{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:7847aead-c2c4-5390-b5f1-017d2d004de9",
  "version": 1,
  "metadata": {
    "supplier": {
      "name": "TuxCare",
      "url": [
        "https://tuxcare.com"
      ]
    }
  },
  "components": [
    {
      "name": "@react-router/express",
      "purl": "pkg:npm/%40react-router/express@7.5.1-tuxcare.7",
      "type": "library",
      "bom-ref": "pkg:npm/%40react-router/express@7.5.1-tuxcare.7",
      "version": "7.5.1-tuxcare.7",
      "supplier": {
        "url": [
          "https://tuxcare.com"
        ],
        "name": "TuxCare"
      }
    }
  ],
  "vulnerabilities": [
    {
      "id": "CVE-2025-43864",
      "affects": [
        {
          "ref": "pkg:npm/%40react-router/express@7.5.1-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:e95afce6-9bae-5246-b38d-db170818a907",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-43864 is fixed in version 7.5.1-tuxcare.7 of @react-router/express."
      }
    },
    {
      "id": "CVE-2025-43865",
      "affects": [
        {
          "ref": "pkg:npm/%40react-router/express@7.5.1-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:dce09a83-212b-5adc-b57d-519901f9b654",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-43865 is fixed in version 7.5.1-tuxcare.7 of @react-router/express."
      }
    },
    {
      "id": "CVE-2025-59057",
      "affects": [
        {
          "ref": "pkg:npm/%40react-router/express@7.5.1-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:67869087-1bab-5e75-9578-dd4e8a45064d",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-59057 is fixed in version 7.5.1-tuxcare.7 of @react-router/express."
      }
    },
    {
      "id": "CVE-2025-61686",
      "affects": [
        {
          "ref": "pkg:npm/%40react-router/express@7.5.1-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:aed9deab-0780-5fdf-be6e-cb99fc096951",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61686 is fixed in version 7.5.1-tuxcare.7 of @react-router/express."
      }
    },
    {
      "id": "CVE-2025-68470",
      "affects": [
        {
          "ref": "pkg:npm/%40react-router/express@7.5.1-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:5f55a6f3-9f5d-54e0-b387-e117bc7decaf",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-68470 is fixed in version 7.5.1-tuxcare.7 of @react-router/express."
      }
    },
    {
      "id": "CVE-2026-21884",
      "affects": [
        {
          "ref": "pkg:npm/%40react-router/express@7.5.1-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:68a907b9-0908-5129-8186-8f2fc0d76ab5",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-21884 is fixed in version 7.5.1-tuxcare.7 of @react-router/express."
      }
    },
    {
      "id": "CVE-2026-22029",
      "affects": [
        {
          "ref": "pkg:npm/%40react-router/express@7.5.1-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:149077b4-e1fa-5ba4-87c3-8a34eac615b5",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22029 is fixed in version 7.5.1-tuxcare.7 of @react-router/express."
      }
    },
    {
      "id": "CVE-2026-22030",
      "affects": [
        {
          "ref": "pkg:npm/%40react-router/express@7.5.1-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:8aff7f7a-f223-5306-8adf-ec522f8a7720",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-22030 is fixed in version 7.5.1-tuxcare.7 of @react-router/express."
      }
    },
    {
      "id": "CVE-2026-33244",
      "affects": [
        {
          "ref": "pkg:npm/%40react-router/express@7.5.1-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:60f74bb4-ca57-5606-87f0-3008b276f197",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-33244 affects version 7.5.1-tuxcare.7 of @react-router/express."
      }
    },
    {
      "id": "CVE-2026-34077",
      "affects": [
        {
          "ref": "pkg:npm/%40react-router/express@7.5.1-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:e0f3109a-ce33-5c54-b4f0-bd2242a4ad9c",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34077 affects version 7.5.1-tuxcare.7 of @react-router/express, and is fixed in 7.5.1-tuxcare.10."
      }
    },
    {
      "id": "CVE-2026-40181",
      "affects": [
        {
          "ref": "pkg:npm/%40react-router/express@7.5.1-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:f5415a6c-861c-57a5-bdb5-4ab2ccdc5260",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-40181 affects version 7.5.1-tuxcare.7 of @react-router/express, and is fixed in 7.5.1-tuxcare.9."
      }
    },
    {
      "id": "CVE-2026-42211",
      "affects": [
        {
          "ref": "pkg:npm/%40react-router/express@7.5.1-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:687aca8b-ded2-5532-9003-af20f336a932",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-42211 is fixed in version 7.5.1-tuxcare.7 of @react-router/express."
      }
    },
    {
      "id": "CVE-2026-42342",
      "affects": [
        {
          "ref": "pkg:npm/%40react-router/express@7.5.1-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:036e1921-fb58-58dd-b37e-662b2db91f83",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42342 affects version 7.5.1-tuxcare.7 of @react-router/express, and is fixed in 7.5.1-tuxcare.8."
      }
    },
    {
      "id": "CVE-2026-53666",
      "affects": [
        {
          "ref": "pkg:npm/%40react-router/express@7.5.1-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:4ed89a83-5e29-5eeb-9c4e-da1e7abdbbf9",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-53666 is fixed in version 7.5.1-tuxcare.7 of @react-router/express."
      }
    },
    {
      "id": "CVE-2026-53669",
      "affects": [
        {
          "ref": "pkg:npm/%40react-router/express@7.5.1-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:75337cd8-3ee7-5604-81a2-2c22b37ca5dc",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-53669 is fixed in version 7.5.1-tuxcare.7 of @react-router/express."
      }
    },
    {
      "id": "CVE-2026-55685",
      "affects": [
        {
          "ref": "pkg:npm/%40react-router/express@7.5.1-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:6bfe7739-1658-5330-92bc-9166fb3c7c4e",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-55685 is fixed in version 7.5.1-tuxcare.7 of @react-router/express."
      }
    },
    {
      "id": "GHSA-8v8x-cx79-35w7",
      "affects": [
        {
          "ref": "pkg:npm/%40react-router/express@7.5.1-tuxcare.7"
        }
      ],
      "bom-ref": "urn:uuid:12b07cfd-cbbc-519b-9e1c-f9ca4327bc96",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-8v8x-cx79-35w7 affects version 7.5.1-tuxcare.7 of @react-router/express, and is fixed in 7.5.1-tuxcare.10."
      }
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:npm/%40react-router/express@7.5.1-tuxcare.7"
    }
  ]
}