{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:a2fad485-9b54-5fe6-aa69-540f7c04da13",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "axios",
      "purl": "pkg:npm/axios@1.7.7-tuxcare.1",
      "type": "library",
      "bom-ref": "pkg:npm/axios@1.7.7-tuxcare.1",
      "version": "1.7.7-tuxcare.1",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2025-27152",
      "affects": [
        {
          "ref": "pkg:npm/axios@1.7.7-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:2c00093d-08d5-5674-a2ce-ff17431c392c",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-27152 affects version 1.7.7-tuxcare.1 of axios, and is fixed in 1.7.7-tuxcare.3."
      }
    },
    {
      "id": "CVE-2025-58754",
      "affects": [
        {
          "ref": "pkg:npm/axios@1.7.7-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:bfeb5d5f-42da-5618-97f4-c553939f3391",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-58754 is fixed in version 1.7.7-tuxcare.1 of axios."
      }
    },
    {
      "id": "CVE-2025-62718",
      "affects": [
        {
          "ref": "pkg:npm/axios@1.7.7-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:ce553067-dea6-59ce-a441-9eb33585ddd6",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-62718 affects version 1.7.7-tuxcare.1 of axios, and is fixed in 1.7.7-tuxcare.3."
      }
    },
    {
      "id": "CVE-2026-25639",
      "affects": [
        {
          "ref": "pkg:npm/axios@1.7.7-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:23c17ae4-3100-51c9-85e8-1f8eef4d8219",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-25639 affects version 1.7.7-tuxcare.1 of axios, and is fixed in 1.7.7-tuxcare.3."
      }
    },
    {
      "id": "CVE-2026-40175",
      "affects": [
        {
          "ref": "pkg:npm/axios@1.7.7-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:ac682d54-a264-5354-a262-0ea33eabe713",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-40175 affects version 1.7.7-tuxcare.1 of axios, and is fixed in 1.7.7-tuxcare.3."
      }
    },
    {
      "id": "CVE-2026-42033",
      "affects": [
        {
          "ref": "pkg:npm/axios@1.7.7-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:88b20dfe-07a4-5fcd-9b4a-9b5b2e649cf0",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42033 affects version 1.7.7-tuxcare.1 of axios, and is fixed in 1.7.7-tuxcare.3."
      }
    },
    {
      "id": "CVE-2026-42034",
      "affects": [
        {
          "ref": "pkg:npm/axios@1.7.7-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:662d4d0e-650d-51a3-9df5-90ee347a2299",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42034 affects version 1.7.7-tuxcare.1 of axios, and is fixed in 1.7.7-tuxcare.3."
      }
    },
    {
      "id": "CVE-2026-42035",
      "affects": [
        {
          "ref": "pkg:npm/axios@1.7.7-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:16d27439-abeb-593b-a2a9-8fdc968d7080",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42035 affects version 1.7.7-tuxcare.1 of axios, and is fixed in 1.7.7-tuxcare.3."
      }
    },
    {
      "id": "CVE-2026-42036",
      "affects": [
        {
          "ref": "pkg:npm/axios@1.7.7-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:4ea316ca-b55d-5ef0-878c-74ccf3c1a645",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42036 affects version 1.7.7-tuxcare.1 of axios, and is fixed in 1.7.7-tuxcare.3."
      }
    },
    {
      "id": "CVE-2026-42037",
      "affects": [
        {
          "ref": "pkg:npm/axios@1.7.7-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:d0583785-b5a8-5c0d-b191-52479791e83a",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42037 affects version 1.7.7-tuxcare.1 of axios, and is fixed in 1.7.7-tuxcare.3."
      }
    },
    {
      "id": "CVE-2026-42038",
      "affects": [
        {
          "ref": "pkg:npm/axios@1.7.7-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:8e5c3662-d67d-50f2-88f8-4819cb96f9e7",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42038 affects version 1.7.7-tuxcare.1 of axios, and is fixed in 1.7.7-tuxcare.3."
      }
    },
    {
      "id": "CVE-2026-42039",
      "affects": [
        {
          "ref": "pkg:npm/axios@1.7.7-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:ea6d91b5-2730-51e5-b31c-75bee30c6d8c",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42039 affects version 1.7.7-tuxcare.1 of axios, and is fixed in 1.7.7-tuxcare.3."
      }
    },
    {
      "id": "CVE-2026-42040",
      "affects": [
        {
          "ref": "pkg:npm/axios@1.7.7-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:dbaf795a-92d3-5ba6-9511-1c42eb42ff9e",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42040 affects version 1.7.7-tuxcare.1 of axios, and is fixed in 1.7.7-tuxcare.3."
      }
    },
    {
      "id": "CVE-2026-42041",
      "affects": [
        {
          "ref": "pkg:npm/axios@1.7.7-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:b3428234-cf73-5119-9316-c934c87c8377",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42041 affects version 1.7.7-tuxcare.1 of axios, and is fixed in 1.7.7-tuxcare.3."
      }
    },
    {
      "id": "CVE-2026-42042",
      "affects": [
        {
          "ref": "pkg:npm/axios@1.7.7-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:6f6ae127-629b-52e5-9894-667a5cc2ea2c",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42042 affects version 1.7.7-tuxcare.1 of axios, and is fixed in 1.7.7-tuxcare.3."
      }
    },
    {
      "id": "CVE-2026-42043",
      "affects": [
        {
          "ref": "pkg:npm/axios@1.7.7-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:b3418d03-7a75-5b25-8bfc-32fbd15a2e13",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42043 affects version 1.7.7-tuxcare.1 of axios, and is fixed in 1.7.7-tuxcare.3."
      }
    },
    {
      "id": "CVE-2026-42044",
      "affects": [
        {
          "ref": "pkg:npm/axios@1.7.7-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:b370a921-e099-5e1e-bab2-68dccb26804b",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42044 affects version 1.7.7-tuxcare.1 of axios, and is fixed in 1.7.7-tuxcare.3."
      }
    },
    {
      "id": "CVE-2026-42264",
      "affects": [
        {
          "ref": "pkg:npm/axios@1.7.7-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:0b2ecbb4-d6bb-5e81-8b66-e6827a21746e",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42264 affects version 1.7.7-tuxcare.1 of axios, and is fixed in 1.7.7-tuxcare.3."
      }
    },
    {
      "id": "CVE-2026-44486",
      "affects": [
        {
          "ref": "pkg:npm/axios@1.7.7-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:b5c5a7a8-f03c-526b-abcb-a16568ddeada",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44486 affects version 1.7.7-tuxcare.1 of axios, and is fixed in 1.7.7-tuxcare.6."
      }
    },
    {
      "id": "CVE-2026-44487",
      "affects": [
        {
          "ref": "pkg:npm/axios@1.7.7-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:9566b582-b497-550f-8873-fc7b6e1c8984",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44487 affects version 1.7.7-tuxcare.1 of axios, and is fixed in 1.7.7-tuxcare.4."
      }
    },
    {
      "id": "CVE-2026-44488",
      "affects": [
        {
          "ref": "pkg:npm/axios@1.7.7-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:73055bb6-df75-5e8a-bcb5-0c12bf5dc9e5",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44488 affects version 1.7.7-tuxcare.1 of axios, and is fixed in 1.7.7-tuxcare.3."
      }
    },
    {
      "id": "CVE-2026-44490",
      "affects": [
        {
          "ref": "pkg:npm/axios@1.7.7-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:c7bde3ba-ae68-5818-afa7-4ceaa827b359",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44490 affects version 1.7.7-tuxcare.1 of axios, and is fixed in 1.7.7-tuxcare.4."
      }
    },
    {
      "id": "CVE-2026-44492",
      "affects": [
        {
          "ref": "pkg:npm/axios@1.7.7-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:b769d752-caa0-5664-aed8-33eed8549269",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44492 affects version 1.7.7-tuxcare.1 of axios."
      }
    },
    {
      "id": "CVE-2026-44496",
      "affects": [
        {
          "ref": "pkg:npm/axios@1.7.7-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:abeeffd4-f97f-55e5-889a-908feaf721bd",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44496 affects version 1.7.7-tuxcare.1 of axios, and is fixed in 1.7.7-tuxcare.4."
      }
    },
    {
      "id": "GHSA-39j5-w47m-2gmv",
      "affects": [
        {
          "ref": "pkg:npm/axios@1.7.7-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:49534905-f1e4-56c9-9c06-5db974c6408d",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability GHSA-39j5-w47m-2gmv is a false positive for axios 1.7.7-tuxcare.1."
      }
    },
    {
      "id": "GHSA-42h9-826w-cgv3",
      "affects": [
        {
          "ref": "pkg:npm/axios@1.7.7-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:080d121c-124e-5b3b-91e9-5c6aba336abf",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-42h9-826w-cgv3 affects version 1.7.7-tuxcare.1 of axios."
      }
    },
    {
      "id": "GHSA-4ww2-rjh2-xpv9",
      "affects": [
        {
          "ref": "pkg:npm/axios@1.7.7-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:76a76a1c-7305-5240-a943-1e034b1dfdf9",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability GHSA-4ww2-rjh2-xpv9 is a false positive for axios 1.7.7-tuxcare.1."
      }
    },
    {
      "id": "GHSA-6hqm-hm2v-3p2p",
      "affects": [
        {
          "ref": "pkg:npm/axios@1.7.7-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:00eb395c-d992-5603-9f4d-57adb7193497",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability GHSA-6hqm-hm2v-3p2p is a false positive for axios 1.7.7-tuxcare.1."
      }
    },
    {
      "id": "GHSA-7q8q-rj6j-mhjq",
      "affects": [
        {
          "ref": "pkg:npm/axios@1.7.7-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:209a4e7e-79b5-53ca-9b0d-a10181ef8faa",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-7q8q-rj6j-mhjq affects version 1.7.7-tuxcare.1 of axios."
      }
    },
    {
      "id": "GHSA-9wx3-p993-35vp",
      "affects": [
        {
          "ref": "pkg:npm/axios@1.7.7-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:cb4d0dd3-235e-5ecb-8a45-dccc00d31936",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability GHSA-9wx3-p993-35vp is a false positive for axios 1.7.7-tuxcare.1."
      }
    },
    {
      "id": "GHSA-fq2j-3j99-rx65",
      "affects": [
        {
          "ref": "pkg:npm/axios@1.7.7-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:a37ade04-42c1-5c35-8c59-779ac44887f7",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability GHSA-fq2j-3j99-rx65 is a false positive for axios 1.7.7-tuxcare.1."
      }
    },
    {
      "id": "GHSA-jqh4-m9w3-8hp9",
      "affects": [
        {
          "ref": "pkg:npm/axios@1.7.7-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:dfd5de36-f00b-5556-b64a-fd08b6e69b47",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-jqh4-m9w3-8hp9 affects version 1.7.7-tuxcare.1 of axios."
      }
    },
    {
      "id": "GHSA-mmx7-hfxf-jppx",
      "affects": [
        {
          "ref": "pkg:npm/axios@1.7.7-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:25745965-1b80-55e8-9724-1176f68c53e7",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-mmx7-hfxf-jppx affects version 1.7.7-tuxcare.1 of axios, and is fixed in 1.7.7-tuxcare.5."
      }
    },
    {
      "id": "GHSA-pmv8-rq9r-6j72",
      "affects": [
        {
          "ref": "pkg:npm/axios@1.7.7-tuxcare.1"
        }
      ],
      "bom-ref": "urn:uuid:89a91498-3da9-5cbb-8ceb-e90412d4a3a9",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-pmv8-rq9r-6j72 affects version 1.7.7-tuxcare.1 of axios."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:npm/axios@1.7.7-tuxcare.1"
    }
  ]
}