{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:eddd004c-0c33-5768-9e7b-d98647185cad",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-ssi",
      "version": "9.0.87-tuxcare.4",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:83a42af3-2815-5f6a-9bca-1fd5ce8e4bfb",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11996 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d8f099ce-79ae-5707-88bb-8cca9d1c2dfe",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fc8181f7-c305-5dc5-b857-e8866d82e8e1",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13943 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e7205ab8-e45c-5677-9401-b8a3de2f634c",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9484 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5edee2c7-2af3-5f6c-b150-2470997b6648",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2174cfc0-ffbb-55f5-89c2-2e140e5e39b4",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-42340 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0c9aab97-604f-5a09-bd18-1d813363d4f1",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-34305 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b61dd347-a9ea-5816-93dc-d3e00042fb56",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-45143 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7dac945d-dbeb-587a-99c3-9cfbd0d2deeb",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-23672 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0920a2b9-f3ad-5ad5-a23f-b8790cffeb29",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-24549 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b2bc3d3a-ad73-557b-b6bf-f8bb0a0b837a",
      "id": "CVE-2024-34750",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-34750 is fixed in version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7a496b15-3fbf-52b7-a422-0c2675e36a21",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38286 is fixed in version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cf90a5db-1c17-52e7-b8e8-94d8737f8985",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e3108d0d-dc59-5121-8843-addcc26fea5d",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cc8d32b9-a11c-598e-aae3-63f8d7532025",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-54677 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:067ef080-4c42-51a8-b4da-02d68351ff82",
      "id": "CVE-2024-56337",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-56337 is fixed in version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:12a6f9a9-f198-5dd1-9777-0e00ce6fe726",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ac859aa3-aaa9-5430-b17a-995cd98772cc",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31650 is fixed in version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:10c1272b-50e1-5e09-a70b-b7425dec6fcf",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31651 is fixed in version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f9690428-539b-5591-8ac4-493bac690a11",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-46701 is fixed in version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:327275bc-1506-524d-8d51-d5e2918a071a",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-48988 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7997f7bb-69ec-5b0e-8a15-a84135f8c7c0",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48989 is fixed in version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:683f52f4-fb4b-5e11-be6b-0f564828122b",
      "id": "CVE-2025-49124",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49124 is fixed in version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:280df1e9-aa60-58b3-9c7b-b9bfd7b8b61c",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b1bb66bd-13d1-55ef-b4d0-2456e9dd52fa",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52434 is fixed in version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4477b0c1-19a4-5028-89fc-db016d79c005",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-52520 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b9b014c9-df40-5dcc-a8a7-b26a36f41dc8",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-53506 is fixed in version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:25be6fa8-4e46-5970-b62f-5e685d0fdd1e",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:100dd96f-1990-512e-a491-317877a96482",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55752 is fixed in version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:85dd769f-0e05-5300-94a1-c44f5c273164",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:90b02a49-25d4-5249-8f8b-3cd48a0fe7e2",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:74947922-cf2b-5f92-bfb2-8ddae7ffed21",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66614 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:61b4d78d-0807-54f6-ab40-0de7293b0e6a",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-24733 is fixed in version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8863e246-8fd3-5b31-8af2-d191196b8ba9",
      "id": "CVE-2026-24734",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24734 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:73416474-04af-5e42-a24f-e89720c73264",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1278605e-c055-59fe-8810-dd9c8cecef87",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-25854 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7cbe2a21-34d4-5f4a-b47a-659b40e5e417",
      "id": "CVE-2026-29145",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29145 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d9ebfbce-b4f2-5d56-9838-efd12d1a45ad",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29146 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9984ed00-9068-561a-9cd0-3a95853c310a",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4dfeca73-efdd-5115-84a7-2ba6d17a540a",
      "id": "CVE-2026-34483",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34483 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fb5c62dd-9773-569b-ace9-138f1e6764ec",
      "id": "CVE-2026-34487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34487 affects version 9.0.87-tuxcare.4 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.4"
    }
  ]
}