{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:493b2a6f-2d3c-5ca7-a0ef-c9eaba603ec1",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-util-scan",
      "version": "8.5.100-tuxcare.4",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:8de9d68c-9666-54cc-a4d6-995cea76b7e2",
      "id": "CVE-2016-0762",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-0762 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8004ac5f-f783-52cf-adcd-061c505a384e",
      "id": "CVE-2016-0763",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-0763 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f0502dad-8129-52b5-98d7-c3a71f2c71cd",
      "id": "CVE-2016-5018",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-5018 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a344b88a-abd8-586b-afc1-488cbbc80994",
      "id": "CVE-2016-6794",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6794 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8ad7a60d-403a-5d05-94bf-4c42e8ffceb7",
      "id": "CVE-2016-6796",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6796 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:528d235a-d453-517c-8e26-09b7718a791a",
      "id": "CVE-2016-6797",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6797 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fb3c1087-b330-5def-a2ea-0b987b3331df",
      "id": "CVE-2016-6816",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6816 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2dec4766-509e-5550-85a4-681fb704a03b",
      "id": "CVE-2016-6817",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6817 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:da5222a8-c7e1-53a0-803d-0d34d2251db3",
      "id": "CVE-2016-8745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8745 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dc1fb2ce-6020-52a4-a545-03828c87eb37",
      "id": "CVE-2016-8747",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8747 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ee2d7754-3b21-51ac-a51c-2f37f87468d8",
      "id": "CVE-2017-12617",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-12617 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1e274136-ee18-528c-ab7c-51a6e719bb57",
      "id": "CVE-2017-5647",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5647 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:388856e7-4d0e-5f72-98bb-60c855c38973",
      "id": "CVE-2017-5648",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5648 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:450698c0-504a-5ddd-b79e-13eb9eed8f04",
      "id": "CVE-2017-5650",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5650 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f5a3efe7-ae3b-562e-ae5a-9ccba791e309",
      "id": "CVE-2017-5651",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5651 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f94481f3-cd10-5129-b14f-abd8c60671d7",
      "id": "CVE-2017-5664",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5664 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:89fac5bb-910a-5dea-853c-02a6b8943b45",
      "id": "CVE-2017-7674",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-7674 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3127d5c7-c91b-5c17-a5ba-8feb35c0f78a",
      "id": "CVE-2017-7675",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-7675 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5306690b-b96b-5fb6-b3b1-9d499727ac66",
      "id": "CVE-2018-1304",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1304 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a8a8ebc9-b90d-5f07-a885-685b1d095719",
      "id": "CVE-2018-1305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1305 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cde2e06e-da3c-5897-b9f0-9e0a871e4b2a",
      "id": "CVE-2018-1336",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1336 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:51e512cf-1c90-5adc-8dd7-9ed2488ce862",
      "id": "CVE-2018-8014",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-8014 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:98d6f6be-7d09-5e82-a768-a3ff4b58ed7b",
      "id": "CVE-2018-8034",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-8034 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:13bea2c9-9a6e-5ab0-ab23-c056ab318a64",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11996 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:72951759-e5cf-5775-a318-b8e6382ba754",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:02c0d4b3-2802-5856-a2dd-52c4f2cf243c",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13943 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:622c2d1c-6bbb-58e6-98a6-c7a397a549b8",
      "id": "CVE-2020-8022",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2020-8022 is a false positive for org.apache.tomcat:tomcat-util-scan 8.5.100-tuxcare.4."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:910f8643-9d14-5b23-8a63-f4b05a898408",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9484 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ad052929-77ea-5a6f-9edc-a312912fd619",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:73f8724e-6584-5b42-a93a-a768c3ed87b6",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-42340 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:34037563-ad96-58b0-a455-784865fd3189",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-34305 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:081fcb1f-7d24-5380-910f-813c4b5b3067",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-45143 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cd5ae561-a28f-5096-899e-251fc2e3babd",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-23672 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4ab553be-15d2-5392-82a9-d159bedb6fd0",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-24549 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:15e993fb-b112-5b14-979a-355f688f2830",
      "id": "CVE-2024-34750",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-34750 is fixed in version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a3fe830c-f32a-5787-a628-b49c9174ce67",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38286 is fixed in version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a836e758-e77a-5e65-b100-60ad2a32e705",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:64659dbc-3a31-5441-8d86-d263084df9cc",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:71c5d7f7-7dd6-567f-89d8-ba5112198871",
      "id": "CVE-2024-52317",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52317 is fixed in version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ea2b497b-1a93-537f-938b-e917a87f94fe",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-54677 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bbbb3811-dbe6-595c-b3f5-7e85083fd18d",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cc4f597c-d080-57f7-89f6-9402b7ebf251",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31650 is fixed in version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5071f1ee-ba48-5bb3-8a9d-ca175abe647c",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31651 is fixed in version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a0a01c92-cb1f-50ab-86ca-102f550bf043",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-46701 is fixed in version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8aa1f266-4523-5bab-b6dc-e0aa85aad8cb",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:023d6cb0-6ded-5dcf-b7d8-f89b251ae3bf",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48989 is fixed in version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7f50411a-da65-5f36-b506-cc524c4c1a32",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d35d7635-1be9-5d14-853b-91f7933683a3",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52434 is fixed in version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dceec16d-7119-57ea-a196-77bf643cf8a3",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-52520 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:183021a0-3e25-5e9f-99f1-337ebb8239cf",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-53506 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:07c444bd-1ddc-571d-9664-f810c5777c1a",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cd88744e-bd8d-50cf-bdc3-b1f9423ef788",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55752 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bff8a9c4-8806-57a4-9883-66e94c8d3614",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55754 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3c4dc7ba-248c-543e-bdc0-41e9c7f182b0",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-61795 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8b9c12d4-e300-5e6e-86b0-b317531442c1",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66614 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c6cf9525-f739-5b70-889a-36b070a96f06",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24733 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8bc12ef8-f4be-5bd0-9ab4-310cbf1b84f4",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:308e2526-19b2-5243-8656-ebf2c6744f78",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-25854 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a6cea17b-1a5c-5a09-b992-8e50ac147407",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29146 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:797b9564-ea53-5747-986f-7f0bb47ce5ca",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 8.5.100-tuxcare.4 of org.apache.tomcat:tomcat-util-scan."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-util-scan@8.5.100-tuxcare.4"
    }
  ]
}