{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:d8ce1741-7901-58a4-af0a-a2c61ec9708b",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-i18n-es",
      "version": "9.0.46-tuxcare.2",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:6e6aff98-f241-570f-beaa-834b25acd554",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11996 affects version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:00a86bca-09f9-5d9a-8993-0828a8b28cc9",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e505ee95-d607-579e-85bf-cf5c3fd41ece",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13943 affects version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c844c88f-c9e5-51e9-a4cf-328ac6de0d93",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9484 affects version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:59f24b53-682c-5b10-91a8-2c97d34faf70",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e9f2cd4c-19ad-5fe4-b023-ed49abcb50ec",
      "id": "CVE-2021-33037",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-33037 is fixed in version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:71ed1a27-9640-55ff-8ca6-d478a2ff2b9c",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-42340 is fixed in version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bf0e96a3-a4c0-5dfb-a847-408695c7bdf2",
      "id": "CVE-2021-43980",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-43980 is fixed in version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8861f507-ff3e-55ae-b71f-b4b2a91e12f0",
      "id": "CVE-2022-23181",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-23181 is fixed in version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dd86cc6c-77cc-5f66-91f6-537436cedab4",
      "id": "CVE-2022-29885",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-29885 is fixed in version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:19ddfeef-0b64-54dc-947c-f8d684a226c4",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-34305 affects version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8e5e9fb9-1b14-5f57-8be2-5323416795f3",
      "id": "CVE-2022-42252",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-42252 is fixed in version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dcb962c4-fbdf-542b-a5d6-387b7a81d80f",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-45143 is fixed in version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5712ebf5-8e6f-54db-89f9-5bc9548b7c89",
      "id": "CVE-2023-24998",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-24998 affects version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bab1942a-9d08-5220-8cae-148cd25344c5",
      "id": "CVE-2023-28708",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-28708 is fixed in version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6baf013f-0564-5fae-b003-b3593f3ef315",
      "id": "CVE-2023-41080",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-41080 is fixed in version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:18e69767-6e79-5466-b75f-c56aa6e3d14a",
      "id": "CVE-2023-42795",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-42795 affects version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2bfff329-a84c-58e1-ba21-66fccb8156e6",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-44487 affects version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6ac3b3cc-470f-505d-b203-57647c65b0da",
      "id": "CVE-2023-45648",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-45648 is fixed in version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2685fe9f-7e82-5e4c-b6bd-5adec2ae71b7",
      "id": "CVE-2023-46589",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-46589 affects version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dc189674-66bc-5257-8268-521b0fc9c608",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-23672 affects version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7ca6d081-dddd-59d3-8b4a-c69ba66c54f7",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-24549 affects version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bd70e38a-d95f-5d06-b620-9843e676462f",
      "id": "CVE-2024-34750",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-34750 affects version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9dcc9bcc-0a32-5cf7-bb32-3ea8bf8cc5b5",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38286 is fixed in version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0fa1f671-96d6-5a18-b831-fae6ad0bb087",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aa8c57df-e813-5d97-96c9-d3487b01b4cc",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c722554a-2559-5f3c-9813-0962b579e7b9",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-54677 affects version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4d6eb295-8e2d-5b1a-83a0-30a8b1f1dc67",
      "id": "CVE-2024-56337",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-56337 affects version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:98325285-c380-55b8-8fca-6b2b6fdd0606",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cf146a60-0fe4-5de5-9f43-3ffe4461467c",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-31650 affects version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9171ce67-3475-5157-9a4d-9c2f6f8eb1bf",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31651 is fixed in version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bb3dc121-b8d7-5130-bbbe-f01e3af01096",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-46701 affects version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9f0c10ec-bdea-5f71-997b-c2e0993ca2f8",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-48988 affects version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:079742aa-dbc5-5df1-a682-9e47381c2063",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48989 is fixed in version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8298e11e-ed31-59bf-ac75-bf9030a9ce5a",
      "id": "CVE-2025-49124",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49124 is fixed in version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2c1c57fb-7e09-5d2d-945d-f58d6ed7c57d",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:53eafad5-560a-52e1-ad89-b8f5e250dcc7",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-52434 affects version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c13fd98e-3825-5bc6-b4f3-2757e1fa470e",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52520 is fixed in version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d1166744-1a43-549a-bfb7-0f7f89ad0c03",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-53506 is fixed in version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7af99f8b-1182-5766-8595-8389418fbbee",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fe3c8e8a-1dde-55e0-92b5-565620404f0f",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55752 is fixed in version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:640a3e3e-626e-5de9-bc3f-b4844be170e9",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ccb8b26d-53fd-5d5b-bc38-de910f93d482",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:971fe005-d0a6-53fc-9cde-d4334cd424be",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66614 affects version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7691c43f-7d91-593b-8322-4ec50d2c3df8",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24733 affects version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:09bb92e0-9040-59c2-8280-5bbcaa476bf9",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b7fae2b0-4d64-5de8-bad1-226cb27dabb5",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-25854 affects version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:65983c0e-b919-5525-aaff-e631d2e1a4ed",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29146 affects version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:62e2b952-4927-5de7-b115-4a8c3b7270ca",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:165171fd-cfad-54cc-a4b7-a4d83440493a",
      "id": "CVE-2026-34483",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34483 affects version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b063f46a-f2a0-5e41-8cab-7a13d42c0562",
      "id": "CVE-2026-34487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34487 affects version 9.0.46-tuxcare.2 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.2"
    }
  ]
}