{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:2832edb2-833c-5bca-b57f-998994493116",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "@react-router/express",
      "purl": "pkg:npm/%40react-router/express@7.5.1-tuxcare.4",
      "type": "library",
      "bom-ref": "pkg:npm/%40react-router/express@7.5.1-tuxcare.4",
      "version": "7.5.1-tuxcare.4",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2025-43864",
      "affects": [
        {
          "ref": "pkg:npm/%40react-router/express@7.5.1-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:711c37d5-cbe5-55d3-ab70-97f4b79eb0ca",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-43864 is fixed in version 7.5.1-tuxcare.4 of @react-router/express."
      }
    },
    {
      "id": "CVE-2025-43865",
      "affects": [
        {
          "ref": "pkg:npm/%40react-router/express@7.5.1-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:5adf9f7c-5bf3-500a-a875-5357e35e0adb",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-43865 is fixed in version 7.5.1-tuxcare.4 of @react-router/express."
      }
    },
    {
      "id": "CVE-2025-59057",
      "affects": [
        {
          "ref": "pkg:npm/%40react-router/express@7.5.1-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:0fb07140-f8e3-527d-8f22-0636052b2bef",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-59057 is fixed in version 7.5.1-tuxcare.4 of @react-router/express."
      }
    },
    {
      "id": "CVE-2025-61686",
      "affects": [
        {
          "ref": "pkg:npm/%40react-router/express@7.5.1-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:1ebfef65-e937-501d-99ca-38aa1fb0b839",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-61686 affects version 7.5.1-tuxcare.4 of @react-router/express, and is fixed in 7.5.1-tuxcare.5."
      }
    },
    {
      "id": "CVE-2025-68470",
      "affects": [
        {
          "ref": "pkg:npm/%40react-router/express@7.5.1-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:e1bb5181-4b40-5efc-9426-8d7d507d7523",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-68470 is fixed in version 7.5.1-tuxcare.4 of @react-router/express."
      }
    },
    {
      "id": "CVE-2026-21884",
      "affects": [
        {
          "ref": "pkg:npm/%40react-router/express@7.5.1-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:0c7113c7-9522-5df8-a272-51d2ee0e9085",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-21884 is fixed in version 7.5.1-tuxcare.4 of @react-router/express."
      }
    },
    {
      "id": "CVE-2026-22029",
      "affects": [
        {
          "ref": "pkg:npm/%40react-router/express@7.5.1-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:0738a0fe-16a1-5466-8460-14a35d4ff77f",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22029 is fixed in version 7.5.1-tuxcare.4 of @react-router/express."
      }
    },
    {
      "id": "CVE-2026-22030",
      "affects": [
        {
          "ref": "pkg:npm/%40react-router/express@7.5.1-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:a77ca533-e60e-5b64-a900-1bb4ee2eafe9",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22030 is fixed in version 7.5.1-tuxcare.4 of @react-router/express."
      }
    },
    {
      "id": "CVE-2026-33244",
      "affects": [
        {
          "ref": "pkg:npm/%40react-router/express@7.5.1-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:e1757e9c-5672-5052-b7fd-1afc2bb549de",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33244 affects version 7.5.1-tuxcare.4 of @react-router/express."
      }
    },
    {
      "id": "CVE-2026-34077",
      "affects": [
        {
          "ref": "pkg:npm/%40react-router/express@7.5.1-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:3824cf5f-fe74-5e2d-9842-b734e3c8d5f1",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34077 affects version 7.5.1-tuxcare.4 of @react-router/express, and is fixed in 7.5.1-tuxcare.10."
      }
    },
    {
      "id": "CVE-2026-40181",
      "affects": [
        {
          "ref": "pkg:npm/%40react-router/express@7.5.1-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:60905d31-14e9-53d2-b51a-71097bc36ff5",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-40181 affects version 7.5.1-tuxcare.4 of @react-router/express, and is fixed in 7.5.1-tuxcare.9."
      }
    },
    {
      "id": "CVE-2026-42211",
      "affects": [
        {
          "ref": "pkg:npm/%40react-router/express@7.5.1-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:c1f5703b-b5b3-5ef9-8e9a-63706f4399de",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42211 affects version 7.5.1-tuxcare.4 of @react-router/express, and is fixed in 7.5.1-tuxcare.6."
      }
    },
    {
      "id": "CVE-2026-42342",
      "affects": [
        {
          "ref": "pkg:npm/%40react-router/express@7.5.1-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:3aa38e40-b9c7-5cad-927b-58813049c601",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42342 affects version 7.5.1-tuxcare.4 of @react-router/express, and is fixed in 7.5.1-tuxcare.8."
      }
    },
    {
      "id": "CVE-2026-53666",
      "affects": [
        {
          "ref": "pkg:npm/%40react-router/express@7.5.1-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:3c2eadc8-f8c4-5562-9a72-8f6f1e400497",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-53666 affects version 7.5.1-tuxcare.4 of @react-router/express, and is fixed in 7.5.1-tuxcare.5."
      }
    },
    {
      "id": "CVE-2026-53669",
      "affects": [
        {
          "ref": "pkg:npm/%40react-router/express@7.5.1-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:b5028bf4-c197-52e7-a0bf-16cf8dca08ec",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-53669 affects version 7.5.1-tuxcare.4 of @react-router/express, and is fixed in 7.5.1-tuxcare.5."
      }
    },
    {
      "id": "CVE-2026-55685",
      "affects": [
        {
          "ref": "pkg:npm/%40react-router/express@7.5.1-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:1ac8633a-560e-57f8-9528-5aa18b33a9b8",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-55685 affects version 7.5.1-tuxcare.4 of @react-router/express, and is fixed in 7.5.1-tuxcare.7."
      }
    },
    {
      "id": "GHSA-8v8x-cx79-35w7",
      "affects": [
        {
          "ref": "pkg:npm/%40react-router/express@7.5.1-tuxcare.4"
        }
      ],
      "bom-ref": "urn:uuid:7b763c4b-e498-570b-b406-ad0a2dd1f75a",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-8v8x-cx79-35w7 affects version 7.5.1-tuxcare.4 of @react-router/express, and is fixed in 7.5.1-tuxcare.10."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:npm/%40react-router/express@7.5.1-tuxcare.4"
    }
  ]
}