{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:fffaf43c-1c08-584c-b486-387c414ed895",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-annotations-api",
      "version": "9.0.83-tuxcare.4",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:5c357211-bd8d-5e5d-b9c4-a8d9d3dce0ab",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 9.0.83-tuxcare.4 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d460c206-4f3a-5f66-96f6-98baf7da620b",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-45143 affects version 9.0.83-tuxcare.4 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:259eca08-09c3-537b-92f2-d348d919e2e4",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-23672 is fixed in version 9.0.83-tuxcare.4 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5cd95f50-eb3d-5ed7-b852-e38d7b9b9ef4",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-24549 is fixed in version 9.0.83-tuxcare.4 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:09917ff0-b629-54c2-8e53-5452bd4bfa07",
      "id": "CVE-2024-34750",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-34750 is fixed in version 9.0.83-tuxcare.4 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fec6491f-d1f3-5679-97b4-9235ac2f1f5d",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38286 is fixed in version 9.0.83-tuxcare.4 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a5e7ce51-8c48-54c2-be97-f6e84c51be19",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 9.0.83-tuxcare.4 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2f7756cd-dc3b-59e3-a7e6-f1b08426d937",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 9.0.83-tuxcare.4 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:682158fc-673f-5de8-8d93-4e54b6ab953e",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-54677 is fixed in version 9.0.83-tuxcare.4 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e8330fce-75d9-5a34-be91-32c2c7fab848",
      "id": "CVE-2024-56337",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-56337 is fixed in version 9.0.83-tuxcare.4 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7ac18089-7530-56c6-856e-4bcd2505a4a6",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 9.0.83-tuxcare.4 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1320e769-c035-590c-9fe3-ed6778ecf74f",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31650 is fixed in version 9.0.83-tuxcare.4 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:062cb0da-c249-5043-9308-f7150dbf17cf",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31651 is fixed in version 9.0.83-tuxcare.4 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:2e6f9885-772e-5d41-8d44-3cd70e6cd2f4",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-46701 is fixed in version 9.0.83-tuxcare.4 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8760bca6-a321-5891-aff2-d6946209f513",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 9.0.83-tuxcare.4 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:be5ce3ae-f87c-5e8e-8688-2b17e589d779",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48989 is fixed in version 9.0.83-tuxcare.4 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e48e77a7-3aed-5546-a3eb-4d2638841a9c",
      "id": "CVE-2025-49124",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49124 is fixed in version 9.0.83-tuxcare.4 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:283c73c9-21d4-5162-99b5-85931296d6e9",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 9.0.83-tuxcare.4 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:237149da-390e-55f1-ace8-8372836b1f48",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52434 is fixed in version 9.0.83-tuxcare.4 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a798794f-99bf-52fc-b3ab-c6b689e618da",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52520 is fixed in version 9.0.83-tuxcare.4 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f8672755-ca11-5bbc-b948-69888beba32c",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-53506 is fixed in version 9.0.83-tuxcare.4 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7e347412-3817-5425-b303-d81f5d588c8a",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 9.0.83-tuxcare.4 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b3e5d601-af2b-5719-8df5-3e0f4af87d74",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55752 affects version 9.0.83-tuxcare.4 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b77baf89-65af-5975-a8d9-2d2724b01c62",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 9.0.83-tuxcare.4 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:07c63431-9e2a-5b75-a695-df515ee54688",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 9.0.83-tuxcare.4 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:05a6ea66-aeba-535d-aa71-93ccb360f521",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-66614 is fixed in version 9.0.83-tuxcare.4 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:82cbd2fe-808b-5ff9-8fde-b85787557689",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-24733 is fixed in version 9.0.83-tuxcare.4 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6d624569-4891-5dc2-8ecd-2405ec801589",
      "id": "CVE-2026-24734",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24734 affects version 9.0.83-tuxcare.4 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:65e3d59e-a307-5dd8-a119-c69c834f0969",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 9.0.83-tuxcare.4 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c7898a79-f9a2-5f19-a566-2589ad19db38",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-25854 affects version 9.0.83-tuxcare.4 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:58a43e96-227b-587c-98bc-d965b518a926",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-29146 affects version 9.0.83-tuxcare.4 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:fb26644e-3f6b-5b05-9a03-cea09aac5519",
      "id": "CVE-2026-34483",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-34483 is fixed in version 9.0.83-tuxcare.4 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ab68d8e5-6780-5ab7-9a5a-89a364692407",
      "id": "CVE-2026-34486",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34486 affects version 9.0.83-tuxcare.4 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:82ebf478-d359-53ad-94ee-d44919a55043",
      "id": "CVE-2026-34487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34487 affects version 9.0.83-tuxcare.4 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:83632937-6c40-5369-b457-6436b9ab06a4",
      "id": "CVE-2026-41284",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41284 affects version 9.0.83-tuxcare.4 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:3610a407-72d7-53fc-b577-fab0654b90e3",
      "id": "CVE-2026-41293",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41293 affects version 9.0.83-tuxcare.4 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:32ccb5af-9e58-57df-8f25-7f58b5377a3d",
      "id": "CVE-2026-42498",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42498 affects version 9.0.83-tuxcare.4 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:244889a2-aa44-5c46-91c9-70ab40569b5b",
      "id": "CVE-2026-43512",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-43512 affects version 9.0.83-tuxcare.4 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:083dda0d-d030-55a0-a394-96d845f9062b",
      "id": "CVE-2026-43513",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-43513 affects version 9.0.83-tuxcare.4 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:59fb74cb-5d02-5af6-b0bf-7e4e5d2eef05",
      "id": "CVE-2026-43514",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-43514 affects version 9.0.83-tuxcare.4 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dd88373c-705f-53fc-b43f-e17a8de788e2",
      "id": "CVE-2026-43515",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-43515 affects version 9.0.83-tuxcare.4 of org.apache.tomcat:tomcat-annotations-api."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-annotations-api@9.0.83-tuxcare.4"
    }
  ]
}