{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:3599ff1a-3dfb-5154-8ca8-b85a46bff260",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9",
      "type": "library",
      "group": "org.apache.tika",
      "name": "tika-fetcher-http",
      "version": "2.9.4-tuxcare.9",
      "purl": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:76837fd0-1ebc-5e5f-b0b8-c0a0408f4955",
      "id": "CVE-2012-6612",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2012-6612 does not affect version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http. Version 2.9.4 is not affected by CVE-2012-6612: the security fix is already present in the target branch. Momus prerequisite check: \"All 7 patch commits already exist in target branch\". No backport needed."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2cfba87c-d981-53a3-85dd-4b9dc5fe72a9",
      "id": "CVE-2013-6397",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-6397 affects version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3fa17742-a669-5220-a7e6-f6585cb04ba7",
      "id": "CVE-2013-6407",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2013-6407 does not affect version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http. Version 2.9.4 is not affected by CVE-2013-6407: the security fix is already present in the target branch. Momus prerequisite check: \"All 4 patch commits already exist in target branch\". No backport needed."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cf08a5eb-f7c0-52e1-adea-d311cb6d5928",
      "id": "CVE-2013-6408",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-6408 affects version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7a218649-b5c8-596b-991f-b807cee4a6bf",
      "id": "CVE-2015-3414",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2015-3414 affects version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eba0c26c-887e-57cc-a3c4-bb761d5ad418",
      "id": "CVE-2015-3415",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2015-3415 affects version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7f6d1521-8a08-58fe-9ce4-4448b3f81701",
      "id": "CVE-2015-3416",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2015-3416 affects version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c9645c4e-6eae-5072-a03e-b28e67e91c72",
      "id": "CVE-2015-3717",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2015-3717 affects version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6c233052-0036-5848-8b21-75a2e53e8f12",
      "id": "CVE-2015-5895",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2015-5895 affects version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:adb03fb8-f406-5999-93c2-e1fa746370a5",
      "id": "CVE-2015-6607",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2015-6607 affects version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b5c3dc6e-feb5-5558-a18f-62621b1afedb",
      "id": "CVE-2015-8795",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2015-8795 affects version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9d32c4ba-c398-55b8-b32b-0ddc87929d7d",
      "id": "CVE-2015-8796",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2015-8796 affects version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fdc09c3b-06a0-5b24-aa60-c0791b98f990",
      "id": "CVE-2015-8797",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2015-8797 affects version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:785041e8-d402-5720-8a63-d9b18eecc753",
      "id": "CVE-2016-6153",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6153 affects version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:43e7dd32-128e-5bdb-a090-69ea70a05c0c",
      "id": "CVE-2017-10989",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-10989 affects version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:479e8ac6-7946-53f8-a671-2ecd38a0d776",
      "id": "CVE-2017-3163",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-3163 affects version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d85f81cb-a128-5cff-9954-00ed467558af",
      "id": "CVE-2017-3164",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-3164 affects version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e0519b60-640a-5bce-82fb-d5a71c3efaf4",
      "id": "CVE-2018-11802",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2018-11802 does not affect version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http. Version 2.9.4 is not affected by CVE-2018-11802: the security fix is already present in the target branch. Momus prerequisite check: \"Patches already applied: 302f22aff7a836868b270038e1d66002a2004869\". No backport needed."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:de156854-b639-53b5-9981-534c14aa70f9",
      "id": "CVE-2018-1308",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1308 affects version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8909fa86-6933-5116-abea-4d8a4f71b48c",
      "id": "CVE-2018-20346",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-20346 affects version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:432e9e61-d292-53bd-8017-507c57d4c3c7",
      "id": "CVE-2018-20505",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-20505 affects version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:31956200-8d1b-5e17-9cc9-cb3492fde193",
      "id": "CVE-2018-20506",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-20506 affects version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7e422abc-25a3-55ac-819f-4eea5ae2f12c",
      "id": "CVE-2018-8740",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-8740 affects version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:998b8ce8-f885-5c46-a450-a8eb8e28eb3c",
      "id": "CVE-2019-0193",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2019-0193 does not affect version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http. Version 2.9.4 is not affected by CVE-2019-0193: the security fix is already present in the target branch. Momus prerequisite check: \"Patches already applied: 1b81d200e8ffb882276264618c9004ba4bf72ecb\". No backport needed."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aaca925d-9790-5afd-b858-66915c31d9d5",
      "id": "CVE-2019-19645",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-19645 affects version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c2b49e13-3ae4-58dc-9e45-a8d147436826",
      "id": "CVE-2019-19646",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-19646 affects version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b05acc2b-397e-5a98-b6b8-19a0ae0c3dae",
      "id": "CVE-2020-11655",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11655 affects version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:77ccab10-9f05-5cf2-b0d7-822fde247276",
      "id": "CVE-2020-11656",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11656 affects version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c47d71b9-cda1-5500-8f92-eb52c1855db7",
      "id": "CVE-2020-13434",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13434 affects version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:00d6d592-61e2-5b5a-b965-2f7c57c4f60b",
      "id": "CVE-2020-13435",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13435 affects version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:79694b54-e42b-5785-81d5-9348304c41ff",
      "id": "CVE-2020-13630",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13630 affects version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:921c657f-46c2-5f4c-9e77-51ca1378065f",
      "id": "CVE-2020-13631",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13631 affects version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7c757590-320f-57c3-8cc2-7dfd900e5161",
      "id": "CVE-2020-13632",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13632 affects version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:35f35d3b-4484-568f-8601-5541b2aa9456",
      "id": "CVE-2020-13941",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13941 affects version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:011bad4a-9e11-516c-9214-b01db2b8a36a",
      "id": "CVE-2020-15358",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-15358 affects version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5efd5b92-f778-5abf-84a3-b4b60a0fa78a",
      "id": "CVE-2021-27905",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-27905 affects version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5af6d896-1eb4-5c0e-8246-dedfc5ace320",
      "id": "CVE-2021-29262",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-29262 affects version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7f242aba-908d-5455-b28e-2a7ed46e0bea",
      "id": "CVE-2021-29943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-29943 affects version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d91a4b01-720f-5e22-baf4-f810118ddcb0",
      "id": "CVE-2021-44548",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-44548 affects version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ea88a071-a86f-5ec5-af8d-5002f9156a22",
      "id": "CVE-2022-35737",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-35737 affects version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7fe5e7c4-736f-5086-a849-ffbbf8894ef6",
      "id": "CVE-2023-34610",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-34610 is fixed in version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:9fdf616b-2ef1-5744-b5c4-fdea11d42aa2",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-44487 affects version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e53a9c3a-8de1-52fd-8ce8-516b6f07d2d5",
      "id": "CVE-2023-7104",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-7104 affects version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8e420272-637c-5b39-9cd4-13dc891d5659",
      "id": "CVE-2024-31141",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-31141 affects version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e8d2436f-2b06-534b-a08c-3fbf6b603ec5",
      "id": "CVE-2024-56128",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-56128 affects version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eba3a08a-cc2d-5549-b857-fe80b1d2f824",
      "id": "CVE-2025-27819",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-27819 affects version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:12cbebe2-d334-5b72-9d1c-b4644117cf82",
      "id": "CVE-2025-54988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-54988 is fixed in version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e47e2f8a-8d94-5c88-807c-9db4a88a415c",
      "id": "CVE-2025-66516",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-66516 is fixed in version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:adfdf4a7-363f-588e-8c82-c44a72232b2b",
      "id": "CVE-2026-66755",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-66755 affects version 2.9.4-tuxcare.9 of org.apache.tika:tika-fetcher-http."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tika/tika-fetcher-http@2.9.4-tuxcare.9"
    }
  ]
}