{
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:0809c859-5b9b-4cf2-ba8c-9c63e57fa9e2",
  "version": 1,
  "metadata": {
    "timestamp": "2026-09-29T18:16:44.941428+00:00",
    "tools": {
      "components": [
        {
          "type": "application",
          "name": "yocto",
          "bom-ref": "23a57c51-e7cc-47d8-8d22-5fe37dde714b"
        }
      ]
    }
  },
  "vulnerabilities": [
    {
      "id": "CVE-2007-2768",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2007-2768"
      },
      "analysis": {
        "detail": "STATE: not-applicable-config\nJUSTIFICATION: This CVE is specific to OpenSSH with the pam opie which we don't build/use here.\n",
        "state": "not_affected",
        "firstIssued": "2026-09-29T18:12:38.739683+00:00",
        "lastUpdated": "2026-09-29T18:12:38.739683+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#3be5e824-c8af-48fd-ba54-33cef33d14b2"
        }
      ]
    },
    {
      "id": "CVE-2008-3844",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2008-3844"
      },
      "analysis": {
        "detail": "STATE: not-applicable-platform\nJUSTIFICATION: Only applies to some distributed RHEL binaries.\n",
        "state": "not_affected",
        "firstIssued": "2026-09-29T18:12:38.739776+00:00",
        "lastUpdated": "2026-09-29T18:12:38.739776+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#3be5e824-c8af-48fd-ba54-33cef33d14b2"
        }
      ]
    },
    {
      "id": "CVE-2013-4235",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2013-4235"
      },
      "analysis": {
        "detail": "STATE: upstream-wontfix\nJUSTIFICATION: Severity is low and marked as closed and won't fix.\n",
        "state": "not_affected",
        "firstIssued": "2026-09-29T18:11:46.980354+00:00",
        "lastUpdated": "2026-09-29T18:11:46.980354+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#030a7e5e-48dd-4975-b741-b56da2c08760"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#d70d2db3-81d7-4224-b58d-1e4290efc323"
        }
      ]
    },
    {
      "id": "CVE-2014-4715",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-4715"
      },
      "analysis": {
        "detail": "STATE: fixed-version\nJUSTIFICATION: Fixed in r118, which is larger than the current version.\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:39.923050+00:00",
        "lastUpdated": "2026-09-29T18:11:39.923050+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#2506c50a-b268-4e59-ad18-ee23958ecfa2"
        }
      ]
    },
    {
      "id": "CVE-2014-9278",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2014-9278"
      },
      "analysis": {
        "detail": "STATE: not-applicable-platform\nJUSTIFICATION: This CVE is specific to OpenSSH server, as used in Fedora and Red Hat Enterprise Linux 7 and when running in a Kerberos environment\n",
        "state": "not_affected",
        "firstIssued": "2026-09-29T18:12:38.739730+00:00",
        "lastUpdated": "2026-09-29T18:12:38.739730+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#3be5e824-c8af-48fd-ba54-33cef33d14b2"
        }
      ]
    },
    {
      "id": "CVE-2017-11548",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2017-11548"
      },
      "analysis": {
        "detail": "STATE: disputed\nJUSTIFICATION: the referenced vulnerability is not in libao\n",
        "state": "not_affected",
        "firstIssued": "2026-09-29T18:12:14.122145+00:00",
        "lastUpdated": "2026-09-29T18:12:14.122145+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#4a8681b4-e11a-49d9-80d5-20ecd3600a2c"
        }
      ]
    },
    {
      "id": "CVE-2017-7475",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2017-7475"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:50.547487+00:00",
        "lastUpdated": "2026-09-29T18:11:50.547487+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#cf91dad1-1c09-429a-9d5d-c802c586c72b"
        }
      ]
    },
    {
      "id": "CVE-2018-6557",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2018-6557"
      },
      "analysis": {
        "detail": "STATE: not-applicable-platform\nJUSTIFICATION: Ubuntu specific motd update code\n",
        "state": "not_affected",
        "firstIssued": "2026-09-29T18:11:46.950754+00:00",
        "lastUpdated": "2026-09-29T18:11:46.950754+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#03ae36fb-d386-4124-a85b-29c284fbeddb"
        }
      ]
    },
    {
      "id": "CVE-2019-1010022",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2019-1010022"
      },
      "analysis": {
        "detail": "STATE: disputed\nJUSTIFICATION: Upstream glibc maintainers dispute there is any issue and have no plans to address it further. this is being treated as a non-security bug and no real threat.\n",
        "state": "not_affected",
        "firstIssued": "2026-09-29T18:11:47.020185+00:00",
        "lastUpdated": "2026-09-29T18:11:47.020185+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#7ff1004e-7472-4c16-b4f1-6ea6b5f4171f"
        }
      ]
    },
    {
      "id": "CVE-2019-1010023",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2019-1010023"
      },
      "analysis": {
        "detail": "STATE: disputed\nJUSTIFICATION: Upstream glibc maintainers dispute there is any issue and have no plans to address it further. this is being treated as a non-security bug and no real threat.\n",
        "state": "not_affected",
        "firstIssued": "2026-09-29T18:11:47.020234+00:00",
        "lastUpdated": "2026-09-29T18:11:47.020234+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#7ff1004e-7472-4c16-b4f1-6ea6b5f4171f"
        }
      ]
    },
    {
      "id": "CVE-2019-1010024",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2019-1010024"
      },
      "analysis": {
        "detail": "STATE: disputed\nJUSTIFICATION: Upstream glibc maintainers dispute there is any issue and have no plans to address it further. this is being treated as a non-security bug and no real threat.\n",
        "state": "not_affected",
        "firstIssued": "2026-09-29T18:11:47.020272+00:00",
        "lastUpdated": "2026-09-29T18:11:47.020272+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#7ff1004e-7472-4c16-b4f1-6ea6b5f4171f"
        }
      ]
    },
    {
      "id": "CVE-2019-1010025",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2019-1010025"
      },
      "analysis": {
        "detail": "STATE: disputed\nJUSTIFICATION: Allows for ASLR bypass so can bypass some hardening, not an exploit in itself, may allow easier access for another. 'ASLR bypass itself is not a vulnerability.'\n",
        "state": "not_affected",
        "firstIssued": "2026-09-29T18:11:47.020106+00:00",
        "lastUpdated": "2026-09-29T18:11:47.020106+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#7ff1004e-7472-4c16-b4f1-6ea6b5f4171f"
        }
      ]
    },
    {
      "id": "CVE-2019-3815",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2019-3815"
      },
      "analysis": {
        "detail": "STATE: not-applicable-platform\nJUSTIFICATION: only applied to RHEL\n",
        "state": "not_affected",
        "firstIssued": "2026-09-29T18:11:45.927791+00:00",
        "lastUpdated": "2026-09-29T18:11:45.927791+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#c456e675-cc25-48db-96ea-ccc6754b74f6"
        }
      ]
    },
    {
      "id": "CVE-2020-12351",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2020-12351"
      },
      "analysis": {
        "detail": "STATE: cpe-incorrect\nJUSTIFICATION: This issue has kernel fixes rather than bluez fixes\n",
        "state": "not_affected",
        "firstIssued": "2026-09-29T18:12:14.206513+00:00",
        "lastUpdated": "2026-09-29T18:12:14.206513+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#f2252ba3-aec8-439c-bfa4-232ef0ac42e4"
        }
      ]
    },
    {
      "id": "CVE-2020-12352",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2020-12352"
      },
      "analysis": {
        "detail": "STATE: cpe-incorrect\nJUSTIFICATION: This issue has kernel fixes rather than bluez fixes\n",
        "state": "not_affected",
        "firstIssued": "2026-09-29T18:12:14.206576+00:00",
        "lastUpdated": "2026-09-29T18:12:14.206576+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#f2252ba3-aec8-439c-bfa4-232ef0ac42e4"
        }
      ]
    },
    {
      "id": "CVE-2020-24490",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2020-24490"
      },
      "analysis": {
        "detail": "STATE: cpe-incorrect\nJUSTIFICATION: This issue has kernel fixes rather than bluez fixes\n",
        "state": "not_affected",
        "firstIssued": "2026-09-29T18:12:14.206408+00:00",
        "lastUpdated": "2026-09-29T18:12:14.206408+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#f2252ba3-aec8-439c-bfa4-232ef0ac42e4"
        }
      ]
    },
    {
      "id": "CVE-2021-36133",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-36133"
      },
      "analysis": {
        "detail": "STATE: disputed\nJUSTIFICATION: devices shipped open for development purposes\n",
        "state": "not_affected",
        "firstIssued": "2026-09-29T18:12:04.612099+00:00",
        "lastUpdated": "2026-09-29T18:12:04.612099+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#04448c79-1a2f-43b7-b9ef-c87c5f58d8a7"
        }
      ]
    },
    {
      "id": "CVE-2022-28391",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-28391"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:43.707358+00:00",
        "lastUpdated": "2026-09-29T18:11:43.707358+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#614f4fb2-68a4-4ed3-a95e-5430b0b439f1"
        }
      ]
    },
    {
      "id": "CVE-2022-33065",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-33065"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:12:03.118548+00:00",
        "lastUpdated": "2026-09-29T18:12:03.118548+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#89e89a3c-2fee-46d3-87a6-e8cb75d4dc1d"
        }
      ]
    },
    {
      "id": "CVE-2023-37769",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-37769"
      },
      "analysis": {
        "detail": "STATE: not-applicable-config\nJUSTIFICATION: stress-test is an uninstalled test\n",
        "state": "not_affected",
        "firstIssued": "2026-09-29T18:11:50.149346+00:00",
        "lastUpdated": "2026-09-29T18:11:50.149346+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#5b829790-0860-4800-bd62-05f0a457fd3d"
        }
      ]
    },
    {
      "id": "CVE-2023-39810",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-39810"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:43.707423+00:00",
        "lastUpdated": "2026-09-29T18:11:43.707423+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#614f4fb2-68a4-4ed3-a95e-5430b0b439f1"
        }
      ]
    },
    {
      "id": "CVE-2023-4039",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-4039"
      },
      "analysis": {
        "detail": "STATE: fixed-version\nJUSTIFICATION: Fixed from version 14.0+\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:43.690767+00:00",
        "lastUpdated": "2026-09-29T18:11:43.690767+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#b6a2d05b-b608-4c08-8e88-7ef1d9973f1c"
        }
      ]
    },
    {
      "id": "CVE-2023-4039",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-4039"
      },
      "analysis": {
        "detail": "STATE: fixed-version\nJUSTIFICATION: Fixed from version 14.0+\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:47.010666+00:00",
        "lastUpdated": "2026-09-29T18:11:47.010666+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#84705e8e-c8da-4e4f-8983-da5831741908"
        }
      ]
    },
    {
      "id": "CVE-2023-51767",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2023-51767"
      },
      "analysis": {
        "detail": "STATE: upstream-wontfix\nJUSTIFICATION: It was demonstrated on modified sshd and does not exist in upstream openssh https://bugzilla.mindrot.org/show_bug.cgi?id=3656#c1.\n",
        "state": "not_affected",
        "firstIssued": "2026-09-29T18:12:38.739821+00:00",
        "lastUpdated": "2026-09-29T18:12:38.739821+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#3be5e824-c8af-48fd-ba54-33cef33d14b2"
        }
      ]
    },
    {
      "id": "CVE-2024-10041",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-10041"
      },
      "analysis": {
        "detail": "STATE: fixed-version\nJUSTIFICATION: fixed since v1.6.1\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:46.938489+00:00",
        "lastUpdated": "2026-09-29T18:11:46.938489+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#9d35d44c-ed95-4677-a69d-e70ee20384a9"
        }
      ]
    },
    {
      "id": "CVE-2024-11586",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-11586"
      },
      "analysis": {
        "detail": "STATE: not-applicable-platform\nJUSTIFICATION: specific to Ubuntu 16.04\n",
        "state": "not_affected",
        "firstIssued": "2026-09-29T18:12:14.262448+00:00",
        "lastUpdated": "2026-09-29T18:12:14.262448+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#72d1e76a-a497-4481-9d59-baee617d09dd"
        }
      ]
    },
    {
      "id": "CVE-2024-32928",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-32928"
      },
      "analysis": {
        "detail": "STATE: ignored\nJUSTIFICATION: CURLOPT_SSL_VERIFYPEER was disabled on google cloud services causing a potential man in the middle attack\n",
        "state": "not_affected",
        "firstIssued": "2026-09-29T18:12:04.572308+00:00",
        "lastUpdated": "2026-09-29T18:12:04.572308+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#c2512d8a-5fef-4cbf-b6c0-978af2abe810"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#7863760c-2658-46fa-b9e9-f1a701cc9b6d"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#61c45e3c-5a08-44bd-8cdc-8427a24adc5a"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#a3bafd4d-17c3-4960-b80e-67d60d0326df"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#51a76cb6-e8bc-41e8-a9c4-f8e38efd484e"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#aa3db2cf-316f-47c6-8008-c09a7e5fcf9f"
        }
      ]
    },
    {
      "id": "CVE-2024-47611",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-47611"
      },
      "analysis": {
        "detail": "STATE: fixed-version\nJUSTIFICATION: fixed in 5.6.3 and Windows-specific\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:39.954203+00:00",
        "lastUpdated": "2026-09-29T18:11:39.954203+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#826e2196-aa03-43ba-ab0f-e923ce008835"
        }
      ]
    },
    {
      "id": "CVE-2024-50612",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-50612"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:12:03.118647+00:00",
        "lastUpdated": "2026-09-29T18:12:03.118647+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#89e89a3c-2fee-46d3-87a6-e8cb75d4dc1d"
        }
      ]
    },
    {
      "id": "CVE-2024-5290",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-5290"
      },
      "analysis": {
        "detail": "STATE: not-applicable-platform\nJUSTIFICATION: this only affects Ubuntu and other platforms patching wpa-supplicant\n",
        "state": "not_affected",
        "firstIssued": "2026-09-29T18:12:08.217453+00:00",
        "lastUpdated": "2026-09-29T18:12:08.217453+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#71c2604b-f82a-4389-9f22-7136a26927cf"
        }
      ]
    },
    {
      "id": "CVE-2024-58251",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-58251"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:43.707595+00:00",
        "lastUpdated": "2026-09-29T18:11:43.707595+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#614f4fb2-68a4-4ed3-a95e-5430b0b439f1"
        }
      ]
    },
    {
      "id": "CVE-2024-8443",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2024-8443"
      },
      "analysis": {
        "detail": "STATE: fixed-version\nJUSTIFICATION: this is fixed since 0.26.0\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:12:04.684359+00:00",
        "lastUpdated": "2026-09-29T18:12:04.684359+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#d5ca1e20-b3e9-499a-8efc-7abbba46e969"
        }
      ]
    },
    {
      "id": "CVE-2025-15281",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-15281"
      },
      "analysis": {
        "detail": "STATE: cpe-stable-backport\nJUSTIFICATION: fix available in used git hash\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:47.020307+00:00",
        "lastUpdated": "2026-09-29T18:11:47.020307+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#7ff1004e-7472-4c16-b4f1-6ea6b5f4171f"
        }
      ]
    },
    {
      "id": "CVE-2025-24912",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-24912"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:12:08.217334+00:00",
        "lastUpdated": "2026-09-29T18:12:08.217334+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#71c2604b-f82a-4389-9f22-7136a26927cf"
        }
      ]
    },
    {
      "id": "CVE-2025-24912",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-24912"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:12:09.165117+00:00",
        "lastUpdated": "2026-09-29T18:12:09.165117+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#1264f91a-31a7-48c3-b968-92da316d5e8c"
        }
      ]
    },
    {
      "id": "CVE-2025-31115",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-31115"
      },
      "analysis": {
        "detail": "STATE: fixed-version\nJUSTIFICATION: fixed in 5.8.1\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:39.954249+00:00",
        "lastUpdated": "2026-09-29T18:11:39.954249+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#826e2196-aa03-43ba-ab0f-e923ce008835"
        }
      ]
    },
    {
      "id": "CVE-2025-46394",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-46394"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:43.707466+00:00",
        "lastUpdated": "2026-09-29T18:11:43.707466+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#614f4fb2-68a4-4ed3-a95e-5430b0b439f1"
        }
      ]
    },
    {
      "id": "CVE-2025-5222",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-5222"
      },
      "analysis": {
        "detail": "STATE: fixed-version\nJUSTIFICATION: fixed in version 77-1\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:52.857791+00:00",
        "lastUpdated": "2026-09-29T18:11:52.857791+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#615ab167-e48e-46a4-bc4d-60670de4de02"
        }
      ]
    },
    {
      "id": "CVE-2025-56226",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-56226"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:12:03.118708+00:00",
        "lastUpdated": "2026-09-29T18:12:03.118708+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#89e89a3c-2fee-46d3-87a6-e8cb75d4dc1d"
        }
      ]
    },
    {
      "id": "CVE-2025-58058",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-58058"
      },
      "analysis": {
        "detail": "STATE: cpe-incorrect\nJUSTIFICATION: this is specific to the Go xz module\n",
        "state": "not_affected",
        "firstIssued": "2026-09-29T18:11:39.954282+00:00",
        "lastUpdated": "2026-09-29T18:11:39.954282+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#826e2196-aa03-43ba-ab0f-e923ce008835"
        }
      ]
    },
    {
      "id": "CVE-2025-60876",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-60876"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:43.707500+00:00",
        "lastUpdated": "2026-09-29T18:11:43.707500+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#614f4fb2-68a4-4ed3-a95e-5430b0b439f1"
        }
      ]
    },
    {
      "id": "CVE-2025-6170",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2025-6170"
      },
      "analysis": {
        "detail": "STATE: fixed-version\nJUSTIFICATION: fixed in version 2.14.5\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:36.391678+00:00",
        "lastUpdated": "2026-09-29T18:11:36.391678+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#773a641e-e9d3-4dab-86fd-4db6ddaca72d"
        }
      ]
    },
    {
      "id": "CVE-2026-0861",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-0861"
      },
      "analysis": {
        "detail": "STATE: cpe-stable-backport\nJUSTIFICATION: fix available in used git hash\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:47.020342+00:00",
        "lastUpdated": "2026-09-29T18:11:47.020342+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#7ff1004e-7472-4c16-b4f1-6ea6b5f4171f"
        }
      ]
    },
    {
      "id": "CVE-2026-0915",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-0915"
      },
      "analysis": {
        "detail": "STATE: cpe-stable-backport\nJUSTIFICATION: fix available in used git hash\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:47.020372+00:00",
        "lastUpdated": "2026-09-29T18:11:47.020372+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#7ff1004e-7472-4c16-b4f1-6ea6b5f4171f"
        }
      ]
    },
    {
      "id": "CVE-2026-11352",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-11352"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:12:04.572192+00:00",
        "lastUpdated": "2026-09-29T18:12:04.572192+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#c2512d8a-5fef-4cbf-b6c0-978af2abe810"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#7863760c-2658-46fa-b9e9-f1a701cc9b6d"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#61c45e3c-5a08-44bd-8cdc-8427a24adc5a"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#a3bafd4d-17c3-4960-b80e-67d60d0326df"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#51a76cb6-e8bc-41e8-a9c4-f8e38efd484e"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#aa3db2cf-316f-47c6-8008-c09a7e5fcf9f"
        }
      ]
    },
    {
      "id": "CVE-2026-11586",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-11586"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:12:04.572252+00:00",
        "lastUpdated": "2026-09-29T18:12:04.572252+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#c2512d8a-5fef-4cbf-b6c0-978af2abe810"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#7863760c-2658-46fa-b9e9-f1a701cc9b6d"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#61c45e3c-5a08-44bd-8cdc-8427a24adc5a"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#a3bafd4d-17c3-4960-b80e-67d60d0326df"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#51a76cb6-e8bc-41e8-a9c4-f8e38efd484e"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#aa3db2cf-316f-47c6-8008-c09a7e5fcf9f"
        }
      ]
    },
    {
      "id": "CVE-2026-11979",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-11979"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:36.391600+00:00",
        "lastUpdated": "2026-09-29T18:11:36.391600+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#773a641e-e9d3-4dab-86fd-4db6ddaca72d"
        }
      ]
    },
    {
      "id": "CVE-2026-12064",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-12064"
      },
      "analysis": {
        "detail": "STATE: not-applicable-config\nJUSTIFICATION: SCP/SFTP support is not enabled in PACKAGECONFIG\n",
        "state": "not_affected",
        "firstIssued": "2026-09-29T18:12:04.572509+00:00",
        "lastUpdated": "2026-09-29T18:12:04.572509+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#c2512d8a-5fef-4cbf-b6c0-978af2abe810"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#7863760c-2658-46fa-b9e9-f1a701cc9b6d"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#61c45e3c-5a08-44bd-8cdc-8427a24adc5a"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#a3bafd4d-17c3-4960-b80e-67d60d0326df"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#51a76cb6-e8bc-41e8-a9c4-f8e38efd484e"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#aa3db2cf-316f-47c6-8008-c09a7e5fcf9f"
        }
      ]
    },
    {
      "id": "CVE-2026-13595",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-13595"
      },
      "analysis": {
        "detail": "STATE: cpe-stable-backport\nJUSTIFICATION: Fixed from version >=2.41.5\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:45.689722+00:00",
        "lastUpdated": "2026-09-29T18:11:45.689722+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#2ef4fea1-7b34-43c3-979d-bf25ae742cdc"
        }
      ]
    },
    {
      "id": "CVE-2026-13595",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-13595"
      },
      "analysis": {
        "detail": "STATE: cpe-stable-backport\nJUSTIFICATION: Fixed from version >=2.41.5\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:40.227311+00:00",
        "lastUpdated": "2026-09-29T18:11:40.227311+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#0a3c28eb-0afc-45ed-8961-45c708dce21c"
        }
      ]
    },
    {
      "id": "CVE-2026-23679",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-23679"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:57.996324+00:00",
        "lastUpdated": "2026-09-29T18:11:57.996324+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#3a07c74a-5220-4d9a-a783-706612fadcf2"
        }
      ]
    },
    {
      "id": "CVE-2026-25068",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-25068"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:12:03.235405+00:00",
        "lastUpdated": "2026-09-29T18:12:03.235405+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#e6b9d08a-d411-4055-9eb0-a893a12ccc25"
        }
      ]
    },
    {
      "id": "CVE-2026-26157",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-26157"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:43.707565+00:00",
        "lastUpdated": "2026-09-29T18:11:43.707565+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#614f4fb2-68a4-4ed3-a95e-5430b0b439f1"
        }
      ]
    },
    {
      "id": "CVE-2026-26158",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-26158"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:43.707533+00:00",
        "lastUpdated": "2026-09-29T18:11:43.707533+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#614f4fb2-68a4-4ed3-a95e-5430b0b439f1"
        }
      ]
    },
    {
      "id": "CVE-2026-29004",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-29004"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:43.707625+00:00",
        "lastUpdated": "2026-09-29T18:11:43.707625+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#614f4fb2-68a4-4ed3-a95e-5430b0b439f1"
        }
      ]
    },
    {
      "id": "CVE-2026-3184",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-3184"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:45.689664+00:00",
        "lastUpdated": "2026-09-29T18:11:45.689664+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#2ef4fea1-7b34-43c3-979d-bf25ae742cdc"
        }
      ]
    },
    {
      "id": "CVE-2026-3184",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-3184"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:40.227245+00:00",
        "lastUpdated": "2026-09-29T18:11:40.227245+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#0a3c28eb-0afc-45ed-8961-45c708dce21c"
        }
      ]
    },
    {
      "id": "CVE-2026-34743",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-34743"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:39.954142+00:00",
        "lastUpdated": "2026-09-29T18:11:39.954142+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#826e2196-aa03-43ba-ab0f-e923ce008835"
        }
      ]
    },
    {
      "id": "CVE-2026-34757",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-34757"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:50.115757+00:00",
        "lastUpdated": "2026-09-29T18:11:50.115757+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#38f0ff78-de4c-4cf3-ba5e-56c707adc63c"
        }
      ]
    },
    {
      "id": "CVE-2026-3497",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-3497"
      },
      "analysis": {
        "detail": "STATE: not-applicable-platform\nJUSTIFICATION: Only affects GSSAPI Key Exchange patches used by some Linux distributions and does not exist in upstream openssh.\n",
        "state": "not_affected",
        "firstIssued": "2026-09-29T18:12:38.739867+00:00",
        "lastUpdated": "2026-09-29T18:12:38.739867+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#3be5e824-c8af-48fd-ba54-33cef33d14b2"
        }
      ]
    },
    {
      "id": "CVE-2026-37555",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-37555"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:12:03.118761+00:00",
        "lastUpdated": "2026-09-29T18:12:03.118761+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#89e89a3c-2fee-46d3-87a6-e8cb75d4dc1d"
        }
      ]
    },
    {
      "id": "CVE-2026-38754",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-38754"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:43.707655+00:00",
        "lastUpdated": "2026-09-29T18:11:43.707655+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#614f4fb2-68a4-4ed3-a95e-5430b0b439f1"
        }
      ]
    },
    {
      "id": "CVE-2026-40223",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-40223"
      },
      "analysis": {
        "detail": "STATE: fixed-version\nJUSTIFICATION: fixed in 259.2\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:45.927871+00:00",
        "lastUpdated": "2026-09-29T18:11:45.927871+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#c456e675-cc25-48db-96ea-ccc6754b74f6"
        }
      ]
    },
    {
      "id": "CVE-2026-40224",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-40224"
      },
      "analysis": {
        "detail": "STATE: fixed-version\nJUSTIFICATION: fixed in 259.3\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:45.927925+00:00",
        "lastUpdated": "2026-09-29T18:11:45.927925+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#c456e675-cc25-48db-96ea-ccc6754b74f6"
        }
      ]
    },
    {
      "id": "CVE-2026-40225",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-40225"
      },
      "analysis": {
        "detail": "STATE: fixed-version\nJUSTIFICATION: fixed in 259.5\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:45.927979+00:00",
        "lastUpdated": "2026-09-29T18:11:45.927979+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#c456e675-cc25-48db-96ea-ccc6754b74f6"
        }
      ]
    },
    {
      "id": "CVE-2026-40226",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-40226"
      },
      "analysis": {
        "detail": "STATE: fixed-version\nJUSTIFICATION: fixed in 259.4\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:45.928061+00:00",
        "lastUpdated": "2026-09-29T18:11:45.928061+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#c456e675-cc25-48db-96ea-ccc6754b74f6"
        }
      ]
    },
    {
      "id": "CVE-2026-4046",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-4046"
      },
      "analysis": {
        "detail": "STATE: cpe-stable-backport\nJUSTIFICATION: fix available in used git hash\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:47.020460+00:00",
        "lastUpdated": "2026-09-29T18:11:47.020460+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#7ff1004e-7472-4c16-b4f1-6ea6b5f4171f"
        }
      ]
    },
    {
      "id": "CVE-2026-40930",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-40930"
      },
      "analysis": {
        "detail": "STATE: cpe-incorrect\nJUSTIFICATION: Yocto never included affected libpng-apng patch\n",
        "state": "not_affected",
        "firstIssued": "2026-09-29T18:11:50.115824+00:00",
        "lastUpdated": "2026-09-29T18:11:50.115824+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#38f0ff78-de4c-4cf3-ba5e-56c707adc63c"
        }
      ]
    },
    {
      "id": "CVE-2026-41080",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-41080"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:37.298390+00:00",
        "lastUpdated": "2026-09-29T18:11:37.298390+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#8ce23a12-8391-4d44-85ec-44e40430316b"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#b4758c11-1241-4ec4-b8bc-a5d44ef2dbed"
        }
      ]
    },
    {
      "id": "CVE-2026-42250",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-42250"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:39.966693+00:00",
        "lastUpdated": "2026-09-29T18:11:39.966693+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#37d017ef-4215-481d-8823-6b6c45cd1055"
        }
      ]
    },
    {
      "id": "CVE-2026-4437",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-4437"
      },
      "analysis": {
        "detail": "STATE: cpe-stable-backport\nJUSTIFICATION: fix available in used git hash\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:47.020403+00:00",
        "lastUpdated": "2026-09-29T18:11:47.020403+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#7ff1004e-7472-4c16-b4f1-6ea6b5f4171f"
        }
      ]
    },
    {
      "id": "CVE-2026-4438",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-4438"
      },
      "analysis": {
        "detail": "STATE: cpe-stable-backport\nJUSTIFICATION: fix available in used git hash\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:47.020431+00:00",
        "lastUpdated": "2026-09-29T18:11:47.020431+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#7ff1004e-7472-4c16-b4f1-6ea6b5f4171f"
        }
      ]
    },
    {
      "id": "CVE-2026-45186",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-45186"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:37.298330+00:00",
        "lastUpdated": "2026-09-29T18:11:37.298330+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#8ce23a12-8391-4d44-85ec-44e40430316b"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#b4758c11-1241-4ec4-b8bc-a5d44ef2dbed"
        }
      ]
    },
    {
      "id": "CVE-2026-47104",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-47104"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:57.996257+00:00",
        "lastUpdated": "2026-09-29T18:11:57.996257+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#3a07c74a-5220-4d9a-a783-706612fadcf2"
        }
      ]
    },
    {
      "id": "CVE-2026-4873",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-4873"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:12:04.571934+00:00",
        "lastUpdated": "2026-09-29T18:12:04.571934+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#c2512d8a-5fef-4cbf-b6c0-978af2abe810"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#7863760c-2658-46fa-b9e9-f1a701cc9b6d"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#61c45e3c-5a08-44bd-8cdc-8427a24adc5a"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#a3bafd4d-17c3-4960-b80e-67d60d0326df"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#51a76cb6-e8bc-41e8-a9c4-f8e38efd484e"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#aa3db2cf-316f-47c6-8008-c09a7e5fcf9f"
        }
      ]
    },
    {
      "id": "CVE-2026-4878",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-4878"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:39.864466+00:00",
        "lastUpdated": "2026-09-29T18:11:39.864466+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#4e40aac2-feea-4f88-bc7b-b7d61dd4f492"
        }
      ]
    },
    {
      "id": "CVE-2026-5435",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-5435"
      },
      "analysis": {
        "detail": "STATE: cpe-stable-backport\nJUSTIFICATION: fix available in used git hash\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:47.020489+00:00",
        "lastUpdated": "2026-09-29T18:11:47.020489+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#7ff1004e-7472-4c16-b4f1-6ea6b5f4171f"
        }
      ]
    },
    {
      "id": "CVE-2026-5450",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-5450"
      },
      "analysis": {
        "detail": "STATE: cpe-stable-backport\nJUSTIFICATION: fix available in used git hash\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:47.020519+00:00",
        "lastUpdated": "2026-09-29T18:11:47.020519+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#7ff1004e-7472-4c16-b4f1-6ea6b5f4171f"
        }
      ]
    },
    {
      "id": "CVE-2026-5545",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-5545"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:12:04.571699+00:00",
        "lastUpdated": "2026-09-29T18:12:04.571699+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#c2512d8a-5fef-4cbf-b6c0-978af2abe810"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#7863760c-2658-46fa-b9e9-f1a701cc9b6d"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#61c45e3c-5a08-44bd-8cdc-8427a24adc5a"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#a3bafd4d-17c3-4960-b80e-67d60d0326df"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#51a76cb6-e8bc-41e8-a9c4-f8e38efd484e"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#aa3db2cf-316f-47c6-8008-c09a7e5fcf9f"
        }
      ]
    },
    {
      "id": "CVE-2026-55653",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-55653"
      },
      "analysis": {
        "detail": "STATE: not-applicable-platform\nJUSTIFICATION: Only applies to RHEL FIPS patches.\n",
        "state": "not_affected",
        "firstIssued": "2026-09-29T18:12:38.739915+00:00",
        "lastUpdated": "2026-09-29T18:12:38.739915+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#3be5e824-c8af-48fd-ba54-33cef33d14b2"
        }
      ]
    },
    {
      "id": "CVE-2026-56109",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-56109"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:12:03.235497+00:00",
        "lastUpdated": "2026-09-29T18:12:03.235497+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#e6b9d08a-d411-4055-9eb0-a893a12ccc25"
        }
      ]
    },
    {
      "id": "CVE-2026-56132",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-56132"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:37.298670+00:00",
        "lastUpdated": "2026-09-29T18:11:37.298670+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#8ce23a12-8391-4d44-85ec-44e40430316b"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#b4758c11-1241-4ec4-b8bc-a5d44ef2dbed"
        }
      ]
    },
    {
      "id": "CVE-2026-56403",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-56403"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:37.298425+00:00",
        "lastUpdated": "2026-09-29T18:11:37.298425+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#8ce23a12-8391-4d44-85ec-44e40430316b"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#b4758c11-1241-4ec4-b8bc-a5d44ef2dbed"
        }
      ]
    },
    {
      "id": "CVE-2026-56404",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-56404"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:37.298484+00:00",
        "lastUpdated": "2026-09-29T18:11:37.298484+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#8ce23a12-8391-4d44-85ec-44e40430316b"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#b4758c11-1241-4ec4-b8bc-a5d44ef2dbed"
        }
      ]
    },
    {
      "id": "CVE-2026-56405",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-56405"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:37.298511+00:00",
        "lastUpdated": "2026-09-29T18:11:37.298511+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#8ce23a12-8391-4d44-85ec-44e40430316b"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#b4758c11-1241-4ec4-b8bc-a5d44ef2dbed"
        }
      ]
    },
    {
      "id": "CVE-2026-56406",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-56406"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:37.298566+00:00",
        "lastUpdated": "2026-09-29T18:11:37.298566+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#8ce23a12-8391-4d44-85ec-44e40430316b"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#b4758c11-1241-4ec4-b8bc-a5d44ef2dbed"
        }
      ]
    },
    {
      "id": "CVE-2026-56407",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-56407"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:37.298645+00:00",
        "lastUpdated": "2026-09-29T18:11:37.298645+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#8ce23a12-8391-4d44-85ec-44e40430316b"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#b4758c11-1241-4ec4-b8bc-a5d44ef2dbed"
        }
      ]
    },
    {
      "id": "CVE-2026-56408",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-56408"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:37.298456+00:00",
        "lastUpdated": "2026-09-29T18:11:37.298456+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#8ce23a12-8391-4d44-85ec-44e40430316b"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#b4758c11-1241-4ec4-b8bc-a5d44ef2dbed"
        }
      ]
    },
    {
      "id": "CVE-2026-56409",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-56409"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:37.298593+00:00",
        "lastUpdated": "2026-09-29T18:11:37.298593+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#8ce23a12-8391-4d44-85ec-44e40430316b"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#b4758c11-1241-4ec4-b8bc-a5d44ef2dbed"
        }
      ]
    },
    {
      "id": "CVE-2026-56410",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-56410"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:37.298538+00:00",
        "lastUpdated": "2026-09-29T18:11:37.298538+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#8ce23a12-8391-4d44-85ec-44e40430316b"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#b4758c11-1241-4ec4-b8bc-a5d44ef2dbed"
        }
      ]
    },
    {
      "id": "CVE-2026-56411",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-56411"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:37.298619+00:00",
        "lastUpdated": "2026-09-29T18:11:37.298619+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#8ce23a12-8391-4d44-85ec-44e40430316b"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#b4758c11-1241-4ec4-b8bc-a5d44ef2dbed"
        }
      ]
    },
    {
      "id": "CVE-2026-5773",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-5773"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:12:04.571632+00:00",
        "lastUpdated": "2026-09-29T18:12:04.571632+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#c2512d8a-5fef-4cbf-b6c0-978af2abe810"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#7863760c-2658-46fa-b9e9-f1a701cc9b6d"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#61c45e3c-5a08-44bd-8cdc-8427a24adc5a"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#a3bafd4d-17c3-4960-b80e-67d60d0326df"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#51a76cb6-e8bc-41e8-a9c4-f8e38efd484e"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#aa3db2cf-316f-47c6-8008-c09a7e5fcf9f"
        }
      ]
    },
    {
      "id": "CVE-2026-58016",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-58016"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:39.264374+00:00",
        "lastUpdated": "2026-09-29T18:11:39.264374+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#38349f9e-abc1-4728-a212-5292e7666f77"
        }
      ]
    },
    {
      "id": "CVE-2026-58055",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-58055"
      },
      "analysis": {
        "detail": "STATE: not-applicable-config\nJUSTIFICATION: nghttpx proxy is not built in the default nghttp2 configuration\n",
        "state": "not_affected",
        "firstIssued": "2026-09-29T18:11:53.188738+00:00",
        "lastUpdated": "2026-09-29T18:11:53.188738+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#275c14d3-3080-4cc5-9fb8-55f754c38c5f"
        }
      ]
    },
    {
      "id": "CVE-2026-58374",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-58374"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:12:08.217410+00:00",
        "lastUpdated": "2026-09-29T18:12:08.217410+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#71c2604b-f82a-4389-9f22-7136a26927cf"
        }
      ]
    },
    {
      "id": "CVE-2026-58374",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-58374"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:12:09.165199+00:00",
        "lastUpdated": "2026-09-29T18:12:09.165199+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#1264f91a-31a7-48c3-b968-92da316d5e8c"
        }
      ]
    },
    {
      "id": "CVE-2026-5928",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-5928"
      },
      "analysis": {
        "detail": "STATE: cpe-stable-backport\nJUSTIFICATION: fix available in used git hash\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:47.020552+00:00",
        "lastUpdated": "2026-09-29T18:11:47.020552+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#7ff1004e-7472-4c16-b4f1-6ea6b5f4171f"
        }
      ]
    },
    {
      "id": "CVE-2026-59995",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-59995"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:12:38.739484+00:00",
        "lastUpdated": "2026-09-29T18:12:38.739484+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#3be5e824-c8af-48fd-ba54-33cef33d14b2"
        }
      ]
    },
    {
      "id": "CVE-2026-59996",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-59996"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:12:38.739436+00:00",
        "lastUpdated": "2026-09-29T18:12:38.739436+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#3be5e824-c8af-48fd-ba54-33cef33d14b2"
        }
      ]
    },
    {
      "id": "CVE-2026-59997",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-59997"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:12:38.739385+00:00",
        "lastUpdated": "2026-09-29T18:12:38.739385+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#3be5e824-c8af-48fd-ba54-33cef33d14b2"
        }
      ]
    },
    {
      "id": "CVE-2026-59998",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-59998"
      },
      "analysis": {
        "detail": "STATE: not-applicable-config\nJUSTIFICATION: GSSAPI/Kerberos support is disabled in the default OpenSSH configuration\n",
        "state": "not_affected",
        "firstIssued": "2026-09-29T18:12:38.739959+00:00",
        "lastUpdated": "2026-09-29T18:12:38.739959+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#3be5e824-c8af-48fd-ba54-33cef33d14b2"
        }
      ]
    },
    {
      "id": "CVE-2026-59999",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-59999"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:12:38.739304+00:00",
        "lastUpdated": "2026-09-29T18:12:38.739304+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#3be5e824-c8af-48fd-ba54-33cef33d14b2"
        }
      ]
    },
    {
      "id": "CVE-2026-60000",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-60000"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:12:38.739635+00:00",
        "lastUpdated": "2026-09-29T18:12:38.739635+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#3be5e824-c8af-48fd-ba54-33cef33d14b2"
        }
      ]
    },
    {
      "id": "CVE-2026-60001",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-60001"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:12:38.739532+00:00",
        "lastUpdated": "2026-09-29T18:12:38.739532+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#3be5e824-c8af-48fd-ba54-33cef33d14b2"
        }
      ]
    },
    {
      "id": "CVE-2026-60002",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-60002"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:12:38.739586+00:00",
        "lastUpdated": "2026-09-29T18:12:38.739586+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#3be5e824-c8af-48fd-ba54-33cef33d14b2"
        }
      ]
    },
    {
      "id": "CVE-2026-6238",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-6238"
      },
      "analysis": {
        "detail": "STATE: cpe-stable-backport\nJUSTIFICATION: fix available in used git hash\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:47.020581+00:00",
        "lastUpdated": "2026-09-29T18:11:47.020581+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#7ff1004e-7472-4c16-b4f1-6ea6b5f4171f"
        }
      ]
    },
    {
      "id": "CVE-2026-6253",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-6253"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:12:04.571761+00:00",
        "lastUpdated": "2026-09-29T18:12:04.571761+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#c2512d8a-5fef-4cbf-b6c0-978af2abe810"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#7863760c-2658-46fa-b9e9-f1a701cc9b6d"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#61c45e3c-5a08-44bd-8cdc-8427a24adc5a"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#a3bafd4d-17c3-4960-b80e-67d60d0326df"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#51a76cb6-e8bc-41e8-a9c4-f8e38efd484e"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#aa3db2cf-316f-47c6-8008-c09a7e5fcf9f"
        }
      ]
    },
    {
      "id": "CVE-2026-6276",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-6276"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:12:04.571531+00:00",
        "lastUpdated": "2026-09-29T18:12:04.571531+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#c2512d8a-5fef-4cbf-b6c0-978af2abe810"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#7863760c-2658-46fa-b9e9-f1a701cc9b6d"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#61c45e3c-5a08-44bd-8cdc-8427a24adc5a"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#a3bafd4d-17c3-4960-b80e-67d60d0326df"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#51a76cb6-e8bc-41e8-a9c4-f8e38efd484e"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#aa3db2cf-316f-47c6-8008-c09a7e5fcf9f"
        }
      ]
    },
    {
      "id": "CVE-2026-6429",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-6429"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:12:04.571817+00:00",
        "lastUpdated": "2026-09-29T18:12:04.571817+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#c2512d8a-5fef-4cbf-b6c0-978af2abe810"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#7863760c-2658-46fa-b9e9-f1a701cc9b6d"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#61c45e3c-5a08-44bd-8cdc-8427a24adc5a"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#a3bafd4d-17c3-4960-b80e-67d60d0326df"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#51a76cb6-e8bc-41e8-a9c4-f8e38efd484e"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#aa3db2cf-316f-47c6-8008-c09a7e5fcf9f"
        }
      ]
    },
    {
      "id": "CVE-2026-6732",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-6732"
      },
      "analysis": {
        "detail": "STATE: fixed-version\nJUSTIFICATION: fixed in version 2.15.3\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:36.391715+00:00",
        "lastUpdated": "2026-09-29T18:11:36.391715+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#773a641e-e9d3-4dab-86fd-4db6ddaca72d"
        }
      ]
    },
    {
      "id": "CVE-2026-6791",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-6791"
      },
      "analysis": {
        "detail": "STATE: cpe-stable-backport\nJUSTIFICATION: fix available in used git hash\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:11:47.020609+00:00",
        "lastUpdated": "2026-09-29T18:11:47.020609+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#7ff1004e-7472-4c16-b4f1-6ea6b5f4171f"
        }
      ]
    },
    {
      "id": "CVE-2026-7168",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-7168"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:12:04.571875+00:00",
        "lastUpdated": "2026-09-29T18:12:04.571875+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#c2512d8a-5fef-4cbf-b6c0-978af2abe810"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#7863760c-2658-46fa-b9e9-f1a701cc9b6d"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#61c45e3c-5a08-44bd-8cdc-8427a24adc5a"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#a3bafd4d-17c3-4960-b80e-67d60d0326df"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#51a76cb6-e8bc-41e8-a9c4-f8e38efd484e"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#aa3db2cf-316f-47c6-8008-c09a7e5fcf9f"
        }
      ]
    },
    {
      "id": "CVE-2026-72522",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-72522"
      },
      "analysis": {
        "detail": "STATE: not-applicable-config\nJUSTIFICATION: Needs Expat compiled with 16bit character support , Issue only affects firefox/Windows. EXPAT_CHAR_TYPE:STRING=char is for Yocto builds\n",
        "state": "not_affected",
        "firstIssued": "2026-09-29T18:11:37.298696+00:00",
        "lastUpdated": "2026-09-29T18:11:37.298696+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#8ce23a12-8391-4d44-85ec-44e40430316b"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#b4758c11-1241-4ec4-b8bc-a5d44ef2dbed"
        }
      ]
    },
    {
      "id": "CVE-2026-8286",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-8286"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:12:04.572002+00:00",
        "lastUpdated": "2026-09-29T18:12:04.572002+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#c2512d8a-5fef-4cbf-b6c0-978af2abe810"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#7863760c-2658-46fa-b9e9-f1a701cc9b6d"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#61c45e3c-5a08-44bd-8cdc-8427a24adc5a"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#a3bafd4d-17c3-4960-b80e-67d60d0326df"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#51a76cb6-e8bc-41e8-a9c4-f8e38efd484e"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#aa3db2cf-316f-47c6-8008-c09a7e5fcf9f"
        }
      ]
    },
    {
      "id": "CVE-2026-8924",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-8924"
      },
      "analysis": {
        "detail": "STATE: not-applicable-config\nJUSTIFICATION: public suffix list support is disabled by the recipe with --without-libpsl\n",
        "state": "not_affected",
        "firstIssued": "2026-09-29T18:12:04.572364+00:00",
        "lastUpdated": "2026-09-29T18:12:04.572364+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#c2512d8a-5fef-4cbf-b6c0-978af2abe810"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#7863760c-2658-46fa-b9e9-f1a701cc9b6d"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#61c45e3c-5a08-44bd-8cdc-8427a24adc5a"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#a3bafd4d-17c3-4960-b80e-67d60d0326df"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#51a76cb6-e8bc-41e8-a9c4-f8e38efd484e"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#aa3db2cf-316f-47c6-8008-c09a7e5fcf9f"
        }
      ]
    },
    {
      "id": "CVE-2026-8927",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-8927"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:12:04.572062+00:00",
        "lastUpdated": "2026-09-29T18:12:04.572062+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#c2512d8a-5fef-4cbf-b6c0-978af2abe810"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#7863760c-2658-46fa-b9e9-f1a701cc9b6d"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#61c45e3c-5a08-44bd-8cdc-8427a24adc5a"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#a3bafd4d-17c3-4960-b80e-67d60d0326df"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#51a76cb6-e8bc-41e8-a9c4-f8e38efd484e"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#aa3db2cf-316f-47c6-8008-c09a7e5fcf9f"
        }
      ]
    },
    {
      "id": "CVE-2026-8932",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-8932"
      },
      "analysis": {
        "detail": "STATE: fix-file-included\n",
        "state": "resolved",
        "firstIssued": "2026-09-29T18:12:04.572123+00:00",
        "lastUpdated": "2026-09-29T18:12:04.572123+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#c2512d8a-5fef-4cbf-b6c0-978af2abe810"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#7863760c-2658-46fa-b9e9-f1a701cc9b6d"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#61c45e3c-5a08-44bd-8cdc-8427a24adc5a"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#a3bafd4d-17c3-4960-b80e-67d60d0326df"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#51a76cb6-e8bc-41e8-a9c4-f8e38efd484e"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#aa3db2cf-316f-47c6-8008-c09a7e5fcf9f"
        }
      ]
    },
    {
      "id": "CVE-2026-9547",
      "source": {
        "name": "NVD",
        "url": "https://nvd.nist.gov/vuln/detail/CVE-2026-9547"
      },
      "analysis": {
        "detail": "STATE: not-applicable-config\nJUSTIFICATION: vulnerable libssh backend is not enabled by the recipe\n",
        "state": "not_affected",
        "firstIssued": "2026-09-29T18:12:04.572461+00:00",
        "lastUpdated": "2026-09-29T18:12:04.572461+00:00"
      },
      "affects": [
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#c2512d8a-5fef-4cbf-b6c0-978af2abe810"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#7863760c-2658-46fa-b9e9-f1a701cc9b6d"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#61c45e3c-5a08-44bd-8cdc-8427a24adc5a"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#a3bafd4d-17c3-4960-b80e-67d60d0326df"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#51a76cb6-e8bc-41e8-a9c4-f8e38efd484e"
        },
        {
          "ref": "urn:cdx:06c74dc3-7dbf-4188-bd7b-95e56e7230c6/1#aa3db2cf-316f-47c6-8008-c09a7e5fcf9f"
        }
      ]
    }
  ]
}