{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:4bfd7a87-ab05-5e97-8303-bc1be28cfe40",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3",
      "type": "library",
      "group": "org.apache.tomcat.embed",
      "name": "tomcat-embed-jasper",
      "version": "8.5.100-tuxcare.3",
      "purl": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:af07e554-6e8a-5fcb-8c0b-4970580ef6d0",
      "id": "CVE-2016-0762",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-0762 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:19907264-d18a-5e39-875d-56e360e6c4b6",
      "id": "CVE-2016-0763",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-0763 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3b2afcec-00f5-588f-9860-57f0a8394486",
      "id": "CVE-2016-5018",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-5018 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:df03dbf8-c6aa-50bc-a0e3-3a2b0de39d3b",
      "id": "CVE-2016-6794",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6794 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b18bf04e-2f4e-5a65-b017-dde95d756e42",
      "id": "CVE-2016-6796",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6796 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c259e16f-b0f4-5578-92e4-2a093ba951f5",
      "id": "CVE-2016-6797",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6797 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2b3ae197-c702-5b4d-87b9-fe9700688eb4",
      "id": "CVE-2016-6816",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6816 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3c3fadcc-2c84-5bca-9aed-9a41f2996a13",
      "id": "CVE-2016-6817",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6817 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cb334770-453f-5ca6-aa3c-7f5d12e248b3",
      "id": "CVE-2016-8745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8745 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0ab654d0-32f1-5c34-bbce-4f3184a38154",
      "id": "CVE-2016-8747",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8747 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:82544ad4-9832-5bf9-b497-0ea7aaa96bb7",
      "id": "CVE-2017-12617",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-12617 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ee426725-e632-5f11-b3ce-a71b92d4e4f9",
      "id": "CVE-2017-5647",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5647 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:97f64ef3-7dfa-5866-846f-2fa514f1a82d",
      "id": "CVE-2017-5648",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5648 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6d45063a-1c3b-5cfb-83f0-eb5394972a6e",
      "id": "CVE-2017-5650",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5650 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1c47bc72-d7e7-5562-9adb-1937be0143df",
      "id": "CVE-2017-5651",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5651 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:28faaf94-dff8-5856-a6f8-5dbb973db028",
      "id": "CVE-2017-5664",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5664 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:832ba6e0-a2c4-5be2-8055-a27c89ca6387",
      "id": "CVE-2017-7674",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-7674 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7681c8c5-3d82-56ce-acdd-b39ce93722c1",
      "id": "CVE-2017-7675",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-7675 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:71ddc68d-439b-5ac2-b9cb-acabb3b4f37f",
      "id": "CVE-2018-1304",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1304 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:53c136c4-a3c2-542f-b6f6-99b13c5aeac2",
      "id": "CVE-2018-1305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1305 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:84120395-1739-5ef6-a64a-e94f9854ecfc",
      "id": "CVE-2018-1336",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1336 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8fe87c9c-c0b2-5809-b901-69e81c0f183c",
      "id": "CVE-2018-8014",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-8014 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6b3b0659-0d41-58d0-a90e-443d2846008f",
      "id": "CVE-2018-8034",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-8034 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7bd44610-28ea-526d-ab2f-009724d48615",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11996 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e22c7221-a68b-5308-a992-270ab77080d6",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4be23839-af1d-5bdb-b493-df2239ea7c2e",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13943 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:62c8137a-474f-53da-aaa7-c0f374c37541",
      "id": "CVE-2020-8022",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2020-8022 is a false positive for org.apache.tomcat.embed:tomcat-embed-jasper 8.5.100-tuxcare.3."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9ef1170b-b55a-5bde-9222-e80295b8d748",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9484 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:abb46454-143d-5e0b-b6e5-fba4891c2951",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:37219d79-9055-52fd-9f46-2985dc31b4d5",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-42340 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b785e78f-0335-52d5-8baa-cb8dc5b94b2b",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-34305 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6602668e-20f6-57eb-ba19-d7bb920c1faf",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-45143 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ba09594f-da70-5e9e-aee7-4a279d39f26e",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-23672 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:92e21650-8517-54b3-996b-37ebf8d3ab06",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-24549 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:84a162ab-b2eb-56d3-aeba-6d2ba77af13d",
      "id": "CVE-2024-34750",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-34750 is fixed in version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c6a4893d-d37c-5611-b7f9-10ab52aec6e8",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38286 is fixed in version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:40ff2296-5009-5b78-b541-6ec0760d399c",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e1377fbe-58a3-5237-bd1b-bc5d2a375a39",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f0a7bd69-bbde-5578-bc18-aff8aadd2385",
      "id": "CVE-2024-52317",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52317 is fixed in version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4f3ef189-c3c4-5f11-bf6c-c1c7ef0efa8b",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-54677 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9ddb8e0d-be9a-5000-bf65-ba8c373a999b",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:94899514-3436-548c-a2ab-583f132fab65",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31650 is fixed in version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fef2c595-c98c-5b56-a8db-9e02896f6ebc",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31651 is fixed in version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7897429b-a46c-592f-967a-6df014a74b42",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-46701 is fixed in version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:106f93d1-91d4-5ab1-8ad3-4ec077baf5dc",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:19cb07ba-9621-5d4a-848c-8fb5e36236bd",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48989 is fixed in version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fdbd0f96-b6c2-5466-adf2-5c99d1bebabe",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a69f5281-99e4-5df2-ab7f-01f93c17608f",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-52434 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9fac5705-3dd9-597f-b946-a048354885d6",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-52520 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0c288a0f-0189-5ebc-b3a4-35de44ef3b92",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-53506 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7b6978e3-c385-56e8-bbb3-2357f82033d7",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55668 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:49328482-0e90-5a4f-a066-89cfd1a388ed",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55752 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fe3d7bf2-3e6f-5513-9794-bcff7f0ab2b1",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55754 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9fc29e10-fe1d-582d-8110-5d74a86982ec",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-61795 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:29c72b51-71a7-508d-bef1-adb35f48abec",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66614 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a99545c9-d05c-5716-bd35-ea28279177e4",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24733 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3dfb2514-d890-5aca-8c1b-cf19a79904b9",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ee999ef5-695a-5c95-a4be-689d4e303035",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-25854 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b1600850-1331-5eb2-a3ce-938956b5b22f",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29146 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d0d441c2-5e79-5fa9-9b41-a0b61c1c8924",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 8.5.100-tuxcare.3 of org.apache.tomcat.embed:tomcat-embed-jasper."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat.embed/tomcat-embed-jasper@8.5.100-tuxcare.3"
    }
  ]
}