{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:80643703-7436-5fb8-9b82-bcd0dde6f10e",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-coyote",
      "version": "9.0.50-tuxcare.9",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:28d97075-fd05-5bb6-aecc-a4d81536bf56",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11996 affects version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3ff4ee9a-922b-5709-9e99-42cafdd0f36c",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2f644a45-3678-5021-aab8-ed10f39b7070",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13943 affects version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cb0259b6-81a0-5373-b975-6b67ac256bd7",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9484 affects version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:63c93708-a3b6-5d7f-90a4-3cf289e7db7a",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:66c031a0-f981-5f65-8bb8-cc12812a6202",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-42340 is fixed in version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:31b08ba6-c3cb-59e6-aa0f-5bcf13389c00",
      "id": "CVE-2021-43980",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-43980 is fixed in version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aa705390-ea91-5558-82db-3d5a5508b7e3",
      "id": "CVE-2022-23181",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-23181 is fixed in version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4c08c3d3-f1b9-51f4-9600-c39a944d39d9",
      "id": "CVE-2022-29885",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-29885 affects version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4ca49f5c-6526-5ae3-921c-e23241d0b9a7",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-34305 affects version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:380cc44a-0dad-5f56-ae12-fa143f1aab0f",
      "id": "CVE-2022-42252",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-42252 is fixed in version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5420f862-97e0-5e0f-bf4e-6a0cbbd4b269",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-45143 is fixed in version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aca52d3a-1e06-5024-b3d2-b2dbc5767e3d",
      "id": "CVE-2023-24998",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-24998 affects version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:baad362d-d498-5ac9-a765-0f2206cfffa5",
      "id": "CVE-2023-28708",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-28708 is fixed in version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:de6bc7f9-5a21-500d-b346-67df3c39c1ee",
      "id": "CVE-2023-41080",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-41080 is fixed in version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ed9c3619-c009-52a7-88e7-68281454db10",
      "id": "CVE-2023-42795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-42795 is fixed in version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:85856aa1-546a-5cde-b55c-532f845ee9a8",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-44487 affects version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5137b195-98ba-5628-b6b7-88e3753ea07a",
      "id": "CVE-2023-45648",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-45648 is fixed in version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cb86a993-4abc-5c1d-975e-4bc31a1e8cd0",
      "id": "CVE-2023-46589",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-46589 is fixed in version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9b5793e3-18c4-5bd4-8521-b82f8989ac8b",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-23672 affects version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a655dc5c-cf2e-5ec3-997c-43e552e5e3ad",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-24549 affects version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:52f7ed1b-431a-5bcf-975f-67af676175b2",
      "id": "CVE-2024-34750",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-34750 affects version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5b075cfb-e504-5f69-a709-50a5271d2889",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38286 is fixed in version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e9d40007-78f6-511b-bd03-25b36d941b6a",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3a7526d5-a67c-5129-9042-5fc1df861b33",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5d027fb9-b7b3-5012-9dbb-26279cd1a75b",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-54677 affects version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5faf68b0-5e4b-5156-ab75-878e6afbe879",
      "id": "CVE-2024-56337",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-56337 affects version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4110b060-f653-59f3-8270-556692444910",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:49b974b1-083d-50b2-b5cc-3dcdd64bb143",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-31650 affects version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1d36e8de-3a2f-59a6-9a02-7c73effe7edd",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31651 is fixed in version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6a987e52-90d0-5012-803f-b080393e85a9",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-46701 is fixed in version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e9394d90-a560-5cf0-bc72-0b272fa78d3e",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:27e2c5ee-591b-53cb-87e2-e70e6adc5e4c",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-48989 affects version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:05fc40d9-08c6-5e04-8b3f-0f91a9ebf515",
      "id": "CVE-2025-49124",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49124 is fixed in version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c245fb0f-ba8b-5cae-978d-652e1f322c8f",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9db44101-ac6a-50d9-98bd-5fa9afe13f35",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52434 is fixed in version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d5d1c850-7144-5290-bfb4-4a24a665a41e",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52520 is fixed in version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:11e4c9e9-393b-5e9e-b9d9-025c707fbd10",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-53506 is fixed in version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:533c1bc9-c952-5cbd-8e0e-e3e472933d1f",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ea32e3c6-2a34-5255-a0e1-b74dbac6bd54",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55752 affects version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b874e0f2-f609-57ea-8ebc-fccd2c3af8df",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b30044f6-141d-5947-a433-0359fa59745a",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aac4207a-e4c8-5ce9-940a-c8b9b8dc8494",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-66614 is fixed in version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:022cb9da-a40b-5056-bacc-de2ecadb4608",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-24733 is fixed in version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c5b6ba33-dc57-5c37-91d2-653b4da3ae34",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ae7be3d6-b749-5138-8e71-a6b5e922abe6",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-25854 is fixed in version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cce2ac3e-6ae3-5c1e-ad25-2c18ac6affd6",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29146 affects version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b925c013-1470-5c91-8c76-0262576b95f3",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:502f1697-d4b0-5005-b70e-ac83a5413f29",
      "id": "CVE-2026-34483",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34483 affects version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:145c5d04-379d-5ba9-8afb-eca644e5c99f",
      "id": "CVE-2026-34486",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34486 affects version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4102adad-621b-58a9-b1fe-2ed9c176200d",
      "id": "CVE-2026-34487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34487 affects version 9.0.50-tuxcare.9 of org.apache.tomcat:tomcat-coyote."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-coyote@9.0.50-tuxcare.9"
    }
  ]
}