{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:901ac6b0-5852-5c91-95e4-dcdd36abcd96",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3",
      "type": "library",
      "group": "org.apache.tomcat.experimental",
      "name": "tomcat-embed-programmatic",
      "version": "9.0.50-tuxcare.3",
      "purl": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:2d533f54-92da-54be-a4af-3b4c9f1f9b51",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11996 affects version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:27f4a7c1-3ec4-5777-8642-0dc411d8eeaa",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8820af60-261f-5808-8998-00e572ac7ec6",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13943 affects version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f70e7835-ad98-576f-be5e-11c434be1642",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9484 affects version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:96a471d9-2d2f-56b7-a079-2bc58fa20107",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:781459e0-5202-5ca4-be26-f968b9c86c7e",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-42340 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c45e3655-86d4-57bf-934a-689aedd77f4a",
      "id": "CVE-2021-43980",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-43980 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7cb32e58-5645-5843-b5eb-07d6ed0ce93d",
      "id": "CVE-2022-23181",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-23181 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9d74043e-a296-567c-a9b2-97cdcfb77cae",
      "id": "CVE-2022-29885",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-29885 affects version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8d5c3f58-737a-5743-b7ea-73dad13e09ab",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-34305 affects version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a2cf0214-6544-5573-916c-371f19c6a976",
      "id": "CVE-2022-42252",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-42252 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:60000cf0-9ae3-56d5-9fdc-59ea9c78825b",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-45143 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dd6ac542-fba7-5f25-85c7-8196277a524d",
      "id": "CVE-2023-24998",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-24998 affects version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3e2549ce-11ae-5300-b7a1-19262b204b47",
      "id": "CVE-2023-28708",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-28708 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ee117565-56ad-5b67-9b47-e81ba29aa7e5",
      "id": "CVE-2023-41080",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-41080 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1ba12edd-5910-5e84-8420-2f34c9ad918c",
      "id": "CVE-2023-42795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-42795 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7744bb2d-81da-5e27-9cba-3dc8ea9d3d05",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-44487 affects version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:43901cf0-9937-5f05-97cc-6310d5f986a2",
      "id": "CVE-2023-45648",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-45648 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dc95f819-0315-54df-b974-e124ae9241db",
      "id": "CVE-2023-46589",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-46589 affects version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:333f9477-c60a-55a8-b1e8-211263e48903",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-23672 affects version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6863fef0-70cb-56aa-af36-d07a5414067d",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-24549 affects version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0ed7408d-7af0-5a7a-b492-393a20a88d02",
      "id": "CVE-2024-34750",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-34750 affects version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:451d65d0-7fe9-529d-93db-9fb3150649bb",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38286 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d60be6b2-0cb2-5f41-a50c-72e18278a55b",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:169b277f-2b35-5519-8dec-86b1d0eec122",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:17e29c42-acfb-5fad-8dfb-fb1a10a9a66d",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-54677 affects version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1ccb3733-7cf2-58b7-b3d0-ecea59cb7846",
      "id": "CVE-2024-56337",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-56337 affects version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8fdffd40-9956-555c-80a9-db68b541ac27",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0ad00fbc-76fc-5645-8329-cc0561031223",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-31650 affects version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c9209e93-8490-5400-84a2-81b210fb07e4",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-31651 affects version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bfe5874a-f75a-5a9d-91d4-36d236c650da",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-46701 affects version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5934c84e-63b3-51ad-a912-ce303ef73ed8",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:13e95191-4de0-55c3-8486-988c250bad20",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-48989 affects version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:14036b8e-b284-5213-9f4a-b54a88fe131d",
      "id": "CVE-2025-49124",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49124 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:45a64c79-2b62-595b-8502-2a52f55afa72",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:476c34a8-f10e-5347-99a6-3e63c87e3c96",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-52434 affects version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4c0cd4d8-6641-541b-80c0-c540c9fa885a",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52520 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c75269ec-837e-535e-adc2-913ddc5d5292",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-53506 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fe2ed7d0-321a-5a40-8022-34d5e806e10e",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7daff8e7-837d-54fa-9400-2b89df9b2dd8",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55752 affects version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aa8fb8d8-e87b-5698-bbef-64c9e70960db",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9420e70e-f93a-5f6e-b2e3-f67de32aee67",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8f89978c-1698-5173-8763-13dac4fed277",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66614 affects version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4fe021da-1f65-5b5c-b875-473f350fbcb0",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24733 affects version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:38fca57c-e4da-5b7c-9b1e-deec518c0b86",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c6c610fb-a9e7-5b34-a1b8-06d048ac8e45",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-25854 affects version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4edaf994-6aea-55d5-ac63-e0eab845e696",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29146 affects version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ace6a168-8533-5721-89b0-8cbf14c7b656",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4a3f524c-bf33-5929-813e-0ab291a1ba15",
      "id": "CVE-2026-34483",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34483 affects version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:59eb7cc0-e0ba-5648-9e38-e8a23b1334ef",
      "id": "CVE-2026-34487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34487 affects version 9.0.50-tuxcare.3 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.3"
    }
  ]
}