{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:5ff394bd-9a85-5ed5-8ecd-1a143d81a702",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1",
      "type": "library",
      "group": "org.apache.tomcat.embed",
      "name": "tomcat-embed-el",
      "version": "9.0.87-tuxcare.1",
      "purl": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:060868c3-529b-5566-b5bc-0e5a10362e5d",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11996 affects version 9.0.87-tuxcare.1 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c8ffadde-5c60-5d9d-9e79-6d45f8b69129",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 9.0.87-tuxcare.1 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0d113117-46ec-5ee0-8bf3-114ee8a2b9e9",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13943 affects version 9.0.87-tuxcare.1 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:09589214-96f2-571d-8114-399acb17ec5e",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9484 affects version 9.0.87-tuxcare.1 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cafac4c0-6107-5d6e-a00b-c44aad605191",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 9.0.87-tuxcare.1 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:442b4025-864d-5772-b357-c4d2ae1046f8",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-42340 affects version 9.0.87-tuxcare.1 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f36fae1d-2690-5979-9b8c-c29bd01fdc6a",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-34305 affects version 9.0.87-tuxcare.1 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c3fb9422-24b5-5dbc-b02e-3924f18ac761",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-45143 affects version 9.0.87-tuxcare.1 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ea76f66e-e634-523c-9dfa-3cf73976a77b",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-23672 affects version 9.0.87-tuxcare.1 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8e7aa214-7b9a-5420-bc6c-72693faaba10",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-24549 affects version 9.0.87-tuxcare.1 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:468e8d05-3758-57b3-87d1-85424e4e7c05",
      "id": "CVE-2024-34750",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-34750 is fixed in version 9.0.87-tuxcare.1 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:956be310-dd4e-5337-8fea-603f88d46d3e",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38286 is fixed in version 9.0.87-tuxcare.1 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3020fb74-4bac-5df8-92a5-21924332b2fd",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-50379 affects version 9.0.87-tuxcare.1 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:977b61d0-229c-503f-867c-baf9eb12a135",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 9.0.87-tuxcare.1 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bf17ba32-0043-566b-ac6b-4a3c1797fc44",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-54677 affects version 9.0.87-tuxcare.1 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fb635be3-94bf-5b14-b619-965c273257fb",
      "id": "CVE-2024-56337",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-56337 affects version 9.0.87-tuxcare.1 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1203d03c-06e3-59eb-8fa3-86a3b94bc48e",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 9.0.87-tuxcare.1 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:472cb404-9193-504c-9354-a35778936082",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31650 is fixed in version 9.0.87-tuxcare.1 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c8065e60-1b16-5d61-a96d-5ca09364c7bb",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31651 is fixed in version 9.0.87-tuxcare.1 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b222d656-02d8-5253-9d82-83220c13720d",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-46701 is fixed in version 9.0.87-tuxcare.1 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b830ff5e-98ed-54c1-bf87-fcf9bc893389",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-48988 affects version 9.0.87-tuxcare.1 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b9606f20-6834-5d85-9664-51c21eafa495",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48989 is fixed in version 9.0.87-tuxcare.1 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8f2ef2f0-b8c5-5d74-853e-31ef3d2dbb55",
      "id": "CVE-2025-49124",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49124 is fixed in version 9.0.87-tuxcare.1 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1d6e13c6-9fa2-5a73-9fe5-19f8792d49a5",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 9.0.87-tuxcare.1 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e996deb8-77c7-5a19-b682-4bd2bc7899e4",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52434 is fixed in version 9.0.87-tuxcare.1 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6dad8d2a-22bb-5174-bab0-68cbf53a554d",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-52520 affects version 9.0.87-tuxcare.1 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:41cd7f66-3ff2-52dc-a6a3-c5528c8c6cdc",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-53506 is fixed in version 9.0.87-tuxcare.1 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dcc10027-059a-5ddf-bc73-cca311b17855",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 9.0.87-tuxcare.1 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1bdad40f-2d84-5907-afc9-0151a30428f1",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55752 affects version 9.0.87-tuxcare.1 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dc836098-d81c-5f2a-8aa6-78390ef1437d",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 9.0.87-tuxcare.1 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:032b554f-80d3-55e5-acc0-da869bfc683a",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 9.0.87-tuxcare.1 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6c96dd26-4327-58cc-9e01-4225e7ab3ae3",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66614 affects version 9.0.87-tuxcare.1 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:56a690cd-4395-588b-a85c-e0678a2c48ad",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24733 affects version 9.0.87-tuxcare.1 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fe4305c1-2379-5ee8-95a1-54f07d20c401",
      "id": "CVE-2026-24734",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24734 affects version 9.0.87-tuxcare.1 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ccce270c-4fd9-58c1-b122-50c09d9479d2",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 9.0.87-tuxcare.1 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2db5bdec-3be7-5609-b73a-ad0415a27d88",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-25854 affects version 9.0.87-tuxcare.1 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:580c688d-d696-5d74-bb70-e28b796c8d5f",
      "id": "CVE-2026-29145",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29145 affects version 9.0.87-tuxcare.1 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f1244212-9786-5b71-930b-3fb41b5a9b5c",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29146 affects version 9.0.87-tuxcare.1 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d336d28f-31bb-5f8e-a2e0-bee2ae027220",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 9.0.87-tuxcare.1 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1dbead47-41ef-58bb-a964-822fdea59c85",
      "id": "CVE-2026-34483",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34483 affects version 9.0.87-tuxcare.1 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:347e5257-cf85-5b21-8e70-a3c31b8e93ef",
      "id": "CVE-2026-34487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34487 affects version 9.0.87-tuxcare.1 of org.apache.tomcat.embed:tomcat-embed-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-el@9.0.87-tuxcare.1"
    }
  ]
}