{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:eda09281-2d26-58d5-ad3d-ba37dc145ef8",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-coyote",
      "version": "9.0.87-tuxcare.4",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:756d917b-365a-53be-a21c-581c36d42859",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11996 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0798c542-175f-549f-9b9a-6a9b10014fb7",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d1d6383f-316d-5eb5-b4dd-5ab91d54b63c",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13943 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b1e45bb6-7b50-5814-af8f-bbdd6c65445b",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9484 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bb5e3973-2f1d-5f6c-b5b1-8193790126e7",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6a662c3a-88c4-5c98-b566-3d9e27ee8480",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-42340 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b846b116-c823-5cf3-9c18-3272bd84a82b",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-34305 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eca4d4c3-0909-5f64-80e0-629840688e41",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-45143 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:899011f2-449c-591a-b1d9-f5392538b664",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-23672 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b039448d-a5fd-574a-8bd4-4d239c9498bf",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-24549 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:374e8a41-8693-514b-a1e4-8ca259830d1d",
      "id": "CVE-2024-34750",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-34750 is fixed in version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8e12ba75-758d-5fd6-abd4-8d805730fede",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38286 is fixed in version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7f4c3bb8-21da-58d9-833b-e83dab3d80c1",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f83466dc-2b6d-5a6b-9081-e8063f3d1a7e",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:53923b66-9a8c-5711-9edd-2a4225ec5fe9",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-54677 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:980037d4-e5ee-5ef4-9916-549a4b5261af",
      "id": "CVE-2024-56337",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-56337 is fixed in version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:34c7791b-1d36-5da9-b043-05ab31236fac",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b9f900a6-bf45-543d-ad6b-0b49a0fb4cb0",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31650 is fixed in version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:034ec972-7cca-54c8-8095-c3973533a290",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31651 is fixed in version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:569f93a9-8a1e-5338-bf44-5923abeaefe1",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-46701 is fixed in version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aad7ee52-62e9-5279-9a9b-f162f237bc4a",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-48988 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bf96b590-76b0-5bc3-b461-f56d382ae024",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48989 is fixed in version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4ed8b3eb-5e60-5af6-8174-f39b05064892",
      "id": "CVE-2025-49124",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49124 is fixed in version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:af4ded66-34c3-552f-bb51-29e73e9ab5e2",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c6cd33b8-54f2-5f8b-a7fb-fe92e85e4ccd",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52434 is fixed in version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:206dcd68-9f50-5ec7-82f2-e471d1eaea2e",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-52520 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ad5b5295-35cb-5a63-9337-fb04781027e3",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-53506 is fixed in version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4f1242ee-30ec-5b7a-ad6f-a8348525dd0f",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9872b15e-a05c-5646-8a08-5eead1781ebf",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55752 is fixed in version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:84a0527d-4e9d-592a-a532-b01566ef8535",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:27572994-b56c-5355-8fdc-da4e500dce42",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:82bfe470-9700-5931-ae34-436a80b736f8",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66614 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0e33f526-7c9b-5775-b1e2-2bb02f7b9c06",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-24733 is fixed in version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7d396dd7-ff67-55c3-94ee-7c93a88b2b6d",
      "id": "CVE-2026-24734",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24734 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:75416555-7082-5e06-b30a-4136265e12a4",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:09c4d2be-2a15-5b19-82eb-ba2511cc6e11",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-25854 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:428daaf1-1ae0-5d4e-ae09-fa3465b6ca95",
      "id": "CVE-2026-29145",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29145 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:df94d6e9-a35a-56f2-8138-1a26fe59d91c",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29146 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7493068f-1238-507b-b844-d29041b9edfe",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c27020f9-3ad9-5a48-b648-e5459ac5413e",
      "id": "CVE-2026-34483",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34483 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e3139d98-cba6-5a59-bc8a-b2a43d684530",
      "id": "CVE-2026-34487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34487 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.87-tuxcare.4"
    }
  ]
}