{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:99384f9c-5d89-59d3-a6d3-db9b2b262d9e",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-de@9.0.90-tuxcare.5",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-i18n-de",
      "version": "9.0.90-tuxcare.5",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-i18n-de@9.0.90-tuxcare.5"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:f2ab7874-3d65-58c6-ba5c-935daef9cba7",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11996 affects version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-de."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-de@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dbd2d125-23c6-5fb2-ac4b-01b1048eb7ee",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-de."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-de@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:df668e42-ad8c-59ea-bd22-d3c72fba10f7",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2020-13943 does not affect version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-de. Fix for CVE-202-13943 for this version has been already backported by the original developers, so brunch 9.0.90 is not vulnerable"
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-de@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:124553ef-1692-53e5-86e4-f56411074c81",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9484 affects version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-de."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-de@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a799e79c-1e12-5b39-bb6d-faa45cde4905",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-de."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-de@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ec8d3069-ab8c-5530-9ded-35cf7c571513",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-42340 affects version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-de."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-de@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:77c632de-e94e-5bf5-847a-ee14c25b5635",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-34305 affects version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-de."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-de@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ef110736-c9ca-5914-a79f-4f00c7f3c519",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-45143 affects version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-de."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-de@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:62adf6ef-a12d-5971-b247-75cc09b628ab",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-23672 affects version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-de."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-de@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f6275870-842f-5f6e-90d0-d97cd6d839c5",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-24549 affects version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-de."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-de@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:34bd958f-4026-5caa-a9a7-391470b22341",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-de."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-de@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c240a760-214c-5df6-b0d0-e0530f38b630",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-de."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-de@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8f01127b-5c0e-5abf-a00e-3b4fd4207e01",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-54677 affects version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-de."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-de@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:395d9cdb-8b35-5173-acbd-f66dbedeb418",
      "id": "CVE-2024-56337",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-56337 is fixed in version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-de."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-de@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:73db7558-62c7-509c-99c6-0e9864a1cf65",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-de."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-de@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9cdc5940-adee-5335-8c0e-fe83fee38446",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31650 is fixed in version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-de."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-de@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f327f0ec-3f3d-5d1a-a456-1b46437172d5",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-31651 affects version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-de."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-de@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:35233af6-49d4-52bc-8ffb-5643a6d10c99",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-46701 is fixed in version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-de."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-de@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c787c365-4d17-58b8-8a97-4ac4da780306",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-de."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-de@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:274245db-990b-5706-8bd5-a790e2233829",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48989 is fixed in version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-de."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-de@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2b78e5a4-f27f-585c-ac4c-f319e8385393",
      "id": "CVE-2025-49124",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49124 is fixed in version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-de."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-de@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:862de959-991b-5e1b-8d10-fc566ac58fb6",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-49125 affects version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-de."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-de@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:84ecdf58-d25f-584b-8d00-15dbcc4112b9",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52434 is fixed in version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-de."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-de@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4ee25841-33d7-553e-a9ca-653b31f3bf10",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52520 is fixed in version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-de."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-de@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a512edd7-524f-5a19-8aa5-0c158e515efb",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-53506 is fixed in version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-de."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-de@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ef9119b7-fbf2-5d42-8702-babc614fee54",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-de."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-de@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:73cabee6-9cc3-5bf4-8add-5bebe138a225",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55752 affects version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-de."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-de@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:60f1875d-70e7-5fe8-b79c-760646a9c64e",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-de."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-de@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fbf4c106-51dc-53d9-a250-dde9160d3aa8",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-de."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-de@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a293e2d4-68f9-5947-a1a9-e0662581274f",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-66614 is fixed in version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-de."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-de@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b01af10f-7dba-5589-be33-70f89f40239e",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-24733 is fixed in version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-de."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-de@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c2748987-f7b2-50ff-8607-6ee0e21e6b18",
      "id": "CVE-2026-24734",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24734 affects version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-de."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-de@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e0a286dd-de1e-5a36-afaf-8f9b797b698c",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-de."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-de@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:56a388ae-faa5-53a0-a2d2-ecde4ac1af03",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-25854 is fixed in version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-de."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-de@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e968be30-3de5-5970-bdd3-4e2df94cb266",
      "id": "CVE-2026-29145",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29145 affects version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-de."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-de@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6f07bbf3-829e-549e-b0e7-8d525d61ba72",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-29146 is fixed in version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-de."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-de@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dc6982b5-ce5f-5043-b40b-82c8a159ca50",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-de."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-de@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:afeafeb8-688d-53a5-943f-9f8e506156f5",
      "id": "CVE-2026-34483",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34483 affects version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-de."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-de@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8ed130ee-e9a6-5d36-bf82-c6f99851edfc",
      "id": "CVE-2026-34487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34487 affects version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-de."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-de@9.0.90-tuxcare.5"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-de@9.0.90-tuxcare.5"
    }
  ]
}