{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:71847bf5-1111-5884-b929-5b2c74f7bb6f",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "gitpython",
      "purl": "pkg:pypi/gitpython@3.1.31.post3+tuxcare",
      "type": "library",
      "bom-ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare",
      "version": "3.1.31.post3+tuxcare",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2023-40267",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:0b705bd1-d61d-53dd-a3fe-f083efb1b3ec",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-40267 affects version 3.1.31.post3+tuxcare of gitpython, and is fixed in 3.1.31.post4+tuxcare."
      }
    },
    {
      "id": "CVE-2023-40590",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:0a7139b6-8ce9-5f4f-be0a-8b2133c0e451",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-40590 affects version 3.1.31.post3+tuxcare of gitpython, and is fixed in 3.1.31.post9+tuxcare."
      }
    },
    {
      "id": "CVE-2023-41040",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:a69be668-f15d-55b6-8a2c-59d4155c3bc3",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-41040 is fixed in version 3.1.31.post3+tuxcare of gitpython."
      }
    },
    {
      "id": "CVE-2024-22190",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:fc459845-9048-54ce-9e81-e02b5b1594d4",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-22190 affects version 3.1.31.post3+tuxcare of gitpython, and is fixed in 3.1.31.post9+tuxcare."
      }
    },
    {
      "id": "CVE-2026-42215",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:631361e9-4d42-5111-b680-075a805d4d96",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-42215 is fixed in version 3.1.31.post3+tuxcare of gitpython."
      }
    },
    {
      "id": "CVE-2026-42284",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:1f3924b3-5e0a-5e00-9775-e9141c9d51ca",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42284 affects version 3.1.31.post3+tuxcare of gitpython, and is fixed in 3.1.31.post13+tuxcare."
      }
    },
    {
      "id": "CVE-2026-44243",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:a87162fc-ee95-5b1c-8593-1f4b403b64ee",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-44243 affects version 3.1.31.post3+tuxcare of gitpython, and is fixed in 3.1.31.post13+tuxcare."
      }
    },
    {
      "id": "CVE-2026-44244",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:20e6f6c0-4193-5fb4-a320-2d46a1a495e3",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-44244 is fixed in version 3.1.31.post3+tuxcare of gitpython."
      }
    },
    {
      "id": "CVE-2026-67322",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:fc69b8e4-86f4-56e1-be81-821bd9188753",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-67322 affects version 3.1.31.post3+tuxcare of gitpython, and is fixed in 3.1.31.post10+tuxcare."
      }
    },
    {
      "id": "CVE-2026-67323",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:cfc61479-8ce8-5411-898e-4c1f49db15b2",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-67323 affects version 3.1.31.post3+tuxcare of gitpython, and is fixed in 3.1.31.post10+tuxcare."
      }
    },
    {
      "id": "CVE-2026-67325",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:0a85b920-0361-507d-971e-63865e6315a7",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-67325 affects version 3.1.31.post3+tuxcare of gitpython, and is fixed in 3.1.31.post10+tuxcare."
      }
    },
    {
      "id": "CVE-2026-76217",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:c1907560-c703-5d69-88af-156f7f145c90",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-76217 affects version 3.1.31.post3+tuxcare of gitpython, and is fixed in 3.1.31.post11+tuxcare."
      }
    },
    {
      "id": "CVE-2026-76218",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:53c18551-109a-5a67-8994-6021fe203e02",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-76218 affects version 3.1.31.post3+tuxcare of gitpython, and is fixed in 3.1.31.post10+tuxcare."
      }
    },
    {
      "id": "CVE-2026-76219",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:195c864e-e278-58cb-a297-373c57ad0af4",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-76219 affects version 3.1.31.post3+tuxcare of gitpython, and is fixed in 3.1.31.post11+tuxcare."
      }
    },
    {
      "id": "CVE-2026-76220",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:39d3f0c4-9160-53ec-aea4-203ea0b1fd80",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-76220 affects version 3.1.31.post3+tuxcare of gitpython, and is fixed in 3.1.31.post4+tuxcare."
      }
    },
    {
      "id": "CVE-2026-76222",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:64f8b336-ceda-581c-a88b-4ab6add07b57",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-76222 affects version 3.1.31.post3+tuxcare of gitpython, and is fixed in 3.1.31.post8+tuxcare."
      }
    },
    {
      "id": "CVE-2026-78675",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:a72126d9-4238-5024-af84-544916c51864",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-78675 affects version 3.1.31.post3+tuxcare of gitpython, and is fixed in 3.1.31.post12+tuxcare."
      }
    },
    {
      "id": "CVE-2026-78676",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:cf6f3605-5bb6-589d-9265-4b07a0e331df",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-78676 affects version 3.1.31.post3+tuxcare of gitpython, and is fixed in 3.1.31.post12+tuxcare."
      }
    },
    {
      "id": "CVE-2026-78677",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:daadb3cf-aabf-5401-ba4b-885c8658df62",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-78677 affects version 3.1.31.post3+tuxcare of gitpython, and is fixed in 3.1.31.post12+tuxcare."
      }
    },
    {
      "id": "CVE-2026-78678",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:b7c1929a-df8e-53cf-97ea-58b8a5c5e9e7",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-78678 affects version 3.1.31.post3+tuxcare of gitpython, and is fixed in 3.1.31.post12+tuxcare."
      }
    },
    {
      "id": "CVE-2026-78679",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:d183e56b-96a2-5006-bbbc-deb415851b70",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-78679 affects version 3.1.31.post3+tuxcare of gitpython, and is fixed in 3.1.31.post12+tuxcare."
      }
    },
    {
      "id": "GHSA-298h-jpq4-m665",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:0af04f8d-f0ce-59ff-bd52-578cbdefc6b5",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability GHSA-298h-jpq4-m665 is a false positive for gitpython 3.1.31.post3+tuxcare."
      }
    },
    {
      "id": "GHSA-2f96-g7mh-g2hx",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:fb9d30df-6c25-5f96-b26a-1345fe9ea928",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-2f96-g7mh-g2hx affects version 3.1.31.post3+tuxcare of gitpython, and is fixed in 3.1.31.post10+tuxcare."
      }
    },
    {
      "id": "GHSA-3f7w-8rr8-f37f",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:2790a8c3-a3a1-5ea6-8264-55c65bc6915e",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-3f7w-8rr8-f37f affects version 3.1.31.post3+tuxcare of gitpython, and is fixed in 3.1.31.post10+tuxcare."
      }
    },
    {
      "id": "GHSA-3rp5-jjmw-4wv2",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:602bbfa6-6b8a-56fb-9263-83d4958ace58",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-3rp5-jjmw-4wv2 affects version 3.1.31.post3+tuxcare of gitpython, and is fixed in 3.1.31.post10+tuxcare."
      }
    },
    {
      "id": "GHSA-3vrx-526r-64rm",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:a519d2ea-421c-5209-be74-cdfc01d95f23",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability GHSA-3vrx-526r-64rm is a false positive for gitpython 3.1.31.post3+tuxcare."
      }
    },
    {
      "id": "GHSA-4gmw-gg2m-w46p",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:2a215f53-62e8-591d-a47d-ff48abcac975",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-4gmw-gg2m-w46p affects version 3.1.31.post3+tuxcare of gitpython, and is fixed in 3.1.31.post11+tuxcare."
      }
    },
    {
      "id": "GHSA-4vpg-pfj8-m33q",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:3216fc43-3e2e-57e5-a3d0-5887d6c14495",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability GHSA-4vpg-pfj8-m33q is a false positive for gitpython 3.1.31.post3+tuxcare."
      }
    },
    {
      "id": "GHSA-539m-9xh6-q6rr",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:d5fe386f-04ab-598f-86cb-6b9d370fd403",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-539m-9xh6-q6rr affects version 3.1.31.post3+tuxcare of gitpython, and is fixed in 3.1.31.post5+tuxcare."
      }
    },
    {
      "id": "GHSA-6p8h-3wgx-97gf",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:09f14709-efd1-51f5-b973-df029c13cdc3",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-6p8h-3wgx-97gf affects version 3.1.31.post3+tuxcare of gitpython, and is fixed in 3.1.31.post4+tuxcare."
      }
    },
    {
      "id": "GHSA-6r2r-ww24-7h52",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:37e88bb6-f786-5a76-a7a9-c6f5524d5083",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability GHSA-6r2r-ww24-7h52 is a false positive for gitpython 3.1.31.post3+tuxcare."
      }
    },
    {
      "id": "GHSA-6rj2-96f5-chj9",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:62b5952b-31c8-56f9-b1e8-433a45acb32f",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability GHSA-6rj2-96f5-chj9 is a false positive for gitpython 3.1.31.post3+tuxcare."
      }
    },
    {
      "id": "GHSA-7jx3-jqcp-hhgc",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:811ab6c9-9b53-58f0-afc3-0df0cd8b31a0",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability GHSA-7jx3-jqcp-hhgc is a false positive for gitpython 3.1.31.post3+tuxcare."
      }
    },
    {
      "id": "GHSA-7r39-6q8m-qw68",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:7b0639f9-fb10-55a7-b0ff-af6675d9521b",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability GHSA-7r39-6q8m-qw68 is a false positive for gitpython 3.1.31.post3+tuxcare."
      }
    },
    {
      "id": "GHSA-89ff-m8wv-p99r",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:607f06fb-4eee-5a77-a02c-a97797f3227b",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability GHSA-89ff-m8wv-p99r is a false positive for gitpython 3.1.31.post3+tuxcare."
      }
    },
    {
      "id": "GHSA-94p4-4cq8-9g67",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:03031d34-c99b-590e-a86b-c35cac8b572a",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-94p4-4cq8-9g67 affects version 3.1.31.post3+tuxcare of gitpython, and is fixed in 3.1.31.post11+tuxcare."
      }
    },
    {
      "id": "GHSA-9557-234j-7rv9",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:dc93040c-8702-5dd4-9bb9-ea5eb68b5b62",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability GHSA-9557-234j-7rv9 is a false positive for gitpython 3.1.31.post3+tuxcare."
      }
    },
    {
      "id": "GHSA-956x-8gvw-wg5v",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:8bde6676-f17c-5c16-91d4-68e68030c854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-956x-8gvw-wg5v affects version 3.1.31.post3+tuxcare of gitpython, and is fixed in 3.1.31.post10+tuxcare."
      }
    },
    {
      "id": "GHSA-9rj7-rf2p-w77r",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:3003310e-fe19-52b7-886e-7fc9dcb5d723",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-9rj7-rf2p-w77r affects version 3.1.31.post3+tuxcare of gitpython, and is fixed in 3.1.31.post10+tuxcare."
      }
    },
    {
      "id": "GHSA-crmc-f4m7-33fj",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:f13e1d89-ae06-568a-a91f-8e4a93565e82",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability GHSA-crmc-f4m7-33fj is a false positive for gitpython 3.1.31.post3+tuxcare."
      }
    },
    {
      "id": "GHSA-fjr4-x663-mwxc",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:4196a974-ba18-5513-be58-e468cb87f209",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-fjr4-x663-mwxc affects version 3.1.31.post3+tuxcare of gitpython, and is fixed in 3.1.31.post11+tuxcare."
      }
    },
    {
      "id": "GHSA-hh9p-6wh2-4mfc",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:2e67cbf8-0dcd-57d3-ba3b-4607111640c1",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-hh9p-6wh2-4mfc affects version 3.1.31.post3+tuxcare of gitpython, and is fixed in 3.1.31.post11+tuxcare."
      }
    },
    {
      "id": "GHSA-hmq2-w58f-27jc",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:c1b633d4-4737-5c53-95e0-341d1ac48ee1",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-hmq2-w58f-27jc affects version 3.1.31.post3+tuxcare of gitpython, and is fixed in 3.1.31.post8+tuxcare."
      }
    },
    {
      "id": "GHSA-jm78-9fvv-mhgr",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:428a087d-ff5d-5e5d-ac0f-6dc2a06925f0",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-jm78-9fvv-mhgr affects version 3.1.31.post3+tuxcare of gitpython, and is fixed in 3.1.31.post7+tuxcare."
      }
    },
    {
      "id": "GHSA-m4f3-g4cq-hqrx",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:072fcf3e-78a5-5a1b-8405-32f1784e18d8",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability GHSA-m4f3-g4cq-hqrx is a false positive for gitpython 3.1.31.post3+tuxcare."
      }
    },
    {
      "id": "GHSA-mv93-w799-cj2w",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:8743b031-2010-5e67-adaf-1143c2501851",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability GHSA-mv93-w799-cj2w is fixed in version 3.1.31.post3+tuxcare of gitpython."
      }
    },
    {
      "id": "GHSA-p538-c434-8v24",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:9dc344f2-c0b9-5023-9c99-90c5409a5b77",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-p538-c434-8v24 affects version 3.1.31.post3+tuxcare of gitpython, and is fixed in 3.1.31.post6+tuxcare."
      }
    },
    {
      "id": "GHSA-rwj8-pgh3-r573",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:5d49d9bb-bfd5-59a6-bb27-cd8f3a9ab9ab",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-rwj8-pgh3-r573 affects version 3.1.31.post3+tuxcare of gitpython, and is fixed in 3.1.31.post10+tuxcare."
      }
    },
    {
      "id": "GHSA-w672-239g-c3gr",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:dae19e46-a788-5af0-948a-fdbfb49ea43f",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability GHSA-w672-239g-c3gr is a false positive for gitpython 3.1.31.post3+tuxcare."
      }
    },
    {
      "id": "GHSA-wv46-xpj8-pw53",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:e5455512-3887-507e-b221-01c52120101e",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability GHSA-wv46-xpj8-pw53 is a false positive for gitpython 3.1.31.post3+tuxcare."
      }
    },
    {
      "id": "GHSA-wvpp-8hx9-p66j",
      "affects": [
        {
          "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
        }
      ],
      "bom-ref": "urn:uuid:8a01d8bd-7b61-5520-9897-e51190dd2d96",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-wvpp-8hx9-p66j affects version 3.1.31.post3+tuxcare of gitpython, and is fixed in 3.1.31.post4+tuxcare."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:pypi/gitpython@3.1.31.post3+tuxcare"
    }
  ]
}