{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:405ca670-8b7b-5168-a74a-5a23b0e86d48",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-util-scan",
      "version": "10.1.18-tuxcare.7",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:439f8ba4-3c8d-5c2d-a7b0-accb6d1a3c2d",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-23672 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8f398179-782a-5e83-9939-9ff523cb329d",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-24549 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:10443fdf-9439-51ad-b962-dd20a00e3822",
      "id": "CVE-2024-34750",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-34750 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5fa97df6-62c6-5d46-b202-baba24fc7d40",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38286 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:39396ead-539e-5cd5-bcb5-e5fc549a3465",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3e073b57-a2fb-5893-ba6d-1d7daad89f88",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2d623cd3-09e9-5689-8cde-5dec43c3ecfa",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-54677 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:361d705e-7603-5f1f-8130-aef479fd7257",
      "id": "CVE-2024-56337",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-56337 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9aa975c4-27b3-5232-8465-28ed713d5b7c",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cc85d27a-9e61-5f3b-86a3-c15f26fc7401",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31650 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9f7664d1-37e7-5343-bfcb-08b9f65e2250",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31651 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:faa89231-6bf1-54e7-9063-bea70fa80052",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-46701 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cbe56a7e-e896-5b94-bdc0-073d07ecbc77",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:322b3631-c193-5d1a-b397-e19cd9f08113",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48989 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:51073225-b9c2-5f44-8f78-7cefc6e8e3bd",
      "id": "CVE-2025-49124",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49124 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6bccadd6-5934-504c-8370-866cdc8bb53b",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8fb61307-fcca-5a86-be64-9b0da1f8a5a9",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52520 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8a3223d3-d037-5a8f-9fb4-cfc40587f336",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-53506 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e3bc9d5a-7300-5925-a63c-6ba8aad346f8",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c26e69e8-143b-583a-b29a-a4ee56a165ec",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55752 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:76abd462-10ba-5c1d-969a-67e5c0d899c2",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:54ed7edf-321d-5599-9fce-73e7d7bc6463",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3c9c6316-2aad-563b-9593-ae3e97f726bd",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66614 affects version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:003e3872-6626-5f9f-85f4-d0320138d103",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-24733 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:14f41c73-c920-5a73-813d-9dc09761d665",
      "id": "CVE-2026-24734",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24734 affects version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:204f880d-864d-591f-872d-41f0e0b784f9",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:80dbcd6b-d9b0-5a68-8678-49ea7eaf33ec",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-25854 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:77dbca61-0dee-586f-8519-804395303e54",
      "id": "CVE-2026-29145",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-29145 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9e7b0fbb-3a6f-5cb3-8f32-f38b84f04c66",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-29146 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9ca42996-4226-509c-a148-29e8e05d5a7b",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:12953929-2234-5d8d-8398-014ec1e52076",
      "id": "CVE-2026-34483",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-34483 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:417534a5-c076-5282-a3d2-dc55259528af",
      "id": "CVE-2026-34486",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-34486 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d944d3d7-5c68-520a-97cd-e65a3a95fb45",
      "id": "CVE-2026-34487",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-34487 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:213c6574-5dfb-5b9c-b2cb-8d84f1ea2ce9",
      "id": "CVE-2026-41284",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41284 affects version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6c619861-146f-5e6d-becd-bb65a432cb4d",
      "id": "CVE-2026-41293",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41293 affects version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eb6e216b-9ebc-54a4-a640-64c85a595e71",
      "id": "CVE-2026-42498",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42498 affects version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:61dcf7de-4649-5690-86a2-e1a7f668b99e",
      "id": "CVE-2026-43512",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-43512 affects version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3e2f2557-222e-5987-9ea7-89b5d7d02456",
      "id": "CVE-2026-43513",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-43513 affects version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0570bc0c-d92f-5644-89f0-90b2f5914c97",
      "id": "CVE-2026-43514",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-43514 affects version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:157f10df-44ae-593e-b8d6-513488b417de",
      "id": "CVE-2026-43515",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-43515 affects version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d2d4edc7-1c59-553b-90dc-34e996e128a5",
      "id": "CVE-2026-65182",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-65182 affects version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:852a2053-f4ac-59d3-89f5-24f6cf8d93a9",
      "id": "CVE-2026-65905",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-65905 affects version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2992d2ed-c313-5949-805f-8538f7b96ad5",
      "id": "CVE-2026-68525",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-68525 is fixed in version 10.1.18-tuxcare.7 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@10.1.18-tuxcare.7"
    }
  ]
}