{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:1f7b05ad-b917-56a8-bdc9-36a7f6430046",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-el-api",
      "version": "9.0.75-tuxcare.3",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:cf251d98-e1b1-5ad9-84bf-376434ae1499",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11996 affects version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c6efe731-e933-5676-88df-add10ddccaff",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e4762296-20ae-5abf-993b-9b7b2e23f2b9",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13943 affects version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:94008e55-ad60-5ba7-a458-40efbb6e5b5c",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9484 affects version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8ac503f7-7cea-5ed4-8829-ca64c2bd0a86",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:704ae537-640c-5e0c-9d04-30216d3368e5",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-42340 affects version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a8c8e1ce-3cc8-54db-b39a-d83e4343f67b",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-34305 affects version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3633099b-ae87-5979-867e-8c50e4d87e26",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-45143 affects version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:95b6b2be-3fd6-5a4f-a35b-7815bba5a2d8",
      "id": "CVE-2023-41080",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-41080 is fixed in version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:524a65a9-7322-56eb-b089-71dc99ff52ce",
      "id": "CVE-2023-42794",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-42794 is fixed in version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2e69163d-5ec8-5f08-94b5-8b83fb4bf2c7",
      "id": "CVE-2023-42795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-42795 is fixed in version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dbb303ee-9a27-5c8a-86c7-fb21bf5dc8b3",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-44487 is fixed in version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b1808435-d932-514c-9c1b-87efa8e33cd1",
      "id": "CVE-2023-45648",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-45648 is fixed in version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f1649f91-16e7-5876-a546-48651615e7e7",
      "id": "CVE-2023-46589",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-46589 is fixed in version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0e6538e6-3c7a-5ab1-963f-f7ae187d2129",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-23672 is fixed in version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4e7379f2-ac25-57fd-9c73-98db09410e49",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-24549 is fixed in version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f35e19be-4990-5b9d-b20d-f199dcae80c3",
      "id": "CVE-2024-34750",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-34750 is fixed in version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3f156cc5-a4dc-5a76-be14-59eeb3c51713",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38286 is fixed in version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:00dc5cd5-9457-5ddf-9d99-fa19714946fb",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ef42c9e8-1a48-5348-a6ae-c5bdf11805e0",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:764b246f-af4b-5bb0-a66e-8ef408d1b9c2",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-54677 is fixed in version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:447c5a48-3bd0-58f1-91da-21dbaaa2e5f3",
      "id": "CVE-2024-56337",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-56337 is fixed in version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:91bd576f-15c6-50f8-946f-4dabb3e5e8a3",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c369ed3b-e6b9-582e-bd59-b7b51c3c66b9",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-31650 affects version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:13840746-9f16-5094-ad1a-97e5619f48e9",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31651 is fixed in version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:406dce93-1a9a-5514-ae2f-eccbe83df8b1",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-46701 is fixed in version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5271bd29-c3a6-5ea4-9a6a-02b0e1830dc0",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4b191bcb-bef8-57df-8080-3813596dced6",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48989 is fixed in version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b7264c9e-661d-5994-9f63-6fc84f3ab6a2",
      "id": "CVE-2025-49124",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49124 is fixed in version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:65018661-a34c-5c2c-92c9-bb854f8df4b1",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:75e4b427-d272-5702-8659-bbb7da019df1",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52434 is fixed in version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e36b9dda-2ad0-5f87-a410-94bc062c0c42",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52520 is fixed in version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b461285b-60b3-537c-af42-9c41f4a593a5",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-53506 is fixed in version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f8c32095-1ca1-581e-8b45-757345eba7f0",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6fc31d2c-de24-5a18-a715-37cb3927eb4a",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55752 is fixed in version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6a74d32b-a9e4-54a0-a779-16e6daa470a7",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:793f8dca-91d2-5fe4-8ed0-f97c6a70f346",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0d0a089a-bf3c-53a7-8d06-4e8bc64dc37c",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66614 affects version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:844ed8b6-cd92-5d5f-9ee2-32f1e7404e76",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24733 affects version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:813f4615-5908-5ab0-a342-866e5c515dfe",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:af31b39a-bff7-51ce-8043-4f47677b6302",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-25854 affects version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a9dd9954-f24a-59ce-bfdd-de2107218bae",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29146 affects version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:051666d8-5ff0-5623-95c3-54421c21ddc9",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:362c18d3-0c96-5a1e-85ad-b1f97260cd44",
      "id": "CVE-2026-34483",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34483 affects version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2d615b85-6a58-523e-816e-abf4cbdd516d",
      "id": "CVE-2026-34487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34487 affects version 9.0.75-tuxcare.3 of org.apache.tomcat:tomcat-el-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-el-api@9.0.75-tuxcare.3"
    }
  ]
}