{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:094ba49c-19e9-5456-afa9-fbaa6156f7f6",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-dbcp",
      "version": "8.5.100-tuxcare.5",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:4f720717-ae92-529f-bd33-e3c75d273ad6",
      "id": "CVE-2016-0762",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-0762 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:296ff207-db47-5974-8104-f3ed291bc8b2",
      "id": "CVE-2016-0763",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-0763 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3ff7bccf-f6ce-55de-8948-23552eb3eed3",
      "id": "CVE-2016-5018",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-5018 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5dca738c-fd06-5721-af23-54110e60c098",
      "id": "CVE-2016-6794",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6794 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7e49f37a-1517-5175-8fcf-e226112b1a79",
      "id": "CVE-2016-6796",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6796 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6ac868e2-beed-523c-b8bc-e0a65d866869",
      "id": "CVE-2016-6797",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6797 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:72ffd591-bccf-5282-80c4-dbe73b342dc8",
      "id": "CVE-2016-6816",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6816 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8e0eca21-31a4-5123-b804-9b12629c8800",
      "id": "CVE-2016-6817",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6817 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e41e9080-57b3-5736-a309-3a8375bf27a6",
      "id": "CVE-2016-8745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8745 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:399a13f6-b719-5919-91c9-9c21366aa621",
      "id": "CVE-2016-8747",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8747 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:61364f65-9f8b-5682-befb-8d23c79333db",
      "id": "CVE-2017-12617",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-12617 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ae7ba310-7b55-596f-b9df-c4bca331abc9",
      "id": "CVE-2017-5647",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5647 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c275dec8-b2e4-5b5b-8a95-c9c299ef56ad",
      "id": "CVE-2017-5648",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5648 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2841a1f9-3276-5b74-8575-bd80d3d4e76e",
      "id": "CVE-2017-5650",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5650 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6bba40e1-2c67-5edf-80c0-7ab33d31948a",
      "id": "CVE-2017-5651",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5651 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:03678c3a-646a-5ab2-82da-75fe5015aa32",
      "id": "CVE-2017-5664",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5664 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3a45d582-45d3-5590-bd57-26cdb92e899a",
      "id": "CVE-2017-7674",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-7674 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:92dfde74-3429-5948-90f5-1fb20840a8f1",
      "id": "CVE-2017-7675",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-7675 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:038e6bc2-a212-579d-a400-3e7926b8bde2",
      "id": "CVE-2018-1304",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1304 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4e072638-15c7-5670-abed-33f2e0e422ba",
      "id": "CVE-2018-1305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1305 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e74f6ec3-22b6-57ad-9fed-fe1e8c67a922",
      "id": "CVE-2018-1336",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1336 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b0e1080c-f850-5c05-b416-e75359bc3770",
      "id": "CVE-2018-8014",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-8014 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:92af0f56-1406-58ab-b42a-5a39880e2493",
      "id": "CVE-2018-8034",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-8034 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cd31a7df-5c7b-5e35-ae72-83868d1bf9c2",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11996 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:afef63bf-c6cf-5a96-8c9a-d028cfe76370",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f72a8f59-453b-56fc-ac64-2c32875731f0",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13943 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a7397dd0-a49d-55fb-88a2-fb6ce738b567",
      "id": "CVE-2020-8022",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2020-8022 is a false positive for org.apache.tomcat:tomcat-dbcp 8.5.100-tuxcare.5."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aec00643-df83-585e-83b1-9b347f961b4b",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9484 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7d582525-b48b-5809-8c48-29336ce8f90a",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bc3fcb93-4528-56b6-a8f4-f863684394bd",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-42340 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0d40e1d8-d4d5-521e-9fee-1c31b47b28a7",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-34305 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:651129a4-3f72-50a1-be3e-0cd92ee77b26",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-45143 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2e87373b-7715-50c2-be11-6e14ad813097",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-23672 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3bbe6cfe-6904-5496-8059-82d468a43656",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-24549 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1e6e6f45-abbd-5219-920d-1d1935822360",
      "id": "CVE-2024-34750",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-34750 is fixed in version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7165bd91-ab9b-595b-9c99-3477cbd046c1",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38286 is fixed in version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ee338ecc-dc77-57ad-a24a-c29e1d0f5e19",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9b3ac36f-fc4e-5e26-9b56-908a86ded17d",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:76497cc5-c64a-5119-b2a7-5046a9ca3ebe",
      "id": "CVE-2024-52317",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52317 is fixed in version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b92ddab3-a314-556c-be26-31a4a2cda755",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-54677 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fb052b77-7936-51b1-99b6-d9f12c11fa4b",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:065cf1be-db9f-5939-a02b-c05b36f35039",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31650 is fixed in version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d4c9f22a-5e84-52eb-8f58-c916a959f35c",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31651 is fixed in version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d65a99e2-5a82-5e80-9938-87f1d558280d",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-46701 is fixed in version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dabb87d7-fb59-5d07-99b7-60e1a11a1ffc",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:07f4a174-e834-58c9-9744-48bbae2143da",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48989 is fixed in version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:80db4859-dd84-54cf-a200-6466e1d3bca0",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:127343e8-8534-573e-a4d4-202baa762433",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52434 is fixed in version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b5ca2544-4a66-507c-9e04-dfc4490171ca",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-52520 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:34f022a9-e07c-56b5-86e7-7b10387265cf",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-53506 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:46c7e664-785a-564e-b0ef-fa43904b0ad3",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:66a6e1f3-025b-5cc0-b113-2bc9aff26cd7",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55752 is fixed in version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:845d2d89-4584-5243-b977-6d600476dc4b",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8123f9bb-da9a-5305-b45a-654ac3718ec7",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1eeacfa6-030a-54c3-95a8-3dfacebbb285",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66614 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8f2ed0bc-1224-5fdf-9e7f-7fd0d15773f2",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24733 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ffda4e45-0c77-5667-aaaa-0044b0491381",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:697013c9-f204-5266-8b73-50b23a82b0dd",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-25854 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:65a057f8-6053-5025-8799-045444635263",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29146 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ba49c2cc-1d33-573b-ab94-143b8cf0e529",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 8.5.100-tuxcare.5 of org.apache.tomcat:tomcat-dbcp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-dbcp@8.5.100-tuxcare.5"
    }
  ]
}