{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:5a920523-1bc7-505a-839d-782da61e8465",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:npm/tar@6.2.0-tuxcare.1",
      "type": "library",
      "name": "tar",
      "version": "6.2.0-tuxcare.1",
      "purl": "pkg:npm/tar@6.2.0-tuxcare.1"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:697c7d57-6e58-5db0-933d-2c224e89dfcb",
      "id": "CVE-2021-29489",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-29489 is fixed in version 6.2.0-tuxcare.1 of tar."
      },
      "affects": [
        {
          "ref": "pkg:npm/tar@6.2.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c69eebff-ca9c-538c-ba62-b414635ac413",
      "id": "CVE-2024-28863",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-28863 affects version 6.2.0-tuxcare.1 of tar."
      },
      "affects": [
        {
          "ref": "pkg:npm/tar@6.2.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2aef0d21-dfa3-5d1c-a10d-6f9c8a675002",
      "id": "CVE-2026-23745",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-23745 is fixed in version 6.2.0-tuxcare.1 of tar."
      },
      "affects": [
        {
          "ref": "pkg:npm/tar@6.2.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:157069dc-d7ba-5fe8-a65a-5146d0824aac",
      "id": "CVE-2026-23950",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-23950 affects version 6.2.0-tuxcare.1 of tar."
      },
      "affects": [
        {
          "ref": "pkg:npm/tar@6.2.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:46fe932a-b4a5-5aad-899c-617247b1d1d2",
      "id": "CVE-2026-24842",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24842 affects version 6.2.0-tuxcare.1 of tar."
      },
      "affects": [
        {
          "ref": "pkg:npm/tar@6.2.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0362f957-4708-5d5f-9dc8-91f9c95d8b23",
      "id": "CVE-2026-26960",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-26960 affects version 6.2.0-tuxcare.1 of tar."
      },
      "affects": [
        {
          "ref": "pkg:npm/tar@6.2.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3e0c86e2-ea41-5923-a88c-49b0745331d3",
      "id": "CVE-2026-29786",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29786 affects version 6.2.0-tuxcare.1 of tar."
      },
      "affects": [
        {
          "ref": "pkg:npm/tar@6.2.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:864776e0-482f-5bf0-a58f-5e417f2dce4c",
      "id": "CVE-2026-31802",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-31802 affects version 6.2.0-tuxcare.1 of tar."
      },
      "affects": [
        {
          "ref": "pkg:npm/tar@6.2.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2791d8b4-00d1-5011-9157-c7d8ab6a444c",
      "id": "CVE-2026-53655",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-53655 is fixed in version 6.2.0-tuxcare.1 of tar."
      },
      "affects": [
        {
          "ref": "pkg:npm/tar@6.2.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:015c162e-25d5-5e5a-9987-01d12d8d89b7",
      "id": "CVE-2026-59871",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59871 affects version 6.2.0-tuxcare.1 of tar."
      },
      "affects": [
        {
          "ref": "pkg:npm/tar@6.2.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bb86f725-b81e-5c82-92c4-088ba5f28ff0",
      "id": "CVE-2026-59873",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59873 affects version 6.2.0-tuxcare.1 of tar."
      },
      "affects": [
        {
          "ref": "pkg:npm/tar@6.2.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fc50f6ba-0d63-5163-b653-c88058c46d05",
      "id": "CVE-2026-59874",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59874 affects version 6.2.0-tuxcare.1 of tar."
      },
      "affects": [
        {
          "ref": "pkg:npm/tar@6.2.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0fb4e21e-86c0-5a57-8d2d-ce9ccd57d632",
      "id": "CVE-2026-59875",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-59875 affects version 6.2.0-tuxcare.1 of tar."
      },
      "affects": [
        {
          "ref": "pkg:npm/tar@6.2.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1ff906b5-359b-5d70-8424-49d52bfc5b6d",
      "id": "GHSA-6chw-6frg-f759",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability GHSA-6chw-6frg-f759 is fixed in version 6.2.0-tuxcare.1 of tar."
      },
      "affects": [
        {
          "ref": "pkg:npm/tar@6.2.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:16a4a031-171d-57cc-bd95-ada74a844a0f",
      "id": "GHSA-gr4j-r575-g665",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability GHSA-gr4j-r575-g665 is fixed in version 6.2.0-tuxcare.1 of tar."
      },
      "affects": [
        {
          "ref": "pkg:npm/tar@6.2.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:081dc5a4-abd3-536f-aec8-8cf2230e3ffc",
      "id": "GHSA-qffp-2rhf-9h96",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-qffp-2rhf-9h96 affects version 6.2.0-tuxcare.1 of tar."
      },
      "affects": [
        {
          "ref": "pkg:npm/tar@6.2.0-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1dde97f5-5cd5-5990-b05c-a3cf8285c99b",
      "id": "GHSA-r292-9mhp-454m",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-r292-9mhp-454m affects version 6.2.0-tuxcare.1 of tar."
      },
      "affects": [
        {
          "ref": "pkg:npm/tar@6.2.0-tuxcare.1"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:npm/tar@6.2.0-tuxcare.1"
    }
  ]
}