{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:73c71fb1-9e26-5c60-868b-f906737d6e1a",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.eclipse.jetty.aggregate/jetty-webapp@8.2.0.v20160908-tuxcare.1",
      "type": "library",
      "group": "org.eclipse.jetty.aggregate",
      "name": "jetty-webapp",
      "version": "8.2.0.v20160908-tuxcare.1",
      "purl": "pkg:maven/org.eclipse.jetty.aggregate/jetty-webapp@8.2.0.v20160908-tuxcare.1"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:f1045c91-9a47-535d-a06b-4c7a9021b9e4",
      "id": "CVE-2015-2080",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2015-2080 is a false positive for org.eclipse.jetty.aggregate:jetty-webapp 8.2.0.v20160908-tuxcare.1."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.aggregate/jetty-webapp@8.2.0.v20160908-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e7b6c3e9-66ce-54f7-a379-3a4819cb81c9",
      "id": "CVE-2017-7656",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-7656 affects version 8.2.0.v20160908-tuxcare.1 of org.eclipse.jetty.aggregate:jetty-webapp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.aggregate/jetty-webapp@8.2.0.v20160908-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b348f8fb-5fd8-5bbb-b7fb-9f55d469d3d5",
      "id": "CVE-2017-7657",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-7657 affects version 8.2.0.v20160908-tuxcare.1 of org.eclipse.jetty.aggregate:jetty-webapp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.aggregate/jetty-webapp@8.2.0.v20160908-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:80bd4a81-b2ab-5519-b8ad-5bb5080760ac",
      "id": "CVE-2017-7658",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-7658 affects version 8.2.0.v20160908-tuxcare.1 of org.eclipse.jetty.aggregate:jetty-webapp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.aggregate/jetty-webapp@8.2.0.v20160908-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:66f57817-6e91-5fe4-b5af-432e8b9fbda5",
      "id": "CVE-2017-9735",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2017-9735 is fixed in version 8.2.0.v20160908-tuxcare.1 of org.eclipse.jetty.aggregate:jetty-webapp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.aggregate/jetty-webapp@8.2.0.v20160908-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3a4a9b29-01e4-5ece-81df-2e097ab29473",
      "id": "CVE-2018-12536",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-12536 affects version 8.2.0.v20160908-tuxcare.1 of org.eclipse.jetty.aggregate:jetty-webapp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.aggregate/jetty-webapp@8.2.0.v20160908-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:489be1f1-9ee2-558f-8e0d-6c81740ab575",
      "id": "CVE-2018-12538",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-12538 affects version 8.2.0.v20160908-tuxcare.1 of org.eclipse.jetty.aggregate:jetty-webapp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.aggregate/jetty-webapp@8.2.0.v20160908-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8a1f14c7-1733-5c9e-a21e-b34282d962ab",
      "id": "CVE-2018-12545",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-12545 affects version 8.2.0.v20160908-tuxcare.1 of org.eclipse.jetty.aggregate:jetty-webapp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.aggregate/jetty-webapp@8.2.0.v20160908-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4f521239-3ab8-5c21-9b5f-14a6237bdf94",
      "id": "CVE-2019-10241",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-10241 affects version 8.2.0.v20160908-tuxcare.1 of org.eclipse.jetty.aggregate:jetty-webapp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.aggregate/jetty-webapp@8.2.0.v20160908-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d72ee5ab-67fb-5bc1-8fe0-da08da6afcaa",
      "id": "CVE-2019-10246",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-10246 affects version 8.2.0.v20160908-tuxcare.1 of org.eclipse.jetty.aggregate:jetty-webapp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.aggregate/jetty-webapp@8.2.0.v20160908-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f1ea75cc-0c8c-5e7e-93a5-fbfb6f633b69",
      "id": "CVE-2019-10247",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2019-10247 is fixed in version 8.2.0.v20160908-tuxcare.1 of org.eclipse.jetty.aggregate:jetty-webapp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.aggregate/jetty-webapp@8.2.0.v20160908-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:26dd4fd6-4d95-5064-98f3-30d8749a0286",
      "id": "CVE-2019-17638",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-17638 affects version 8.2.0.v20160908-tuxcare.1 of org.eclipse.jetty.aggregate:jetty-webapp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.aggregate/jetty-webapp@8.2.0.v20160908-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:591963e1-8b8d-54e5-8ff1-6b3c933c6dbb",
      "id": "CVE-2020-27216",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2020-27216 is fixed in version 8.2.0.v20160908-tuxcare.1 of org.eclipse.jetty.aggregate:jetty-webapp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.aggregate/jetty-webapp@8.2.0.v20160908-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:11001d29-e583-584c-82d6-7209dd7938d6",
      "id": "CVE-2020-27218",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-27218 affects version 8.2.0.v20160908-tuxcare.1 of org.eclipse.jetty.aggregate:jetty-webapp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.aggregate/jetty-webapp@8.2.0.v20160908-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e4d77aa8-0aef-5d10-a915-637b91b94d7b",
      "id": "CVE-2021-28165",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2021-28165 is a false positive for org.eclipse.jetty.aggregate:jetty-webapp 8.2.0.v20160908-tuxcare.1."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.aggregate/jetty-webapp@8.2.0.v20160908-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cb08cff9-d384-5b3f-9560-ab68f6d0ff44",
      "id": "CVE-2021-28169",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2021-28169 is a false positive for org.eclipse.jetty.aggregate:jetty-webapp 8.2.0.v20160908-tuxcare.1."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.aggregate/jetty-webapp@8.2.0.v20160908-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:45690e2b-2d8c-532f-b8d2-461da9806131",
      "id": "CVE-2021-34428",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-34428 is fixed in version 8.2.0.v20160908-tuxcare.1 of org.eclipse.jetty.aggregate:jetty-webapp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.aggregate/jetty-webapp@8.2.0.v20160908-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:218be319-1ce7-5fb1-a905-62e9d405f1e8",
      "id": "CVE-2022-2047",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-2047 affects version 8.2.0.v20160908-tuxcare.1 of org.eclipse.jetty.aggregate:jetty-webapp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.aggregate/jetty-webapp@8.2.0.v20160908-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:61a7e75f-8cac-5602-bcc3-24af386166eb",
      "id": "CVE-2022-2048",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2022-2048 is a false positive for org.eclipse.jetty.aggregate:jetty-webapp 8.2.0.v20160908-tuxcare.1."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.aggregate/jetty-webapp@8.2.0.v20160908-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:89cc0583-2ad7-5e36-95da-ab9298467d72",
      "id": "CVE-2023-26048",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-26048 affects version 8.2.0.v20160908-tuxcare.1 of org.eclipse.jetty.aggregate:jetty-webapp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.aggregate/jetty-webapp@8.2.0.v20160908-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:75fff71b-31dc-54ad-94ff-6612252f366e",
      "id": "CVE-2023-26049",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-26049 affects version 8.2.0.v20160908-tuxcare.1 of org.eclipse.jetty.aggregate:jetty-webapp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.aggregate/jetty-webapp@8.2.0.v20160908-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:255aadd2-609f-5d44-9dcd-09c894696612",
      "id": "CVE-2023-36479",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-36479 affects version 8.2.0.v20160908-tuxcare.1 of org.eclipse.jetty.aggregate:jetty-webapp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.aggregate/jetty-webapp@8.2.0.v20160908-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:65a8a04b-2ce2-5cf6-bde4-ff2a8461f759",
      "id": "CVE-2023-40167",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-40167 affects version 8.2.0.v20160908-tuxcare.1 of org.eclipse.jetty.aggregate:jetty-webapp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.aggregate/jetty-webapp@8.2.0.v20160908-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d333b29f-2eec-50c2-aa75-84ad1537f6fa",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-44487 affects version 8.2.0.v20160908-tuxcare.1 of org.eclipse.jetty.aggregate:jetty-webapp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.aggregate/jetty-webapp@8.2.0.v20160908-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:da05de2a-280d-59f4-8d71-035d4509a63c",
      "id": "CVE-2024-13009",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-13009 affects version 8.2.0.v20160908-tuxcare.1 of org.eclipse.jetty.aggregate:jetty-webapp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.aggregate/jetty-webapp@8.2.0.v20160908-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:82de4f8b-4541-5a43-98bb-afbf61e16275",
      "id": "CVE-2024-6762",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-6762 affects version 8.2.0.v20160908-tuxcare.1 of org.eclipse.jetty.aggregate:jetty-webapp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.aggregate/jetty-webapp@8.2.0.v20160908-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2651ed7a-7505-5874-84cc-38b48121b422",
      "id": "CVE-2024-6763",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-6763 affects version 8.2.0.v20160908-tuxcare.1 of org.eclipse.jetty.aggregate:jetty-webapp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.aggregate/jetty-webapp@8.2.0.v20160908-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7bbcc82b-924e-50a5-a73d-98ad09ac29c7",
      "id": "CVE-2024-8184",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-8184 affects version 8.2.0.v20160908-tuxcare.1 of org.eclipse.jetty.aggregate:jetty-webapp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.aggregate/jetty-webapp@8.2.0.v20160908-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:47d920a5-e0b2-503d-be11-12ed8d314071",
      "id": "CVE-2025-11143",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-11143 affects version 8.2.0.v20160908-tuxcare.1 of org.eclipse.jetty.aggregate:jetty-webapp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.aggregate/jetty-webapp@8.2.0.v20160908-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3bacc65d-81fb-55d2-8347-e54ef8c533b7",
      "id": "CVE-2026-1605",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-1605 affects version 8.2.0.v20160908-tuxcare.1 of org.eclipse.jetty.aggregate:jetty-webapp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.aggregate/jetty-webapp@8.2.0.v20160908-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:32abbd79-ad61-5b8a-88df-5179449af7d2",
      "id": "CVE-2026-2332",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-2332 affects version 8.2.0.v20160908-tuxcare.1 of org.eclipse.jetty.aggregate:jetty-webapp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.aggregate/jetty-webapp@8.2.0.v20160908-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1588fa0d-150f-5a92-8c83-8677fc59b778",
      "id": "CVE-2026-5795",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-5795 affects version 8.2.0.v20160908-tuxcare.1 of org.eclipse.jetty.aggregate:jetty-webapp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.aggregate/jetty-webapp@8.2.0.v20160908-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a4e9fd04-a538-5a2e-ad63-179889c7a66e",
      "id": "GHSA-58qw-p7qm-5rvh",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability GHSA-58qw-p7qm-5rvh affects version 8.2.0.v20160908-tuxcare.1 of org.eclipse.jetty.aggregate:jetty-webapp."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.eclipse.jetty.aggregate/jetty-webapp@8.2.0.v20160908-tuxcare.1"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.eclipse.jetty.aggregate/jetty-webapp@8.2.0.v20160908-tuxcare.1"
    }
  ]
}