{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:23ee1cc1-da61-5a1e-91a2-aa8f480c9cd9",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-fr@9.0.90-tuxcare.6",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-i18n-fr",
      "version": "9.0.90-tuxcare.6",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-i18n-fr@9.0.90-tuxcare.6"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:bda5760d-6abc-5d63-88de-3c76e5b0b428",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11996 affects version 9.0.90-tuxcare.6 of org.apache.tomcat:tomcat-i18n-fr."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-fr@9.0.90-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:388b8b58-53c3-515c-963b-0dff518056c4",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 9.0.90-tuxcare.6 of org.apache.tomcat:tomcat-i18n-fr."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-fr@9.0.90-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:73c13735-a302-5102-849e-f7016e97853a",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2020-13943 does not affect version 9.0.90-tuxcare.6 of org.apache.tomcat:tomcat-i18n-fr. Fix for CVE-202-13943 for this version has been already backported by the original developers, so brunch 9.0.90 is not vulnerable"
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-fr@9.0.90-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c8da4297-58f7-5b1c-80ae-a8f1c58bb44f",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9484 affects version 9.0.90-tuxcare.6 of org.apache.tomcat:tomcat-i18n-fr."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-fr@9.0.90-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2a3b4a71-1ed8-55a4-bd8a-96359ad633e2",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 9.0.90-tuxcare.6 of org.apache.tomcat:tomcat-i18n-fr."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-fr@9.0.90-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4ad0ba12-4d59-50c3-8e8b-33e07a20005e",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-42340 affects version 9.0.90-tuxcare.6 of org.apache.tomcat:tomcat-i18n-fr."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-fr@9.0.90-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e89b4ef1-17a7-59b2-a7e9-1573c622af02",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-34305 affects version 9.0.90-tuxcare.6 of org.apache.tomcat:tomcat-i18n-fr."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-fr@9.0.90-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b3214f4c-a7f8-575c-9dc6-e9d1637cff6a",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-45143 affects version 9.0.90-tuxcare.6 of org.apache.tomcat:tomcat-i18n-fr."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-fr@9.0.90-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:757b8411-a5bd-52bb-aabe-2218b1f59ff8",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-23672 affects version 9.0.90-tuxcare.6 of org.apache.tomcat:tomcat-i18n-fr."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-fr@9.0.90-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e03106c3-006a-5699-a1d5-9582b65fa148",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-24549 affects version 9.0.90-tuxcare.6 of org.apache.tomcat:tomcat-i18n-fr."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-fr@9.0.90-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:31e4b286-1eef-5c65-87fb-29f4708262c1",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 9.0.90-tuxcare.6 of org.apache.tomcat:tomcat-i18n-fr."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-fr@9.0.90-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6bad26fd-5515-56d7-afa2-589c85f5cb4b",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 9.0.90-tuxcare.6 of org.apache.tomcat:tomcat-i18n-fr."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-fr@9.0.90-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b0f88502-78f5-5fb4-ab19-37cd29fa81bf",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-54677 affects version 9.0.90-tuxcare.6 of org.apache.tomcat:tomcat-i18n-fr."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-fr@9.0.90-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2b025b7c-e43f-5455-9cb3-198cbe9dd67a",
      "id": "CVE-2024-56337",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-56337 is fixed in version 9.0.90-tuxcare.6 of org.apache.tomcat:tomcat-i18n-fr."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-fr@9.0.90-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6f9d09c9-98d0-53c0-9647-db67850e10bb",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 9.0.90-tuxcare.6 of org.apache.tomcat:tomcat-i18n-fr."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-fr@9.0.90-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c49b2823-2cc1-5675-a8f7-a3ddc0986b76",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31650 is fixed in version 9.0.90-tuxcare.6 of org.apache.tomcat:tomcat-i18n-fr."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-fr@9.0.90-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0f6d562c-9160-5663-ba24-db40406e4f76",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-31651 affects version 9.0.90-tuxcare.6 of org.apache.tomcat:tomcat-i18n-fr."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-fr@9.0.90-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5cde4b08-04e1-5a0a-b30a-d25ec3408344",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-46701 is fixed in version 9.0.90-tuxcare.6 of org.apache.tomcat:tomcat-i18n-fr."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-fr@9.0.90-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d4c566a6-fb70-5143-acd2-062da42a5f80",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 9.0.90-tuxcare.6 of org.apache.tomcat:tomcat-i18n-fr."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-fr@9.0.90-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7c088ddf-690a-5052-9b94-1a430d36feaf",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48989 is fixed in version 9.0.90-tuxcare.6 of org.apache.tomcat:tomcat-i18n-fr."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-fr@9.0.90-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:491ffee9-7440-527c-b76a-d0bc5de1b45d",
      "id": "CVE-2025-49124",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49124 is fixed in version 9.0.90-tuxcare.6 of org.apache.tomcat:tomcat-i18n-fr."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-fr@9.0.90-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f8d8b229-f080-5c84-8b2b-2a14f1e28c47",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-49125 affects version 9.0.90-tuxcare.6 of org.apache.tomcat:tomcat-i18n-fr."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-fr@9.0.90-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:372e744a-e6b7-576c-85f3-3edd23a4a0d6",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52434 is fixed in version 9.0.90-tuxcare.6 of org.apache.tomcat:tomcat-i18n-fr."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-fr@9.0.90-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b7f8f981-1941-5c55-830f-bf6a75295cbf",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52520 is fixed in version 9.0.90-tuxcare.6 of org.apache.tomcat:tomcat-i18n-fr."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-fr@9.0.90-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a19ac043-e6f2-52d6-a623-86fae71c1948",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-53506 is fixed in version 9.0.90-tuxcare.6 of org.apache.tomcat:tomcat-i18n-fr."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-fr@9.0.90-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:514bd9b0-50e1-5770-b6d8-dfe1c3a179c0",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 9.0.90-tuxcare.6 of org.apache.tomcat:tomcat-i18n-fr."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-fr@9.0.90-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f399199f-e460-534c-9934-7d15a57e9188",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55752 affects version 9.0.90-tuxcare.6 of org.apache.tomcat:tomcat-i18n-fr."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-fr@9.0.90-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b9916f0b-e216-5d67-946a-bb414c0ee5da",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 9.0.90-tuxcare.6 of org.apache.tomcat:tomcat-i18n-fr."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-fr@9.0.90-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b68e4cf4-529b-597d-92f3-04f786d183f3",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 9.0.90-tuxcare.6 of org.apache.tomcat:tomcat-i18n-fr."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-fr@9.0.90-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d9e21d51-43a0-589f-9b9d-308d2610e175",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-66614 is fixed in version 9.0.90-tuxcare.6 of org.apache.tomcat:tomcat-i18n-fr."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-fr@9.0.90-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:27e29972-f8bf-5150-bb4d-f6c9295cc52e",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-24733 is fixed in version 9.0.90-tuxcare.6 of org.apache.tomcat:tomcat-i18n-fr."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-fr@9.0.90-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cac11e71-390a-521a-ad87-1dfd2bee73ed",
      "id": "CVE-2026-24734",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24734 affects version 9.0.90-tuxcare.6 of org.apache.tomcat:tomcat-i18n-fr."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-fr@9.0.90-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:53cf7840-b046-5b22-9018-5397cf7a2bb9",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 9.0.90-tuxcare.6 of org.apache.tomcat:tomcat-i18n-fr."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-fr@9.0.90-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:30ee809f-b1cf-5a64-8de3-5f774253353b",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-25854 is fixed in version 9.0.90-tuxcare.6 of org.apache.tomcat:tomcat-i18n-fr."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-fr@9.0.90-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:657c7570-63d6-5ee3-ae4e-7a901a07173e",
      "id": "CVE-2026-29145",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29145 affects version 9.0.90-tuxcare.6 of org.apache.tomcat:tomcat-i18n-fr."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-fr@9.0.90-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:80e0a331-87ec-59f7-9b00-6fcd9c4ee60d",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-29146 is fixed in version 9.0.90-tuxcare.6 of org.apache.tomcat:tomcat-i18n-fr."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-fr@9.0.90-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:391f013a-35f3-5f63-8144-d9b485f8a956",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 9.0.90-tuxcare.6 of org.apache.tomcat:tomcat-i18n-fr."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-fr@9.0.90-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:53b416e4-7198-53af-b9dd-c6f2a420d589",
      "id": "CVE-2026-34483",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-34483 is fixed in version 9.0.90-tuxcare.6 of org.apache.tomcat:tomcat-i18n-fr."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-fr@9.0.90-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ed674dc3-b2df-5d4f-b9ca-0170d24c8002",
      "id": "CVE-2026-34487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34487 affects version 9.0.90-tuxcare.6 of org.apache.tomcat:tomcat-i18n-fr."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-fr@9.0.90-tuxcare.6"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-fr@9.0.90-tuxcare.6"
    }
  ]
}