{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:9cf0b429-2fe7-57c4-ba5c-f94b59f0f168",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-jasper-el",
      "version": "8.5.100-tuxcare.3",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:b0ba1160-22c2-5bb2-b099-a92e0f14e8d9",
      "id": "CVE-2016-0762",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-0762 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6536dec7-e09e-5651-a4e5-2e1a32164d45",
      "id": "CVE-2016-0763",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-0763 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6b040336-5478-575d-9330-4bb19ec70141",
      "id": "CVE-2016-5018",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-5018 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:27312c9a-b0f5-5527-89b0-9d04db0a977b",
      "id": "CVE-2016-6794",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6794 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c354d8a9-c20f-5643-926c-c6defae828c4",
      "id": "CVE-2016-6796",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6796 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ff4cf495-5811-5845-8f2d-6d5976fe9c22",
      "id": "CVE-2016-6797",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6797 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4dfa109b-6351-575a-8694-b6f54b61ef8c",
      "id": "CVE-2016-6816",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6816 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0dd57988-e63b-5aed-8b88-deed4a417441",
      "id": "CVE-2016-6817",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6817 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3aec4e46-e6fe-51c3-8ce8-d0c6173d16fa",
      "id": "CVE-2016-8745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8745 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d9896652-25a5-5176-b503-90a208ada77b",
      "id": "CVE-2016-8747",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8747 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:747fd995-c362-5335-b63f-e6909673ea66",
      "id": "CVE-2017-12617",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-12617 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2b108a63-56de-5101-96d7-e2cb0b8520c3",
      "id": "CVE-2017-5647",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5647 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:29479cb2-e1cb-5f04-9707-a8089317bf0d",
      "id": "CVE-2017-5648",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5648 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1099dc10-dfe4-52a9-8759-22153d0226e7",
      "id": "CVE-2017-5650",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5650 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b115f0ca-bb3a-579a-a55b-68043d4822a9",
      "id": "CVE-2017-5651",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5651 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e9104e95-d9e1-593f-99eb-c41fac084b21",
      "id": "CVE-2017-5664",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5664 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:41f7b6eb-3bda-56fd-ade9-ec1924d88a9a",
      "id": "CVE-2017-7674",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-7674 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7293377b-acb1-5a2e-828c-990b37afd90d",
      "id": "CVE-2017-7675",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-7675 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5a0c0be5-ae72-5117-9761-52842f7c3683",
      "id": "CVE-2018-1304",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1304 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f810e3b2-b526-5baa-b85a-e8b8fd9db610",
      "id": "CVE-2018-1305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1305 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f7c08215-396a-597c-ba34-ed3ce9dad5a2",
      "id": "CVE-2018-1336",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1336 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:11a6fd9c-dd85-5a24-ae5e-b402bcf2c37e",
      "id": "CVE-2018-8014",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-8014 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dc8ab7fe-261c-5754-86a0-2bbb8cf62ff9",
      "id": "CVE-2018-8034",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-8034 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:de550e37-ac4d-50bb-b041-c63376f1448c",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11996 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b09fd9da-5091-57a8-9eb9-8b360dce8c62",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c798a930-783d-501b-875d-f340dea6102d",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13943 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:711278aa-5feb-5ad0-95b4-bf2be75b9327",
      "id": "CVE-2020-8022",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2020-8022 is a false positive for org.apache.tomcat:tomcat-jasper-el 8.5.100-tuxcare.3."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b1ccea0e-fe08-5801-8c6d-fb3d993cea0d",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9484 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:42f87b6b-f6e1-5be4-8344-dcc60381b4c2",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d84f7461-4a67-5ae6-a8d1-3f2fe65e9b8f",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-42340 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0852ccb5-b9ea-5f8d-9a44-74073c51c52e",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-34305 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e049d5e2-0a8c-56f7-b55c-b0b8d3c36e02",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-45143 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ec3b40fa-736b-5a6e-880a-0f36c7f4c684",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-23672 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:42c98ad8-3205-5166-8063-8859f8f79a0c",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-24549 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:720ec036-da91-5a62-a877-235967401773",
      "id": "CVE-2024-34750",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-34750 is fixed in version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ebe933fe-62aa-534f-8948-28dac828c33c",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38286 is fixed in version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:65962016-98c1-54d4-86b9-e63459cd67ef",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0bc1c758-c7cd-5962-a766-d0b21aa4685c",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:883b3d5c-c853-579e-b82f-b243133ec37d",
      "id": "CVE-2024-52317",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52317 is fixed in version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7d01789c-6873-52a1-bef1-cb8fe6e15c3c",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-54677 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ac645ed7-f1b8-5184-b8dd-6abd7596b5f8",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:67f4a8db-725b-557e-bb78-e0933d035802",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31650 is fixed in version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:36edb802-7128-553e-8d14-7347ccddb0e0",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31651 is fixed in version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d0d33e60-1dbe-5763-8207-88a12e8ce1a2",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-46701 is fixed in version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a351a675-f978-5972-ae73-2a5e88bc829b",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:48f29f94-3310-5a2d-aa32-033c3a23ad3e",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48989 is fixed in version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:60b23eb2-22a8-57be-ac07-d01cef7fc831",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:00c87e02-002a-59c2-9d0f-88023b85e22e",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-52434 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7b878bde-037b-5b1e-a70f-9248b89603b2",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-52520 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7acfd611-2956-55b4-8d01-1647d848aac7",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-53506 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:29c3e0b9-e8f8-5062-8bb8-ec394e93ce9b",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55668 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:00502f4a-30f2-5038-a947-c7a3e6c99a26",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55752 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:11522370-000c-5a18-bdf9-428b4bf09f15",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55754 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6c14d47e-e83d-50a6-ad3b-db3d276afe5c",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-61795 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:37c90acf-4e8c-54d5-b48e-210d6ca95708",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66614 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0ca3148d-482a-5ff7-ba8d-93829cd92a1c",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24733 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6d8f69e1-1144-50bb-8078-0855bd70c97f",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fae20a5b-9598-5b4f-bb2a-6bf909d1c008",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-25854 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:797746cc-0016-55ce-8650-2115cca3cd95",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29146 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cef4a575-f3d5-560b-b1fd-66a4b62a8670",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 8.5.100-tuxcare.3 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@8.5.100-tuxcare.3"
    }
  ]
}