{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:f2e3ad6a-b6ea-536c-8ea2-5aade061200f",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-catalina-ha",
      "version": "8.5.100-tuxcare.8",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:5f5bf9a1-28b6-5d9a-be3f-6a9adf6c73d4",
      "id": "CVE-2016-0762",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-0762 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:21f656d1-75f0-552a-ac16-a6095a106084",
      "id": "CVE-2016-0763",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-0763 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2e88050d-e198-5fe2-98ae-013548fe18ed",
      "id": "CVE-2016-5018",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-5018 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:413069a0-1a9d-51aa-87d7-4f8456cc56ab",
      "id": "CVE-2016-6794",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6794 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1f2216ea-e6c6-51ec-a52d-0a89827f8ed6",
      "id": "CVE-2016-6796",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6796 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:da330960-2198-5c27-84ec-000b62560d31",
      "id": "CVE-2016-6797",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6797 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:16e45e19-c1a0-5b8d-b57b-55fbff40a022",
      "id": "CVE-2016-6816",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6816 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d81921b1-90fd-5758-8312-8d8b936da916",
      "id": "CVE-2016-6817",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6817 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:11dde641-3b0d-56ce-a3fd-c87ca231636d",
      "id": "CVE-2016-8745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8745 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8a8cd5e6-886d-51f2-bc9a-88ea247b555a",
      "id": "CVE-2016-8747",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8747 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:20a95987-3199-5e94-8cc7-5575d0fa86e0",
      "id": "CVE-2017-12617",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-12617 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e6ed515c-bc7e-5d7a-901c-6d167a86b5cd",
      "id": "CVE-2017-5647",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5647 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b7804797-fd68-5a02-aa38-4bcaac281f4c",
      "id": "CVE-2017-5648",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5648 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bb94aa04-bad3-5758-8c97-1144f936cafe",
      "id": "CVE-2017-5650",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5650 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0ef933b2-2cae-529d-85ae-c09db6046859",
      "id": "CVE-2017-5651",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5651 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c31bc38b-4591-5db4-911e-e0ad23e46650",
      "id": "CVE-2017-5664",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5664 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:20b1de3c-25c7-5dd2-be84-1a9cc3087fb7",
      "id": "CVE-2017-7674",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-7674 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:29eb03a8-1414-50a9-8480-17db7b9c6066",
      "id": "CVE-2017-7675",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-7675 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:616dda03-c863-5738-ad66-19055f054af9",
      "id": "CVE-2018-1304",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1304 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8056b023-c1f8-5bde-8881-189fd781d942",
      "id": "CVE-2018-1305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1305 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:183254b7-b825-57f6-a766-35b107e85bb2",
      "id": "CVE-2018-1336",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1336 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:411e2789-242b-5227-a713-25aefff0a957",
      "id": "CVE-2018-8014",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2018-8014 does not affect version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha. Tomcat Version 8.5.100 is not vulnerable to CVE-2018-8014. Confirmed by manual code inspection and security advisories."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b4565b47-29c5-5186-9dc9-9ece6299f3c2",
      "id": "CVE-2018-8034",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2018-8034 does not affect version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha. Tomcat Version 8.5.100 is not vulnerable to CVE-2018-8034. Confirmed by manual code inspection and security advisories."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9de69b05-8eca-5ad6-b4fe-8b4015fc4f68",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11996 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:843533b5-c4fe-5b08-8848-fc9159f12221",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:370e5e66-875c-5560-b8a0-c2eca4dc35ad",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13943 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b67b3af8-0700-584c-9574-59fe2142784f",
      "id": "CVE-2020-8022",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2020-8022 is a false positive for org.apache.tomcat:tomcat-catalina-ha 8.5.100-tuxcare.8."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dc28d29f-d2a7-5fb6-bfe7-35fb4921d39a",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9484 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:480292d4-8e0b-55a7-9421-8beedc8fe9eb",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2175d88e-c7f5-55f9-9f8c-64a11b0bbd47",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-42340 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4257509c-95c3-5f8d-89ed-59ef8f263f2a",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-34305 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2899ce9a-8bb5-5114-9250-f39f42e3812f",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-45143 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4f5fb0d9-b10d-5528-a9f3-fe1fd1360c31",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-23672 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cd604baa-6d51-58ce-a185-e539a5f0baeb",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-24549 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:57d08edf-2721-516e-b1bf-2b2b81a54fe9",
      "id": "CVE-2024-34750",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-34750 is fixed in version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e4d31666-4bf6-5b34-88bb-ebff01f1678c",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38286 is fixed in version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d941350f-4d86-5ae2-874f-3a8d5fe9fd4d",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6ace88e1-59df-5770-a0b1-29540702896c",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:960e6752-54ac-57af-863b-fe91244c0bda",
      "id": "CVE-2024-52317",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52317 is fixed in version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:48d4abd2-37f8-5506-8d65-4684dc7b8756",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-54677 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5da93694-8ab1-5e45-8b22-8eb6add24090",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:065de20a-6c5d-55fa-ab03-d6088b8c6138",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31650 is fixed in version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:03c8c2be-542a-5e13-928d-64b8f916dc54",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31651 is fixed in version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d915eeaa-fc73-5912-9b0b-16444730d9b9",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-46701 is fixed in version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ce5bea88-c1b0-562b-b733-ff9a21def1a8",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9ea0c712-ac0d-5484-9a89-a0a880a6fe18",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48989 is fixed in version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:21c2d28e-ee12-589d-987b-76feff15b52c",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:24904b81-015e-5468-8056-de36e0f6c31f",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52434 is fixed in version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1b6b98a0-2468-5568-bf7a-afaaa291d8bc",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52520 is fixed in version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3cf34bcb-a7fc-525d-be34-934ea216c1ee",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-53506 is fixed in version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9a94bd23-6d1d-54ac-9817-36376402c5b5",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c163e935-618d-5cd5-87c9-bb3fa2ba261b",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55752 is fixed in version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:76432f77-da34-5b1c-8d51-1941a0885e5c",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a0c6977c-d06a-5c59-9340-1a8bd641fe37",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:024cd2db-88b6-5182-af1e-0a4b2c74e798",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-66614 is fixed in version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f370f7b0-7a94-5656-98a0-f1bd1b3afba8",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-24733 is fixed in version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0c6de974-1872-5a47-894c-d3dc3e393dd9",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:40eb6b9e-0801-5974-ad8f-b9733708c67f",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-25854 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:598a063e-9196-56bd-bd2b-922113dc5fec",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29146 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d41ed005-70a2-5522-b649-52df2a26cf6a",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f83a995f-497c-53ba-850d-1406069f6f8f",
      "id": "CVE-2026-34486",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34486 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-catalina-ha."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-catalina-ha@8.5.100-tuxcare.8"
    }
  ]
}