{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:7d4a03df-030d-511b-8374-789e95b94f0e",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-ssi",
      "version": "9.0.50-tuxcare.8",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:000a07cb-1bc4-563f-8d6d-7ed606ea8d04",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11996 affects version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7b76629e-2cca-59d9-b221-8d383d559bf7",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9ee43567-aae0-5172-94a3-262c39dada2c",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13943 affects version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:925a743a-5e5f-5462-b1a3-9256c904c687",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9484 affects version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4d144074-94a6-5b53-9fad-c7ba37d5492f",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d669b2c7-b2ea-55a4-9c61-d6db558f2d8b",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-42340 is fixed in version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cd41aaa2-a7a5-5555-a325-3246654df25a",
      "id": "CVE-2021-43980",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-43980 is fixed in version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1a7afb05-0341-5b18-9afa-e00164c7b3ba",
      "id": "CVE-2022-23181",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-23181 is fixed in version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bd9741fa-c409-5839-b6d6-e0de496bbfd8",
      "id": "CVE-2022-29885",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-29885 affects version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c98113df-ea6b-5cc9-b5e9-a126769de80e",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-34305 affects version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:10baca63-e10e-548d-a6fd-cf8e9a1dd27f",
      "id": "CVE-2022-42252",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-42252 is fixed in version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:84655b7b-0f36-54eb-91e4-10c7a312dc9c",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-45143 is fixed in version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:012191d6-ad3d-547d-a8e0-848a6562f5b3",
      "id": "CVE-2023-24998",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-24998 affects version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:449c19a2-1e29-5e10-a50a-bcbba58b463f",
      "id": "CVE-2023-28708",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-28708 is fixed in version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:01c159ce-e4f6-55af-96cb-27bd513df6dd",
      "id": "CVE-2023-41080",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-41080 is fixed in version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:265585c5-70d7-582d-9aa0-db2f53bcdedc",
      "id": "CVE-2023-42795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-42795 is fixed in version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:800ad0f1-2ce9-51b1-9135-860bfdee0ca9",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-44487 affects version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7041966b-9875-5139-9d2e-00a0948857b0",
      "id": "CVE-2023-45648",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-45648 is fixed in version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bd8389a5-9a5b-584c-a4ae-afee5825c6a4",
      "id": "CVE-2023-46589",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-46589 is fixed in version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6aa330f6-6809-597e-8a61-6088554df319",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-23672 affects version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:25730f65-0552-53d8-ae60-79011a8d96ad",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-24549 affects version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9c03d327-2e33-5e37-a9b7-b1f7cea6dea6",
      "id": "CVE-2024-34750",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-34750 affects version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a9de2ef3-e901-5d19-a192-ed3aeadabb28",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38286 is fixed in version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5879c741-e028-5c0c-87ba-007837152c03",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d6c67e11-4c3f-5ef2-8ff9-8810bf85d3f8",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:77016482-63f3-548d-9a92-99dd1a7e2f66",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-54677 affects version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f77633ee-488a-506b-8c76-f69f6bb38e3c",
      "id": "CVE-2024-56337",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-56337 affects version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:46f3e94a-0c6a-52fd-8f2b-790375dcfb03",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:15dab6ec-3515-5e09-b4ea-7bc0c6065765",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-31650 affects version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:68cab729-57dc-53d3-8443-48001ad5cdc5",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31651 is fixed in version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:800fae32-5159-59c2-85db-5f741d2160ae",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-46701 is fixed in version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8e3f5587-58dd-5a28-8d29-94ff49534e1c",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d55a8ab9-40d9-5140-8c0d-fcc4e3012510",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-48989 affects version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:663d90aa-fe4d-5a89-8e9b-8c19716eaa6f",
      "id": "CVE-2025-49124",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49124 is fixed in version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:25c1cac3-55a8-58dc-a284-751afd791e98",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8bc8288e-ce8f-5fa6-97f0-13733955aac0",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52434 is fixed in version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ef880923-0c76-5995-b558-31a592a60b05",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52520 is fixed in version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:709c4bc2-4fe9-5c4e-8c55-a883306c800b",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-53506 is fixed in version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:59079af0-91b1-5be9-8d8d-72dd3ce2535b",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a1eb5f6f-5b6f-53ec-9af5-a42f8393c25b",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55752 affects version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3158ea9d-b295-57f8-b701-322778051d18",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e4e314bd-c7f5-5f76-9d93-93bff60fc049",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:db64c1e7-0aa1-5f7d-8b96-bf2b89f0b9d6",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66614 affects version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cc6ae971-caa1-55dc-abc1-6d67298fa14e",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-24733 is fixed in version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d60df1a9-f1e8-555f-b3f8-3b77b80c05df",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:26786614-29d1-5cda-a5de-7855228285c5",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-25854 is fixed in version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a185f1ce-50f6-56e1-a39d-1a55b30230e1",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29146 affects version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:49c74134-d6bb-5c75-bf46-e7fcaa802cdb",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f8abe7ca-b40b-5002-a96f-c16e2dc88071",
      "id": "CVE-2026-34483",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34483 affects version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:611011fb-65b4-5c21-825d-fa4e6cc02113",
      "id": "CVE-2026-34487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34487 affects version 9.0.50-tuxcare.8 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.50-tuxcare.8"
    }
  ]
}