{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:5f6b9aed-989b-50eb-aa68-e2ec9d401445",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-tribes",
      "version": "9.0.50-tuxcare.2",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:24907f5a-ca35-5a47-8494-fb849a0e4110",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11996 affects version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5f9ab464-c43b-5f47-8c98-7663b8b48dde",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c654506c-952c-55ac-8d4f-f902ec4569be",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13943 affects version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ab907c36-32a9-5206-9155-780dcaf1322f",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9484 affects version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2026ca7c-f7e0-5fa3-888a-de2dd3ce2bc6",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a82a70bb-a0c6-5e38-a659-45deaba6f3f3",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-42340 is fixed in version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:087c2af2-e598-52f5-bf26-445c1faef4fd",
      "id": "CVE-2021-43980",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-43980 is fixed in version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:090d3341-dcf9-54b7-b87d-0c49f76cd34a",
      "id": "CVE-2022-23181",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-23181 is fixed in version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:984fc1d7-cf1f-572d-96ab-227b32de5f6b",
      "id": "CVE-2022-29885",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-29885 affects version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:93e36d9d-3de2-59f8-8674-c137c35827ed",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-34305 affects version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:43e823b1-8881-5dc9-8b3e-9faaee5babd1",
      "id": "CVE-2022-42252",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-42252 is fixed in version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a545f4c5-5164-57bb-9c09-570e024e1a90",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-45143 is fixed in version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:83724f06-ee55-5278-a2cb-554be112049a",
      "id": "CVE-2023-24998",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-24998 affects version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f7eaadc0-311f-5004-a406-3d73d156cc87",
      "id": "CVE-2023-28708",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-28708 is fixed in version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:877b5abc-5e93-5c53-ab5a-1a80358bee1e",
      "id": "CVE-2023-41080",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-41080 is fixed in version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:23afe204-c1cd-5ce3-b96f-50b30b825468",
      "id": "CVE-2023-42795",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-42795 affects version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3c937714-4617-5931-9608-f94ff1014895",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-44487 affects version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ec32e6b5-b996-5083-9d99-9ca4fd4d6302",
      "id": "CVE-2023-45648",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-45648 is fixed in version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1a8d17fd-942a-57f6-95df-53ef2db3c1c8",
      "id": "CVE-2023-46589",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-46589 affects version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:baf306f6-764d-533f-aff5-71f5ab658b4e",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-23672 affects version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e1145ab6-bf6f-562f-965c-a0fc67d7777e",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-24549 affects version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8a989df1-0ef5-5123-aa89-f0a03b0ecbee",
      "id": "CVE-2024-34750",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-34750 affects version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:773f4c79-9ead-59fd-86a8-c9ed17a435cd",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38286 is fixed in version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c34c086a-9602-51e7-bce4-7bed7d66ec35",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d0de49e4-7b2c-5d25-9d38-211dc78016f4",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:056a392c-7012-502a-aa10-b88c951ed56d",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-54677 affects version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b1418168-c07c-533c-af4d-cfa366b32820",
      "id": "CVE-2024-56337",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-56337 affects version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:16bbe3e3-2bc2-5572-b19e-f90173ec713e",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:130de52e-e37b-5b8a-8b6c-294158877f36",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-31650 affects version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:80939d3a-af02-5751-813d-7f1e1ba80b3d",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-31651 affects version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9b5caf6d-f683-59c2-90a8-aaed3b699517",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-46701 affects version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b448fd96-0765-5895-b954-a14e6ca49e8c",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:57fc862c-4d15-5a97-bcfe-fa4001dd1791",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-48989 affects version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f8cd97dc-c2d3-5021-a382-003b7c5b808c",
      "id": "CVE-2025-49124",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49124 is fixed in version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d95a587f-d93f-5532-9946-f37a44bceda8",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d35db91f-03a9-5644-94fd-5ccd28a1f31b",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-52434 affects version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ee04a2d2-2b27-55e4-a8bf-c6d02957b5d2",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52520 is fixed in version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0a06445e-74f6-5058-af3d-47510d5cfc63",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-53506 is fixed in version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:68514dda-a81f-5181-858f-8febe1ce0b5d",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d964f116-faf8-5a50-8fc2-1da043b4a091",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55752 affects version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7b003599-c92f-50c5-a515-cb82972b68fc",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a18499a2-84b7-5fa4-8de8-5c03672558ef",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ef1199d2-230a-5d84-a74a-c40fb25b1a0e",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66614 affects version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4dd5d044-169b-5123-96ab-8d697ab9fb4b",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24733 affects version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:27ef6097-1a45-54e8-a5d1-0d3fe6bb8396",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8751d3fb-98f9-5671-b719-5fb66b3702dc",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-25854 affects version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0220d85f-e65e-5f05-b322-3e9d61475cb1",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29146 affects version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a7363620-71e6-5976-9e5c-f7986139f23f",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1719e90d-705e-560e-ad92-c8cacf4f36b6",
      "id": "CVE-2026-34483",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34483 affects version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6db6d925-ace7-50b5-9a10-d66096fb4927",
      "id": "CVE-2026-34487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34487 affects version 9.0.50-tuxcare.2 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.50-tuxcare.2"
    }
  ]
}