{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:79fd01ae-71ee-50d0-a324-6bbad62390dd",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4",
      "type": "library",
      "group": "org.apache.tomcat.embed",
      "name": "tomcat-embed-el",
      "version": "9.0.50-tuxcare.4",
      "purl": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:41b10d8b-cb58-5eed-9ce9-cbbbae993d45",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11996 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:58c7afeb-2f85-5a4d-91ea-ed727e053c6d",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ca4b6ed8-991e-572d-8886-9f9d57d468a4",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13943 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fb337e1c-1bea-5a57-ac79-2636f0bfc3e6",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9484 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9b057f3b-ecb1-5c9f-9132-f52b89686741",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4c8aab1c-2fdf-54e9-b7f0-60aceec0071b",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-42340 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:14e828bb-620a-5fcc-8ef8-b967472bce2f",
      "id": "CVE-2021-43980",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-43980 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:79910007-2cfc-58c2-873f-59e72196593a",
      "id": "CVE-2022-23181",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-23181 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:67901ba3-1420-59a0-992b-9469979a23c1",
      "id": "CVE-2022-29885",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-29885 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:129e05f3-9b28-5824-9c9a-97aabd562093",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-34305 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:03aaac7d-d109-52a4-8e7b-2a22a943e2f9",
      "id": "CVE-2022-42252",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-42252 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ae528834-0943-5ea2-8f89-e12c9307f53c",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-45143 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c5691ef5-55f0-5fa7-9d57-fd50dcb34fce",
      "id": "CVE-2023-24998",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-24998 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:48381a4e-5cfc-534c-99c0-34687494c080",
      "id": "CVE-2023-28708",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-28708 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5b30f6dd-e740-5809-874e-348dafa2d8e2",
      "id": "CVE-2023-41080",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-41080 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:40cf897d-09f2-5984-85ee-67e73d06a9eb",
      "id": "CVE-2023-42795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-42795 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e52b4713-fc6e-5bee-8002-f3606ac523e3",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-44487 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:231d516f-83ac-5679-b76f-ed40047044ea",
      "id": "CVE-2023-45648",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-45648 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5f143c9c-8767-53b3-bd9f-ee914295b3ca",
      "id": "CVE-2023-46589",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-46589 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6560fb02-6d1d-5902-999f-6b586e2b4c40",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-23672 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c615e381-9b5f-53b2-85c4-9f232b988e1d",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-24549 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9e2fc312-7f04-5635-a6be-df32c30e97bc",
      "id": "CVE-2024-34750",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-34750 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2d79388d-4097-592c-9f05-269cec40f7cf",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38286 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:53e16a50-a1e3-550e-a873-143a5a8310f1",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:da350937-573e-5ab2-9b5e-1771d92f923a",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a75b78f7-1474-5883-bd2e-ad3591740df1",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-54677 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8363bbad-20c1-5f1c-a285-090023e5ab5d",
      "id": "CVE-2024-56337",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-56337 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f4c169c7-387b-5c4a-964f-c7a7b596a9aa",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e01762af-1135-5353-9dfd-7156d818f3a1",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-31650 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:51b444d8-9d4a-57af-bcde-22d7135f7d34",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31651 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:758692c1-4abd-506e-8ef1-4e3ad2694c3c",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-46701 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f2fba183-fcc6-5e5b-9006-682aba696b91",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6f08a031-6dfa-53aa-92b1-bc5fab58251b",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-48989 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d5e9d6f7-bc4d-5483-82f4-17ebe042718e",
      "id": "CVE-2025-49124",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49124 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d3fe4b12-32e4-59df-bede-8e86b023c6ee",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b74312ca-c52a-5ecf-a028-1d30d0fb8088",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-52434 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cc896711-190d-5f28-aac6-157a5dc049d9",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52520 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:39a57e45-bc23-5949-b85a-a14b5dad2a6a",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-53506 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c5aae6eb-57e4-5a41-9ccd-8a4867f9d224",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f3a67eb8-aa72-55d0-adb9-9f12d4cfe046",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55752 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:34c484ae-8053-58fd-935e-8a593fbe7f22",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c75272dc-9176-580a-8c60-3f34b95a28b8",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a25d518b-8dd7-5e18-8c6a-854f5729d568",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66614 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3da254bc-d2a2-54d4-a7fe-2170e6ae7313",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24733 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8bf37720-177c-5d85-9502-78e48fde00c5",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dd7392fd-e225-5d8f-adaf-9fbc8e59c128",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-25854 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:860b41cb-1649-506b-ad1c-839b1db3aa57",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29146 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0b8d79a9-6937-5d02-9a93-b7c3ef9f353f",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:63fcb3b1-6300-509b-9e6a-76de917ff8c7",
      "id": "CVE-2026-34483",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34483 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0856c4b3-e234-5fa6-8a3a-d954c8e3fda4",
      "id": "CVE-2026-34487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34487 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.50-tuxcare.4"
    }
  ]
}