{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:f992369f-c82f-59a2-af98-11d23ccab100",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-jdbc",
      "version": "9.0.50-tuxcare.4",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:3597e349-ad3a-5e53-b257-1216675370fc",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11996 affects version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:911a59f4-d5ad-5b44-ac54-10706a2bb9c3",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ae2d8933-bf65-5375-b56a-6ce30d883f08",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13943 affects version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3fbb1293-4eff-5545-839a-868e0972fe2d",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9484 affects version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:363b92ce-1b1e-5282-8e54-e836b0b6bed6",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bf00f796-b789-569b-95f3-ba8e3ed75395",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-42340 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5de155af-6f01-5a08-a7f2-36f7e20df47f",
      "id": "CVE-2021-43980",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-43980 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f3b36819-5ca7-5424-a879-17baac22b4c7",
      "id": "CVE-2022-23181",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-23181 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a003c7f0-bbc4-5a07-ba9a-3397336204ba",
      "id": "CVE-2022-29885",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-29885 affects version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ab82565f-69c6-5350-85e5-f678b8148ea8",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-34305 affects version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fe4bd1c8-4ed9-5455-9f29-3169c84f655e",
      "id": "CVE-2022-42252",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-42252 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:290b62eb-2e20-5380-bde2-f2131d6cdad3",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-45143 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c4bc4e0f-e0cd-5454-af72-da3913f7731a",
      "id": "CVE-2023-24998",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-24998 affects version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ce44c973-85d2-55cb-8392-2644eee8362b",
      "id": "CVE-2023-28708",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-28708 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9045a09e-33d1-5cb4-800a-52ecb546ed77",
      "id": "CVE-2023-41080",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-41080 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fb92cf0e-f78c-5bfa-ac17-5befed09a87e",
      "id": "CVE-2023-42795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-42795 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7bd95b54-5bac-5185-9fc8-1d2824cbf340",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-44487 affects version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:df5f0de4-4534-59c6-aee8-f3ff9fc9f790",
      "id": "CVE-2023-45648",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-45648 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:89d95390-f785-5123-a38f-2b6aae9a6034",
      "id": "CVE-2023-46589",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-46589 affects version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d8a0e249-5840-5a2c-8331-54eaab870993",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-23672 affects version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bd2a4725-e064-52de-9f1f-51303f0d1a40",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-24549 affects version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d139d23a-2423-5909-bb31-666ce8c08e78",
      "id": "CVE-2024-34750",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-34750 affects version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:57ff2562-83a1-55bd-90ff-f3244cfb1cc1",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38286 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fc68f0a8-c733-5fd8-9082-d54a9a26c1cb",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:912bf876-bbac-5a58-862b-a2af5f3a6b7c",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:becbe593-482f-5e84-8be2-7300b0c20bbe",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-54677 affects version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d3a1e612-9e7a-521f-82f8-58562d234b65",
      "id": "CVE-2024-56337",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-56337 affects version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5fff2c7a-46ad-56b6-b887-aba649672dd2",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b3129159-da9e-5df7-bf56-87f9167946c5",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-31650 affects version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c36d789c-255b-523a-ab1e-ea0110d67750",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31651 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:69587297-b537-518f-96e4-5dfb620b2385",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-46701 affects version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:82ad041d-7a2d-58df-beea-cc804ad15c57",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3ff1c0e5-45f0-5953-a8b7-dc5d44bbd20e",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-48989 affects version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:000685bd-d437-5965-9d81-e8d67669f550",
      "id": "CVE-2025-49124",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49124 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:df5003d8-2650-5769-a482-a6839031841d",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7fc79237-32e2-57cc-81ff-49fca6bd84c0",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-52434 affects version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:359784eb-d2d9-5fb3-9df8-4854ada2c1de",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52520 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0fa9e128-e39e-56a8-bfa4-d26660a56def",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-53506 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d9520d36-dbc4-55c5-89c8-bce3bae31504",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0cff39f1-eaa2-51e0-b386-5779a18b7e38",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55752 affects version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:07fa6c4f-ed8a-5d66-ab71-86383531f9f7",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:96776bf4-7500-521f-b51b-1d326773e1bf",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:659bb68e-3d88-5843-ac31-570033b25a6b",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66614 affects version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:96cba004-d041-587a-83a6-07eb1894f643",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24733 affects version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4341ec2b-a30d-5b8a-a2c4-8be25e12d8c9",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c7c04bfe-06e7-5c06-9610-544b03ff14b7",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-25854 affects version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8b2e5e4d-0a5e-5108-ae6a-341dda699dfe",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29146 affects version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8e55a60a-cda5-5540-8809-d99619f3828c",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bc74acdd-5f38-5b8c-90da-ce1113b95138",
      "id": "CVE-2026-34483",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34483 affects version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7075f887-c119-51ab-b33d-086d4027de6d",
      "id": "CVE-2026-34487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34487 affects version 9.0.50-tuxcare.4 of org.apache.tomcat:tomcat-jdbc."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-jdbc@9.0.50-tuxcare.4"
    }
  ]
}