{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:4665dcd7-6337-5ce7-a965-74caa258e1c4",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-api",
      "version": "8.5.100-tuxcare.9",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:624b79d3-6dec-5a7d-a97e-146e4595a67b",
      "id": "CVE-2016-0762",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-0762 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cef77920-2b27-5ef9-a9c9-87b8d905e88d",
      "id": "CVE-2016-0763",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-0763 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:21224593-0433-532d-85ff-c318d7d4a0d9",
      "id": "CVE-2016-5018",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-5018 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:72a91e59-9d1b-5671-9425-fafedc094f51",
      "id": "CVE-2016-6794",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6794 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8d22aaf5-7463-5b39-b1b1-cc5f485495d7",
      "id": "CVE-2016-6796",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6796 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9332d22b-ade1-5eef-a925-23ac20fc3cce",
      "id": "CVE-2016-6797",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6797 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ffc620ae-81f8-5fa8-ab21-deb525a2fa3f",
      "id": "CVE-2016-6816",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6816 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:37c66b87-6b99-5fd4-b280-895c1a70aedc",
      "id": "CVE-2016-6817",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6817 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b30beed9-e201-591c-81b4-b1776ebb69a1",
      "id": "CVE-2016-8745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8745 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a1201139-0c7d-5663-93da-c0221da15ee2",
      "id": "CVE-2016-8747",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8747 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7109197c-7709-540c-be7c-06b052127af4",
      "id": "CVE-2017-12617",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-12617 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1983feb7-64a5-56a1-8981-29dea94b81f8",
      "id": "CVE-2017-5647",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5647 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:54580d46-9a9b-564f-b931-a17b82897922",
      "id": "CVE-2017-5648",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5648 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bca2a073-41c9-52b1-94fc-9621aab5ad7e",
      "id": "CVE-2017-5650",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5650 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6490d83b-3b5f-59af-bbb8-04e7b516f9ef",
      "id": "CVE-2017-5651",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5651 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d479c5b8-807e-5e03-97e6-99e47e1c7bb4",
      "id": "CVE-2017-5664",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5664 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:df2c6791-753f-597c-b7ac-774a73893fbb",
      "id": "CVE-2017-7674",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-7674 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d5354d30-cd15-5376-9c34-1e6c01644917",
      "id": "CVE-2017-7675",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-7675 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ad4d0665-119e-5e99-b217-ba86117eb751",
      "id": "CVE-2018-1304",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1304 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:117f60f8-7c72-50ec-aed4-4092f6e133f5",
      "id": "CVE-2018-1305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1305 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0d632195-1a04-572a-bcf2-ad698b040181",
      "id": "CVE-2018-1336",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1336 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f0b10be6-12bb-579d-b3c9-67962f4392b1",
      "id": "CVE-2018-8014",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2018-8014 does not affect version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api. Tomcat Version 8.5.100 is not vulnerable to CVE-2018-8014. Confirmed by manual code inspection and security advisories."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:22ee2a17-4804-5958-ae05-9063a155c844",
      "id": "CVE-2018-8034",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2018-8034 does not affect version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api. Tomcat Version 8.5.100 is not vulnerable to CVE-2018-8034. Confirmed by manual code inspection and security advisories."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:20663e97-d630-5482-ba2c-b3da1dbdb462",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11996 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:558ee3c1-b524-5386-87f3-b0cef8581783",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f7ae2b97-fffa-5756-9067-87ca4d5783f1",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13943 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cc7b44f7-e46b-5022-b7de-7279f5cc2fca",
      "id": "CVE-2020-8022",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2020-8022 is a false positive for org.apache.tomcat:tomcat-api 8.5.100-tuxcare.9."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4eadd25d-1269-5804-834a-0757459cc4e6",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9484 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9cadb93c-0f2c-5b30-af0c-16aad638f340",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4ec75f24-ab67-5998-88fe-b94e1392c310",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-42340 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:64fcc1fc-8624-54b1-a747-f4c3b3c14e0d",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-34305 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1c3b36a9-1df4-5409-ab3a-004ac471408a",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-45143 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a34fe0ad-9592-5ca1-ac96-148c2f3b4c19",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-23672 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1777487c-1fe0-52b4-b644-08974903143a",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-24549 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6ca274ad-4df9-54cd-b74e-94770cfb33be",
      "id": "CVE-2024-34750",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-34750 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:37cbb801-ec00-552a-822d-4b85764c4840",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38286 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a3f27ada-01e0-5ad6-a0f2-af584b4df242",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:69003f2b-acfe-586c-b819-5e77f9c4bbf6",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:35e6e94b-f456-5ace-b40b-561905a2a752",
      "id": "CVE-2024-52317",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52317 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:538dcccc-f388-5b2c-b490-03de59f98f52",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-54677 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f6924965-efb1-58da-b002-eae52caf4e75",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:98dea404-3db7-5a6d-b4e0-bf414539ae97",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31650 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:46b25d19-2d4d-585b-9065-7c50771fbb6a",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31651 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9a3c04e2-3538-5fd4-801c-573d82b0160f",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-46701 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3ec92a24-61e4-5b67-85c5-1a262a1706cc",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:75df4067-a11e-52b4-81a2-3ac23c4dae5b",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48989 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4be111ee-ac95-5700-88cd-c9e304449e9c",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d3aa0dbf-0df3-54e8-a5af-85cdf6b45113",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52434 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2d8113b7-03a9-504e-b39f-eca4b5aef439",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52520 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:96a47fda-9ab0-5025-b6c0-d094350cf5be",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-53506 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:985ff8c3-6528-5478-a7c9-05ad18a4e91e",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:af3ddeb5-eba6-5bc9-942a-82cc7c842516",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55752 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0d5cc89f-b28a-5972-9af3-3266e7386047",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bc9427d4-dc82-518a-8274-102cd141ebbe",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:25e35972-dca1-54b7-87b1-ae98ccda15a1",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-66614 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9420535a-038e-5191-aee5-9f904abf2497",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-24733 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8371e094-4936-5703-804f-4b9e519ea004",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4d230960-76e8-5c9f-967f-fe6a6fef388f",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-25854 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8a90850d-202f-59aa-9616-8da9490a3c39",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-29146 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:14b86d9c-da6a-5c82-b9da-8bc0022e7e66",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:20dcb02b-1cbe-5f6f-984e-d77e3c435481",
      "id": "CVE-2026-34486",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34486 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-api@8.5.100-tuxcare.9"
    }
  ]
}