{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:e17c8b5b-98ef-5f62-afd0-65038f1d164d",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-catalina",
      "version": "8.5.100-tuxcare.6",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:3f956c42-03dd-5458-8963-bf790e1c735b",
      "id": "CVE-2016-0762",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-0762 affects version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f49a90a1-224b-5b8f-9036-e9c70978e849",
      "id": "CVE-2016-0763",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-0763 affects version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b018469a-5726-5256-af52-073d2eed2c2c",
      "id": "CVE-2016-5018",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-5018 affects version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:912c7887-1265-5a5c-b1ba-767a9a6cd45d",
      "id": "CVE-2016-6794",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6794 affects version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b5376cbb-3bf9-5421-ae2d-a8eda4f6e94e",
      "id": "CVE-2016-6796",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6796 affects version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6178879f-9eea-5962-a0db-ca4f15c4b226",
      "id": "CVE-2016-6797",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6797 affects version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:340f4994-2dad-5ac8-80da-caace8fff5f5",
      "id": "CVE-2016-6816",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6816 affects version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:172163bc-0852-536f-b177-12de8db006e6",
      "id": "CVE-2016-6817",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6817 affects version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7d1ab8b9-e74a-533a-bb6b-1e9561ca7ce5",
      "id": "CVE-2016-8745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8745 affects version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3f51a6c0-46f9-59e3-bac2-4dd8c0170abe",
      "id": "CVE-2016-8747",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8747 affects version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7e2c3e76-3445-5704-b077-9a4d921a0bcb",
      "id": "CVE-2017-12617",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-12617 affects version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a0368f8f-aef8-5b7f-816f-ec25ecf29058",
      "id": "CVE-2017-5647",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5647 affects version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bd05801e-90bb-5aea-a7d5-655e72b76d02",
      "id": "CVE-2017-5648",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5648 affects version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c842c927-0ee9-517f-ae17-97d1f3c37170",
      "id": "CVE-2017-5650",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5650 affects version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8ac9761a-5a0c-5ec1-8824-eb5d4205c898",
      "id": "CVE-2017-5651",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5651 affects version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:df453fc2-d5d6-56e3-9356-c9db4e3e67cd",
      "id": "CVE-2017-5664",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5664 affects version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7b96456f-949b-5482-98a4-00f2a4363511",
      "id": "CVE-2017-7674",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-7674 affects version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cdaf336d-0bc2-556e-b5a7-5ecad3f99aed",
      "id": "CVE-2017-7675",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-7675 affects version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:550ea97e-99fc-5db2-8739-b96ce9a390ef",
      "id": "CVE-2018-1304",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1304 affects version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:16fd3281-62d0-56dc-b339-7afe3d6b501d",
      "id": "CVE-2018-1305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1305 affects version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:66e38083-085f-5797-a187-27663c57c603",
      "id": "CVE-2018-1336",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1336 affects version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:250c0b70-7df7-5db1-a683-47d5ab72cc47",
      "id": "CVE-2018-8014",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-8014 affects version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:db8ceec0-8324-504c-aba6-bb27e8b32b13",
      "id": "CVE-2018-8034",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-8034 affects version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:557c8295-250c-5f71-93fb-5539f938629d",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11996 affects version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a7943557-d3b9-5191-ac9e-e50b47d60c98",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7d5c2111-ba31-5f92-97eb-529045d65c69",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13943 affects version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:92ad0ea8-aef0-5706-846a-14bfd13a882b",
      "id": "CVE-2020-8022",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2020-8022 is a false positive for org.apache.tomcat:tomcat-catalina 8.5.100-tuxcare.6."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7c707bea-1c0a-5955-b657-c17179ff5b67",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9484 affects version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:75a00fec-db85-5a38-985d-af1d2cdae9cb",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f0a3ce84-6140-5b39-8ce1-95beaefbaa8d",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-42340 affects version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fa995bca-4249-58c6-9e2f-d6e0533e2697",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-34305 affects version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8d595dea-de8f-58e3-8da6-e77f717c06c9",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-45143 affects version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5ddeb401-7571-521d-bf0e-65719d7a813b",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-23672 affects version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:80a91674-035f-5d97-9e94-3fecfb906bb7",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-24549 affects version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ee888c3a-fba2-51a7-b4ee-5f6197539ff4",
      "id": "CVE-2024-34750",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-34750 is fixed in version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d57c353e-017c-52bc-9538-f22f77c87a32",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38286 is fixed in version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ec6e541e-f4d9-5d11-8161-a2f90d302b34",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e23fec17-53bb-599e-838c-c61b21aee7f8",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0f901941-2af4-5b67-8b7f-318a0eef7a2e",
      "id": "CVE-2024-52317",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52317 is fixed in version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aafd211e-e178-5c08-86c5-f30511ac8f25",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-54677 affects version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7947cb7f-d8ad-58a4-84b8-f4eee65e8f51",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2a0ac297-b6fc-57ed-84be-d7e986302d91",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31650 is fixed in version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6deeb793-7057-5742-9e72-c7306ab78a30",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31651 is fixed in version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c0bd4891-ef92-56ee-a4ff-695701c7a424",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-46701 is fixed in version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a0a33b5f-0292-5e54-a10c-9be17fb5666a",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0fb6c502-a04f-590b-8fb6-3eeeae99ecc6",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48989 is fixed in version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:725240cf-5a3a-5546-a225-692c710d2319",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d5fe0e98-141d-5cd3-9046-2fcbd5c8d245",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52434 is fixed in version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c79c526d-e443-5949-8045-ade8d073edce",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52520 is fixed in version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6e9c6881-e3c6-537a-a42d-d2a2dbbd56de",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-53506 is fixed in version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:030a1183-d2f8-5708-b6da-cc36beeb146a",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e116b7dc-437b-580e-a74e-a6f84113f10c",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55752 is fixed in version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:985c4b0e-00f5-5f3a-89b5-bda26c4fde0d",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:06b28bd9-168b-55e6-afc0-8ae6b000bf33",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:88daac55-2405-57ef-a69e-f491df65eb67",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66614 affects version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7c4c7f81-83c3-5ecd-acf2-b109b176219f",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24733 affects version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7b9e6ae9-8477-529f-84cd-3ca661893aa1",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:84fbb473-ed27-5a14-a3d2-46532f8e41c7",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-25854 affects version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d0dc9c27-b77a-54a5-b414-38f856f1fee6",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29146 affects version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:da152fdb-3fe0-5cbf-aa05-7df9d1f59d1c",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 8.5.100-tuxcare.6 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.6"
    }
  ]
}