{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:769f33ee-3c5b-5f2b-8679-582d11a0df37",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-ru@9.0.90-tuxcare.5",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-i18n-ru",
      "version": "9.0.90-tuxcare.5",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-i18n-ru@9.0.90-tuxcare.5"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:591e8c7f-1fbe-5165-aa10-ad850d81fcc3",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11996 affects version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-ru."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-ru@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:72540f39-8b20-5a15-bc8a-6ec7efeb092d",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-ru."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-ru@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f5c814ec-1973-51bf-a8de-9713a1b8ed12",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2020-13943 does not affect version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-ru. Fix for CVE-202-13943 for this version has been already backported by the original developers, so brunch 9.0.90 is not vulnerable"
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-ru@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7f20ae58-724e-5781-8e80-e5ffb6a9f6a5",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9484 affects version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-ru."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-ru@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f1c5c070-3b94-5516-8d99-c5b4fc9b5e29",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-ru."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-ru@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3f98bbda-d7e2-5954-bc90-11d41a844a7d",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-42340 affects version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-ru."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-ru@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:91f891eb-8932-5518-966a-a01dbfb0781c",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-34305 affects version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-ru."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-ru@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ebe7c95d-1644-5555-8b39-d797d9d54960",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-45143 affects version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-ru."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-ru@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eaa85ad8-33b3-5332-86dc-11f6bec2fbea",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-23672 affects version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-ru."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-ru@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:52499d56-1a4f-544c-8274-a0b8e1c4c48d",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-24549 affects version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-ru."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-ru@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ba931cee-5295-5091-8c5e-1503eb6fd982",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-ru."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-ru@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9f260de8-1715-5bfa-8172-8c253def6ed8",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-ru."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-ru@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8213df65-7bf8-5106-bf30-be49fabc25bd",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-54677 affects version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-ru."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-ru@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6c7aa5f7-8440-5d9f-bd79-a9c01ed558a9",
      "id": "CVE-2024-56337",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-56337 is fixed in version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-ru."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-ru@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a794b5b9-b5ba-5bf0-8da5-d09a4785cbeb",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-ru."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-ru@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3d773b98-7c51-5e6a-bd69-193717884568",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31650 is fixed in version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-ru."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-ru@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3994ffa4-a6fa-5c4a-ba10-31b44097ea05",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-31651 affects version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-ru."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-ru@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:16d78077-2b1d-55a5-b56d-066054e31133",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-46701 is fixed in version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-ru."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-ru@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b0b6fc16-9334-547b-9fe7-d77f8e0cd596",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-ru."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-ru@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2801dc6b-8f5f-5fe9-b0c1-6dfda69ec91a",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48989 is fixed in version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-ru."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-ru@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:abbddbee-9ac2-5b9b-9bdf-6c853e99034f",
      "id": "CVE-2025-49124",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49124 is fixed in version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-ru."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-ru@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c09b4a9a-64cf-54d6-8d3e-6493ee2fab2b",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-49125 affects version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-ru."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-ru@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4f101ab3-8472-5b41-b0d7-e0a636cce396",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52434 is fixed in version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-ru."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-ru@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8b153f8f-892b-5c43-aaf3-bba788ed46af",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52520 is fixed in version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-ru."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-ru@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:09c11feb-1e5a-5917-95cc-ad05687f310b",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-53506 is fixed in version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-ru."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-ru@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:92904e1e-6db1-5956-a601-f2e772d774f8",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-ru."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-ru@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:325a3fce-2279-5a1b-ade4-252ac756e059",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55752 affects version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-ru."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-ru@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:27aae655-ba9e-581b-aab9-3ecd68751634",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-ru."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-ru@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4011da5f-dd1c-5b30-81b9-f7a1afc166e5",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-ru."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-ru@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:693e5bb7-15e2-52fa-b635-b3abee13bf02",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-66614 is fixed in version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-ru."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-ru@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4cb3de1f-623e-5422-8b90-319ec0f5f24e",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-24733 is fixed in version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-ru."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-ru@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:91251789-7db7-58e2-8b83-c0a9533f1eac",
      "id": "CVE-2026-24734",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24734 affects version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-ru."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-ru@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a60d0b76-d97a-5c44-a6bd-585d08d1cb9a",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-ru."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-ru@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1466cc56-0120-57b5-add1-9e373446e7e9",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-25854 is fixed in version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-ru."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-ru@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:964572e3-7d1b-58bb-b2fa-8e9bda891670",
      "id": "CVE-2026-29145",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29145 affects version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-ru."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-ru@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:207d87db-65b7-5068-ab77-c1753fb23e7f",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-29146 is fixed in version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-ru."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-ru@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c41f56fe-a73b-5ba7-920a-813544825c4c",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-ru."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-ru@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a07e133b-bb28-59e3-a856-d826db27b706",
      "id": "CVE-2026-34483",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34483 affects version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-ru."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-ru@9.0.90-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2797e01c-37fc-589a-8f4d-bc6de1b73964",
      "id": "CVE-2026-34487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34487 affects version 9.0.90-tuxcare.5 of org.apache.tomcat:tomcat-i18n-ru."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-ru@9.0.90-tuxcare.5"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-ru@9.0.90-tuxcare.5"
    }
  ]
}