{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:f4ad3225-27cb-57b1-bf18-45bde846c253",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-juli",
      "version": "9.0.50-tuxcare.3",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:84e7f52c-e77c-566e-bf51-61aba5c02a44",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11996 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4d5bbc78-4674-5299-8dbe-862b9d643bfc",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:469d1c30-3bfd-5f13-af4b-dc19e2808abb",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13943 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9053e415-ca2a-5d05-a67c-539b19aab1eb",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9484 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c6beb784-4c98-585d-89d2-beb8d8a38c5c",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:14e7be80-fc74-5834-882b-e3ac638ed71b",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-42340 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a06f6847-051c-59e0-bfe0-d4d6b662073d",
      "id": "CVE-2021-43980",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-43980 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9e9aef67-adc5-53de-8971-2f008c2b692b",
      "id": "CVE-2022-23181",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-23181 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9ce6826c-7844-5ba1-821f-6ef09bbce88a",
      "id": "CVE-2022-29885",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-29885 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0f9985e0-d61e-5cd1-ba32-212e3859388f",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-34305 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0e8db5f5-408e-5d35-9e74-a71ffb344624",
      "id": "CVE-2022-42252",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-42252 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:53a94185-6ce1-580f-b0e0-7048ffc7cd73",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-45143 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6737a75e-554e-5de7-afde-861b99ad018e",
      "id": "CVE-2023-24998",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-24998 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:00a3f487-152e-5daa-9436-9a8a450cd128",
      "id": "CVE-2023-28708",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-28708 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c99a5b34-efd9-596a-9eaf-5aaf995decda",
      "id": "CVE-2023-41080",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-41080 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2c43b9ef-8535-5a47-82a6-f71051a21d02",
      "id": "CVE-2023-42795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-42795 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e5d96080-255d-5065-a85e-f98ba1f00d75",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-44487 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4edcdaf6-bfb5-51e9-b2f9-c9269d4fabbe",
      "id": "CVE-2023-45648",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-45648 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:28eeade8-fc95-58a6-af71-555053d361a7",
      "id": "CVE-2023-46589",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-46589 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5d056c9f-9ead-5538-8117-9fd1771fcc46",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-23672 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8dda39f7-3021-5c05-8881-ebfb3b08d38d",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-24549 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:84887fcb-4589-5a3c-ab82-fa629aac2747",
      "id": "CVE-2024-34750",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-34750 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:88b87a90-f91c-5f72-acf3-f51140ede077",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38286 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c09014c7-71bb-5aff-a11a-f41893b2f09b",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c71c8996-58f6-5951-90ac-0d5f4b0afcfb",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:01334427-b7de-59b0-a393-e85eed831482",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-54677 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:77baeab6-531d-586c-85b0-163012ef3b6c",
      "id": "CVE-2024-56337",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-56337 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:63a1eb9d-f6c3-5a42-9056-8139df253870",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:25961b8c-ea00-52a3-a284-256156c1cf18",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-31650 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9f5fb12f-c492-546b-b046-dc45e831fdbf",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-31651 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4f22367a-2c69-5d33-9c38-e39f91342962",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-46701 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ab317e33-6958-5368-9f42-052f3f0ea724",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9401b265-c049-5277-86c7-d708cf737fe5",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-48989 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5fa7ead6-3644-515f-a1e9-0cdc0a61ce8e",
      "id": "CVE-2025-49124",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49124 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:02a68c33-9f98-5370-9e03-b103a52c8c98",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f4137a38-e39a-5600-b0ff-0f1a019eb8eb",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-52434 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4e5ece46-9671-5f3d-8d76-a662c4976d59",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52520 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6919f00d-7f0e-545c-9246-5195981be183",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-53506 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:65076113-2151-5d76-bc87-7593a67f8bfb",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:24d753cc-064c-59df-bcad-d16a9798ce0c",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55752 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d54a4bfd-c3df-5fd8-9c6a-d06cb711ec23",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6595fa2a-b784-5960-a55b-d48981af7fd3",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f3a79aaf-2bc7-5e73-a7a2-b328bd906be3",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66614 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:979beb6d-f65f-51ff-8c20-65404615ce64",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24733 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:86d22d76-8f53-5339-9150-63c3c3bd6c10",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1738809d-0a80-5058-b350-74a9ba791e8d",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-25854 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ed5a4068-5828-580b-b4a6-c1868f1fecc6",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29146 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:21848d65-fe66-5eb7-8040-bd7966e3e3c0",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6133633e-5453-53d0-a856-895468ed1a05",
      "id": "CVE-2026-34483",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34483 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:43bd567a-9785-5c09-9773-1181c3d7b489",
      "id": "CVE-2026-34487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34487 affects version 9.0.50-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.50-tuxcare.3"
    }
  ]
}