "CVE-2025-67726",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-67726 affects version 5.1.1.post2+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post2+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3224c634-371d-5c04-9fab-8ebed4eced0d",
      "id": "CVE-2026-31958",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-31958 affects version 5.1.1.post2+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post2+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8369f901-29f7-593c-a77e-a30e32d05807",
      "id": "CVE-2026-35536",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-35536 affects version 5.1.1.post2+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post2+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eae38d0a-977f-5bbf-9abb-82cb67ee7fa4",
      "id": "CVE-2026-49853",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-49853 affects version 5.1.1.post2+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post2+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:26509b7f-5fb4-5427-820c-9e1bf0775aa0",
      "id": "CVE-2026-49854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-49854 affects version 5.1.1.post2+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post2+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4e4839ed-47a1-5362-871a-8cabe199fdb7",
      "id": "CVE-2026-49855",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-49855 affects version 5.1.1.post2+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post2+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e1bacdd9-3c68-5b39-92ce-57a60f5b839d",
      "id": "GHSA-753j-mpmx-qq6g",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-753j-mpmx-qq6g affects version 5.1.1.post2+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post2+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3382b461-7519-5d57-85d2-b4fe6f7c1462",
      "id": "GHSA-78cv-mqj4-43f7",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-78cv-mqj4-43f7 affects version 5.1.1.post2+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post2+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:55d77ee1-c36e-5136-8311-e425a66177ca",
      "id": "GHSA-pw6j-qg29-8w7f",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-pw6j-qg29-8w7f affects version 5.1.1.post2+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post2+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8f979a62-3496-5b61-9541-a398a736f6cb",
      "id": "GHSA-qppv-j76h-2rpx",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-qppv-j76h-2rpx affects version 5.1.1.post2+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post2+tuxcare"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5536d7c6-4643-525d-8ee1-99abaddc9cf0",
      "id": "GHSA-w235-7p84-xx57",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-w235-7p84-xx57 affects version 5.1.1.post2+tuxcare of tornado."
      },
      "affects": [
        {
          "ref": "pkg:pypi/tornado@5.1.1.post2+tuxcare"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:pypi/tornado@5.1.1.post2+tuxcare"
    }
  ]
}