{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:6f4df9d8-51b0-58ee-b935-db62c972c742",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-ssi",
      "version": "9.0.87-tuxcare.5",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:5166e500-9a26-5c7c-aa5a-cea472390858",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11996 affects version 9.0.87-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:52e22804-35c3-5994-b806-0fb158546052",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 9.0.87-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:404de23c-1d4b-53f3-b128-0c45d422665e",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13943 affects version 9.0.87-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:69197a76-a9ce-5671-b266-4d97af8dff65",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9484 affects version 9.0.87-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:20e0bfa4-5c1a-5d22-a98e-736fa5837b2b",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 9.0.87-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:81a30deb-474b-5840-94fc-7aaad5494e9d",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-42340 affects version 9.0.87-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7f12a889-d40a-525a-8bbe-89cdcb5f9796",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-34305 affects version 9.0.87-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:129b65fb-881d-5eab-9f8e-6f700287d1db",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-45143 affects version 9.0.87-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:01a1e0c5-da7e-59d8-8dfa-f697986e02ac",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-23672 affects version 9.0.87-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a62c016c-70e9-5969-a6db-492f4a0143f1",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-24549 affects version 9.0.87-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8bbbef6e-f84c-5825-a2ad-b8334156af3e",
      "id": "CVE-2024-34750",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-34750 is fixed in version 9.0.87-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:de19481e-6ee1-55c8-baa5-1d4b5c33692a",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38286 is fixed in version 9.0.87-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e55522cf-8f9f-52af-872f-5cb259afaa7d",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 9.0.87-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:25b8b273-3c86-53f2-a609-8f20c6fc4147",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 9.0.87-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9e6ee59a-a2d0-5905-aabb-91020e212fb1",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-54677 affects version 9.0.87-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:18d63d98-4b20-528b-8bcd-cb771b74f721",
      "id": "CVE-2024-56337",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-56337 is fixed in version 9.0.87-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:048679bb-2360-59be-84f0-aed666cf3024",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 9.0.87-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:99157f62-cd76-5019-a394-b68f0b291c43",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31650 is fixed in version 9.0.87-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:847d70eb-cfc6-59d1-82cb-992c6c2c89e1",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31651 is fixed in version 9.0.87-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7cc698a5-bc7e-5a26-9ff7-165c38dea0e9",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-46701 is fixed in version 9.0.87-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b2e8c5c2-4e89-583a-a181-b2b0597be3f4",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 9.0.87-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:96c8a305-c165-5c18-8c14-dd2a872fe7e0",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48989 is fixed in version 9.0.87-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e9ce4127-1bf8-5cce-9f8c-6af13b6a731a",
      "id": "CVE-2025-49124",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49124 is fixed in version 9.0.87-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ec5d6eeb-c119-53e3-912a-21df797238fb",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 9.0.87-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1803cc3f-9ca2-5640-8019-9f9266fb4ef0",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52434 is fixed in version 9.0.87-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6cc42b6b-8386-5657-8e01-24ff8d92e9d8",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-52520 affects version 9.0.87-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5a7e574c-5597-51cc-bca8-ea1cd1fb6a92",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-53506 is fixed in version 9.0.87-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:92b985ba-5fca-5e5e-92b1-b028bee0b27a",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 9.0.87-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2ca15534-7184-5987-b7cb-b8845a491e7a",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55752 is fixed in version 9.0.87-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ad96f95b-1fe4-52b2-a416-4df7be24ac45",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 9.0.87-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:61ba583e-653e-5037-8cef-f84a1a03e982",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 9.0.87-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:12751155-ac6e-52d2-ac5c-d1db0dc2fec9",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66614 affects version 9.0.87-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:05883ba4-e047-5255-99a3-579478679e62",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-24733 is fixed in version 9.0.87-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7b8d211c-ec65-5eb3-90eb-4e56242acce0",
      "id": "CVE-2026-24734",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24734 affects version 9.0.87-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3765277d-f86e-5146-a3bb-6926befeecc0",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 9.0.87-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d39fe759-be73-5cb3-8c1c-1a68cf8b20b4",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-25854 affects version 9.0.87-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b4cc2824-93a4-53a7-8ac8-846f2efbe519",
      "id": "CVE-2026-29145",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29145 affects version 9.0.87-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d8b772c7-f34e-5a8f-a7fe-db416a5fe7c7",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29146 affects version 9.0.87-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f9973a1a-dead-5c32-b4fb-44fd8f6b596f",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 9.0.87-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dd8a32b2-ab8c-510a-92c0-9023e06d7808",
      "id": "CVE-2026-34483",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34483 affects version 9.0.87-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3ceb4e5f-82f4-5e08-86fb-d661d3b6dfbf",
      "id": "CVE-2026-34487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34487 affects version 9.0.87-tuxcare.5 of org.apache.tomcat:tomcat-ssi."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-ssi@9.0.87-tuxcare.5"
    }
  ]
}