{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:d114e00b-1b7c-5e13-ab56-e5b5b7a078e7",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-ssi",
      "version": "9.0.50-tuxcare.5",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:efb7c75f-84b9-51f2-b2a3-4efbc56683d2",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11996 affects version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e6adaf81-db4c-5e64-acb1-00304f9d672f",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c17fd971-1fa5-507a-8218-20ea834c09d7",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13943 affects version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2f48dea5-23d9-5755-a4f2-c0c2e386d32e",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9484 affects version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:98495d76-60b3-5538-b8b2-6ab8c413f1a2",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cad3da28-455e-54a8-b2f5-3e200e539573",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-42340 is fixed in version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a82ec18a-b967-535d-834a-2a13b248819a",
      "id": "CVE-2021-43980",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-43980 is fixed in version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3a49a5ea-d21a-503c-a1c0-858a85c4dd54",
      "id": "CVE-2022-23181",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-23181 is fixed in version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5818aed0-53f3-5c20-8246-75d5fd582ccf",
      "id": "CVE-2022-29885",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-29885 affects version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9b57dcbd-10dc-53ec-b971-01f2a7c4f425",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-34305 affects version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c562f272-a3b5-5694-a0e5-4503eb92d63e",
      "id": "CVE-2022-42252",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-42252 is fixed in version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:02680a8c-1feb-56f2-b3e5-a02829ec89fe",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-45143 is fixed in version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e2d9be14-1b82-58c5-984e-5190e02c8552",
      "id": "CVE-2023-24998",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-24998 affects version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a9ac1cba-d3f2-5135-80c3-c32bf226ad8f",
      "id": "CVE-2023-28708",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-28708 is fixed in version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ebeabdbf-833a-5514-9e9d-f4419884b1aa",
      "id": "CVE-2023-41080",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-41080 is fixed in version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9835ad4a-4b50-5f35-8067-4c497f96149e",
      "id": "CVE-2023-42795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-42795 is fixed in version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c4a0b403-72f8-5279-98a9-bb777d02d66d",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-44487 affects version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8e2e510e-0ce2-57dc-abc5-d20f48f6f77f",
      "id": "CVE-2023-45648",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-45648 is fixed in version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3e53be18-092c-535b-9b0e-605417733d70",
      "id": "CVE-2023-46589",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-46589 affects version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c7f859db-7e66-5971-9c7c-9b2b715c0053",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-23672 affects version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cdd71972-b654-5051-98b8-8bdb4ef1aa97",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-24549 affects version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:21e4f2e2-3bfd-57ca-828c-044bde186dc4",
      "id": "CVE-2024-34750",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-34750 affects version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:05ffa591-c45a-53af-9230-f41e01fb006a",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38286 is fixed in version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0a5f02c6-786d-5772-976a-5ce13aa6c25b",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f72f28c6-9fd9-5bc9-a067-d77635b974a5",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ffff04c8-6524-5133-adad-554e46cd98bf",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-54677 affects version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eca32e9d-6800-5d64-bbcf-16b315ad92f7",
      "id": "CVE-2024-56337",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-56337 affects version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:de21023c-eeb8-5ffd-9951-a6c574634016",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:996b2bf9-cf74-56e4-bb36-ac0388b72164",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-31650 affects version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eca15400-2fbb-52a8-a2a3-30562ec223ac",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31651 is fixed in version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:91e7d6a0-4839-5b27-b840-3790e3355836",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-46701 affects version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:00554d57-e26c-5364-985d-d453b796d9d0",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:534e61e8-6296-5d55-b68b-51831e779835",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-48989 affects version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1d6e7ffd-b67d-5605-b238-e266500120f9",
      "id": "CVE-2025-49124",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49124 is fixed in version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a5a7e033-d68f-597c-b7fa-ca775d134ad6",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bc2e202a-f20a-59ae-a162-1921df5168f1",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52434 is fixed in version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:27182284-329d-5682-b4b1-261fb1f7117b",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52520 is fixed in version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d35a891a-91de-5bec-8a88-809f9c352709",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-53506 is fixed in version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bccd013d-f8ed-5a28-b161-acc8851f9c1e",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cd29ddaf-d67f-563b-92d7-7ce3cfd894a5",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55752 affects version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:181c4e8a-73ca-58bd-8a45-3759a7d3f9e0",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:69fc6c05-980e-5fc2-89ce-0359fed8fcd2",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bbc48d83-c2f4-5c8e-b0be-1a0540073126",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66614 affects version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9be88c67-e05a-5ea0-bc56-49c09ab82946",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24733 affects version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cd8c8530-08ef-50c7-9ac8-a9811a851b10",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7bab4b81-c6ab-57ea-8a6a-381de423eab2",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-25854 affects version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d250fc34-1f70-55c4-a91d-6cca5670b32e",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29146 affects version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:89a6468d-12e6-56a7-ad0e-9a97a0f8afd7",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ecf1f83b-2a54-5fe6-acba-b6cd1f40a0ee",
      "id": "CVE-2026-34483",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34483 affects version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a6a4ee50-1738-5bac-b93c-39cd878b3d04",
      "id": "CVE-2026-34487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34487 affects version 9.0.50-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.5"
    }
  ]
}