{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:617ab8cf-b8c1-5972-9635-6c387dccb8a8",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-jaspic-api",
      "version": "8.5.100.tuxcare.2",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:afa4bf6b-8947-56e0-8c77-d3b38c7ee503",
      "id": "CVE-2016-0762",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-0762 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6da80100-cb10-5d61-8606-b68090196ba6",
      "id": "CVE-2016-0763",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-0763 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:33ec1d3f-5fc0-542f-89ec-a174fd5e45ee",
      "id": "CVE-2016-5018",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-5018 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c13d5295-e585-5773-842a-e0fa91d36d76",
      "id": "CVE-2016-6794",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6794 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6acb06a0-5d78-5f6c-98a4-a433d4705b83",
      "id": "CVE-2016-6796",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6796 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5b38c725-c431-567b-a7d4-b534ef6726ad",
      "id": "CVE-2016-6797",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6797 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:72532275-40ce-5868-872c-53f2dfc886ee",
      "id": "CVE-2016-6816",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6816 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e3fc0002-86d9-5168-bd3d-a57c2f790a03",
      "id": "CVE-2016-6817",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6817 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:623c049a-8f0c-5c6d-847c-4588bad870c0",
      "id": "CVE-2016-8745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8745 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:755fc8bc-3aef-579e-96ca-2bc9122990a9",
      "id": "CVE-2016-8747",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8747 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a658af58-3b4c-5d60-aed0-40910435395a",
      "id": "CVE-2017-12617",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-12617 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b05c6e9f-ce26-5fdc-bccd-a02a53647b97",
      "id": "CVE-2017-5647",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5647 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:346210d7-c3c2-5c28-ba2d-1e31291565e4",
      "id": "CVE-2017-5648",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5648 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:762d0520-3588-5b61-a660-ceaa9d40ce5d",
      "id": "CVE-2017-5650",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5650 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:538c30d8-329e-5843-8315-45a1191744f3",
      "id": "CVE-2017-5651",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5651 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a023701e-8c90-51ad-b0b2-cabfd819a416",
      "id": "CVE-2017-5664",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5664 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8f62df4a-372c-5325-bb87-3ba98d49fd09",
      "id": "CVE-2017-7674",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-7674 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:86329b57-d9c7-5c14-bb24-964e9fe48b9b",
      "id": "CVE-2017-7675",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-7675 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3c809400-a2a9-5c03-abdf-4d01fff972ab",
      "id": "CVE-2018-1304",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1304 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:28b8b673-5cba-5f48-bcf5-27f1da706408",
      "id": "CVE-2018-1305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1305 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:66975294-a35c-552c-baa9-6c5d15027083",
      "id": "CVE-2018-1336",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1336 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:259f5538-a649-53b0-b6d6-92605f9c16e9",
      "id": "CVE-2018-8014",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-8014 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0118c7ce-6deb-5c0a-96cb-0bc5edbdcc97",
      "id": "CVE-2018-8034",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-8034 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6ea4d446-b9a3-5a2e-ae5e-8aa01f41e830",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11996 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:60365f7d-ff58-54fe-ab16-388b9857ce1d",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:daf095a2-d5af-5cfb-8452-9c79bbeb97c3",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13943 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0709ca9e-8d85-5e1c-b4ca-db0eac88698b",
      "id": "CVE-2020-8022",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2020-8022 is a false positive for org.apache.tomcat:tomcat-jaspic-api 8.5.100.tuxcare.2."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:41417b26-3e58-5171-97ed-0f2f5700096a",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9484 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:deade46c-f1c0-584f-98f9-16568505b74f",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0e952c5d-e4b2-5b51-b3eb-018976f55531",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-42340 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dfc9a9b7-29b8-5154-901f-9a9ad96713df",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-34305 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:96a45e25-3349-5c0e-86ef-a7272c940086",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-45143 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e5449e31-5a15-54db-b8d5-d4db0613d70c",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-23672 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:99905f6b-7151-5300-abf2-57718ba2e171",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-24549 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bb487615-3fc2-5eab-af34-d0b31a08368f",
      "id": "CVE-2024-34750",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-34750 is fixed in version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:68387e0b-f4cc-511d-8b72-88ecaf02a735",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38286 is fixed in version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c774f247-0192-50dd-b4ce-618d60527088",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2c2f7ae5-4ab7-50dc-b98c-fb2fa6a7dbd6",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:43964547-d2d0-55a1-b598-294a0495c4a8",
      "id": "CVE-2024-52317",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52317 is fixed in version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8b18bb97-b408-54dd-a589-13c677403d2c",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-54677 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a8f5be44-144a-56c6-80ba-0676f22f098c",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f53ec7f4-fc34-50cd-b00e-c75434d6c8c3",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31650 is fixed in version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4779ab7b-bacf-5146-85db-af9060981323",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31651 is fixed in version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bd52791c-b10a-5b5a-a069-ef9ce735bf02",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-46701 is fixed in version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c44ee775-cb4e-5bac-8d0e-a14b525cfb60",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1098558e-93ab-55ef-b223-06fa0f5b7e35",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-48989 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:986af5a1-0e1b-5289-8c7e-960233fcf355",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:30480018-b335-538a-bb68-51ff93419e7e",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-52434 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:953f6dc4-ec37-5eaa-a77f-57b70801cb7e",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-52520 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f38807b5-8a6f-502f-a2ca-22b0ab67c6b2",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-53506 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ca0d2533-c03e-535b-989d-7b86e454dd22",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55668 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6464ec75-0380-5f97-9de0-0f5a65761032",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55752 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b2abd8e5-82f7-5f46-8012-32dbc381b8e6",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55754 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d34ef558-ba92-5381-9a35-0feaa48dc1e2",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-61795 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:da970a6a-8a92-5266-bc99-7852604bbd8b",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66614 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ab5457ca-fac8-5282-8cb1-525e2b02a89a",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24733 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8d1a62f6-c89d-56c9-99fa-79bd64309294",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:09d5fe30-0493-5bad-87b7-da24c2276486",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-25854 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:be5c9446-9f47-50c5-8629-60b1121394d5",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29146 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5c7b524e-3587-597b-82ec-480e32f41cd3",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 8.5.100.tuxcare.2 of org.apache.tomcat:tomcat-jaspic-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-jaspic-api@8.5.100.tuxcare.2"
    }
  ]
}