{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:fa4c4c46-c07b-5a39-99d3-f6608e3fe41d",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4",
      "type": "library",
      "group": "org.apache.tomcat.experimental",
      "name": "tomcat-embed-programmatic",
      "version": "9.0.50-tuxcare.4",
      "purl": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:4d7871cc-5162-546b-a05d-a70fd59253e2",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11996 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4d4597a1-232b-5924-8088-6bb834f11d13",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:30c8ada5-2b4a-5a63-af66-afb710ffa28c",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13943 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5deaaac9-7a75-550f-8667-4e929f0a32cb",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9484 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0ce751fd-dc86-5075-8832-f2e24e4f83b8",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:399994fc-eaa1-5b9a-9074-0bfcc3c0997c",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-42340 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f0ebfa07-5807-560d-a3b1-c99f06924a90",
      "id": "CVE-2021-43980",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-43980 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3ea53040-3acc-5068-a00c-c1fb6253a4b1",
      "id": "CVE-2022-23181",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-23181 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:26b557dc-2423-51c2-aec2-534cfa5dc614",
      "id": "CVE-2022-29885",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-29885 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c55a6dcd-065b-52a6-8932-edc03baf5cd1",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-34305 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:19482315-f9fc-5b47-af8b-5d86a5d18920",
      "id": "CVE-2022-42252",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-42252 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:976aba81-45ee-53cb-ba53-22fae988fe84",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-45143 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:498fbd23-5151-55b7-8c95-0b5ab211727f",
      "id": "CVE-2023-24998",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-24998 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:29f34bf6-3790-535b-b1fd-3f346eef1ac8",
      "id": "CVE-2023-28708",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-28708 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:be6f9627-0167-5bfa-8190-d0d567df5267",
      "id": "CVE-2023-41080",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-41080 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fe9a2b8a-2f80-5ef2-a392-e36ad0655d47",
      "id": "CVE-2023-42795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-42795 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1dbe3a58-ac04-5d07-9d80-d11704b92c9b",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-44487 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:775d295a-5006-542b-bbbe-ef569a8bfac5",
      "id": "CVE-2023-45648",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-45648 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3b7ed490-cbcd-542a-b92c-ba0418275f0d",
      "id": "CVE-2023-46589",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-46589 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c5c21015-9e3f-5d08-bd1c-5f5be40182e0",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-23672 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c9370a7c-521a-59f5-b28e-ce3fd54e4704",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-24549 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fe271000-dc63-5d6e-8ae8-ceed889e6f05",
      "id": "CVE-2024-34750",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-34750 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3923e7f8-4577-5337-a352-aeb531bb0b1d",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38286 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:606f5b59-eb7e-59e9-bc3d-5ef8ece982b2",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1e9637fa-7d6e-5ac8-8578-913252d73ed0",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:606e6164-6c69-529f-9455-51409112be0f",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-54677 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:267c3675-ec12-59a6-8029-e0ecf4dd78f1",
      "id": "CVE-2024-56337",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-56337 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9361c430-f840-5eea-b6db-0795ad2d9401",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:db187052-2759-5f69-b5a0-4ba6ddfa96c1",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-31650 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:25616509-a663-53df-bed0-7e881f22e218",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31651 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:354672e5-f527-5775-881c-b1fc11cc1823",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-46701 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b82ec734-f994-515b-9443-b8096fca72a7",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a8acf40a-6cde-5c02-9d6c-b19b275e56bc",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-48989 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c29bda34-e522-500e-a1ee-5636eabd07da",
      "id": "CVE-2025-49124",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49124 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:59688265-d3fd-5305-a00e-1b26a82b970a",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1a67d309-7ba0-57ae-8258-d8e6f7003ce1",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-52434 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c8a36309-7279-543b-8d3a-acf96de0de05",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52520 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:16a386bb-d482-51b1-ba1e-4a221b466fcd",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-53506 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:83940ec5-c0db-5c58-9999-a0dd68855b1d",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ec21b11b-642e-5a0b-bcc6-82a8dcbcb06f",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55752 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bef4f4d1-090d-55bb-ad0b-f0bc7ac421b8",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5832a2be-b566-5ba9-973b-6ad511320026",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d4554763-9f94-542e-9701-24047cc9d3ee",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66614 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4a59677d-42e0-5f94-b1e3-3a17105c560f",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24733 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a77f3e42-46fa-5756-b1c9-2c5a9f1df942",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8016143d-43d2-5054-92f5-afc88b5d0ba2",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-25854 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8f116f87-0217-5f10-a4b6-94e3c975007f",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29146 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ac9cf3c8-8d95-5e7e-853a-f48ad7aa9c74",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:29435b70-ac52-51a2-9645-7410d600d65e",
      "id": "CVE-2026-34483",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34483 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dd80ab05-65df-52ea-99a2-c5772010c191",
      "id": "CVE-2026-34487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34487 affects version 9.0.50-tuxcare.4 of org.apache.tomcat.experimental:tomcat-embed-programmatic."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat.experimental/tomcat-embed-programmatic@9.0.50-tuxcare.4"
    }
  ]
}