{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:c1bd9642-1739-50ea-92a9-0eecf0f3652f",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8",
      "type": "library",
      "group": "org.apache.tika",
      "name": "tika-pipes-reporters",
      "version": "2.9.4-tuxcare.8",
      "purl": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:d1f77109-3bcd-5599-b562-7cd1b705ab4f",
      "id": "CVE-2012-6612",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2012-6612 does not affect version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters. Version 2.9.4 is not affected by CVE-2012-6612: the security fix is already present in the target branch. Momus prerequisite check: \"All 7 patch commits already exist in target branch\". No backport needed."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4098f5b7-5317-5647-a9e2-86ab93fdbe3e",
      "id": "CVE-2013-6397",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-6397 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:85542042-36fd-5f42-a686-155f910bc9fd",
      "id": "CVE-2013-6407",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2013-6407 does not affect version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters. Version 2.9.4 is not affected by CVE-2013-6407: the security fix is already present in the target branch. Momus prerequisite check: \"All 4 patch commits already exist in target branch\". No backport needed."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:04dd135e-8e97-549c-bea2-8e5906e9eede",
      "id": "CVE-2013-6408",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2013-6408 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2065722f-fcb2-5e0d-bf21-e7194c3f6fbf",
      "id": "CVE-2015-3414",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2015-3414 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:edfd0ed5-046d-5a0d-bde1-eebbc2245cbe",
      "id": "CVE-2015-3415",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2015-3415 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6b24167a-82a3-57f5-a43f-8c2f2de18513",
      "id": "CVE-2015-3416",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2015-3416 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ae912abd-b920-50be-b53f-37f6fa355170",
      "id": "CVE-2015-3717",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2015-3717 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c7111dab-3ba9-5f55-8671-7b2666fcd917",
      "id": "CVE-2015-5895",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2015-5895 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:87a06696-312a-5d08-b7f7-666beb85480e",
      "id": "CVE-2015-6607",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2015-6607 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0427e7dc-0b6b-5400-aaf3-c5d99e8025ce",
      "id": "CVE-2015-8795",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2015-8795 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c4ad3baa-f96c-5670-8092-49cc7ddf87a1",
      "id": "CVE-2015-8796",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2015-8796 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:0caed804-055d-5548-96d8-71e319f59017",
      "id": "CVE-2015-8797",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2015-8797 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a85bc7ac-c37d-598e-9ef8-7ad3be337a16",
      "id": "CVE-2016-6153",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2016-6153 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d9793ff6-a7c0-5d44-a4fe-1f00d9992bbe",
      "id": "CVE-2017-10989",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-10989 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b430a012-80df-5963-810e-2b02529048fd",
      "id": "CVE-2017-3163",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-3163 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:232f9ab8-a4ce-5300-b10b-b653d572168f",
      "id": "CVE-2017-3164",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2017-3164 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eff695ac-3e7c-5473-b6f7-014d8269e4ec",
      "id": "CVE-2018-11802",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2018-11802 does not affect version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters. Version 2.9.4 is not affected by CVE-2018-11802: the security fix is already present in the target branch. Momus prerequisite check: \"Patches already applied: 302f22aff7a836868b270038e1d66002a2004869\". No backport needed."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d4cc8ce6-4057-5399-bcc3-220a6be4a0cd",
      "id": "CVE-2018-1308",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-1308 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7c70fe92-5a93-586d-928a-38f2f5638fa4",
      "id": "CVE-2018-20346",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-20346 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:34955177-0218-53dc-abfd-55e48c0fb47f",
      "id": "CVE-2018-20505",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-20505 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:86f656f2-5a48-56f5-894f-d7f3978c62dc",
      "id": "CVE-2018-20506",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-20506 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e7fa0e1f-c8ee-5944-ab44-18e0d3f5a65b",
      "id": "CVE-2018-8740",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2018-8740 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f05f0fc7-4d4b-589e-a583-ed88e06af1bc",
      "id": "CVE-2019-0193",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2019-0193 does not affect version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters. Version 2.9.4 is not affected by CVE-2019-0193: the security fix is already present in the target branch. Momus prerequisite check: \"Patches already applied: 1b81d200e8ffb882276264618c9004ba4bf72ecb\". No backport needed."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b2094b9b-5d00-5948-9421-3d8a8605de4b",
      "id": "CVE-2019-19645",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-19645 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:76dfb224-a444-5818-8ab7-33824c50e7a1",
      "id": "CVE-2019-19646",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2019-19646 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:73aaae53-4ba4-5962-813a-db8cd236b68b",
      "id": "CVE-2020-11655",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11655 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5ac24712-64d7-5fb8-a98c-29ebbe6e6735",
      "id": "CVE-2020-11656",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-11656 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:03f60393-8cd2-5c59-be55-c0c9575c73ba",
      "id": "CVE-2020-13434",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13434 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:69ed3758-95a5-5dab-b8dd-da52d42a162d",
      "id": "CVE-2020-13435",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13435 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c642d351-4adb-5e33-b8bd-a6471cb792e0",
      "id": "CVE-2020-13630",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13630 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b46b9ddc-da0b-50c2-bb3d-51c78e8ab6c1",
      "id": "CVE-2020-13631",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13631 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:82d0575f-c6e9-5324-8b2d-ce161c9a010d",
      "id": "CVE-2020-13632",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13632 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:28558779-30a5-58a2-b53f-17633f720c69",
      "id": "CVE-2020-13941",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13941 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:905496d0-dc07-5838-9629-98f2039812a1",
      "id": "CVE-2020-15358",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-15358 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:370b6283-c7ce-5b6c-82fa-b536e2dac60f",
      "id": "CVE-2021-27905",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-27905 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e4e0c5a9-bdb8-5bf2-98ee-460d589e3a29",
      "id": "CVE-2021-29262",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-29262 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1b028aed-37b3-5069-a8d0-e69a55882a05",
      "id": "CVE-2021-29943",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-29943 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:56db4cd9-8a46-54f4-8691-f184638f946d",
      "id": "CVE-2021-44548",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-44548 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:eb0cbbf9-40c3-5f66-b41a-1d8ba86c900a",
      "id": "CVE-2022-35737",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-35737 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:62e80dc7-a560-5194-8d8a-f45f95908715",
      "id": "CVE-2023-34610",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-34610 is fixed in version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:51e53f1f-02ae-51bd-b6fc-f5aacf0e3297",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-44487 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:02151abd-24e7-56a7-91b1-b13ed1829501",
      "id": "CVE-2023-7104",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2023-7104 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c211f8d3-32e1-51da-8b61-56b200a5c73a",
      "id": "CVE-2024-31141",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-31141 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6ddfe316-996a-5d51-a997-fd63428ae647",
      "id": "CVE-2024-56128",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-56128 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:18b5e759-0636-5b94-8f30-a1d13c597203",
      "id": "CVE-2025-27819",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-27819 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c570de01-ac71-5f7a-a5df-991ef9b25265",
      "id": "CVE-2025-54988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-54988 is fixed in version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d1e9c86c-8b6a-5b12-870e-116a8db0b91b",
      "id": "CVE-2025-66516",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-66516 is fixed in version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1913ffca-2b8c-5a22-8130-cc8346cd13f6",
      "id": "CVE-2026-66755",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-66755 affects version 2.9.4-tuxcare.8 of org.apache.tika:tika-pipes-reporters."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tika/tika-pipes-reporters@2.9.4-tuxcare.8"
    }
  ]
}