{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:818a3ec7-f05b-5b9d-849f-62bd5317ec34",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-coyote",
      "version": "9.0.46-tuxcare.6",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:79ccc894-9e8e-50ec-8d87-b9575b967123",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11996 affects version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9b725192-ca92-5840-8d0c-61ebbc534c14",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6aae7885-48ac-59ed-ab1d-95b37ad4df6d",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13943 affects version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:89a0b8be-5c0d-577f-bebc-6f753895b924",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9484 affects version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bcc3ff43-c5ad-5cf3-b8e5-61654f141b4c",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:82cca8a6-d49a-52c1-9f1e-030acf29266f",
      "id": "CVE-2021-33037",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-33037 is fixed in version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:24baf406-63a0-5bd6-b32b-a91dab4abdb5",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-42340 is fixed in version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ce13c5a5-8bbe-5a83-923a-911a0a2c523b",
      "id": "CVE-2021-43980",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-43980 is fixed in version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2fbd0edb-8f75-5602-ad1f-d18e7ab04feb",
      "id": "CVE-2022-23181",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-23181 is fixed in version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e4b5ee5d-7854-5488-b781-524024083d90",
      "id": "CVE-2022-29885",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-29885 is fixed in version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cf6bac98-c996-59d6-a553-4ddad86676f8",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-34305 is fixed in version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:56380000-4f49-592f-8ef9-32dd6588cb2b",
      "id": "CVE-2022-42252",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-42252 is fixed in version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8424f316-7bba-556f-9bd7-d5a08f356840",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-45143 is fixed in version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d0655f21-dac6-5206-a24b-9b2a051115e7",
      "id": "CVE-2023-24998",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-24998 affects version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9033960d-7df0-5e85-beea-1f0325ae3d30",
      "id": "CVE-2023-28708",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-28708 is fixed in version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0d37617c-6242-5529-81ac-1acff231aecd",
      "id": "CVE-2023-41080",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-41080 is fixed in version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e4fd8fef-fe3f-5510-ae9c-1ff4c379bcb9",
      "id": "CVE-2023-42795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-42795 is fixed in version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5ae28247-3969-56e5-8cff-dcc1deed12b3",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-44487 affects version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e3c13a7a-6cf8-570a-9841-9b6a959065ca",
      "id": "CVE-2023-45648",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-45648 is fixed in version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2c316808-e5ad-5b65-b15c-48880f86ddff",
      "id": "CVE-2023-46589",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-46589 affects version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d3dd2d97-54c5-5b9a-a488-9b95014b848e",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-23672 affects version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f5f4b567-ffee-5b99-9402-250407ccf66a",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-24549 affects version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f93e54d6-dbbf-59bc-9e1c-08c5d329a29f",
      "id": "CVE-2024-34750",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-34750 affects version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c2b09404-8394-5862-b0d3-fb8a8d0aa321",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38286 is fixed in version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:32b428e7-4f0a-597b-8da8-fe5f08f8f85e",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:436473ee-63af-58b5-8814-001852db7a0b",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0c5bf76f-a969-5f24-89ea-6ef5afe47a06",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-54677 affects version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aa56957e-eee1-5705-b2e6-293bfe6eda7f",
      "id": "CVE-2024-56337",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-56337 affects version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a73c4a60-2876-5ca7-8852-7857b2b92df3",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b0449e8b-3697-55f7-81c2-56aa4579210f",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-31650 affects version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5940d23b-f23b-5acc-bf16-17e7bdc70a0e",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31651 is fixed in version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:23c911c6-9190-5172-ab8c-21c9af367983",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-46701 is fixed in version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:73622ad9-6931-5000-90f0-49fefae72211",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:607f046e-ac61-5358-bc8e-f3a2dd7d0a94",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48989 is fixed in version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cca31afa-3a33-51bc-b865-517be2fa8fb4",
      "id": "CVE-2025-49124",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49124 is fixed in version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:df8ef9eb-912d-537a-a241-c753f272ebe9",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d27f77bc-ba3c-5f31-aac6-a7f28a8dc84d",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-52434 affects version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1f91d0ef-194a-5b02-aef8-2223458e4245",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52520 is fixed in version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ea0f3d02-baf6-575c-ae6f-e0645ca74294",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-53506 is fixed in version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8582efe1-cca0-5d90-ae2d-ffacbc765b03",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b98dfd23-8a18-5388-aaaa-4afaa2ade8c2",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55752 is fixed in version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9930a47d-ec6b-54ca-b8f0-4bd6ceaab8f2",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:81772a63-1414-57df-8ffd-92cdda6950fa",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:318e41af-90fe-5dc0-ba39-68cdafb74d18",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-66614 is fixed in version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:126a12cd-4e66-5ae8-b74e-2375505ed742",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-24733 is fixed in version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ce619425-741e-59ba-a0f1-28fe5bd3fa8b",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6bb571ab-d4aa-5b33-8cd9-2a264c4be817",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-25854 is fixed in version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:74fb7add-c928-5818-a7c5-498df40c08b4",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-29146 is fixed in version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d523c969-17d8-528c-ae39-70ef6a180b13",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2d0e3720-1d7a-55bf-a881-a7b99ada654d",
      "id": "CVE-2026-34483",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34483 affects version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:450b24e0-e8ca-5472-87d9-df30caaf068d",
      "id": "CVE-2026-34486",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34486 affects version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ef310995-d87c-5947-8be9-20da056a06c2",
      "id": "CVE-2026-34487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34487 affects version 9.0.46-tuxcare.6 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.46-tuxcare.6"
    }
  ]
}