{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:2a41a07b-2b47-5b43-9a5e-6af05756b087",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-api",
      "version": "9.0.50-tuxcare.10",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:6ccae077-1dda-5464-b4a3-7176d571ebb1",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11996 affects version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:75432583-8c3f-51c3-b355-55afce833c22",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:95954c4f-4224-577e-9c8f-181972b34df6",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13943 affects version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:72bf3535-75d0-5c8b-a7b1-939b647a82f7",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9484 affects version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2aaa4c9e-3ba5-58fc-8a5c-68d9e9e184fa",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8716f6a9-2822-5a21-933a-2c3e0ff05238",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-42340 is fixed in version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4713483a-a628-5ec1-9379-7d84c95c6988",
      "id": "CVE-2021-43980",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-43980 is fixed in version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:23e60dcb-3ed9-5269-afc7-dd567d82cbae",
      "id": "CVE-2022-23181",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-23181 is fixed in version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c9bed0fb-19c6-5ef4-aa09-1dd799fef35c",
      "id": "CVE-2022-29885",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-29885 affects version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ce14477d-64e7-5d02-810a-41d614747edb",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-34305 affects version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bd571ee8-a3ec-52dc-bdfe-82b87f0125f1",
      "id": "CVE-2022-42252",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-42252 is fixed in version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:df082b3f-298e-51a5-9fd9-2b3b1b42f587",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-45143 is fixed in version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7aeae321-c14f-5fc2-b2ec-71345d59d995",
      "id": "CVE-2023-24998",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-24998 affects version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4618c076-4d80-5aa0-a671-81de6bfdae10",
      "id": "CVE-2023-28708",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-28708 is fixed in version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4f3e75fc-69f9-5db6-b220-5efcee6a2eba",
      "id": "CVE-2023-41080",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-41080 is fixed in version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:405cd462-63cb-566a-a450-ec4cd1c72e43",
      "id": "CVE-2023-42795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-42795 is fixed in version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9a92a123-0955-5e61-993e-5bcf8019cc81",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-44487 affects version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a126f2cf-0100-52bb-b918-cc4b0455fe2e",
      "id": "CVE-2023-45648",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-45648 is fixed in version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:feea2bbe-420a-5c66-8f5d-cfbae3bbaaa6",
      "id": "CVE-2023-46589",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-46589 is fixed in version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e9679287-7875-5dfc-b502-1dfe12a7efec",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-23672 affects version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a96ab626-915d-5df6-8693-e162ead4ea1c",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-24549 affects version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d28206f7-1018-552f-9278-e24a3e319ff5",
      "id": "CVE-2024-34750",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-34750 is fixed in version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:92bc7297-bbc4-5ff8-aec4-f2bb91323449",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38286 is fixed in version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f4a00955-e0d1-5b55-bb71-1aa911ef2a4f",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:82745d8e-ea2e-5a13-9d57-1a628fe65ab8",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:233fd0cd-2188-5188-9166-6ef0dafd73a8",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-54677 affects version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0299c250-cb43-5a2e-8c3f-32c32de99b91",
      "id": "CVE-2024-56337",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-56337 affects version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:63f247f1-2f12-5836-a5b9-24815b2ea82d",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:74194bbd-e35d-5d06-a5aa-4a16a94a8f0d",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-31650 affects version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ec208bf9-7f51-5cd4-9c90-29d90d2589c1",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31651 is fixed in version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aef9c241-dbfd-5fd9-8728-241237d98691",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-46701 is fixed in version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4edfc732-4ebc-5957-80f1-4a3a26c5633a",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dcfa9974-9157-5037-b8f8-23a969e4aa3e",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-48989 affects version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3f0aa89c-cc44-5463-897b-cb032dd0a810",
      "id": "CVE-2025-49124",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49124 is fixed in version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ce41fef1-0727-5f28-8b49-0b2e85c0eaa3",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1f95286c-ce84-5d7f-bc7c-31c97b559d92",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52434 is fixed in version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9269b6b1-5788-585b-86d0-9316607234ab",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52520 is fixed in version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d480ebf5-fd7e-5628-bab3-f80e6dc63968",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-53506 is fixed in version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8b166356-4194-506c-b2e0-2e6088d70bbf",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7924e91f-ea72-5d09-9c7e-dde33d3f9716",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55752 affects version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7c89f49c-2621-5d8c-8b6e-ff0d493c9eb4",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a293f082-fb5e-5b91-9677-25d8cfb42f3f",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bd7b5221-7581-5e33-935c-7d9b47ad217f",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-66614 is fixed in version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f3c55a49-aa47-5c25-ba45-01ba4d49fd17",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-24733 is fixed in version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9fdecb8a-aea0-5860-aa20-e397fdaebd89",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8fb7195d-8a27-5f3f-a174-f7bdba6d3e64",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-25854 is fixed in version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:172c1830-c255-5f2d-8716-520c461913be",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29146 affects version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8e5f2967-78eb-5a50-a9fd-f9c86efa5ad0",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:55dde68b-4ab4-5ae8-aa41-80070ab67ba6",
      "id": "CVE-2026-34483",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34483 affects version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c1e170e7-2edb-5077-983f-fa9980a35f0c",
      "id": "CVE-2026-34486",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34486 affects version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2b1284dd-0ff4-502c-bb14-63d6b5084643",
      "id": "CVE-2026-34487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34487 affects version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eeb56853-1d57-5674-95aa-737646f4c0ce",
      "id": "CVE-2026-41284",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41284 affects version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:08024f59-f9e4-54ae-ab2d-53fa96773af4",
      "id": "CVE-2026-41293",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41293 affects version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2d5d0769-6d30-56ca-890f-14533f7d6b1f",
      "id": "CVE-2026-42498",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42498 affects version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:57e1de23-8d3c-5227-b6e1-dcd893798e99",
      "id": "CVE-2026-43512",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-43512 affects version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:48ea340f-c68b-505f-8ea4-1c6398fb77a7",
      "id": "CVE-2026-43513",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-43513 affects version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1b96961d-fda9-58a0-9b3d-93b77e5dc8b5",
      "id": "CVE-2026-43514",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-43514 affects version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0390207e-ce65-5074-aea6-98cd35983082",
      "id": "CVE-2026-43515",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-43515 affects version 9.0.50-tuxcare.10 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-api@9.0.50-tuxcare.10"
    }
  ]
}