{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:ce05440e-f3d0-5d00-8088-5b21cd12d0e5",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@9.0.100-tuxcare.5",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-jasper-el",
      "version": "9.0.100-tuxcare.5",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@9.0.100-tuxcare.5"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:aa317de7-0751-5abb-8267-db636dca71bc",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11996 affects version 9.0.100-tuxcare.5 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@9.0.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:14e8616e-2f32-500e-9bf5-22ccf154de08",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 9.0.100-tuxcare.5 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@9.0.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ba1c0f14-c170-55a6-9178-37af57635dbb",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13943 affects version 9.0.100-tuxcare.5 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@9.0.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3d09e4c9-e4bf-5627-8400-b37aa22c3f44",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9484 affects version 9.0.100-tuxcare.5 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@9.0.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:92a26d62-46aa-5de7-91fb-2df4d68550ea",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 9.0.100-tuxcare.5 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@9.0.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fc318b1b-1a07-50f7-9899-d16e2389ae02",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-42340 affects version 9.0.100-tuxcare.5 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@9.0.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a4283733-6138-543a-903e-c8a6146553ea",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-34305 affects version 9.0.100-tuxcare.5 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@9.0.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:42b4142c-5ae8-52db-9a3b-712f48da88bf",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-45143 affects version 9.0.100-tuxcare.5 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@9.0.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f1b9c5f6-3973-534e-81ba-f26eb4a7ef7d",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-23672 affects version 9.0.100-tuxcare.5 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@9.0.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0a153494-7c47-5a89-aff7-bd34f102b69f",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-24549 affects version 9.0.100-tuxcare.5 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@9.0.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:572cd5a4-1c30-5f31-8cd1-72eed426b345",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-52316 affects version 9.0.100-tuxcare.5 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@9.0.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:342854bd-9905-51c9-bfc1-1312a57af291",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31650 is fixed in version 9.0.100-tuxcare.5 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@9.0.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1f996e0c-5e01-5e11-8725-413b001d5d44",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31651 is fixed in version 9.0.100-tuxcare.5 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@9.0.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ad8c3a36-87b1-5fd4-895d-4f026465eef4",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-46701 is fixed in version 9.0.100-tuxcare.5 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@9.0.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:676b80d7-4ed8-5ace-98a8-3ca533323827",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 9.0.100-tuxcare.5 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@9.0.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2e3230b6-ee22-53cd-95d2-1381710f7e08",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48989 is fixed in version 9.0.100-tuxcare.5 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@9.0.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4b108747-e89c-5652-ab56-fb8c6fe171e5",
      "id": "CVE-2025-49124",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49124 is fixed in version 9.0.100-tuxcare.5 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@9.0.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9cf29ce0-0ea9-55a1-a966-9042d444e41d",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 9.0.100-tuxcare.5 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@9.0.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3ee4b6e2-fd6b-54e2-863c-38fbda50c1a5",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52434 is fixed in version 9.0.100-tuxcare.5 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@9.0.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3bf3909e-c85e-530e-a895-097385af78f4",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52520 is fixed in version 9.0.100-tuxcare.5 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@9.0.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6671fb2e-ea4c-5263-b765-2f40e7094e13",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-53506 is fixed in version 9.0.100-tuxcare.5 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@9.0.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5f03dd33-6570-55b2-945e-7dccee9e0319",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 9.0.100-tuxcare.5 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@9.0.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:afbea6ee-b497-5ec8-9a9b-8ec630afb084",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55752 is fixed in version 9.0.100-tuxcare.5 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@9.0.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fa0cc6e2-b05e-5ba0-bfd4-8a48f382f73e",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 9.0.100-tuxcare.5 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@9.0.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bf013282-3982-5988-bb9b-85cb260a2019",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 9.0.100-tuxcare.5 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@9.0.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f658c37e-0ffd-5c0b-8ae2-0d934f0b1b4c",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-66614 affects version 9.0.100-tuxcare.5 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@9.0.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a950aed6-c517-5ffe-91a4-9547a0f5427b",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-24733 is fixed in version 9.0.100-tuxcare.5 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@9.0.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:735cfe9c-c031-5a77-92c2-e9615e43d54d",
      "id": "CVE-2026-24734",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24734 affects version 9.0.100-tuxcare.5 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@9.0.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:38d8ba37-8bf9-5087-9f3d-79291d46a0e0",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 9.0.100-tuxcare.5 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@9.0.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e477e6d2-b110-5baa-9da4-75facf80342b",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-25854 is fixed in version 9.0.100-tuxcare.5 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@9.0.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c4dd468d-dbf7-594e-84a0-8c8f69fcb4e5",
      "id": "CVE-2026-29145",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29145 affects version 9.0.100-tuxcare.5 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@9.0.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3f9640d4-55a7-5be0-b0e0-efa51d6b76a3",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-29146 is fixed in version 9.0.100-tuxcare.5 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@9.0.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4e3884e8-2f31-5c3c-90a6-bb40a3fbe3e6",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 9.0.100-tuxcare.5 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@9.0.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b1cfd3a3-827c-5e38-899c-5a2d10f00d02",
      "id": "CVE-2026-34483",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-34483 is fixed in version 9.0.100-tuxcare.5 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@9.0.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bae409d8-a15e-5d67-bcff-e64ec09a7500",
      "id": "CVE-2026-34486",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34486 affects version 9.0.100-tuxcare.5 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@9.0.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9cb0635e-ac83-5c21-8d9f-5d4662a5618c",
      "id": "CVE-2026-34487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34487 affects version 9.0.100-tuxcare.5 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@9.0.100-tuxcare.5"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:608424fe-c7a3-5c63-a40e-763e104061aa",
      "id": "CVE-2026-34500",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34500 affects version 9.0.100-tuxcare.5 of org.apache.tomcat:tomcat-jasper-el."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@9.0.100-tuxcare.5"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-jasper-el@9.0.100-tuxcare.5"
    }
  ]
}