{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:729c15da-664c-54b2-8248-e1b4d89d2a45",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "django",
      "purl": "pkg:pypi/django@5.0.post13+tuxcare",
      "type": "library",
      "bom-ref": "pkg:pypi/django@5.0.post13+tuxcare",
      "version": "5.0.post13+tuxcare",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2024-24680",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post13+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:236ceb64-772d-542b-b7f5-819f4c367cc7",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-24680 is fixed in version 5.0.post13+tuxcare of django."
      }
    },
    {
      "id": "CVE-2024-27351",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post13+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:7ee03067-f82f-5e9a-8ce2-fcf5841229a8",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-27351 is fixed in version 5.0.post13+tuxcare of django."
      }
    },
    {
      "id": "CVE-2024-38875",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post13+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:da2881b3-33d5-5936-b382-5a5a2fbadf78",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38875 is fixed in version 5.0.post13+tuxcare of django."
      }
    },
    {
      "id": "CVE-2024-39329",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post13+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:67c29985-70b9-5a5a-9475-6c578e080d24",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-39329 is fixed in version 5.0.post13+tuxcare of django."
      }
    },
    {
      "id": "CVE-2024-39330",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post13+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:f0ac7990-cfc2-5cdd-b5c4-d10d6ac07fc5",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-39330 is fixed in version 5.0.post13+tuxcare of django."
      }
    },
    {
      "id": "CVE-2024-39614",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post13+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:f0c894f1-6e91-5725-89bd-5b5021bbc7cf",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-39614 is fixed in version 5.0.post13+tuxcare of django."
      }
    },
    {
      "id": "CVE-2024-41989",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post13+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:a5c7d6d5-ba19-5e1a-b397-0bab662f1453",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-41989 is fixed in version 5.0.post13+tuxcare of django."
      }
    },
    {
      "id": "CVE-2024-41990",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post13+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:b143ea38-0492-57c3-bd41-e9ba8d9bdef4",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-41990 is fixed in version 5.0.post13+tuxcare of django."
      }
    },
    {
      "id": "CVE-2024-41991",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post13+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:f54571f8-5701-53f2-9802-d649bca6e600",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-41991 is fixed in version 5.0.post13+tuxcare of django."
      }
    },
    {
      "id": "CVE-2024-42005",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post13+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:e29fa3bf-b095-5676-879f-08648c54e927",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-42005 is fixed in version 5.0.post13+tuxcare of django."
      }
    },
    {
      "id": "CVE-2024-45230",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post13+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:e213a02e-d2dc-5409-b6c0-4e605ac392f3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-45230 affects version 5.0.post13+tuxcare of django."
      }
    },
    {
      "id": "CVE-2024-45231",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post13+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:d22ebd26-9c2e-5fbb-821e-f901ddac6842",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-45231 is fixed in version 5.0.post13+tuxcare of django."
      }
    },
    {
      "id": "CVE-2024-53907",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post13+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:4d33d1fb-5fdb-5ec8-9ac6-458f98c387f5",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-53907 is fixed in version 5.0.post13+tuxcare of django."
      }
    },
    {
      "id": "CVE-2024-53908",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post13+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:59867fe4-cade-5776-986b-f56159537b4a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-53908 is fixed in version 5.0.post13+tuxcare of django."
      }
    },
    {
      "id": "CVE-2024-56374",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post13+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:996edfaf-68b9-5a20-bce7-9397408fe7f3",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-56374 is fixed in version 5.0.post13+tuxcare of django."
      }
    },
    {
      "id": "CVE-2025-13372",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post13+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:e205818d-0cc0-5fc7-bf71-1a9b30de9159",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-13372 affects version 5.0.post13+tuxcare of django."
      }
    },
    {
      "id": "CVE-2025-13473",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post13+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:8e5aa96b-7bbb-5c5d-a095-37d6adbf318e",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-13473 affects version 5.0.post13+tuxcare of django."
      }
    },
    {
      "id": "CVE-2025-14550",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post13+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:1a91f3d0-f370-5241-aee9-18c012bccdd2",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-14550 affects version 5.0.post13+tuxcare of django."
      }
    },
    {
      "id": "CVE-2025-26699",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post13+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:c682a532-d42e-5ba2-bcac-d6b3ea9c5a1a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-26699 is fixed in version 5.0.post13+tuxcare of django."
      }
    },
    {
      "id": "CVE-2025-27556",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post13+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:77676ab3-5b05-5b05-9cb3-8dd8f27a3443",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-27556 is fixed in version 5.0.post13+tuxcare of django."
      }
    },
    {
      "id": "CVE-2025-48432",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post13+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:be4c4e68-62dd-5066-a8aa-2461fbfd6a93",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48432 is fixed in version 5.0.post13+tuxcare of django."
      }
    },
    {
      "id": "CVE-2025-57833",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post13+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:6fc47626-28f9-569d-b9bc-85546bb62e50",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-57833 is fixed in version 5.0.post13+tuxcare of django."
      }
    },
    {
      "id": "CVE-2025-64458",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post13+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:f24d05ca-1db2-507c-8b8f-eec8c1970d85",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-64458 is fixed in version 5.0.post13+tuxcare of django."
      }
    },
    {
      "id": "CVE-2025-64459",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post13+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:823c8984-f889-5395-828d-b161542f4b56",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-64459 is fixed in version 5.0.post13+tuxcare of django."
      }
    },
    {
      "id": "CVE-2025-64460",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post13+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:a6f5e2a0-8e47-559b-9875-bebcde69beb7",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-64460 is fixed in version 5.0.post13+tuxcare of django."
      }
    },
    {
      "id": "CVE-2026-1207",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post13+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:f010a0b6-8249-5046-87af-cf2838c46069",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-1207 is fixed in version 5.0.post13+tuxcare of django."
      }
    },
    {
      "id": "CVE-2026-1285",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post13+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:7b8fcdba-54c6-5be2-aba3-f2de95f602e8",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-1285 affects version 5.0.post13+tuxcare of django."
      }
    },
    {
      "id": "CVE-2026-1287",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post13+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:1e7ccbb6-38a1-53be-b8b4-c2e238126843",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-1287 affects version 5.0.post13+tuxcare of django."
      }
    },
    {
      "id": "CVE-2026-1312",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post13+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:1a48e2b1-c1ef-5d48-8cdb-ac5e3d760673",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-1312 affects version 5.0.post13+tuxcare of django."
      }
    },
    {
      "id": "CVE-2026-48587",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post13+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:422d95bf-7380-57ae-a909-4d5e2c89ec8a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-48587 is fixed in version 5.0.post13+tuxcare of django."
      }
    },
    {
      "id": "CVE-2026-48588",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post13+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:cee820e5-1481-5b62-996b-92d97ac114e7",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-48588 is fixed in version 5.0.post13+tuxcare of django."
      }
    },
    {
      "id": "CVE-2026-53877",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post13+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:a5bb9a65-3efc-5ff3-8a43-1fbe91f87bd0",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-53877 is fixed in version 5.0.post13+tuxcare of django."
      }
    },
    {
      "id": "CVE-2026-53878",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post13+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:d12e7d99-10c6-5464-ada7-3b486e688882",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-53878 does not affect version 5.0.post13+tuxcare of django. not_affected \u2014 Django 5.0 does not contain the vulnerable DomainNameValidator class. This validator was introduced in Django 5.1 (commit 4971a9afe5). Since the specific component affected by CVE-2026-53878 does not exist in this version, Django 5.0 cannot be affected by this vulnerability. Additionally, all domain validators present in Django 5.0 (_simple_domain_name_validator, EmailValidator, URLValidator) a...",
        "justification": "code_not_present"
      }
    },
    {
      "id": "CVE-2026-6873",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post13+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:fb3835a1-48be-58ee-b3be-79254cd1a66a",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-6873 is fixed in version 5.0.post13+tuxcare of django."
      }
    },
    {
      "id": "CVE-2026-8404",
      "affects": [
        {
          "ref": "pkg:pypi/django@5.0.post13+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:cbc6b0f4-bc8e-58fc-b172-d696e55c89be",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-8404 is fixed in version 5.0.post13+tuxcare of django."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:pypi/django@5.0.post13+tuxcare"
    }
  ]
}