{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:03e3b051-964f-5ea0-bb2a-3ae7b8e819ba",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-servlet-api",
      "version": "8.5.100.tuxcare.1",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:3b2572bc-031e-5db0-b6f2-8c22a9686b46",
      "id": "CVE-2016-0762",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-0762 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8f92e13b-132a-5ad5-98c7-abebaad22f85",
      "id": "CVE-2016-0763",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-0763 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d716aeda-5e9b-57a8-b2d1-e3b4a84812b3",
      "id": "CVE-2016-5018",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-5018 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c7abf782-a50a-51b2-93dd-9f599f4c8858",
      "id": "CVE-2016-6794",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6794 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:86f089f9-aa53-5652-97d9-b154449fb339",
      "id": "CVE-2016-6796",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6796 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:61ac8f14-022a-5897-951a-7f1bd771e9a0",
      "id": "CVE-2016-6797",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6797 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3f1f26f4-c602-5a42-94df-f9ea746a3e1f",
      "id": "CVE-2016-6816",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6816 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a90386e4-503c-54eb-88f8-75cab989f37a",
      "id": "CVE-2016-6817",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6817 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:451ec3a4-dcc3-51f9-8942-28552f831f0d",
      "id": "CVE-2016-8745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8745 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:97f02ace-4209-55e0-88cb-da8ccb092295",
      "id": "CVE-2016-8747",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8747 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1dcb4589-21e0-5767-94e0-34348ccfef32",
      "id": "CVE-2017-12617",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-12617 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f344f51a-7a7d-523d-99c4-3c6851c6518b",
      "id": "CVE-2017-5647",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5647 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:66cdc1ce-9363-59c1-812e-0e3a6071d5f3",
      "id": "CVE-2017-5648",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5648 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f73564e3-f1e0-59f1-bfd1-b610d415e2f3",
      "id": "CVE-2017-5650",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5650 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:75da57f7-cea5-58a9-9cc5-ffbb01222841",
      "id": "CVE-2017-5651",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5651 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cbeb78bf-de4c-5a97-b8fc-392c3ee4bbe2",
      "id": "CVE-2017-5664",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5664 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:64576b64-7bb4-5a57-a690-7ed1d931fab0",
      "id": "CVE-2017-7674",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-7674 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:08ff514a-df53-5f52-9de4-6659974e0b89",
      "id": "CVE-2017-7675",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-7675 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2bf3797d-4196-591a-8534-8248e1deb6e8",
      "id": "CVE-2018-1304",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1304 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:31668088-04a0-5d81-9d61-075df8a50086",
      "id": "CVE-2018-1305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1305 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:214fdd65-88f5-58be-8a5b-4e2cf5637ed6",
      "id": "CVE-2018-1336",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1336 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:82ed2584-d242-52bf-978e-52449f2a8a43",
      "id": "CVE-2018-8014",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-8014 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4aef1225-c101-5526-851d-b92bf312e10e",
      "id": "CVE-2018-8034",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-8034 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4d25b580-14a1-5374-95ed-62a0d2b4561f",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11996 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1182ba1f-0930-5377-a8a4-0692f255c492",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:841d196b-6800-5231-9f85-97e690ab8cb9",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13943 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:02a35592-3fbf-57f4-8011-1c5a03fabc7f",
      "id": "CVE-2020-8022",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2020-8022 is a false positive for org.apache.tomcat:tomcat-servlet-api 8.5.100.tuxcare.1."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cf16a504-ee35-5ef1-94dd-bd790a96ea4b",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9484 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f2eaf77c-50cf-572c-a2da-322cfbeb1a39",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c0cdefaf-0f50-58b9-9037-a54433bd6b3b",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-42340 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:135c368f-84a0-5b52-8196-203b2aaf79aa",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-34305 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:590d8809-96dc-5146-8d44-a47f2a8adf66",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-45143 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ebc2ef98-faf3-56c6-8c69-d7c518f9d9ed",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-23672 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e5427223-5cfe-5c66-9855-1171332b81d7",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-24549 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2504bb52-7ab6-5450-ab35-9becf46af162",
      "id": "CVE-2024-34750",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-34750 is fixed in version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d9aa078f-b223-53fb-9f2c-539cd6f14048",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38286 is fixed in version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4cf72452-7b59-574b-9ee9-6ddf3eae5be1",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7f24bc0b-69e7-52b5-9201-1a3be09fc3b2",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cc1c5c5e-dd93-528a-9f2e-a1eceae5c30c",
      "id": "CVE-2024-52317",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52317 is fixed in version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:78025eee-a1a1-5b51-8bff-01cbc35183e0",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-54677 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:54822844-f283-5a9f-b568-56ae52a4f510",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:485e00ea-17c4-52c3-b59a-ab12505d9e9a",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31650 is fixed in version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:66d1bd0f-0d36-5c20-8615-bb316bbc4ddc",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31651 is fixed in version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:03ea27a6-6615-5ff4-a457-14b1ef916aaf",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-46701 is fixed in version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8510c352-d683-58b6-a479-c9d34e3f4895",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:822aee66-ae90-5ec8-8f8b-cfe848fdd36f",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-48989 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8575560a-2ac2-58dc-8477-da1b975b466f",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-49125 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ce2084a7-6e30-5cfb-9630-3f4adc055d05",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-52434 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6ba6b33a-d2e3-539e-b1eb-85bc4dd4d6a7",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-52520 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5d7697c4-162e-560c-baf8-50e0c03e4e85",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-53506 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:628dacad-bb22-5082-9ded-f394c2f48287",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55668 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3a44b4aa-e861-51a2-86e9-af6b63174efd",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55752 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b9cd35af-38c1-5f71-99c3-3391ba457ac9",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55754 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:842ef3f9-191f-520b-947d-7993dfab9164",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-61795 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8ec578b7-2037-59f2-930e-37951862f28e",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66614 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:57ba530b-228d-5f52-95ab-c0ba4d20fc03",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24733 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0cf6d342-8f27-5d23-8298-cbf21dbd8fea",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1fddad49-8695-5d2c-a3ba-237b702c734a",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-25854 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0eacf811-a848-5f40-969f-3bbf06ab4c4d",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29146 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:445e0f02-3666-5221-aae2-a5bb164d3aa5",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 8.5.100.tuxcare.1 of org.apache.tomcat:tomcat-servlet-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-servlet-api@8.5.100.tuxcare.1"
    }
  ]
}