{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:2191b9c2-a894-52d0-8490-3c03b4f339b2",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-i18n-es",
      "version": "9.0.46-tuxcare.3",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:5e214a71-4d22-5a08-8580-38338ab667c0",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11996 affects version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:842c3d8a-7781-52b3-8fc2-c08ad9997871",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:89c7ce73-b9ed-51e5-a8c9-b0c31b801774",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13943 affects version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c7d6064d-c5d1-50ec-a1bf-12ca42262e88",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9484 affects version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5d568688-bd15-5059-b7ff-767bd5574964",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:10b0a9e7-a6c5-5525-9456-1da249f245b9",
      "id": "CVE-2021-33037",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-33037 is fixed in version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5b000caa-5a78-5070-ae2d-81bb6a9fc296",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-42340 is fixed in version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:85e47c50-943a-5a94-a5b0-e47a699e7318",
      "id": "CVE-2021-43980",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-43980 is fixed in version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fe1a4d32-f64f-5535-ae57-fe0c5bd417b1",
      "id": "CVE-2022-23181",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-23181 is fixed in version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a7b10efa-5e00-56df-a1b3-efb95591a2e6",
      "id": "CVE-2022-29885",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-29885 is fixed in version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c8dd4a86-2307-5d7d-8f3f-9dcd7f9ef8eb",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-34305 is fixed in version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ff219d41-bf5c-5364-8a26-1676bfbffe06",
      "id": "CVE-2022-42252",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-42252 is fixed in version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7b536f36-19d3-5bf8-8274-68e41c0b66fc",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-45143 is fixed in version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6c53b886-82e4-53c3-abb7-ad8194682b5c",
      "id": "CVE-2023-24998",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-24998 affects version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:04e832dc-c7c9-5b5c-8d95-d87a51172bf3",
      "id": "CVE-2023-28708",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-28708 is fixed in version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bcf9f6f1-1841-5aff-be0a-1094d7a0a608",
      "id": "CVE-2023-41080",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-41080 is fixed in version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f031b76e-0f61-50fe-8751-dcee7b298fdd",
      "id": "CVE-2023-42795",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-42795 affects version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:56b1eb05-fa11-54db-9982-d151c351e8e5",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-44487 affects version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ff5cbe6e-9a73-554c-9c78-8e5e95f1ec7e",
      "id": "CVE-2023-45648",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-45648 is fixed in version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:93c01d38-1eb8-5ea9-a9bd-2db24b23ecf0",
      "id": "CVE-2023-46589",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-46589 affects version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:06341539-5b63-54cf-a235-6a9da7a333bc",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-23672 affects version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a41fb272-3f41-5419-85a3-7af5cbd5922a",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-24549 affects version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a8a495c1-0f7c-541a-8cab-b11139ba992f",
      "id": "CVE-2024-34750",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-34750 affects version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e55021c2-a407-5272-839a-f743e89b4209",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38286 is fixed in version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:20643ca7-0d31-5a5c-b516-eb54379aeef6",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c3c08af7-50ea-546c-b8f6-e1b34c6680fa",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f48426e5-5e37-5084-bfa2-2513eed35a6e",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-54677 affects version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:59e02a8a-5084-5c91-a23a-63b81e5718ff",
      "id": "CVE-2024-56337",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-56337 affects version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:225f6788-a4a5-5caf-a354-48bf8f793600",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1f1d448c-8c5c-5a92-ac2e-30c0b6e9645e",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-31650 affects version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:abe48b02-77e9-57d2-a4a5-04a766723fe8",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31651 is fixed in version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7f96b1ae-4e46-5faf-917e-0d1808bff363",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-46701 is fixed in version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8b532f70-14f8-5185-a60a-a9d90119530e",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-48988 affects version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b8c37ee9-ae91-5e29-91b0-1da95b8765be",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48989 is fixed in version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d4cdc074-fbb2-568f-a1cf-e88666418fec",
      "id": "CVE-2025-49124",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49124 is fixed in version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:55c88389-0006-5750-a072-dab9868635a2",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aed5c7e7-56e5-5c5d-bf3c-da6534c64ae1",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-52434 affects version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f76a676d-7705-5a8f-94f1-8eabf0b651a8",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52520 is fixed in version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:70f65359-359b-5e4c-afeb-730e58f8ab88",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-53506 is fixed in version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:43db3e42-408e-51a8-9350-4636daa055ac",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ccabebba-20ef-5592-a270-7494042d79eb",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55752 is fixed in version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c618b854-45c1-543e-939d-69696279edb1",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1ef4e23d-db3e-51f5-ba4f-44ed1547eb79",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f9c40edd-0641-5eb2-bb26-1146fe58677f",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66614 affects version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8ae52e2d-531d-5764-bff5-3675dcb160c2",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-24733 is fixed in version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:53ba925b-7a6a-5a89-be71-f7c2757e96db",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f7c14203-f345-5ddc-8a7c-84d1b2ec6add",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-25854 affects version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:640dd422-b43b-5495-b52b-6eb8e7efae7f",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29146 affects version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dc5e83fd-2a98-5ae0-9d49-73ebd092c43f",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4f1dcdbd-b935-5a96-908a-47ef1c76ce64",
      "id": "CVE-2026-34483",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34483 affects version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c86be91e-a2fd-5700-8497-9aa8635d266b",
      "id": "CVE-2026-34487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34487 affects version 9.0.46-tuxcare.3 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@9.0.46-tuxcare.3"
    }
  ]
}