{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:c44a9c10-eea0-565e-9b55-58676a5ca38e",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8",
      "type": "library",
      "group": "org.apache.tika",
      "name": "tika-detector-siegfried",
      "version": "2.9.4-tuxcare.8",
      "purl": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:b573a6d4-22f8-57d9-9948-8c84ec6a4a6b",
      "id": "CVE-2012-6612",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2012-6612 does not affect version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried. Version 2.9.4 is not affected by CVE-2012-6612: the security fix is already present in the target branch. Momus prerequisite check: \"All 7 patch commits already exist in target branch\". No backport needed."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5bf180cd-6172-5128-9124-7647f839ea15",
      "id": "CVE-2013-6397",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-6397 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4b589b44-7375-5270-b2dc-8b7adf5940cf",
      "id": "CVE-2013-6407",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2013-6407 does not affect version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried. Version 2.9.4 is not affected by CVE-2013-6407: the security fix is already present in the target branch. Momus prerequisite check: \"All 4 patch commits already exist in target branch\". No backport needed."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4caebab8-a0db-5f11-80eb-277313e5c251",
      "id": "CVE-2013-6408",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-6408 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:36d70b08-4645-532a-8855-0aa6748abd08",
      "id": "CVE-2015-3414",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2015-3414 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b34d1eb9-9b60-5849-8609-c6903274667f",
      "id": "CVE-2015-3415",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2015-3415 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:393cae50-9bc9-5d56-acfd-8f29e02e5c1c",
      "id": "CVE-2015-3416",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2015-3416 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c0c1665d-154a-5778-9b76-c0d2afbfc1c1",
      "id": "CVE-2015-3717",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2015-3717 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8b0a51fa-49df-585f-8aa7-51abcc7015cf",
      "id": "CVE-2015-5895",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2015-5895 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3372ddf7-39b5-5d57-95e3-f2a1d33326f9",
      "id": "CVE-2015-6607",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2015-6607 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:606d57e2-47ba-53c9-9f58-69f3163e13ce",
      "id": "CVE-2015-8795",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2015-8795 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8d93a5fe-3773-53ad-92ea-e890dfdc654d",
      "id": "CVE-2015-8796",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2015-8796 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:718099a3-b536-5d3d-9be7-0f9cb2e581bf",
      "id": "CVE-2015-8797",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2015-8797 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fd9bed3f-9011-5eef-9e90-50afb1b8b51b",
      "id": "CVE-2016-6153",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6153 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b0fdb1e9-5894-5d4a-af90-376c73b3402b",
      "id": "CVE-2017-10989",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-10989 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9d102932-adb0-545d-8068-6aefc25bc4ac",
      "id": "CVE-2017-3163",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-3163 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:600ebbc5-607f-52cd-84fc-60ba6a73ea1c",
      "id": "CVE-2017-3164",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-3164 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8e14f7cc-32ed-5641-a692-5f24d0c15686",
      "id": "CVE-2018-11802",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2018-11802 does not affect version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried. Version 2.9.4 is not affected by CVE-2018-11802: the security fix is already present in the target branch. Momus prerequisite check: \"Patches already applied: 302f22aff7a836868b270038e1d66002a2004869\". No backport needed."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:473ec29f-2c30-5cac-b5c1-b983ac6da84f",
      "id": "CVE-2018-1308",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1308 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ee59b814-ccb8-56c2-afaf-a3bcb273f21d",
      "id": "CVE-2018-20346",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-20346 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b3246646-3718-5774-8965-e672a4fa0c13",
      "id": "CVE-2018-20505",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-20505 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c252ae76-c708-59a8-b4af-d48c66906dc9",
      "id": "CVE-2018-20506",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-20506 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e9289c47-1b0a-5748-ad11-993ee64ffc77",
      "id": "CVE-2018-8740",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-8740 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:45a93a2f-58d7-5d48-95a9-28dea594f2af",
      "id": "CVE-2019-0193",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2019-0193 does not affect version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried. Version 2.9.4 is not affected by CVE-2019-0193: the security fix is already present in the target branch. Momus prerequisite check: \"Patches already applied: 1b81d200e8ffb882276264618c9004ba4bf72ecb\". No backport needed."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:190b6c70-03b0-5016-9374-93461bc933bf",
      "id": "CVE-2019-19645",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-19645 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5cad84bd-029d-58dd-b8b2-a2cad3b6775e",
      "id": "CVE-2019-19646",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-19646 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eb32176c-b6be-5171-b78d-065879226234",
      "id": "CVE-2020-11655",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11655 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:498550d8-f76e-595e-abd8-0ce9889d5757",
      "id": "CVE-2020-11656",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11656 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7f3f0d82-1c9c-5f39-bb03-1a2713cb00d5",
      "id": "CVE-2020-13434",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13434 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6e00b03b-0d77-5f11-9207-ba9b015b8148",
      "id": "CVE-2020-13435",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13435 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cd97d1a3-161b-5a2d-b5c7-6fbe62b76007",
      "id": "CVE-2020-13630",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13630 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4a94091a-2505-5cb7-ae60-354f461d905b",
      "id": "CVE-2020-13631",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13631 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6e197e77-4d43-539a-bd2c-958e6262a418",
      "id": "CVE-2020-13632",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13632 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ffca9ac5-b535-5ed5-90d6-41ddc85ac8ee",
      "id": "CVE-2020-13941",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13941 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2aa0e7b0-c5f8-5db6-b71b-3c8550095a06",
      "id": "CVE-2020-15358",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-15358 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1c9cb46d-f8fd-5cd0-acbf-2546e54ce21f",
      "id": "CVE-2021-27905",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-27905 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1bebe3cc-d99b-55e5-aaa9-bbf1e46cd215",
      "id": "CVE-2021-29262",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-29262 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:39cd50e8-5e79-526e-9865-50a568889fe5",
      "id": "CVE-2021-29943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-29943 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7510553e-931d-5332-8df0-e3ac3d618e05",
      "id": "CVE-2021-44548",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-44548 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8a1b2da8-ee84-54a5-b682-b096334f29e8",
      "id": "CVE-2022-35737",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-35737 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:69a791a1-dc4a-52dc-a8c1-bddb077979e8",
      "id": "CVE-2023-34610",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-34610 is fixed in version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c8098225-1a58-5169-9cb6-7bf320a3c20c",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-44487 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9810201a-5e84-5777-b070-a00805fd4c49",
      "id": "CVE-2023-7104",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-7104 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a9197cf7-8823-56e5-b148-8213d18b5f64",
      "id": "CVE-2024-31141",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-31141 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e0300576-7acd-58b9-96c8-2899ad396be6",
      "id": "CVE-2024-56128",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-56128 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:913a18d1-881a-52e1-a8f5-6a2664844985",
      "id": "CVE-2025-27819",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-27819 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e62f3b6e-48f1-5650-98af-8dc16de33c7f",
      "id": "CVE-2025-54988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-54988 is fixed in version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c837de6e-432e-5be9-af90-cfdf0a83fe08",
      "id": "CVE-2025-66516",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-66516 is fixed in version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3084e8ba-75b6-5e36-85e6-0344205d9dcc",
      "id": "CVE-2026-66755",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-66755 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-detector-siegfried."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tika/tika-detector-siegfried@2.9.4-tuxcare.8"
    }
  ]
}