{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:c3e2d92e-0183-5447-b583-b2a9daad8fb4",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-annotations-api",
      "version": "10.1.18-tuxcare.7",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:edbbe768-ab68-5caa-8de5-b7e246908462",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-23672 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8596a5d6-ef78-5618-b514-4aef7c0ce471",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-24549 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a1dfa414-49a2-5469-9fa6-fd6fa8ef9c85",
      "id": "CVE-2024-34750",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-34750 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:213df495-4f83-5513-a279-f2af5fbfc2dc",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38286 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:88ebf437-3328-5ecc-a554-6e2fa9f9117d",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:522c4373-7d2a-546c-9277-b833d3319846",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:31805c9a-00d0-5d4b-a9d0-086a15f8b5c9",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-54677 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3c342ccd-b659-5826-9717-e4f6b0e6f73c",
      "id": "CVE-2024-56337",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-56337 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f39ca347-9b25-53e4-93a6-9768590bdda2",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0b19a464-a31d-5341-b25a-e3d475bc5d3c",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31650 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9d4b273f-20db-5bc7-865b-557aba9facee",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31651 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:86d80cfd-0b78-5809-9620-978a6b4f61d6",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-46701 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:45f4caca-0c8f-5967-8c30-d31ad4587332",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cbcb2f9a-5d93-5d27-932d-6be4d4552325",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48989 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d274f52f-84e4-524c-a3a8-c72453881757",
      "id": "CVE-2025-49124",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49124 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1da07fbc-c37e-5f46-b882-9d0364d80025",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:33bba274-81f3-5198-8a24-47daed7bd554",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52520 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9aa66adc-000c-5348-884f-9e45238a9310",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-53506 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1d151f30-50cd-5e30-8b23-17e54af851d0",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fbe938e8-2d38-5028-8575-3f77b5ff39af",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55752 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:968521d9-42d8-5269-b1d9-8dc754f1c21c",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:53d3ec54-d9e0-5cb8-90b2-71617245f6e6",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8bc8a430-a668-56b5-8240-dd62c16f1886",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66614 affects version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:69d3efdf-fa77-5e10-b45a-c15265510bb2",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-24733 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8cb3d7cf-943b-513d-9e68-2d683ad7457c",
      "id": "CVE-2026-24734",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24734 affects version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a7ddb07d-aca5-5880-88ef-b3c382f01ee3",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:06fe7ba3-0f74-5f36-a65f-b6d81fc27640",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-25854 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2633e11e-d6dd-51f1-aacd-525c821a467b",
      "id": "CVE-2026-29145",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-29145 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:be9fb346-7a0f-5367-bcf3-ea87f78b0468",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-29146 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:32a83550-c8d3-5779-b2a5-c7bd7cea1972",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6e697f1f-4f62-5128-9936-766933f9b104",
      "id": "CVE-2026-34483",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-34483 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fc943ef1-7ae8-5c36-9beb-9613a79c103e",
      "id": "CVE-2026-34486",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-34486 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f0b09850-7c3f-5b4e-a5b3-bbf97596c83f",
      "id": "CVE-2026-34487",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-34487 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a6570a33-3c1f-5424-b20c-b857bbf35126",
      "id": "CVE-2026-41284",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41284 affects version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:809e288b-d348-5bab-ab47-303b430f21f1",
      "id": "CVE-2026-41293",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41293 affects version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bd2f1afb-3f77-5e2e-bdcb-ce829d734304",
      "id": "CVE-2026-42498",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42498 affects version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:521fafee-341a-56c6-8746-2f265226e94a",
      "id": "CVE-2026-43512",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-43512 affects version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dba648ab-def4-5c23-83a4-d358594491f6",
      "id": "CVE-2026-43513",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-43513 affects version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c069a07d-6908-59be-b228-2be7a2d4d551",
      "id": "CVE-2026-43514",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-43514 affects version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5fc2b180-87dd-5d26-9935-8fb42fa6d658",
      "id": "CVE-2026-43515",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-43515 affects version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bc4ab78a-b487-5098-a971-43915f1fef9e",
      "id": "CVE-2026-65182",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-65182 affects version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5e935944-ccdf-5714-84f1-269c548579e1",
      "id": "CVE-2026-65905",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-65905 affects version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8b30d474-c0a9-5c2c-bc6a-4481a87a6104",
      "id": "CVE-2026-68525",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-68525 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@10.1.18-tuxcare.7"
    }
  ]
}