{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:57cb4b30-5967-5cd1-812d-d2f1d6ff483d",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.2",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-jasper-el",
      "version": "10.1.18-tuxcare.2",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.2"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:0e61dea0-fe7d-5211-a514-7207961bf262",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-23672 is fixed in version 10.1.18-tuxcare.2 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:23cc01ef-7c10-5bb7-8d75-b6251b9acf36",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-24549 is fixed in version 10.1.18-tuxcare.2 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:188d5ea4-176d-50e7-803e-6d628e73286e",
      "id": "CVE-2024-34750",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-34750 is fixed in version 10.1.18-tuxcare.2 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eb740d1a-43f0-50ca-9d2b-e1307f1348b7",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38286 is fixed in version 10.1.18-tuxcare.2 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6bddea2e-2582-556c-85e0-8cbeb4fe7599",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 10.1.18-tuxcare.2 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ed59f9cb-4037-5622-a0c7-5a4212d9dcb8",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 10.1.18-tuxcare.2 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0c48de1c-a076-531a-986c-82dad61b3526",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-54677 is fixed in version 10.1.18-tuxcare.2 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f36b362a-569a-59b9-9e80-7c56260ab1fd",
      "id": "CVE-2024-56337",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-56337 is fixed in version 10.1.18-tuxcare.2 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6187661e-5d4e-5c45-94af-73dd812bb099",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 10.1.18-tuxcare.2 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:54136301-8b70-567b-8302-e262f5b9b4db",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31650 is fixed in version 10.1.18-tuxcare.2 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7c6801c0-0a07-508b-8cd4-d13d0b00ece8",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31651 is fixed in version 10.1.18-tuxcare.2 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:061ca816-0b9e-5215-9e20-af6329868389",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-46701 is fixed in version 10.1.18-tuxcare.2 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1760122f-f0d4-5418-a03a-eb4eb7728d76",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 10.1.18-tuxcare.2 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9b13c878-58db-52c7-92b3-470d6b69c9af",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48989 is fixed in version 10.1.18-tuxcare.2 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f2053971-65c0-58a1-b96f-d0a4be190d96",
      "id": "CVE-2025-49124",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49124 is fixed in version 10.1.18-tuxcare.2 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c6377fd1-3017-5233-9404-bf396b00e1bf",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 10.1.18-tuxcare.2 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:00af8bad-de53-5700-99b0-07df12406d83",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52520 is fixed in version 10.1.18-tuxcare.2 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a0486fb0-8a95-553a-b933-700b47518bf4",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-53506 is fixed in version 10.1.18-tuxcare.2 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2a86d41d-976b-568a-a44e-62965e4c42d8",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 10.1.18-tuxcare.2 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:37db7842-cb8d-5c75-9462-9af3f9f50952",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55752 is fixed in version 10.1.18-tuxcare.2 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:35aea612-1efd-5efe-9c1b-ee46a143e6c5",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 10.1.18-tuxcare.2 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2d8ca7b7-6f72-5715-911a-8a186a3d2b51",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 10.1.18-tuxcare.2 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:42ceec4f-4614-5b87-9e3f-2847bc99e230",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66614 affects version 10.1.18-tuxcare.2 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fca8b052-17d9-5756-8756-9e676479d313",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-24733 is fixed in version 10.1.18-tuxcare.2 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b5ed7c8d-cec4-51f5-b115-5f23d0bd4366",
      "id": "CVE-2026-24734",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24734 affects version 10.1.18-tuxcare.2 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f518e529-1616-5600-9cf1-077ab8706327",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 10.1.18-tuxcare.2 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fc2c0875-561a-524b-963c-93c95e025bb0",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-25854 affects version 10.1.18-tuxcare.2 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9c28f8f5-744e-5c4f-817f-96d0f24e1b9f",
      "id": "CVE-2026-29145",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29145 affects version 10.1.18-tuxcare.2 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cd9d58fb-5a9d-50d6-a4e3-c1180bdeaa0e",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29146 affects version 10.1.18-tuxcare.2 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:af41590a-388b-5484-96e1-0cd80236d46d",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 10.1.18-tuxcare.2 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8c2f40a4-91e5-5961-a247-3a54c05f4bff",
      "id": "CVE-2026-34483",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34483 affects version 10.1.18-tuxcare.2 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c37bda72-0690-59e4-a825-c1bb016e7381",
      "id": "CVE-2026-34487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34487 affects version 10.1.18-tuxcare.2 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.2"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@10.1.18-tuxcare.2"
    }
  ]
}