{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:4f9d3aed-aee1-5c80-bffd-bf72c84b33e3",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-i18n-es",
      "version": "7.0.109-tuxcare.1",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:3d8748a3-fd60-59fe-8a13-680dd52e7d15",
      "id": "CVE-2013-4590",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-4590 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ae6a3200-21a4-5f4a-91b0-dd3a789231a6",
      "id": "CVE-2015-5174",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2015-5174 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8e02dcc9-bbef-5666-b640-2063175db34c",
      "id": "CVE-2015-5346",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2015-5346 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7d0d3f95-0ec0-51f6-b717-fa0a59c470cc",
      "id": "CVE-2016-0706",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-0706 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4aa17762-b331-5c92-890a-2af9a8f61bca",
      "id": "CVE-2016-0762",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-0762 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1662305d-fed9-530c-8abf-02a446a091d9",
      "id": "CVE-2016-0763",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-0763 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:801dacd4-b279-5cf4-976c-7c3a95268ee7",
      "id": "CVE-2016-5018",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-5018 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:11480ce3-3411-54db-9e0c-2c695ab6c49b",
      "id": "CVE-2016-6794",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6794 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:702030ac-8ae1-5b14-a220-8f97ad67a491",
      "id": "CVE-2016-6796",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6796 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fc46a220-7bd8-5263-a003-ba2826b9a2f6",
      "id": "CVE-2016-6797",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6797 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0c863e10-6d1a-5c14-ace6-ff08e1f232c9",
      "id": "CVE-2016-6816",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6816 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6a42d352-3b66-5797-a4e1-5ff7644d24f1",
      "id": "CVE-2016-6817",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6817 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cd8fc400-f65d-5677-8f96-b47ca045582b",
      "id": "CVE-2016-8745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8745 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cfc786dc-6b44-519e-8115-4b5d02f70f81",
      "id": "CVE-2016-8747",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8747 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f512feb6-4e61-5e5e-a9b5-06dad948a598",
      "id": "CVE-2017-12617",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-12617 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e2bd7ae8-762a-55ec-a280-41dbc667d4fc",
      "id": "CVE-2017-5647",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5647 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:65c0ebcb-4974-5936-a477-47550c2664c7",
      "id": "CVE-2017-5648",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5648 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cc1931d7-fffe-5d54-a29c-37eb26876f04",
      "id": "CVE-2017-5650",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5650 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2e62b8cc-b462-5902-81fa-6f2d25419ecc",
      "id": "CVE-2017-5651",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5651 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ed95eaaa-e78e-5702-a4c9-b8bd1a6f9120",
      "id": "CVE-2017-5664",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5664 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fa03fe4d-f866-5581-986b-4f872a8f7a1b",
      "id": "CVE-2017-7674",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-7674 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:df401659-e868-5e7c-987a-eea03829ade9",
      "id": "CVE-2017-7675",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-7675 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7d40ddaa-6412-5427-a7bf-90254e2bb9e7",
      "id": "CVE-2018-1304",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1304 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ad84bc0f-a3f4-520f-b886-dde918c62226",
      "id": "CVE-2018-1305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1305 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:936ed826-4374-5c42-b055-e5ef80997668",
      "id": "CVE-2018-1336",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1336 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0b3f0a97-18d6-5e5d-b4a2-8cf8e03fd4c8",
      "id": "CVE-2018-8014",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-8014 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5ce31fd2-b048-53e5-bc61-3c18169d321d",
      "id": "CVE-2018-8034",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-8034 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0c85e348-d701-5721-8092-f6222edc0471",
      "id": "CVE-2019-12418",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-12418 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b6ec98ba-bcff-52a4-a17a-41ea160250fd",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11996 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fe969bc7-4a76-5535-b598-9e6a51f239c9",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:34c7f578-8b8a-5866-a9c3-7215e5bb3688",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13943 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:39e1a6a0-2849-558d-bd00-4c18f2f8d028",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9484 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4c06a578-52b8-531b-a61e-65ff394f5a27",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c6e9fd17-e627-563d-a099-29c2764f8ab7",
      "id": "CVE-2021-30639",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-30639 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ad4d6bab-d9db-5656-8cee-7f93e70c25df",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-42340 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b9df0c1d-e4bb-5360-9cb0-5a4b0a27b71a",
      "id": "CVE-2022-23181",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-23181 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4ce5291e-7c35-54cd-86be-a893af81dee7",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-34305 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8abb0b6c-1e89-5bae-8f61-4a5fae109b0a",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-45143 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9d8e2e0d-5689-508e-9bad-49f135057ffb",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-24549 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7aaf2d42-1157-57a1-ac76-96c872d209ba",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-38286 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:239b5bb2-d7bb-5010-b9c2-3ec4ec068599",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-52316 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:296c2bb1-3448-5b71-9e88-83294d689c07",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-31650 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:30ffc5b3-13ff-5aa6-a639-af8c51af0513",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-31651 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3824f96f-cae5-53c2-965d-ad06bf58b831",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-48988 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c15a5df9-fb76-5491-bce8-9ca5216be794",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-49125 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:83808e15-1569-589e-a5ef-803a2eadbbc5",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66614 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1c586cf9-f208-5ec1-84ef-110f355fd673",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24733 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1282e3de-9abd-5d9c-a8a4-77657e569d5f",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-24880 is fixed in version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e576f7e1-ea18-56fe-acd0-8e2d1285bea5",
      "id": "CVE-2026-29145",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2026-29145 does not affect version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es. The official CVE record (https://www.cve.org/CVERecord?id=CVE-2026-29145) limits the affected versions to Apache Tomcat 9.0.13\u20139.0.115, 10.1.0-M7\u201310.1.52, and 11.0.0-M1\u201311.0.18. Version 7.0.109 is not within any of these ranges"
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6ca4b272-1c1e-598a-9d7f-f4480d3996fe",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29146 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6e462aa0-9721-52ed-98b0-3df0d4bec9f7",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 7.0.109-tuxcare.1 of org.apache.tomcat:tomcat-i18n-es."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-es@7.0.109-tuxcare.1"
    }
  ]
}