{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:e2630bd2-647c-5402-993f-17f7582a0dca",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-jsp-api",
      "version": "8.5.100-tuxcare.8",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:30d685d5-dfaf-5136-a66b-f9eef8ff98c7",
      "id": "CVE-2016-0762",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-0762 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ca9429a9-101f-5695-a558-3edadc7709e3",
      "id": "CVE-2016-0763",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-0763 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:01f490b7-a6d9-520b-b831-560340d8cc11",
      "id": "CVE-2016-5018",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-5018 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6696e076-7b19-543f-a923-8a7901102307",
      "id": "CVE-2016-6794",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6794 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a4b60cf7-0a9f-5cb8-b3bd-eef65af86b4c",
      "id": "CVE-2016-6796",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6796 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:091549a9-25d0-588d-af92-fdeda4a62c30",
      "id": "CVE-2016-6797",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6797 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ee8e8891-9aac-532b-8e92-ccc14874e4e1",
      "id": "CVE-2016-6816",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6816 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:47ebc4d7-5f37-502a-aba8-5c4ed7af9421",
      "id": "CVE-2016-6817",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6817 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d1fb0a3d-c084-5de6-acb4-8f8a24ec4474",
      "id": "CVE-2016-8745",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8745 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:efeee97d-2799-57b0-8f0e-66dae026d4c1",
      "id": "CVE-2016-8747",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-8747 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:31171f33-54e9-557b-ad54-e412309dbaf1",
      "id": "CVE-2017-12617",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-12617 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:58fc494b-863b-572d-9da1-a38684619e7f",
      "id": "CVE-2017-5647",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5647 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f9860efb-0541-5ada-a9c5-3d84b34a975f",
      "id": "CVE-2017-5648",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5648 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b6a389c1-1755-5afd-9b4a-e01d0d0ce89d",
      "id": "CVE-2017-5650",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5650 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:23805357-014c-5ee7-b54e-d4adf6911a1f",
      "id": "CVE-2017-5651",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5651 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4a80e28e-6f5d-5133-b4e4-ed600db77039",
      "id": "CVE-2017-5664",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-5664 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d7259820-9afa-5f29-a0e2-d66318807321",
      "id": "CVE-2017-7674",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-7674 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:277eb056-da69-5777-ba99-ceea52b1a83a",
      "id": "CVE-2017-7675",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-7675 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c0da88af-98b5-5c97-a328-cf69fb87e685",
      "id": "CVE-2018-1304",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1304 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:542e0f55-57f7-5254-b3c8-9d412063e5a9",
      "id": "CVE-2018-1305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1305 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:463bc57e-d2af-527b-b865-92ebeaa30831",
      "id": "CVE-2018-1336",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1336 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7f0fdf1f-26e4-5068-b2a7-7027513a3a7c",
      "id": "CVE-2018-8014",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2018-8014 does not affect version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api. Tomcat Version 8.5.100 is not vulnerable to CVE-2018-8014. Confirmed by manual code inspection and security advisories."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:82d6c764-15a7-5d03-92a3-2cf80871bb16",
      "id": "CVE-2018-8034",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2018-8034 does not affect version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api. Tomcat Version 8.5.100 is not vulnerable to CVE-2018-8034. Confirmed by manual code inspection and security advisories."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e99b15f0-67e7-5486-832c-f65e09a4ca38",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11996 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:24f1907e-32a8-5846-9ae9-83b22ea042ae",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:def2012d-8a17-51cd-ab3e-bc4293c10a64",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13943 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:44f6f46d-e82b-5ee0-b6cd-cfdc45e4b7c0",
      "id": "CVE-2020-8022",
      "analysis": {
        "state": "false_positive",
        "detail": "Vulnerability CVE-2020-8022 is a false positive for org.apache.tomcat:tomcat-jsp-api 8.5.100-tuxcare.8."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d35261d0-a45d-504a-bd69-28bd65159ef4",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-9484 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b44616e8-249b-5006-ae25-aaf6cc925a0c",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b80b3e06-4046-5758-8457-e334913fe0f9",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-42340 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3696e454-e58c-5610-b379-6b4bd4e0cc6d",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-34305 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:22dad180-5aa9-5824-944d-1d0440023f67",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-45143 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5a99547f-c204-54a8-9bc7-408ac1331902",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-23672 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:71eeabf0-2197-5923-a28f-aed8eb24245b",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-24549 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:849e4fe9-c279-5786-88dc-d1c23be808ef",
      "id": "CVE-2024-34750",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-34750 is fixed in version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:097f2718-eadc-588a-bf7e-3c4bd7c3fa2f",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38286 is fixed in version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7ac6fe26-07f8-5bae-922c-290a4e19bf6e",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dd42a641-9697-5270-985a-3086719e3b74",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5138cfba-dfa5-546a-81ca-71843a86bdba",
      "id": "CVE-2024-52317",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52317 is fixed in version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9a285624-9f02-5e1d-ba9e-10497ba2e4d4",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-54677 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3a4cb414-49a1-5a94-93fe-c3d2025c6bea",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b19b4587-0eb0-513d-b526-d8217f32582a",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31650 is fixed in version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:da8acd6c-ccc8-5415-b59c-4a3212734ac6",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31651 is fixed in version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e11e999f-e81f-5eb0-ba04-3f6a65d39cbb",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-46701 is fixed in version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e6a59c9b-e6d9-5968-a87c-6fb35472ce17",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:befd0543-8079-52bb-8d31-15b1e8d37ff6",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48989 is fixed in version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f085e052-a2de-526a-8386-e29d2769b00e",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:44df8390-b4c7-51d6-92d3-1bc3641a9302",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52434 is fixed in version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8269a6fe-9cf1-5ad9-84a5-29666bf1a7db",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52520 is fixed in version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:01f978ff-4d4b-5be6-a363-9a10256a926a",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-53506 is fixed in version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eab294a3-ad5f-56f0-af5c-058defea016b",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:594ff957-b58f-5303-8aae-8a9a9d21918e",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55752 is fixed in version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b7e1e2bb-d46a-548d-987a-b28654ed0cea",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:641ae747-5e54-52ab-8b2a-7c4e28a90499",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:905c2f4d-4fb9-5970-a350-5b407f1c78ae",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-66614 is fixed in version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fed994fc-db08-5a48-a19f-55b19eacc78f",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-24733 is fixed in version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2d74d087-ef7e-555c-b0e0-ea59b652dc7d",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:09c27c25-ec42-5ba4-bf75-ffc6af377b25",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-25854 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f60f8db5-4086-52b8-ab25-d3e5fec8d053",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29146 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:048c2234-1e47-5002-b21b-186f856388c0",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:618e3d6b-c0ce-53b1-959b-226c419a9940",
      "id": "CVE-2026-34486",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34486 affects version 8.5.100-tuxcare.8 of org.apache.tomcat:tomcat-jsp-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-jsp-api@8.5.100-tuxcare.8"
    }
  ]
}