{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:f10a9c25-8c09-5731-8726-1eae72115a73",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-catalina-ha",
      "version": "8.5.100-tuxcare.5",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:04aaf4a0-c4ae-54b9-8d4f-ddf5b7fd306e",
      "id": "CVE-2016-0762",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-0762 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0da9e122-f471-5212-bb1e-6625e0912fec",
      "id": "CVE-2016-0763",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-0763 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e20ecf09-eb9b-54f1-bc3d-4ca11e0531e2",
      "id": "CVE-2016-5018",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-5018 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:20ede01b-10fb-5bbe-8349-ec601a0fc50d",
      "id": "CVE-2016-6794",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6794 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:242002ec-90fb-54bd-a8ab-ff40beb0de52",
      "id": "CVE-2016-6796",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6796 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8b5e28dc-e13a-5fe4-a5d6-230e677f4d38",
      "id": "CVE-2016-6797",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6797 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:504493b5-55a6-58f7-ad7c-0ac2f1dbe257",
      "id": "CVE-2016-6816",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6816 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:217efadf-988e-568d-85e6-4159c0be6af3",
      "id": "CVE-2016-6817",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6817 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f64da646-4195-5852-a98b-0bd87bc48ef6",
      "id": "CVE-2016-8745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8745 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0b0c2a17-6fee-5293-9c38-ab3a16e23c41",
      "id": "CVE-2016-8747",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8747 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5c141808-60e7-5f32-89a3-c5eda3f0a859",
      "id": "CVE-2017-12617",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-12617 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:654691c5-d0ed-542d-8570-e862fa485bf2",
      "id": "CVE-2017-5647",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5647 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9c015ce5-e065-5888-9264-36dcb5b75f2e",
      "id": "CVE-2017-5648",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5648 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1bcaa79c-b933-5edc-bf15-305763d1682f",
      "id": "CVE-2017-5650",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5650 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c463d2e3-b24b-5a0b-b701-7158f4f6f676",
      "id": "CVE-2017-5651",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5651 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7edfc7a8-0daf-5b21-8cb3-6a5976228cb7",
      "id": "CVE-2017-5664",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5664 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c9bb22ae-b862-5225-a94b-26905f62c90a",
      "id": "CVE-2017-7674",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-7674 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2eef51b8-3bb1-5a02-865f-11caf430aa10",
      "id": "CVE-2017-7675",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-7675 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1ecaa60f-382b-5246-9684-49ebb63a5f15",
      "id": "CVE-2018-1304",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1304 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:071e04f4-43e1-5cf9-9af1-e86c872c510b",
      "id": "CVE-2018-1305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1305 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:85175c0d-eea8-56a3-a978-645c9de77fd0",
      "id": "CVE-2018-1336",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1336 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3f7aa2e6-fcf9-54c6-96bd-0939c8bbf669",
      "id": "CVE-2018-8014",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-8014 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:263d3b34-86a8-5d41-9f48-dac10d772e37",
      "id": "CVE-2018-8034",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-8034 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:def63e74-1231-5c9b-9b5a-27953e549681",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11996 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aa47a343-84fc-5282-9df5-a5d5882cdd61",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9b07598a-b05d-543a-8d2f-19b7ed6d6b6a",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13943 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8437f396-ed48-5834-8cf8-9e325938566c",
      "id": "CVE-2020-8022",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2020-8022 is a false positive for org.apache.tomcat:tomcat-catalina-ha 8.5.100-tuxcare.5."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:700eebcd-6321-532d-ad98-fafd61b4c41b",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9484 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:86444fb9-2382-5765-9f8d-0fe0f6ad5e09",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9e2868fc-3629-5829-ab94-84419b5f63a8",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-42340 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:18bd1a23-e1cd-591d-bb21-d6c6f645e97b",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-34305 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:46b385e4-5005-5be8-9348-7f11d0d73d69",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-45143 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:15b5056a-d169-5d9a-818d-7cc2ca59472d",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-23672 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1af44030-fbeb-5c41-b84f-7e9b20685ef2",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-24549 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d0307c68-34c2-5659-ad6c-552afa1ed221",
      "id": "CVE-2024-34750",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-34750 is fixed in version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ab5581f0-2be9-5901-bd5b-38a6e77f9332",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38286 is fixed in version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7f2ad8c7-8041-5371-b60c-1ceef1ba5d2b",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b5bda402-00cc-54fe-b799-b725ea87b3d3",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:70f97017-f24e-5e42-ba94-3abb40dd2164",
      "id": "CVE-2024-52317",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52317 is fixed in version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4f69f48c-7c20-5aba-bde9-529abd5c28eb",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-54677 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8c4f8e4f-b5d3-5020-8eb6-7daf08bb4ab4",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0b66b06b-3678-5eb4-96a5-fa6fc89c0958",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31650 is fixed in version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3fb30092-6c44-5613-a8e5-9e0fd23374ba",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31651 is fixed in version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:48de02d3-b8b1-564a-a648-efddd1761081",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-46701 is fixed in version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:46c20816-5458-5b90-8b4d-733b315f8be9",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:118cbe53-f57d-5e8f-928f-c2bfc41200ba",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48989 is fixed in version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a85331e6-1180-5ae8-913a-8021fde54414",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a275c8dd-1701-59a1-b768-ad70e239d70f",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52434 is fixed in version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f3e9d107-6af2-5f3e-9745-262bbedacf17",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-52520 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7ccc6a34-742a-51f8-a285-eab8b9eb66f4",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-53506 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e5cdef40-a11d-5bbb-8698-b4ab82874775",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:586bf82d-ca08-5fa9-b848-8d82f33db180",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55752 is fixed in version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ae526abc-191a-597e-b873-d5be4809ecb7",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b83ea323-e438-5764-8265-bdef7b818444",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4152fa0f-80c3-5e29-b725-911b5fec0241",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66614 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:390a7f2b-89d0-5da3-82f8-a42de532ac1b",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24733 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1c96e75f-b02b-5193-ade1-c36a0276c6db",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8ec77eb7-6be2-59ad-96d4-8a4f4765be38",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-25854 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:75b3bb40-7fd6-5170-bcef-7570c6dc751b",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29146 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:23d763b9-a51d-527d-8a80-e6fa3a54a068",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.5"
    }
  ]
}