{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:f6c3e19a-34af-5a65-bb12-e7d47290f7f7",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@9.0.100-tuxcare.6",
      "type": "library",
      "group": "org.apache.tomcat.embed",
      "name": "tomcat-embed-jasper",
      "version": "9.0.100-tuxcare.6",
      "purl": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@9.0.100-tuxcare.6"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:141e862c-2a21-5ff6-9a2a-7925a4d8647f",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11996 affects version 9.0.100-tuxcare.6 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@9.0.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fb23de5f-e5cf-5a8f-89af-4270f73fb4b9",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 9.0.100-tuxcare.6 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@9.0.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3fe4ba38-41b9-521a-b1dc-e679e6c15acd",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13943 affects version 9.0.100-tuxcare.6 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@9.0.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:07e39d70-d928-5e1c-ad38-15ad0c2a5e4b",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9484 affects version 9.0.100-tuxcare.6 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@9.0.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:154fb704-68f5-5dfe-9059-7594642b51b8",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 9.0.100-tuxcare.6 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@9.0.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cc7c8e9b-b0bb-5004-9356-2318fbbb4fd2",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-42340 affects version 9.0.100-tuxcare.6 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@9.0.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ec45a7d2-2cc4-5144-b337-5ef9434b18c7",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-34305 affects version 9.0.100-tuxcare.6 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@9.0.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ebb2113f-157b-5542-a5cf-cea7fa366905",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-45143 affects version 9.0.100-tuxcare.6 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@9.0.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bf646ef8-0e3e-554a-a2dd-2f802f9a45d0",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-23672 affects version 9.0.100-tuxcare.6 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@9.0.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8df7ceb7-563d-5c03-8d71-a499bd17404d",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-24549 affects version 9.0.100-tuxcare.6 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@9.0.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cbcfedb9-d7ca-5611-b7b4-3656fbfbb17c",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-52316 affects version 9.0.100-tuxcare.6 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@9.0.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:34a392eb-82ba-54f3-9d7f-49decced2f87",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31650 is fixed in version 9.0.100-tuxcare.6 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@9.0.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2d65a06c-d065-5f3e-a8e6-92ee2bfe5245",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31651 is fixed in version 9.0.100-tuxcare.6 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@9.0.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7cb1887a-f01c-59a1-9781-4685121c66f7",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-46701 is fixed in version 9.0.100-tuxcare.6 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@9.0.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6b49c772-63f2-52ae-8315-b6ed547ac5e0",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 9.0.100-tuxcare.6 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@9.0.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:49beb481-f3eb-504a-89f2-7823d752fcee",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48989 is fixed in version 9.0.100-tuxcare.6 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@9.0.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:86966615-c07c-5e5d-a617-99f4730ed7c6",
      "id": "CVE-2025-49124",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49124 is fixed in version 9.0.100-tuxcare.6 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@9.0.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4f3658ba-5cf8-5efa-ab38-3bc4abb159c9",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 9.0.100-tuxcare.6 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@9.0.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:55dff027-7e0b-50d2-93cd-071a8e259568",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52434 is fixed in version 9.0.100-tuxcare.6 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@9.0.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cafcf31c-f66a-5e8f-83b3-b2f6fb94be2b",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52520 is fixed in version 9.0.100-tuxcare.6 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@9.0.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4a683fb2-75cf-56da-bb45-20c8c8d0dba4",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-53506 is fixed in version 9.0.100-tuxcare.6 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@9.0.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9bf537a5-e75d-5b58-9979-ffe67d005daa",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 9.0.100-tuxcare.6 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@9.0.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1c4a0781-4764-53b9-a3c0-d4099ef6da2a",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55752 is fixed in version 9.0.100-tuxcare.6 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@9.0.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:db9d8ed4-26f9-51b3-8c33-772b734a15a4",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 9.0.100-tuxcare.6 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@9.0.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b2ce8d3a-b961-5cdf-b436-e225322c8cf5",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 9.0.100-tuxcare.6 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@9.0.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b487dd14-8e5b-53b8-b63d-be3b545d43cf",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-66614 is fixed in version 9.0.100-tuxcare.6 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@9.0.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:26c0467b-030e-52b9-8152-d83e4a92ac02",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-24733 is fixed in version 9.0.100-tuxcare.6 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@9.0.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1d850147-bcf5-54d8-bf41-62bb0f1e059b",
      "id": "CVE-2026-24734",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24734 affects version 9.0.100-tuxcare.6 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@9.0.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:11dce065-ec9c-5219-8723-ef5660dcc097",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-24880 is fixed in version 9.0.100-tuxcare.6 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@9.0.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a372ea32-239b-5ce6-8dd9-192addc133ca",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-25854 is fixed in version 9.0.100-tuxcare.6 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@9.0.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:df8c86ad-39c2-5532-81e1-a83f272e30ba",
      "id": "CVE-2026-29145",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29145 affects version 9.0.100-tuxcare.6 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@9.0.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e9a145ef-6243-5a14-abad-d9566f1ebba0",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-29146 is fixed in version 9.0.100-tuxcare.6 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@9.0.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c5d3e5e3-9b08-5c30-8414-9d6adfbd1b1b",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 9.0.100-tuxcare.6 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@9.0.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9a35543d-7b4c-54f3-b81d-3442fd8948e4",
      "id": "CVE-2026-34483",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-34483 is fixed in version 9.0.100-tuxcare.6 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@9.0.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0954d2b3-5ce7-5adf-9fe1-e4da4f84af0a",
      "id": "CVE-2026-34486",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34486 affects version 9.0.100-tuxcare.6 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@9.0.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9af755f5-6b7a-5796-8ba6-34057e064fda",
      "id": "CVE-2026-34487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34487 affects version 9.0.100-tuxcare.6 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@9.0.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cb4920b8-ba9a-5699-a754-85ba4acd7781",
      "id": "CVE-2026-34500",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34500 affects version 9.0.100-tuxcare.6 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@9.0.100-tuxcare.6"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@9.0.100-tuxcare.6"
    }
  ]
}