{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:ceba25ea-b2a7-510e-abbc-e5c72e95df62",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.100-tuxcare.3",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-juli",
      "version": "9.0.100-tuxcare.3",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.100-tuxcare.3"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:e2a74a86-34d7-525b-a09c-dbe66f3413c1",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11996 affects version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:af5c0c48-e572-5fec-8006-b22074ea934f",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b8663772-a2b3-540c-a081-6a54cfb9dc74",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13943 affects version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2906de34-76d0-5832-8500-e1b38b94bab4",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9484 affects version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6baacf8b-16ee-5ac6-8dfb-8f9f697f8a0d",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7a3918a3-53bc-51f8-bcc7-6decb63aaf58",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-42340 affects version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eaccf0d4-aebf-5ac8-a853-ba7bf3d4c7e2",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-34305 affects version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7682e826-226b-5a9a-b317-ee4133fd0c0a",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-45143 affects version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0d2265a1-db25-5401-8e60-59a690f551bb",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-23672 affects version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cf920de5-a2b4-508e-872d-0aa104af6eab",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-24549 affects version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6ecc1b2c-a05c-58c3-b504-eb653ca72ffd",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-52316 affects version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:09551083-916c-54cf-ac97-823a6edaa542",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31650 is fixed in version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:30d473b6-80a8-5e62-bbee-312a476a249b",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31651 is fixed in version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0d35c594-5711-5d44-9b0f-c7345729757e",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-46701 is fixed in version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a5a09248-05ca-5d06-a6e4-65da317f33b3",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b982e713-8d08-56df-8c92-d19091725721",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48989 is fixed in version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bced3989-fb62-500d-9efe-074a4e1a3689",
      "id": "CVE-2025-49124",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49124 is fixed in version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2441948a-15df-5000-a6c3-3694678e3531",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0ebc1d31-4b55-55fa-a56f-71d4e608c5f8",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52434 is fixed in version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e8febc40-f074-5b16-a0a2-048cf88f2a9e",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52520 is fixed in version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dc8acd7f-e5a5-52cb-a115-dccb43c1791d",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-53506 is fixed in version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7debc0a6-09b1-5c9d-8597-8e37eecb2579",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4da2e283-a1c0-5050-bb7c-9544d67eb5e0",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55752 is fixed in version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d9d04157-8e2f-56d8-bec9-053a750d7abb",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3803d7b0-e8cd-5a57-833a-e181676d9b22",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fa9d6146-eadb-56a5-b09f-edd1ab56d21f",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66614 affects version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8bdca0b2-1dae-522d-9f15-3a3de42ef2bd",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-24733 is fixed in version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ce410364-75c6-57e0-bd33-be5cf8025eec",
      "id": "CVE-2026-24734",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24734 affects version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a0cbdcdf-f1dd-5af4-b602-d802dd61fab4",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:555ca115-276d-55ad-8291-39a06e6e3b4c",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-25854 affects version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9b61ba6e-4d11-5c00-9382-dcc9b7b58330",
      "id": "CVE-2026-29145",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29145 affects version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:445cbe66-2303-5e7c-ad99-a153e3bc2e4b",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29146 affects version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7d85bfa9-6f87-50b2-bf21-cedf0e00f0a6",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e4127adc-df11-5aad-a08b-fa39f1179c58",
      "id": "CVE-2026-34483",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34483 affects version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5ee8b5a9-f6af-5534-860e-9401f69f169d",
      "id": "CVE-2026-34487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34487 affects version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.100-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:23919f4f-d13e-5028-8715-0be3eeff966a",
      "id": "CVE-2026-34500",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34500 affects version 9.0.100-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.100-tuxcare.3"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.100-tuxcare.3"
    }
  ]
}