{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:ff70004a-a77e-53e2-9639-c62e5829be68",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.100-tuxcare.3",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-jdbc",
      "version": "9.0.100-tuxcare.3",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.100-tuxcare.3"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:a796fd9c-4802-5c9a-8971-ca62b3fc94ba",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11996 affects version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:60e32114-b227-5f6a-a58a-26a15b3b56f1",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:05a153f3-b997-5076-9e20-ca73b30fb863",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13943 affects version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:46c3f510-2ef2-58bd-9473-08e71fa8193e",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9484 affects version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3abf89e3-17f7-5f18-8454-a81145a9528b",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:02f70af8-c118-50da-95b9-c5bb127aa6ef",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-42340 affects version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7c2543ec-6ee6-536f-ba68-c26d901a2e3d",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-34305 affects version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a7221d38-7c8d-5b06-b10d-2203129e43ce",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-45143 affects version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0d4a12f5-e9de-535d-a605-7b5de3357b10",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-23672 affects version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a58e7026-1586-5447-8e89-5696b34f39eb",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-24549 affects version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:90c5e32b-4bdd-554a-b15c-7cca44eca72f",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-52316 affects version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5f53850a-6641-5d27-a158-beadbfc390e0",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31650 is fixed in version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6562554b-0acf-5617-a1fd-5ef30b99004d",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31651 is fixed in version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cd30c3b6-06b3-55d2-a4b6-250521667803",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-46701 is fixed in version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:810b3fbb-6c47-50d0-9a25-5a695bec360c",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a9efc9f1-484b-5000-aafb-2fdabe2cccce",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48989 is fixed in version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:99af6f31-c815-5e57-997f-6b150e785a96",
      "id": "CVE-2025-49124",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49124 is fixed in version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:269ff8a4-b5f7-5909-b30a-b1f076ed844e",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fbc4d2d9-2941-5fc7-905e-e645aa0687ac",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52434 is fixed in version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d3325f0f-3d08-5c91-846d-a6b91d7e0173",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52520 is fixed in version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8ced4f69-2e9c-5ca9-a8a2-7286e560a88f",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-53506 is fixed in version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:89192d66-e67c-5893-815d-7009e3cd9730",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d0c513e8-eee1-57ec-87e2-74c6315f7bda",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55752 is fixed in version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:df4cf446-623d-525b-ba1f-fa584ace06ad",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c974c359-5387-5b05-afe7-27742d0c374f",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:732dac7f-1731-5554-aea6-c4e1488fce0e",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66614 affects version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:13d79fc3-3924-56b5-8fa3-1641c90cd904",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-24733 is fixed in version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:361a980e-f468-5edf-a82e-c29590927857",
      "id": "CVE-2026-24734",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24734 affects version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f76156ea-d53f-5ac8-8c81-f9824f09e187",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7befe9fc-ae49-5218-a228-9982ebd0031a",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-25854 affects version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:edfad0dc-9ae8-50d5-a932-0734f0db468b",
      "id": "CVE-2026-29145",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29145 affects version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:106d5d62-451d-55d0-8915-94f96e9702e1",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29146 affects version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aecddb53-76eb-53eb-901e-00aeb0d99d3d",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:63faaf97-aff8-5f6b-9523-7a21206d9786",
      "id": "CVE-2026-34483",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34483 affects version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d9b78d30-2616-5b60-89f1-acdd1eaf361e",
      "id": "CVE-2026-34487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34487 affects version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ebce151b-a889-5d7f-84b1-e20c714e30c6",
      "id": "CVE-2026-34500",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34500 affects version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.100-tuxcare.3"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.100-tuxcare.3"
    }
  ]
}