{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:a1ee8ed9-d486-5b81-b3a5-7b027f72db2e",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-tribes",
      "version": "9.0.75-tuxcare.4",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:de8bf6d1-1b88-5181-963f-ee03fd2cea57",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11996 affects version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d11ac4b1-63db-59fc-81f2-329e4598ca36",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ed2a1656-bec1-51c7-b336-92f40867be5c",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13943 affects version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8aeba4fe-4e96-5fdd-83cd-e10ad53620d9",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9484 affects version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8106d1e2-05de-512b-8971-255bf01110ab",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4107db28-b7e4-5691-8cea-f17cf35a39de",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-42340 affects version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ff67619b-e14b-519e-b66a-5a7ad94fd607",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-34305 affects version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b3c1bfac-9b4d-54a4-857c-69a495170e8f",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-45143 affects version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:df5764ff-5b1b-54e4-9e49-637113c913ff",
      "id": "CVE-2023-41080",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-41080 is fixed in version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:65b863db-ecdb-5f3d-80f4-5ac0a3561ff4",
      "id": "CVE-2023-42794",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-42794 is fixed in version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:99b87c19-cd4f-5639-a26a-cf2f4719f06a",
      "id": "CVE-2023-42795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-42795 is fixed in version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:38fb6795-52c3-5b77-8664-e1952eba49a0",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-44487 is fixed in version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2e5e1953-cae3-5e02-a125-4a82ec4f453a",
      "id": "CVE-2023-45648",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-45648 is fixed in version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:316c9f01-a859-5d35-b4c1-d92e9ad96975",
      "id": "CVE-2023-46589",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-46589 is fixed in version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1147fe3e-b9d4-5a54-b57a-b984d7cb7a5b",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-23672 is fixed in version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a6dd21dc-262b-5507-bd1f-5633c5492b96",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-24549 is fixed in version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bf151cfb-c2a5-54a0-82a2-10d129f1f7e8",
      "id": "CVE-2024-34750",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-34750 is fixed in version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f634b58d-afbe-5e5f-aa8d-2a242387b7a6",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38286 is fixed in version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0d55591a-94af-5395-a933-dcff1a69f521",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7cabe693-d2ca-59a2-9629-0e0519fa501a",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8775ab7d-0804-5d45-b615-fb5a12d1ab09",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-54677 is fixed in version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3397f37d-e086-58d5-8d99-2ec35e39f2fd",
      "id": "CVE-2024-56337",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-56337 is fixed in version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:76dc06c5-c4e9-5d32-a787-1e214e134178",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:95d43436-ded3-5f84-a93f-218420dacf0e",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-31650 affects version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cf60903a-7c5f-57f1-9ff6-3d52890e7827",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31651 is fixed in version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fe713842-8aa6-530a-9341-969c61025b69",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-46701 is fixed in version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:95e3a1b4-38c7-58c4-9eb4-9de6aeda455d",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:87fa24fc-417e-5073-8ee6-12499005942d",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48989 is fixed in version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:725cc7ab-f71b-5bb6-ab20-4691fa935517",
      "id": "CVE-2025-49124",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49124 is fixed in version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:05653295-846b-5f94-8c74-471563b095dc",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4815a2c9-2989-58e9-85b2-9fadc08c0676",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52434 is fixed in version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c7064d47-74c7-56bd-acd2-b69bcd5ea174",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52520 is fixed in version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f7aa4b14-3c01-56db-88a6-e9b8346d2948",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-53506 is fixed in version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9699906b-8d56-51f8-9b8e-dac1f026e723",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:32d9955d-a933-5146-88d2-63f186ac8f35",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55752 is fixed in version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:33206e03-2f26-5fc6-910a-1530ba8e2155",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1c6a98dd-9f5f-5cd9-900c-51d6b7297f9d",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:540c0400-a390-50cc-90b2-6b13d2acb964",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66614 affects version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f9c7bd48-4de0-59aa-9abd-4b65312aa5c9",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-24733 is fixed in version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:05bdc30a-004a-5805-8df1-f2360bf57285",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4ec68849-ab74-55b6-9eb5-14665df546e3",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-25854 affects version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c3ad0e0d-2391-561e-b8a4-41c3e8d5da05",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29146 affects version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:651bb918-8a89-5235-a29f-76575c1fabc6",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b0ce9af7-c575-5cb1-b463-5993a194aa81",
      "id": "CVE-2026-34483",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34483 affects version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c5001065-a4f6-584b-afc6-ab2bfb4b4010",
      "id": "CVE-2026-34487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34487 affects version 9.0.75-tuxcare.4 of org.apache.tomcat:tomcat-tribes."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-tribes@9.0.75-tuxcare.4"
    }
  ]
}