{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:55c98ca1-c109-5a37-a3e3-0015350ed09d",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-jsp-api",
      "version": "10.1.18-tuxcare.7",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:8f7bd5c3-0544-567f-8265-529b742447ac",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-23672 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e21f94bb-012d-502c-8f55-60c2447f3490",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-24549 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dfae4c80-2f4c-535f-a6b5-8a7133bfe8cd",
      "id": "CVE-2024-34750",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-34750 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f5ac0ba6-d278-5067-adca-61c0deb53f10",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38286 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ab83fb2a-d737-57db-81a9-f1b1f4866026",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c1fb71e4-64b4-5a48-8b6c-4ef2571910b1",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ea59190a-5d8b-5817-ae3b-ccbbfdd54f2c",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-54677 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2ed48675-2f30-5f71-b0dc-e40b782096aa",
      "id": "CVE-2024-56337",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-56337 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7166d742-1aa4-5ee1-9975-2a522a979895",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a147ebd6-0106-507c-ad5f-2bc5196bf982",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31650 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4a6c1895-c560-5e0b-a13f-f81344f1ee11",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31651 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:68300ff6-666d-53e8-9a71-84199b30fcc2",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-46701 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ebb9e94c-5df9-5823-9231-e440f2015b29",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:260d7d90-27ec-5850-a4c9-544f5136cc99",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48989 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6a83ba9a-1e7d-5200-8cd0-29a595a1c5dc",
      "id": "CVE-2025-49124",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49124 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:271155d3-0cfc-5260-b5e5-4ebb275bb3ae",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:26b77a6c-b598-5413-84e8-899e9aa95d5f",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52520 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4b8b2063-458b-5f50-8f51-0132f4b2f1e2",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-53506 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:68135f22-0cb9-5017-b172-e17542559181",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:815f5df2-566e-5c3c-ae7b-3a4fb74c3133",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55752 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ccf13a8e-e2ff-5b2d-a01d-528a0157f223",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9e5f2289-68c3-5cd0-8955-dfefe8f69c3d",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:23183e87-35e8-5c6a-983a-8c41ef22328a",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66614 affects version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:33e2cbac-21b9-5cfe-8fbc-80c453807466",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-24733 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:401401bb-a6af-562a-81c2-10f17affb622",
      "id": "CVE-2026-24734",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24734 affects version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:168f1c65-caae-5b94-b2ff-bbc3dbefb0fa",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f1eee221-cf8a-5b80-b460-dc6739c7483a",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-25854 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e421e560-1d69-5bb0-a64e-40e406c6fc1d",
      "id": "CVE-2026-29145",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-29145 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5512200a-aad0-5bed-9be6-e3c69f80c735",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-29146 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:09f124fe-402a-56c3-a1ed-77cb62e287f5",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:38b8bdba-5d18-5138-933e-cd9d306e49b5",
      "id": "CVE-2026-34483",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-34483 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9408185c-434f-5d7e-be80-470c662e9fcc",
      "id": "CVE-2026-34486",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-34486 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8716f9b7-e6f8-5be8-963d-a3d0820978f4",
      "id": "CVE-2026-34487",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-34487 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:81ef53e4-e021-5e63-8bea-73b5a8d0752d",
      "id": "CVE-2026-41284",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41284 affects version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8fa271f0-acd3-5f71-ac7f-ae1560011597",
      "id": "CVE-2026-41293",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41293 affects version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4124526b-c997-5680-9c33-e348790fe3cb",
      "id": "CVE-2026-42498",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42498 affects version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:80bece27-56cb-5d4c-9649-8ea3c659a491",
      "id": "CVE-2026-43512",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-43512 affects version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:225104b7-9888-590c-ad84-0ba7d4c072d7",
      "id": "CVE-2026-43513",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-43513 affects version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:518ea4d0-13b8-5af3-affd-bcccd084d2dd",
      "id": "CVE-2026-43514",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-43514 affects version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f5155baa-b34d-58b3-b64a-6d575ec331d9",
      "id": "CVE-2026-43515",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-43515 affects version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:712aabb3-45e8-537a-afe6-80bcbfc230e1",
      "id": "CVE-2026-65182",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-65182 affects version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:157059bd-9610-50b5-9e7c-57f251c35a6a",
      "id": "CVE-2026-65905",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-65905 affects version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5db68a64-950f-5a65-9beb-6c0ec013a45c",
      "id": "CVE-2026-68525",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-68525 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@10.1.18-tuxcare.7"
    }
  ]
}