{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:01a160e3-3e2c-5995-8c4f-190bed06cf50",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-util",
      "version": "8.5.100-tuxcare.9",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:954d2343-7002-5922-b476-2e7f8e15bf42",
      "id": "CVE-2016-0762",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-0762 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:23e8853c-7301-52e9-bfc4-4822f8791525",
      "id": "CVE-2016-0763",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-0763 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:329517c8-47ac-5757-a93c-d4bb724086da",
      "id": "CVE-2016-5018",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-5018 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:07f76943-4afb-5935-90fc-53223b3ceb4f",
      "id": "CVE-2016-6794",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6794 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:642bf1ca-c397-5413-96c9-c4106c698429",
      "id": "CVE-2016-6796",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6796 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a753179e-7705-56ae-9fe6-59b8ccc11963",
      "id": "CVE-2016-6797",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6797 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e6b43cdf-6669-5975-88ee-3ec53c49c30f",
      "id": "CVE-2016-6816",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6816 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0448d81e-401e-5f2b-8f07-d09fab4f122b",
      "id": "CVE-2016-6817",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6817 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:66e5bdad-499f-5c01-a7d8-5bef2e0a2081",
      "id": "CVE-2016-8745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8745 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cfc221ab-2a06-5d2b-a98a-c6c354606deb",
      "id": "CVE-2016-8747",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8747 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:83a1a381-2d9a-5200-8e44-7d875ca48476",
      "id": "CVE-2017-12617",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-12617 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2ce23a55-34b6-5395-b563-f5d052d9ccea",
      "id": "CVE-2017-5647",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5647 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ead165dd-e8fa-5d54-b993-0fd2c33742ba",
      "id": "CVE-2017-5648",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5648 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e7cfe09d-a4d1-5680-adea-a6d252c0f712",
      "id": "CVE-2017-5650",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5650 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1a462157-4257-5a25-aaa5-4d0b839d39f2",
      "id": "CVE-2017-5651",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5651 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f90153b4-9485-5fa9-83c8-0727cc48a3b2",
      "id": "CVE-2017-5664",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5664 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:49e393a4-c063-5c74-ae63-b67ccf2dbe4e",
      "id": "CVE-2017-7674",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-7674 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9fa65aac-d7b2-5bdd-b773-36d7638c055c",
      "id": "CVE-2017-7675",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-7675 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d30bcf97-b42a-5bce-88ea-a19c031b8afb",
      "id": "CVE-2018-1304",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1304 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ae7f6797-5019-580e-88b9-b715185d005e",
      "id": "CVE-2018-1305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1305 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:612f1cf9-05a4-58b7-b570-35b871efabce",
      "id": "CVE-2018-1336",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1336 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:395ba0a9-682e-5c26-9c2a-5f38773994b6",
      "id": "CVE-2018-8014",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2018-8014 does not affect version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util. Tomcat Version 8.5.100 is not vulnerable to CVE-2018-8014. Confirmed by manual code inspection and security advisories."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1b78b0e2-f6f7-5c57-9656-929fda8030c2",
      "id": "CVE-2018-8034",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2018-8034 does not affect version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util. Tomcat Version 8.5.100 is not vulnerable to CVE-2018-8034. Confirmed by manual code inspection and security advisories."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ca22662f-6587-5631-b39b-49c0087f9e7f",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11996 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e670e88b-8e86-5f09-a0ad-0ae198a4d684",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:be4620f4-8667-533e-8ee0-476af57ec297",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13943 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c9f9badc-71cb-566f-b0e9-f72ba100f7fd",
      "id": "CVE-2020-8022",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2020-8022 is a false positive for org.apache.tomcat:tomcat-util 8.5.100-tuxcare.9."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aa9c7ce5-63ca-5902-841e-f73c3de278ad",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9484 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d0c1ddf9-d192-5c47-85a7-0ff456680abe",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e2f7116b-6560-5831-9c1c-10b10fad1e63",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-42340 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dbc99a6e-f8ce-5934-ba16-329223c86cb3",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-34305 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:65dc0869-7dd2-56ed-bd3c-e8d5abacbc4f",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-45143 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cd601f3f-9fda-57e7-b8a2-ec404cdb8058",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-23672 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3a296b64-9a93-5f9f-8626-a8e4d3acc5c4",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-24549 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:493f9e23-670d-5d2a-9e64-9ff0bfc7468d",
      "id": "CVE-2024-34750",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-34750 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7ef7cc91-9238-54bb-937f-0838fea884b9",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38286 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6b932482-2cca-5578-8e0d-0562cf6b785a",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e3ebb5c8-7c19-5583-b5b7-3eb8f27619aa",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b53d74fb-43ce-5091-9dfb-9323d5f9e1fb",
      "id": "CVE-2024-52317",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52317 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3d0169ba-747e-566c-adea-8de74f128610",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-54677 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:789e40c8-3297-54b1-8de0-ee7fb4e48b0c",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c50df78a-efb4-591a-8488-430c193309ea",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31650 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:72da963b-f2ba-5df2-95b6-57c9ac443d94",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31651 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1b660f00-cb53-5802-b0d9-389102b7a190",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-46701 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:70e0fe11-f8ed-5953-8356-c8d491b68c64",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:afeba1f3-0d49-5392-a774-6cf562ba2645",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48989 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9f188900-f42c-5e5e-914d-731934a3d084",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d032456a-d3a4-5a8f-97a1-d3e8f6e777d5",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52434 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9702c2b0-7913-5e10-9329-b7e6ec56e532",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52520 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:922dd59c-fa7c-54af-83a9-0e7902e04f6c",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-53506 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:96554c42-4210-5d96-94ff-35e5a1c1db86",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:af2f9ec9-71a4-541d-bfec-d3edb19f5cf1",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55752 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:81a8c241-f416-5dfe-8dc4-b85d1e713e1d",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:571af347-442a-5c1b-a997-6580ade760b2",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:658b5c48-77c7-5652-8fb3-9e19a37263c5",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-66614 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7ca073db-0674-5038-a73d-55ad38bf2cfb",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-24733 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:18ae9881-ffa5-5404-babd-018391c12bf8",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5e82d932-440f-5ca9-b727-96d3457306ce",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-25854 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fa285a9e-45c4-520e-9db0-c6fa1cecae69",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-29146 is fixed in version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:54348ec3-9b00-5d5d-8d5c-46af33f1cb29",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:07dc1b31-ce02-55b5-af2d-527da7b22118",
      "id": "CVE-2026-34486",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34486 affects version 8.5.100-tuxcare.9 of org.apache.tomcat:tomcat-util."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-util@8.5.100-tuxcare.9"
    }
  ]
}