{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:d6c195a5-ea08-5b3b-bc56-c913dfd09cb6",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-catalina",
      "version": "8.5.100-tuxcare.7",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:88b94667-b9eb-5a06-adbf-152325656bc1",
      "id": "CVE-2016-0762",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-0762 affects version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d71c5753-54fc-5cb8-a243-7c47caa37566",
      "id": "CVE-2016-0763",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-0763 affects version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2d8d6488-a738-541e-b5b4-99a89f69045a",
      "id": "CVE-2016-5018",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-5018 affects version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d5a26594-6dd9-5f20-bf0c-d18853ecc8fd",
      "id": "CVE-2016-6794",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6794 affects version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4b287eff-a4b7-5844-afa6-091c3b46b55d",
      "id": "CVE-2016-6796",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6796 affects version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:decf683e-e7c2-5580-86a8-91e8a4d82d17",
      "id": "CVE-2016-6797",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6797 affects version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:606d2a68-6ed5-5181-8262-a721383927c6",
      "id": "CVE-2016-6816",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6816 affects version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4614e429-82c1-52e3-b148-508eb04c6476",
      "id": "CVE-2016-6817",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6817 affects version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:51b2315b-2d3f-501a-a5c8-7cbe012e0c87",
      "id": "CVE-2016-8745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8745 affects version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ca9eec01-649a-559a-b33a-f780bfe28b71",
      "id": "CVE-2016-8747",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8747 affects version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2b443e86-a725-5a5b-ae18-31f0168e5909",
      "id": "CVE-2017-12617",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-12617 affects version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5bf120eb-9505-5294-ac86-7f1d56c9fc4c",
      "id": "CVE-2017-5647",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5647 affects version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dfbdf591-fa02-5abf-a1d1-8d32271bf9ba",
      "id": "CVE-2017-5648",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5648 affects version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5296903e-74e7-5184-8082-862463e48d46",
      "id": "CVE-2017-5650",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5650 affects version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:05339e46-be23-512e-86f2-ec1ebd5f6ce3",
      "id": "CVE-2017-5651",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5651 affects version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a6bb6e2b-bf4b-5b76-9d4d-0c0fb387a2f9",
      "id": "CVE-2017-5664",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5664 affects version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:286c000f-324d-59fc-a33d-ce44c94a486e",
      "id": "CVE-2017-7674",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-7674 affects version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1c99c03b-b047-51db-ab5b-59502ec80f1a",
      "id": "CVE-2017-7675",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-7675 affects version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:88e016e9-55b7-52a5-a62b-5ccb0061caa6",
      "id": "CVE-2018-1304",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1304 affects version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:79b65d24-73f1-5fa5-b6ad-6c2de77c57f6",
      "id": "CVE-2018-1305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1305 affects version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6cb6be35-df9d-5d34-8e26-be518dad16ff",
      "id": "CVE-2018-1336",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1336 affects version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a093e067-cf62-523c-8b35-8c925aa9e8e8",
      "id": "CVE-2018-8014",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-8014 affects version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f6c79451-99df-5063-b5cc-97a4b7abdb3b",
      "id": "CVE-2018-8034",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-8034 affects version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9cf00808-2aa2-577a-9134-ba4dd655e394",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11996 affects version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f8164753-2607-5c9b-92c2-c9d2b024c738",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:964bdbec-b81c-52c6-988a-072bc59bb56b",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13943 affects version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d709772b-2169-550c-92ed-f6413a16360b",
      "id": "CVE-2020-8022",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2020-8022 is a false positive for org.apache.tomcat:tomcat-catalina 8.5.100-tuxcare.7."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:18c8b845-d777-5d53-a04c-05b5d2398df5",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9484 affects version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2acf6b7a-6f35-5fd9-b8ce-2f0d61feee89",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d0f79eea-58f4-5525-a331-4d028d423ae9",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-42340 affects version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fd0e8fbe-f3ce-5af8-b1af-ec3f260f6ce1",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-34305 affects version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dc79fc7e-8320-5855-90d2-8d1ac416b730",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-45143 affects version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9780cc7a-2f04-551d-9f52-53782d9aedbe",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-23672 affects version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4b511170-bde4-5423-8d44-b6604a17a906",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-24549 affects version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e81032b7-eafc-56c0-bc91-287d3e8e62ff",
      "id": "CVE-2024-34750",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-34750 is fixed in version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:10462717-205b-596a-a76a-d237c736dbeb",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38286 is fixed in version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:91cc8b57-524f-5580-907d-ead45c8ff0dc",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0ccbd2e0-560f-5832-ae6a-2e507a772eb6",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:624e92ad-9b0d-570a-8d5f-5cbe5e698625",
      "id": "CVE-2024-52317",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52317 is fixed in version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:86baae37-f805-5c6b-922f-9b774e851d7d",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-54677 affects version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7c2ac404-e9f6-5cde-89b6-6fa23b0aaf78",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d9f3b523-f401-5c6b-ad53-ed382a25d69a",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31650 is fixed in version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e1e8e528-c529-5e4c-9d57-5c7ed2a557ea",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31651 is fixed in version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:54c381ab-5c61-539a-9061-4d85c7d6d6de",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-46701 is fixed in version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0fd8fe10-b395-5b82-8c16-cd847503809f",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c0ca2745-97fe-52f6-b0ad-73dddf921f28",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48989 is fixed in version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:267ae1fe-c4dc-5e39-ad24-71b3b252fc11",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aa507f69-c723-5c10-a4ba-d2561940447d",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52434 is fixed in version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e0663e09-4483-5ee6-9489-1a5422c7bad2",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52520 is fixed in version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eae7066a-199f-566e-8f7e-de1db1e392bb",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-53506 is fixed in version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fca92705-b43c-553c-b0d5-9624fba439fc",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d6c33132-be85-5f40-86c7-df8e2f5e602e",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55752 is fixed in version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e13c0bf6-1ce8-5eb2-abb6-dc44bd2bed21",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bd05bc6d-baca-5199-8959-ed24e0af1ce2",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dd83ce64-4e9c-5b0b-9dd2-7dc361c2d593",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66614 affects version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:835454c4-5806-5cce-9183-a2e10a40ed53",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-24733 is fixed in version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1d3bf6ff-5e37-5b94-b552-a0769b9f53f5",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:757e611f-f22e-5efa-9dc7-c1b560468e0b",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-25854 affects version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e6a163d5-6ad1-57be-acc5-efb1a4abd343",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29146 affects version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1d451736-8ce2-558f-bc2a-2351e1e0faa4",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 8.5.100-tuxcare.7 of org.apache.tomcat:tomcat-catalina."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina@8.5.100-tuxcare.7"
    }
  ]
}