{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:3b328f8a-ba39-5018-b83c-c1ba7074d208",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-juli",
      "version": "9.0.87-tuxcare.3",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:d9998ca5-1fb3-5fb6-939b-04ec141d8f78",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11996 affects version 9.0.87-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:11a1efe4-27f4-5a75-8546-6173107f9edb",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 9.0.87-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:80df63b2-f40a-5967-86be-384e75d2efca",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13943 affects version 9.0.87-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3f0faa17-9a04-5681-9f49-e5ebe55a18c8",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9484 affects version 9.0.87-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:74852510-1d22-5300-87f9-3a1851d92fbd",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 9.0.87-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dcff4679-8be6-55d8-b02e-3080d80f3543",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-42340 affects version 9.0.87-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:96c8ab20-c0e5-5d0a-85e6-6dd04a4f2d3d",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-34305 affects version 9.0.87-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b30e001e-bbbd-5e6c-9e65-a744651e5646",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-45143 affects version 9.0.87-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9e9d8851-c1f7-5f91-84bb-59a639187ed6",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-23672 affects version 9.0.87-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:78cc417c-8dd1-5eb5-88b0-9c6cace2a0af",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-24549 affects version 9.0.87-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:06dd6e2e-a02f-52e1-962b-649d16bfc70b",
      "id": "CVE-2024-34750",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-34750 is fixed in version 9.0.87-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7f52c17a-66a6-513b-9080-99559d5638b7",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38286 is fixed in version 9.0.87-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:33b2f1b9-0f8f-5850-8086-f35b2a9ad64a",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 9.0.87-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c7a06ef5-e4cb-52e5-b913-5bb538effd12",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 9.0.87-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dc600f02-3b06-5409-9780-fb26f923921d",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-54677 affects version 9.0.87-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:df65ef92-9983-5a35-a662-5cd9deb6ebd1",
      "id": "CVE-2024-56337",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-56337 is fixed in version 9.0.87-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9907c2c4-484c-55b7-bfb3-851911527f27",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 9.0.87-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:459b60e4-e8cb-58fc-906f-893325679487",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31650 is fixed in version 9.0.87-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e334883d-2cbe-5157-b706-973685c93e8f",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31651 is fixed in version 9.0.87-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:36035314-6198-5561-bfcc-4f87879c079b",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-46701 is fixed in version 9.0.87-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bc420394-d808-56ff-b50c-e8d85c403177",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-48988 affects version 9.0.87-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e1b3cff1-7427-5904-a209-c819422aa186",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48989 is fixed in version 9.0.87-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8418ae12-7bcf-566c-a918-4f9af60a1b6f",
      "id": "CVE-2025-49124",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49124 is fixed in version 9.0.87-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d17b531e-54d9-5310-bbde-155027304d4a",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 9.0.87-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:93152f6f-e123-5c20-b2bf-0c8d4225fbe1",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52434 is fixed in version 9.0.87-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:112f4a03-d97c-592b-99d7-66acd55838b9",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-52520 affects version 9.0.87-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9047a835-3d87-5551-b8a8-521f5662c912",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-53506 is fixed in version 9.0.87-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:159df120-33c6-551f-a348-1e34aa2f020f",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 9.0.87-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:36e06f12-e7ad-51da-a129-fa0d9c02639d",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55752 is fixed in version 9.0.87-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3371ea48-dbfc-5fed-a0cf-53f0ba5d5f46",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 9.0.87-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:94844b51-2bc3-5e3f-afcc-6fbabe315e23",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 9.0.87-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:605e4952-d95e-5e10-8f0b-519db8095623",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66614 affects version 9.0.87-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:624e0382-6f5e-5508-8612-d34ee31875a3",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24733 affects version 9.0.87-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:20e79741-355b-5b9a-922b-be012d6bdf4c",
      "id": "CVE-2026-24734",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24734 affects version 9.0.87-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:19f932e2-c92e-571e-b96f-3631029aef2b",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 9.0.87-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4539dd0f-2c92-5016-a730-55123a6aaa0f",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-25854 affects version 9.0.87-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7cb49785-3d60-5c41-bccd-eb6ac83357a7",
      "id": "CVE-2026-29145",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29145 affects version 9.0.87-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:789faef5-3db4-544f-a20c-3cf76079f81a",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29146 affects version 9.0.87-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dfb7884c-5f63-503f-9661-aa304c727528",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 9.0.87-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2425df96-8f71-54c3-b5d4-caf5916b6430",
      "id": "CVE-2026-34483",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34483 affects version 9.0.87-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f26fc148-70cd-5e8f-8488-d937b2172c68",
      "id": "CVE-2026-34487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34487 affects version 9.0.87-tuxcare.3 of org.apache.tomcat:tomcat-juli."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-juli@9.0.87-tuxcare.3"
    }
  ]
}