{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:44df981b-e104-5af1-b5b9-9d8a9e707bba",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "gitpython",
      "purl": "pkg:pypi/gitpython@3.1.31.post2+tuxcare",
      "type": "library",
      "bom-ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare",
      "version": "3.1.31.post2+tuxcare",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2023-40267",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:19f82a98-dbd3-58f7-9cb3-51457cb5e162",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-40267 affects version 3.1.31.post2+tuxcare of gitpython, and is fixed in 3.1.31.post4+tuxcare."
      }
    },
    {
      "id": "CVE-2023-40590",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:e504d958-fc86-540e-aa76-6f66eaff4917",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-40590 affects version 3.1.31.post2+tuxcare of gitpython, and is fixed in 3.1.31.post9+tuxcare."
      }
    },
    {
      "id": "CVE-2023-41040",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:ad2ef30f-a4b5-5205-8355-034d907c164d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-41040 is fixed in version 3.1.31.post2+tuxcare of gitpython."
      }
    },
    {
      "id": "CVE-2024-22190",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:01da89ef-f807-5547-a499-fb3af55ed3d5",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22190 affects version 3.1.31.post2+tuxcare of gitpython, and is fixed in 3.1.31.post9+tuxcare."
      }
    },
    {
      "id": "CVE-2026-42215",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:0227928f-9c94-5a92-9994-f27a29259464",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42215 affects version 3.1.31.post2+tuxcare of gitpython, and is fixed in 3.1.31.post3+tuxcare."
      }
    },
    {
      "id": "CVE-2026-42284",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:2c49c095-afc5-5abf-b3c8-0d41ce5f8ad4",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42284 affects version 3.1.31.post2+tuxcare of gitpython, and is fixed in 3.1.31.post13+tuxcare."
      }
    },
    {
      "id": "CVE-2026-44243",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:406bf01e-801a-5ebc-a31c-1b1d24b6a6ab",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44243 affects version 3.1.31.post2+tuxcare of gitpython, and is fixed in 3.1.31.post13+tuxcare."
      }
    },
    {
      "id": "CVE-2026-44244",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:c7924597-3d89-53e7-afd8-27628071aca4",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-44244 is fixed in version 3.1.31.post2+tuxcare of gitpython."
      }
    },
    {
      "id": "CVE-2026-67322",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:91026921-375c-5018-93b1-544e9141e1f5",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-67322 affects version 3.1.31.post2+tuxcare of gitpython, and is fixed in 3.1.31.post10+tuxcare."
      }
    },
    {
      "id": "CVE-2026-67323",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:380fd7f6-cba9-5df8-b1ab-621bca1bea9b",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-67323 affects version 3.1.31.post2+tuxcare of gitpython, and is fixed in 3.1.31.post10+tuxcare."
      }
    },
    {
      "id": "CVE-2026-67325",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:349cbb23-d51c-5a3b-af63-b98d44118f67",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-67325 affects version 3.1.31.post2+tuxcare of gitpython, and is fixed in 3.1.31.post10+tuxcare."
      }
    },
    {
      "id": "CVE-2026-76217",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:84e7ce17-9ea8-5aa0-b60a-4eec9aaea7b9",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-76217 affects version 3.1.31.post2+tuxcare of gitpython, and is fixed in 3.1.31.post11+tuxcare."
      }
    },
    {
      "id": "CVE-2026-76218",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:97391b0b-d127-58c6-bf3d-02c8ab377124",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-76218 affects version 3.1.31.post2+tuxcare of gitpython, and is fixed in 3.1.31.post10+tuxcare."
      }
    },
    {
      "id": "CVE-2026-76219",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:ac9d1c0b-9826-525e-93f1-de8fd3d58696",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-76219 affects version 3.1.31.post2+tuxcare of gitpython, and is fixed in 3.1.31.post11+tuxcare."
      }
    },
    {
      "id": "CVE-2026-76220",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:7b98825d-74e6-5575-b162-a14e04e47232",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-76220 affects version 3.1.31.post2+tuxcare of gitpython, and is fixed in 3.1.31.post4+tuxcare."
      }
    },
    {
      "id": "CVE-2026-76222",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:0766b4d2-be93-5698-aca9-d59bf414a11e",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-76222 affects version 3.1.31.post2+tuxcare of gitpython, and is fixed in 3.1.31.post8+tuxcare."
      }
    },
    {
      "id": "CVE-2026-78675",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:c2790d9d-8fe1-5e6b-8f87-1447451c6da6",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-78675 affects version 3.1.31.post2+tuxcare of gitpython, and is fixed in 3.1.31.post12+tuxcare."
      }
    },
    {
      "id": "CVE-2026-78676",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:3c659e6d-65bd-5326-93e7-709d48b80079",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-78676 affects version 3.1.31.post2+tuxcare of gitpython, and is fixed in 3.1.31.post12+tuxcare."
      }
    },
    {
      "id": "CVE-2026-78677",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:7fd56009-f421-524f-ad96-f748a8df2b65",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-78677 affects version 3.1.31.post2+tuxcare of gitpython, and is fixed in 3.1.31.post12+tuxcare."
      }
    },
    {
      "id": "CVE-2026-78678",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:852dc8e3-691a-5923-adc8-ca353de5bc7d",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-78678 affects version 3.1.31.post2+tuxcare of gitpython, and is fixed in 3.1.31.post12+tuxcare."
      }
    },
    {
      "id": "CVE-2026-78679",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:310ea7bf-63fe-5b97-99b4-6228bd3048b2",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-78679 affects version 3.1.31.post2+tuxcare of gitpython, and is fixed in 3.1.31.post12+tuxcare."
      }
    },
    {
      "id": "GHSA-298h-jpq4-m665",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:7b6c5eba-f082-5c26-9618-5042f48ab332",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability GHSA-298h-jpq4-m665 is a false positive for gitpython 3.1.31.post2+tuxcare."
      }
    },
    {
      "id": "GHSA-2f96-g7mh-g2hx",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:28c1fe42-9f57-5db2-bf57-4a25eb95c4ae",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-2f96-g7mh-g2hx affects version 3.1.31.post2+tuxcare of gitpython, and is fixed in 3.1.31.post10+tuxcare."
      }
    },
    {
      "id": "GHSA-3f7w-8rr8-f37f",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:f92a9327-7297-53d9-8aa4-b5668a1cedec",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-3f7w-8rr8-f37f affects version 3.1.31.post2+tuxcare of gitpython, and is fixed in 3.1.31.post10+tuxcare."
      }
    },
    {
      "id": "GHSA-3rp5-jjmw-4wv2",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:de24b0dd-ec50-5bcb-804e-7b7a8ac43464",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-3rp5-jjmw-4wv2 affects version 3.1.31.post2+tuxcare of gitpython, and is fixed in 3.1.31.post10+tuxcare."
      }
    },
    {
      "id": "GHSA-3vrx-526r-64rm",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:3da59f36-f595-5003-9cab-a3ac8fb48689",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability GHSA-3vrx-526r-64rm is a false positive for gitpython 3.1.31.post2+tuxcare."
      }
    },
    {
      "id": "GHSA-4gmw-gg2m-w46p",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:6ce0a09b-55cd-5bad-afe7-d6f2e3fa4dc9",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-4gmw-gg2m-w46p affects version 3.1.31.post2+tuxcare of gitpython, and is fixed in 3.1.31.post11+tuxcare."
      }
    },
    {
      "id": "GHSA-4vpg-pfj8-m33q",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:3e851ff8-8012-599e-9fd8-d97c13c2b5fd",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability GHSA-4vpg-pfj8-m33q is a false positive for gitpython 3.1.31.post2+tuxcare."
      }
    },
    {
      "id": "GHSA-539m-9xh6-q6rr",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:b6728279-81da-5fe8-a5b0-95549483541e",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-539m-9xh6-q6rr affects version 3.1.31.post2+tuxcare of gitpython, and is fixed in 3.1.31.post5+tuxcare."
      }
    },
    {
      "id": "GHSA-6p8h-3wgx-97gf",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:c5de3469-3605-5b61-9802-5a44d9333d9d",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-6p8h-3wgx-97gf affects version 3.1.31.post2+tuxcare of gitpython, and is fixed in 3.1.31.post4+tuxcare."
      }
    },
    {
      "id": "GHSA-6r2r-ww24-7h52",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:ed3e7ccd-777d-5e41-829c-afcd4f992a65",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability GHSA-6r2r-ww24-7h52 is a false positive for gitpython 3.1.31.post2+tuxcare."
      }
    },
    {
      "id": "GHSA-6rj2-96f5-chj9",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:5d3905d0-3a33-5b61-8a0c-b88ec7311862",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability GHSA-6rj2-96f5-chj9 is a false positive for gitpython 3.1.31.post2+tuxcare."
      }
    },
    {
      "id": "GHSA-7jx3-jqcp-hhgc",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:968c110f-0ea0-5616-9f32-c3b104383935",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability GHSA-7jx3-jqcp-hhgc is a false positive for gitpython 3.1.31.post2+tuxcare."
      }
    },
    {
      "id": "GHSA-7r39-6q8m-qw68",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:b4822756-c54f-5762-b093-641f4aadc80d",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability GHSA-7r39-6q8m-qw68 is a false positive for gitpython 3.1.31.post2+tuxcare."
      }
    },
    {
      "id": "GHSA-89ff-m8wv-p99r",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:39b6288a-442b-5d47-960f-c55d3d65476c",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability GHSA-89ff-m8wv-p99r is a false positive for gitpython 3.1.31.post2+tuxcare."
      }
    },
    {
      "id": "GHSA-94p4-4cq8-9g67",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:e934ee8b-8a8b-5b0d-983f-92279cd2385b",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-94p4-4cq8-9g67 affects version 3.1.31.post2+tuxcare of gitpython, and is fixed in 3.1.31.post11+tuxcare."
      }
    },
    {
      "id": "GHSA-9557-234j-7rv9",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:ee98d4ce-8ab1-5db8-bc02-b007f4618e48",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability GHSA-9557-234j-7rv9 is a false positive for gitpython 3.1.31.post2+tuxcare."
      }
    },
    {
      "id": "GHSA-956x-8gvw-wg5v",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:d51d7c87-f670-5439-a19e-5f01b83bb209",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-956x-8gvw-wg5v affects version 3.1.31.post2+tuxcare of gitpython, and is fixed in 3.1.31.post10+tuxcare."
      }
    },
    {
      "id": "GHSA-9rj7-rf2p-w77r",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:8a6eb14f-d621-5fac-ba28-e4601b519365",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-9rj7-rf2p-w77r affects version 3.1.31.post2+tuxcare of gitpython, and is fixed in 3.1.31.post10+tuxcare."
      }
    },
    {
      "id": "GHSA-crmc-f4m7-33fj",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:24292ef2-dc62-5e3a-a183-942187106870",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability GHSA-crmc-f4m7-33fj is a false positive for gitpython 3.1.31.post2+tuxcare."
      }
    },
    {
      "id": "GHSA-fjr4-x663-mwxc",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:06ce1321-fcdb-5af4-bb7c-80534610b68b",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-fjr4-x663-mwxc affects version 3.1.31.post2+tuxcare of gitpython, and is fixed in 3.1.31.post11+tuxcare."
      }
    },
    {
      "id": "GHSA-hh9p-6wh2-4mfc",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:d208df60-da2e-55cd-a645-9d4ee7264acf",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-hh9p-6wh2-4mfc affects version 3.1.31.post2+tuxcare of gitpython, and is fixed in 3.1.31.post11+tuxcare."
      }
    },
    {
      "id": "GHSA-hmq2-w58f-27jc",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:f6e2e185-d97b-5711-9211-c53f9ab1ad92",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-hmq2-w58f-27jc affects version 3.1.31.post2+tuxcare of gitpython, and is fixed in 3.1.31.post8+tuxcare."
      }
    },
    {
      "id": "GHSA-jm78-9fvv-mhgr",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:da37837a-a362-5577-a8ae-239028de087a",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-jm78-9fvv-mhgr affects version 3.1.31.post2+tuxcare of gitpython, and is fixed in 3.1.31.post7+tuxcare."
      }
    },
    {
      "id": "GHSA-m4f3-g4cq-hqrx",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:1213d7dc-b317-5521-adee-80263f44daca",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability GHSA-m4f3-g4cq-hqrx is a false positive for gitpython 3.1.31.post2+tuxcare."
      }
    },
    {
      "id": "GHSA-mv93-w799-cj2w",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:d1b00462-2f61-58eb-8c3d-6835bc231474",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-mv93-w799-cj2w affects version 3.1.31.post2+tuxcare of gitpython, and is fixed in 3.1.31.post3+tuxcare."
      }
    },
    {
      "id": "GHSA-p538-c434-8v24",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:e3e47334-8b41-5312-b286-eded3b7ab494",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-p538-c434-8v24 affects version 3.1.31.post2+tuxcare of gitpython, and is fixed in 3.1.31.post6+tuxcare."
      }
    },
    {
      "id": "GHSA-rwj8-pgh3-r573",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:22e40aef-789e-58ae-9432-5f3b500344c9",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-rwj8-pgh3-r573 affects version 3.1.31.post2+tuxcare of gitpython, and is fixed in 3.1.31.post10+tuxcare."
      }
    },
    {
      "id": "GHSA-w672-239g-c3gr",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:305484d5-a007-556f-bb61-6834efbd2299",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability GHSA-w672-239g-c3gr is a false positive for gitpython 3.1.31.post2+tuxcare."
      }
    },
    {
      "id": "GHSA-wv46-xpj8-pw53",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:db2d4514-6095-5c13-85fd-ea8d2461e9e1",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability GHSA-wv46-xpj8-pw53 is a false positive for gitpython 3.1.31.post2+tuxcare."
      }
    },
    {
      "id": "GHSA-wvpp-8hx9-p66j",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:8ba0d57b-19e3-5b34-99bc-4ba48b13451e",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-wvpp-8hx9-p66j affects version 3.1.31.post2+tuxcare of gitpython, and is fixed in 3.1.31.post4+tuxcare."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:pypi/gitpython@3.1.31.post2+tuxcare"
    }
  ]
}