{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:9725958e-587e-5e24-b57b-f81540435161",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3",
      "type": "library",
      "group": "org.apache.tika",
      "name": "tika-server-eval",
      "version": "2.9.4-tuxcare.3",
      "purl": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:b6a18059-5765-5341-9b45-a0e54130493e",
      "id": "CVE-2012-6612",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2012-6612 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6eae7ad1-0034-53b6-9390-03df4fcce95f",
      "id": "CVE-2013-6397",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-6397 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dd6621d2-c45b-5c5e-9f53-fff53323e170",
      "id": "CVE-2013-6407",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-6407 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e1bf107a-53fa-55d3-9066-5fa66fb1c0cb",
      "id": "CVE-2013-6408",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-6408 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2c119fd8-0c4a-5916-a1e3-5d4a57be565c",
      "id": "CVE-2015-3414",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2015-3414 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:53c9b5f2-281b-5f3d-a14e-22157aa55bc5",
      "id": "CVE-2015-3415",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2015-3415 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6688144e-086f-5d62-81a6-17b8cce063e0",
      "id": "CVE-2015-3416",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2015-3416 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:322b595f-a471-5f52-8c34-8e1590c57ac0",
      "id": "CVE-2015-3717",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2015-3717 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bd38683b-a611-5970-8eda-e282f3b45ec2",
      "id": "CVE-2015-5895",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2015-5895 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2b92d79a-faf5-59d9-9114-fda0cb2b99d2",
      "id": "CVE-2015-6607",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2015-6607 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a3638c66-08f8-581d-8efe-f05df882d3e2",
      "id": "CVE-2015-8795",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2015-8795 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2c886766-f4a4-5511-a978-f9dbb7e6c160",
      "id": "CVE-2015-8796",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2015-8796 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f7f7e8b7-df9d-5827-85dc-b5c82b100a36",
      "id": "CVE-2015-8797",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2015-8797 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5711d9b7-c8de-5752-bb22-713b16364aa1",
      "id": "CVE-2016-6153",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6153 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:09cc4115-b039-534c-9521-02795586822f",
      "id": "CVE-2017-10989",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-10989 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b35fed15-9a58-5d7a-a45c-581c031fe181",
      "id": "CVE-2017-3163",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-3163 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:419094ec-9f60-5b50-ab7e-0410d1fa0bcb",
      "id": "CVE-2017-3164",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-3164 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:97cd5506-7368-523f-86f0-75a7baaa5f79",
      "id": "CVE-2018-11802",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-11802 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c1a49ce4-d748-558d-a825-d54c4e611410",
      "id": "CVE-2018-1308",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1308 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0db1721b-a282-55a3-99ca-44e8770a758f",
      "id": "CVE-2018-20346",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-20346 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f8710416-fceb-55b1-ac27-cc1c6f93ce2c",
      "id": "CVE-2018-20505",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-20505 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:06584ea2-3c74-5fd6-9210-584738993f4c",
      "id": "CVE-2018-20506",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-20506 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:14ed46db-211e-5096-bdaa-df35e2f4542f",
      "id": "CVE-2018-8740",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-8740 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:038cdbd3-72cd-5472-be4e-629829afcc72",
      "id": "CVE-2019-0193",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-0193 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5c0b2bc3-831b-52a8-80d1-cd0a3706fb1d",
      "id": "CVE-2019-19645",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-19645 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:128141ea-1a03-583d-806e-b95c4cde4ab0",
      "id": "CVE-2019-19646",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-19646 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bc9f39c5-8aa9-53fd-90a0-83e78bb4aeea",
      "id": "CVE-2020-11655",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11655 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cee02176-964f-5762-9831-706be2b37e4e",
      "id": "CVE-2020-11656",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11656 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9bb38ad6-bea9-5d4f-b5c0-73c3acf127ac",
      "id": "CVE-2020-13434",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13434 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eea1d9da-6607-52c0-b6b6-0607b70d2436",
      "id": "CVE-2020-13435",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13435 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:625b0ce9-d6c0-54f6-a0d7-dcf0ada9d45d",
      "id": "CVE-2020-13630",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13630 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:40eb4293-671d-5fd7-8e6e-e416975e6f73",
      "id": "CVE-2020-13631",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13631 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6d219150-b914-5d99-ba6f-5471e644c0f1",
      "id": "CVE-2020-13632",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13632 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:43e8c09f-87b7-5c4b-bc43-bc1fa14eeb9f",
      "id": "CVE-2020-13941",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13941 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cd3b96ab-797e-56f3-bf46-e9a05922f243",
      "id": "CVE-2020-13956",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13956 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:80fb7ff3-9433-5b6d-a1da-c17a6afbe57e",
      "id": "CVE-2020-15358",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-15358 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a8eb9408-4c67-5301-8f7f-78e7f2c7e1cd",
      "id": "CVE-2021-27905",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-27905 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:347a2b18-b5ef-5333-b212-fe1f5bfd517b",
      "id": "CVE-2021-29262",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-29262 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2bdb15f4-8e99-519d-b54d-cf39ff70e2b7",
      "id": "CVE-2021-29943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-29943 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3efeb8bb-0177-539a-89bf-994bf486e228",
      "id": "CVE-2021-44548",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-44548 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:30365478-b04f-5fec-9616-84c034a26e11",
      "id": "CVE-2022-35737",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-35737 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:75e53a1c-7d81-512f-b050-becd2b5a2967",
      "id": "CVE-2023-34610",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-34610 is fixed in version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aaad09b0-a31f-592c-be36-db4815859054",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-44487 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:38262596-5cad-5afe-9f6d-99eebc5c100c",
      "id": "CVE-2023-7104",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-7104 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cbdbc5c7-1f3b-5f04-812b-d80c8eb29186",
      "id": "CVE-2024-31141",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-31141 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:74fbbd44-05f9-5909-9dd0-2de1900a8145",
      "id": "CVE-2024-56128",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-56128 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4105d1c2-d55e-51d5-b88d-569d00fe4f13",
      "id": "CVE-2025-24814",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-24814 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:05b7bd3a-d5df-53d6-941c-15831ed72da3",
      "id": "CVE-2025-27818",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2025-27818 is a false positive for org.apache.tika:tika-server-eval 2.9.4-tuxcare.3."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b8b1cf13-2911-5a10-a3af-26607314827b",
      "id": "CVE-2025-27819",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-27819 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7106f7b3-0254-594b-bf04-06fd492abaea",
      "id": "CVE-2025-54988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-54988 is fixed in version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fc8e0e61-83ad-522d-8698-f95852918b90",
      "id": "CVE-2025-66516",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-66516 is fixed in version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:84247916-f6af-59a9-ac3b-48f84f25879c",
      "id": "CVE-2025-6965",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-6965 affects version 2.9.4-tuxcare.3 of org.apache.tika:tika-server-eval."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tika/tika-server-eval@2.9.4-tuxcare.3"
    }
  ]
}