{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:a0153aea-2680-5014-98f5-38e849541629",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "artemis-openwire-protocol",
      "purl": "pkg:maven/org.apache.activemq/artemis-openwire-protocol@2.40.0-tuxcare.3",
      "type": "library",
      "group": "org.apache.activemq",
      "bom-ref": "pkg:maven/org.apache.activemq/artemis-openwire-protocol@2.40.0-tuxcare.3",
      "version": "2.40.0-tuxcare.3",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2026-27446",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/artemis-openwire-protocol@2.40.0-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:c9a17601-6987-5cbc-84bc-48014496a452",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-27446 affects version 2.40.0-tuxcare.3 of org.apache.activemq:artemis-openwire-protocol."
      }
    },
    {
      "id": "CVE-2026-49362",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/artemis-openwire-protocol@2.40.0-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:48f46337-490f-571c-80d0-416c7febe964",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-49362 affects version 2.40.0-tuxcare.3 of org.apache.activemq:artemis-openwire-protocol."
      }
    },
    {
      "id": "CVE-2026-49363",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/artemis-openwire-protocol@2.40.0-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:a3134718-727f-582a-a2c5-28c305b9e762",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-49363 affects version 2.40.0-tuxcare.3 of org.apache.activemq:artemis-openwire-protocol."
      }
    },
    {
      "id": "CVE-2026-49364",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/artemis-openwire-protocol@2.40.0-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:5c8a24f1-32de-5ef4-8a4f-8320e7e5f2d4",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-49364 affects version 2.40.0-tuxcare.3 of org.apache.activemq:artemis-openwire-protocol."
      }
    },
    {
      "id": "CVE-2026-57822",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/artemis-openwire-protocol@2.40.0-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:c64b0140-58c1-51da-aac4-cb54d8981d2b",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-57822 affects version 2.40.0-tuxcare.3 of org.apache.activemq:artemis-openwire-protocol."
      }
    },
    {
      "id": "CVE-2026-57967",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/artemis-openwire-protocol@2.40.0-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:c990b7ba-c1e0-5519-bc0b-ccf4cdca601e",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-57967 affects version 2.40.0-tuxcare.3 of org.apache.activemq:artemis-openwire-protocol."
      }
    },
    {
      "id": "CVE-2026-67593",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/artemis-openwire-protocol@2.40.0-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:2564339b-93aa-5714-82e7-b9f36ff9f9b3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-67593 affects version 2.40.0-tuxcare.3 of org.apache.activemq:artemis-openwire-protocol."
      }
    },
    {
      "id": "CVE-2026-75880",
      "affects": [
        {
          "ref": "pkg:maven/org.apache.activemq/artemis-openwire-protocol@2.40.0-tuxcare.3"
        }
      ],
      "bom-ref": "urn:uuid:bcc3c8d4-8751-5c41-91aa-85730d0fdb8b",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-75880 affects version 2.40.0-tuxcare.3 of org.apache.activemq:artemis-openwire-protocol."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.activemq/artemis-openwire-protocol@2.40.0-tuxcare.3"
    }
  ]
}