{
  "$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
  "bomFormat": "CycloneDX",
  "specVersion": "1.6",
  "serialNumber": "urn:uuid:854227e7-e106-5c69-a199-a9f1ee642550",
  "version": 1,
  "metadata": {
    "tools": [
      {
        "name": "tuxcare-vex-generator",
        "version": "1.0.0"
      }
    ]
  },
  "components": [
    {
      "bom-ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14",
      "type": "library",
      "group": "org.apache.tomcat",
      "name": "tomcat-i18n-pt-BR",
      "version": "9.0.50-tuxcare.14",
      "purl": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
    }
  ],
  "vulnerabilities": [
    {
      "bom-ref": "urn:uuid:8ef09a29-42ba-5f0c-8514-99f0963c8ef1",
      "id": "CVE-2020-11996",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2020-11996 does not affect version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR. Version 9.0.50 is not vulnerable. Summary: The target repository contains a functionally equivalent fix for CVE-2020-11996. While the implementation differs from the provided patch, it addresses the same performance issue using a more efficient approach with ConcurrentNavigableMap.subMap(). [terminalized not_affected from patch_application_manual/not_vulnerable]"
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ef98496f-f9ef-5d62-8d39-a39c795f83d0",
      "id": "CVE-2020-13934",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2020-13934 affects version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4df17259-910a-5b96-a44e-7e47957f95a6",
      "id": "CVE-2020-13943",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2020-13943 does not affect version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR. Version 9.0.50 is not vulnerable. Summary: Target repository already has the fix for CVE-2020-13943 applied. The maxConcurrentStreams check is correctly located in headersEnd() method, not in headersStart(). [terminalized not_affected from patch_application_manual/not_vulnerable]"
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:024baea7-191a-5494-ae7b-22bce7f295d5",
      "id": "CVE-2020-9484",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2020-9484 does not affect version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR. Fix already present in baseline since 9.0.35. Verified in java/org/apache/catalina/session/FileStore.java:303 \u2014 canonicalFile.toPath().startsWith(storageDir.getCanonicalFile().toPath()) containment check is in place. Advisory range 9.0.0.M1-9.0.34; 9.0.90 is well past the fix."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5ae63579-238d-522d-bfbe-05260bac3fc2",
      "id": "CVE-2021-24122",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2021-24122 affects version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6c73982f-b4fa-5c32-b01e-5c1969296739",
      "id": "CVE-2021-42340",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-42340 is fixed in version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:913ff783-72b8-54d2-a309-7e30f730b422",
      "id": "CVE-2021-43980",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2021-43980 is fixed in version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:264e69a4-4805-5720-9e72-f450750e86be",
      "id": "CVE-2022-23181",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-23181 is fixed in version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f968b383-9309-5f97-aa6d-d99599c98c40",
      "id": "CVE-2022-29885",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-29885 is fixed in version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c4466c9d-34f4-57b9-81b9-cd87cb85f7cc",
      "id": "CVE-2022-34305",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2022-34305 affects version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:49324766-6073-5250-833b-489a55b45b78",
      "id": "CVE-2022-42252",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-42252 is fixed in version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4912fa8e-8a96-51eb-b740-d615a372cf43",
      "id": "CVE-2022-45143",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2022-45143 is fixed in version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:158af165-f39d-51ce-a217-a00fd5beeb1a",
      "id": "CVE-2023-24998",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-24998 is fixed in version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:020be33f-706b-5079-ade7-aa1e6336137f",
      "id": "CVE-2023-28708",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-28708 is fixed in version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:6484fa99-bbe7-5ef7-86ed-a02b20810f24",
      "id": "CVE-2023-28709",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-28709 is fixed in version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c40022f7-1c7c-5601-97c5-9cf6e3dcaf0e",
      "id": "CVE-2023-41080",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-41080 is fixed in version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f59d0b02-6302-57b9-b742-669aed8f1d5c",
      "id": "CVE-2023-42795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-42795 is fixed in version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bfcc238f-5ad9-5857-8ecb-1d98af27e3e1",
      "id": "CVE-2023-44487",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-44487 is fixed in version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:31f7538f-10cd-5e58-b50d-ccb8f855e7cf",
      "id": "CVE-2023-45648",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-45648 is fixed in version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cd0619bf-19fd-551d-873d-8ba502ca03bd",
      "id": "CVE-2023-46589",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2023-46589 is fixed in version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:55ae5aec-688a-52a0-b4d3-f5259e114f8f",
      "id": "CVE-2024-23672",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-23672 affects version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8e5ea09c-99e7-5e19-b6e6-3cd4ce446456",
      "id": "CVE-2024-24549",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-24549 affects version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:03cf5867-e4fe-56f8-85c6-1b75101e5713",
      "id": "CVE-2024-34750",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-34750 is fixed in version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a0a53f49-6155-5c92-86f2-abe83178f9cd",
      "id": "CVE-2024-38286",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-38286 is fixed in version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:13bd647d-b7fe-55e6-b30a-88a6b64b9197",
      "id": "CVE-2024-50379",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-50379 is fixed in version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4ea7fa9c-664c-5c39-af64-cbf43333192e",
      "id": "CVE-2024-52316",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-52316 is fixed in version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:4616b5f7-534f-5c05-846a-ccb205c7be8a",
      "id": "CVE-2024-54677",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2024-54677 affects version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:a92cfd58-55eb-5b6e-9650-9b56907e2c9f",
      "id": "CVE-2024-56337",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2024-56337 is fixed in version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1cb18195-e5fc-52e1-b6d1-04486be59bec",
      "id": "CVE-2025-24813",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-24813 is fixed in version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:e2c105b3-b04b-53e0-862e-157e3880b3dd",
      "id": "CVE-2025-31650",
      "analysis": {
        "state": "not_affected",
        "detail": "Vulnerability CVE-2025-31650 does not affect version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR. 9.0.50 predates HTTP/2 RFC 9218 PRIORITY_UPDATE frame support (added in 9.0.76). Advisory range per NVD/Snyk/GHSA is 9.0.76-9.0.102. Code inspection confirms: Http2Parser.processFramePriorityUpdate method and priority parsing in Stream.emitHeader do not exist in this baseline. Vulnerable code path is absent."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:22691d91-56b2-52b6-853e-7450808c8d56",
      "id": "CVE-2025-31651",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-31651 is fixed in version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:31b898ab-803d-524f-8366-119237bd6f6c",
      "id": "CVE-2025-46701",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-46701 is fixed in version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:5c6464a5-214a-5e25-b363-b034525a9df4",
      "id": "CVE-2025-48988",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48988 is fixed in version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:68d567ce-fde0-5f4e-8f5c-2e0dc69800e7",
      "id": "CVE-2025-48989",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-48989 is fixed in version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:c10adf38-169d-505f-bc5b-f53fd1b82f10",
      "id": "CVE-2025-49124",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49124 is fixed in version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f312f352-1fc0-5913-8798-405676e1fe0b",
      "id": "CVE-2025-49125",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-49125 is fixed in version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:1fdb184a-9466-5992-ab2a-3bea5339444b",
      "id": "CVE-2025-52434",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52434 is fixed in version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:60d40d9b-935f-52d5-b8c5-db819cd1e417",
      "id": "CVE-2025-52520",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-52520 is fixed in version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:b77552ec-1bba-5188-9072-9e59138613ec",
      "id": "CVE-2025-53506",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-53506 is fixed in version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ddc4457b-f30f-5961-82c4-df1847b4a1ae",
      "id": "CVE-2025-55668",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55668 is fixed in version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:65455023-e34d-5b3a-ac66-5e73d723f351",
      "id": "CVE-2025-55752",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2025-55752 affects version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:33d0e4bf-6763-51b6-957f-b2a5928dc435",
      "id": "CVE-2025-55754",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-55754 is fixed in version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:cfd8a879-a1e9-5f43-9100-5261cfb0add7",
      "id": "CVE-2025-61795",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-61795 is fixed in version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:30878097-ab1e-598f-bac9-7c6c76419079",
      "id": "CVE-2025-66614",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2025-66614 is fixed in version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:ea8acbab-e17c-55af-bc96-ba559bad63fe",
      "id": "CVE-2026-24733",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-24733 is fixed in version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:100d5b65-bbd8-5bb3-a242-ca6053de4238",
      "id": "CVE-2026-24880",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-24880 affects version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:f16dc474-f3fe-599e-8467-1867348aa1ee",
      "id": "CVE-2026-25854",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-25854 is fixed in version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:8c34c8dc-7221-537f-992c-84fa1e1efbe1",
      "id": "CVE-2026-29146",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-29146 is fixed in version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:bdc85b13-3ab5-5488-8cd8-dcbfcede8110",
      "id": "CVE-2026-32990",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-32990 affects version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:49c89e44-1894-5de7-a7ff-893f018e8756",
      "id": "CVE-2026-34483",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34483 affects version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:7a4b0e7b-9cd3-55a8-90ee-bcc9a7e41d8c",
      "id": "CVE-2026-34486",
      "analysis": {
        "state": "resolved",
        "detail": "Vulnerability CVE-2026-34486 is fixed in version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d16edc2c-9f3c-5592-a142-4c39f838a148",
      "id": "CVE-2026-34487",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-34487 affects version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:799191e0-93b7-5164-8878-7a9c1c586308",
      "id": "CVE-2026-41284",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41284 affects version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:dfc9ae34-e866-51c0-baa3-3c4f99f7378e",
      "id": "CVE-2026-41293",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-41293 affects version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:27086f72-3b5f-5441-b62d-d66596dfeae0",
      "id": "CVE-2026-42498",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-42498 affects version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:47bbadc6-8d1a-5e3a-833b-9405ba05a5ed",
      "id": "CVE-2026-43512",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-43512 affects version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:771fc60d-1543-50e2-92e1-bf635cb97722",
      "id": "CVE-2026-43513",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-43513 affects version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:d358dcaf-2648-5e8d-809a-bdc2c0c8de33",
      "id": "CVE-2026-43514",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-43514 affects version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    },
    {
      "bom-ref": "urn:uuid:aba5691d-c233-5e40-b3b0-99d5a15a4834",
      "id": "CVE-2026-43515",
      "analysis": {
        "state": "exploitable",
        "detail": "Vulnerability CVE-2026-43515 affects version 9.0.50-tuxcare.14 of org.apache.tomcat:tomcat-i18n-pt-BR."
      },
      "affects": [
        {
          "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
        }
      ]
    }
  ],
  "dependencies": [
    {
      "ref": "pkg:maven/org.apache.tomcat/tomcat-i18n-pt-BR@9.0.50-tuxcare.14"
    }
  ]
}